From 2c0ae1a2c2120a9245aed3194058821ad0989afc Mon Sep 17 00:00:00 2001 From: notanthony Date: Fri, 28 Aug 2026 20:53:43 +0000 Subject: [PATCH] Update postman collection --- postman.json | 93793 +++++++++++++++++++++++++++++-------------- specs/openapi.yaml | 84403 ++++++++++++++++++++++++-------------- 2 files changed, 117793 insertions(+), 60403 deletions(-) diff --git a/postman.json b/postman.json index 0ed9e2c..256a4cf 100644 --- a/postman.json +++ b/postman.json @@ -25,7 +25,7 @@ "description": "", "item": [ { - "id": "d5115b5e-3e04-45ed-ac0a-8d2b2263db2e", + "id": "5d8b5f58-fe22-4cea-a3b8-bdc7877f82e2", "name": "List Surfaces", "request": { "name": "List Surfaces", @@ -71,7 +71,7 @@ }, "response": [ { - "id": "40ad6f53-1eb5-4903-b178-0c65a85941f3", + "id": "e3eb6a5f-fb80-4f9f-8a63-e7c4fe96e5a7", "name": "A2UIServiceListSurfacesResponse returns active surfaces.", "originalRequest": { "url": { @@ -125,7 +125,7 @@ "value": "application/json" } ], - "body": "{\n \"surfaces\": [\n {\n \"catalogId\": \"\",\n \"components\": [\n {\n \"button\": {\n \"action\": {\n \"event\": {\n \"context\": {\n \"key_0\": \"\"\n },\n \"name\": \"\"\n },\n \"functionCall\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n }\n },\n \"checks\": [\n {\n \"and\": {\n \"checks\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"or\": {\n \"checks\": [\n {\n \"value\": \"\"\n }\n ]\n }\n }\n ],\n \"disabled\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"variant\": \"BUTTON_VARIANT_UNSPECIFIED\"\n },\n \"c1CodeBlock\": {\n \"code\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"copyable\": \"\",\n \"language\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"title\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1ConnectorConfigForm\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"skipActionName\": \"\",\n \"submitActionName\": \"\"\n },\n \"c1ConnectorSyncDetail\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"title\": \"\"\n },\n \"c1ConnectorSyncProgress\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"title\": \"\"\n },\n \"c1DurationPicker\": {\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"maxDurationSeconds\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1MsTeamsNotifications\": {},\n \"c1OnboardingPlan\": {\n \"categories\": [\n {\n \"id\": \"\",\n \"steps\": [\n {\n \"agentAssisted\": \"\",\n \"description\": \"\",\n \"id\": \"\",\n \"title\": \"\"\n }\n ],\n \"title\": \"\"\n }\n ]\n },\n \"c1OnboardingWelcome\": {\n \"recommendedCatalogId\": \"\",\n \"recommendedDisplayName\": \"\"\n },\n \"c1ResourcePicker\": {\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"multiSelect\": \"\",\n \"resourceType\": \"\",\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1SlackNotifications\": {},\n \"c1StatusIndicator\": {\n \"message\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"showSpinner\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"status\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"toolName\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1TodoList\": {\n \"items\": [\n {\n \"description\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"id\": \"\",\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"section\": \"\",\n \"status\": \"\",\n \"trailingAction\": {\n \"context\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"name\": \"\"\n },\n \"trailingActionLabel\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n }\n ],\n \"title\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"card\": {\n \"children\": {\n \"ids\": [\n \"\"\n ]\n }\n },\n \"checkBox\": {\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"choicePicker\": {\n \"choices\": [\n {\n \"description\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"id\": \"\",\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n }\n ],\n \"hideLabel\": \"\",\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"multiSelect\": \"\",\n \"required\": \"\",\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"column\": {\n \"alignment\": \"\",\n \"children\": {\n \"ids\": [\n \"\"\n ]\n },\n \"distribution\": \"\",\n \"gap\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"dateTimeInput\": {\n \"inputType\": \"DATE_TIME_INPUT_TYPE_UNSPECIFIED\",\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"max\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"min\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"divider\": {\n \"orientation\": \"\"\n },\n \"id\": \"\",\n \"progressBar\": {\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"max\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"min\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"step\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"row\": {\n \"alignment\": \"\",\n \"children\": {\n \"ids\": [\n \"\"\n ]\n },\n \"distribution\": \"\",\n \"gap\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"slider\": {\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"max\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"min\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"step\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"text\": {\n \"markdown\": \"\",\n \"text\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"textField\": {\n \"checks\": [\n {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n }\n ],\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"placeholder\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"variant\": \"TEXT_FIELD_VARIANT_SHORT_TEXT\"\n },\n \"weight\": \"\"\n }\n ],\n \"conversationId\": \"\",\n \"createdAt\": \"\",\n \"dataModelJson\": \"\",\n \"deletedAt\": \"\",\n \"schemaVersion\": \"\",\n \"sendDataModel\": \"\",\n \"state\": \"SURFACE_LIFECYCLE_STATE_COMPLETE\",\n \"surfaceId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n }\n ]\n}", + "body": "{\n \"surfaces\": [\n {\n \"catalogId\": \"\",\n \"components\": [\n {\n \"button\": {\n \"action\": {\n \"event\": {\n \"context\": {\n \"key_0\": \"\"\n },\n \"name\": \"\"\n },\n \"functionCall\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n }\n },\n \"checks\": null,\n \"disabled\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"variant\": \"BUTTON_VARIANT_UNSPECIFIED\"\n },\n \"c1Chart\": {\n \"artifactUrl\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"categorical\": {\n \"slices\": null,\n \"style\": \"C1_CHART_CATEGORICAL_STYLE_UNSPECIFIED\"\n },\n \"sources\": [\n {\n \"count\": \"\",\n \"kind\": \"\",\n \"label\": \"\",\n \"ref\": \"\"\n }\n ],\n \"timeSeries\": {\n \"range\": {\n \"end\": \"\",\n \"label\": \"\",\n \"start\": \"\"\n },\n \"series\": null,\n \"style\": \"C1_CHART_TIME_SERIES_STYLE_STACKED_BAR\"\n },\n \"title\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1CodeBlock\": {\n \"code\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"copyable\": \"\",\n \"language\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"title\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1ConnectorConfigForm\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"skipActionName\": \"\",\n \"submitActionName\": \"\"\n },\n \"c1ConnectorSyncDetail\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"title\": \"\"\n },\n \"c1ConnectorSyncProgress\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"title\": \"\"\n },\n \"c1DurationPicker\": {\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"maxDurationSeconds\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1MetricCards\": {\n \"cards\": null,\n \"sources\": [\n {\n \"count\": \"\",\n \"kind\": \"\",\n \"label\": \"\",\n \"ref\": \"\"\n }\n ],\n \"title\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1MsTeamsNotifications\": {},\n \"c1OnboardingPlan\": {\n \"categories\": [\n {\n \"id\": \"\",\n \"steps\": null,\n \"title\": \"\"\n }\n ]\n },\n \"c1OnboardingWelcome\": {\n \"recommendedCatalogId\": \"\",\n \"recommendedDisplayName\": \"\"\n },\n \"c1ResourcePicker\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"mcpToolState\": \"\",\n \"multiSelect\": \"\",\n \"resourceType\": \"\",\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1SlackNotifications\": {},\n \"c1StatusIndicator\": {\n \"message\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"showSpinner\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"status\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"toolName\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1Table\": {\n \"artifactUrl\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"columns\": [\n \"\"\n ],\n \"pageSize\": \"\",\n \"rows\": [\n {\n \"cells\": null\n }\n ],\n \"sources\": null,\n \"title\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"totalRows\": \"\"\n },\n \"c1TodoList\": {\n \"items\": null,\n \"title\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"card\": {\n \"children\": {\n \"ids\": null\n }\n },\n \"checkBox\": {\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"choicePicker\": {\n \"choices\": null,\n \"hideLabel\": \"\",\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"multiSelect\": \"\",\n \"required\": \"\",\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"column\": {\n \"alignment\": \"\",\n \"children\": {\n \"ids\": null\n },\n \"distribution\": \"\",\n \"gap\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"dateTimeInput\": {\n \"inputType\": \"DATE_TIME_INPUT_TYPE_TIME\",\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"max\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"min\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"divider\": {\n \"orientation\": \"\"\n },\n \"id\": \"\",\n \"progressBar\": {\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"max\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"min\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\",\n \"key_4\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"step\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"row\": {\n \"alignment\": \"\",\n \"children\": {\n \"ids\": null\n },\n \"distribution\": \"\",\n \"gap\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"slider\": {\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"max\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"min\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"step\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"text\": {\n \"markdown\": \"\",\n \"text\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"textField\": {\n \"checks\": [\n {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n }\n ],\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"placeholder\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\",\n \"key_4\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"variant\": \"TEXT_FIELD_VARIANT_LONG_TEXT\"\n },\n \"weight\": \"\"\n }\n ],\n \"conversationId\": \"\",\n \"createdAt\": \"\",\n \"dataModelJson\": \"\",\n \"deletedAt\": \"\",\n \"role\": \"SURFACE_ROLE_UNSPECIFIED\",\n \"schemaVersion\": \"\",\n \"sendDataModel\": \"\",\n \"state\": \"SURFACE_LIFECYCLE_STATE_DELETED\",\n \"surfaceId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n }\n ]\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -134,6 +134,153 @@ "protocolProfileBehavior": { "disableBodyPruning": true } + }, + { + "name": "{surface_id}", + "description": "", + "item": [ + { + "name": "provenance", + "description": "", + "item": [ + { + "id": "c1e960b5-8aca-45e0-8917-4ad297fa1398", + "name": "Get Surface Provenance", + "request": { + "name": "Get Surface Provenance", + "description": { + "content": "GetSurfaceProvenance returns, in plain terms, what the surface's report\n was built from: every record its program touched, in the order it touched\n them.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "a2ui", + "conversations", + ":conversation_id", + "surfaces", + ":surface_id", + "provenance" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "conversation_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "surface_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "e06f19a4-a8d7-44ae-ac56-fcc47b9c365b", + "name": "A2UIServiceGetSurfaceProvenanceResponse returns what a surface was built\n from: the steps its program ran, and the sources its components report.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "a2ui", + "conversations", + ":conversation_id", + "surfaces", + ":surface_id", + "provenance" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "conversation_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "surface_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"programCommitId\": \"\",\n \"programFunctionId\": \"\",\n \"programInput\": \"\",\n \"programInvocationId\": \"\",\n \"programSource\": \"\",\n \"sources\": null,\n \"stepObjectsVisible\": \"\",\n \"steps\": null,\n \"stepsAvailable\": \"\",\n \"toolCalls\": null,\n \"transcriptAvailable\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] } ] } @@ -154,7 +301,7 @@ "description": "", "item": [ { - "id": "7fa1aa67-2d18-4f5b-ac98-74922087cac2", + "id": "9c3b8328-a87b-4cb9-a37f-eba5dbae1182", "name": "Submit Action", "request": { "name": "Submit Action", @@ -201,7 +348,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"actionName\": \"\",\n \"clientTimestamp\": \"\",\n \"context\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"conversationId\": \"\",\n \"dataModelJson\": \"\",\n \"sourceComponentId\": \"\"\n}", + "raw": "{\n \"actionName\": \"\",\n \"clientTimestamp\": \"\",\n \"context\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"conversationId\": \"\",\n \"dataModelJson\": \"\",\n \"sourceComponentId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -213,7 +360,7 @@ }, "response": [ { - "id": "48dcd078-afab-4f14-8f30-99cfdfb5342b", + "id": "fa545713-a849-44a4-8041-30bd73df00e0", "name": "A2UIServiceSubmitActionResponse returns the result of an action.", "originalRequest": { "url": { @@ -263,7 +410,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"actionName\": \"\",\n \"clientTimestamp\": \"\",\n \"context\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"conversationId\": \"\",\n \"dataModelJson\": \"\",\n \"sourceComponentId\": \"\"\n}", + "raw": "{\n \"actionName\": \"\",\n \"clientTimestamp\": \"\",\n \"context\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"conversationId\": \"\",\n \"dataModelJson\": \"\",\n \"sourceComponentId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -297,7 +444,7 @@ "description": "", "item": [ { - "id": "b998dba7-6a80-4423-ae64-bc63629249a4", + "id": "ac67af9e-75b5-4ac7-b202-884f5dc05ec5", "name": "List Surface Feedback", "request": { "name": "List Surface Feedback", @@ -343,7 +490,7 @@ }, "response": [ { - "id": "9e60ba84-5afd-4066-82bd-a0a48e8a027e", + "id": "7c951ce3-f6af-4e95-9aac-5ac3258bda38", "name": "A2UIServiceListSurfaceFeedbackResponse returns feedback for a surface.", "originalRequest": { "url": { @@ -397,7 +544,7 @@ "value": "application/json" } ], - "body": "{\n \"feedback\": [\n {\n \"actionName\": \"\",\n \"componentsSnapshot\": \"\",\n \"conversationId\": \"\",\n \"createdAt\": \"\",\n \"dataModelSnapshot\": \"\",\n \"id\": \"\",\n \"schemaVersion\": \"\",\n \"sentiment\": \"A2UI_SURFACE_FEEDBACK_SENTIMENT_UNSPECIFIED\",\n \"surfaceId\": \"\",\n \"text\": \"\"\n },\n {\n \"actionName\": \"\",\n \"componentsSnapshot\": \"\",\n \"conversationId\": \"\",\n \"createdAt\": \"\",\n \"dataModelSnapshot\": \"\",\n \"id\": \"\",\n \"schemaVersion\": \"\",\n \"sentiment\": \"A2UI_SURFACE_FEEDBACK_SENTIMENT_POSITIVE\",\n \"surfaceId\": \"\",\n \"text\": \"\"\n }\n ]\n}", + "body": "{\n \"feedback\": null\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -408,7 +555,7 @@ } }, { - "id": "41d0bfa0-40d1-45ee-9bd8-9a2bbbfdfc6d", + "id": "d195a8d0-25c5-4246-a4c8-d1f2914d2375", "name": "Create Surface Feedback", "request": { "name": "Create Surface Feedback", @@ -467,7 +614,7 @@ }, "response": [ { - "id": "1f8dfdb8-057a-4bf8-add1-fea3ccab645e", + "id": "0f274550-3685-4220-b169-f2f758f4ba21", "name": "A2UIServiceCreateSurfaceFeedbackResponse returns the created feedback.", "originalRequest": { "url": { @@ -534,7 +681,7 @@ "value": "application/json" } ], - "body": "{\n \"feedback\": {\n \"actionName\": \"\",\n \"componentsSnapshot\": \"\",\n \"conversationId\": \"\",\n \"createdAt\": \"\",\n \"dataModelSnapshot\": \"\",\n \"id\": \"\",\n \"schemaVersion\": \"\",\n \"sentiment\": \"A2UI_SURFACE_FEEDBACK_SENTIMENT_POSITIVE\",\n \"surfaceId\": \"\",\n \"text\": \"\"\n }\n}", + "body": "{\n \"feedback\": {\n \"actionName\": \"\",\n \"componentsSnapshot\": \"\",\n \"conversationId\": \"\",\n \"createdAt\": \"\",\n \"dataModelSnapshot\": \"\",\n \"id\": \"\",\n \"schemaVersion\": \"\",\n \"sentiment\": \"A2UI_SURFACE_FEEDBACK_SENTIMENT_NEGATIVE\",\n \"surfaceId\": \"\",\n \"text\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -557,7 +704,7 @@ "description": "", "item": [ { - "id": "9c6d0f6f-cf59-4b5a-8f42-15acf17641e2", + "id": "7991c28f-7b21-4982-957a-20e44ae78a4e", "name": "Create", "request": { "name": "Create", @@ -590,7 +737,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"completionDate\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"duplicateFrom\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"ownerIds\": [\n \"\",\n \"\"\n ],\n \"policyId\": \"\",\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_ENTITLEMENTS\",\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_TRUSTED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_ENABLED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"DISABLED\",\n \"UNKNOWN\"\n ]\n }\n }\n}", + "raw": "{\n \"completionDate\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"duplicateFrom\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"ownerIds\": null,\n \"policyId\": \"\",\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_UNSPECIFIED\",\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DELETED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": null\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_USERS_AND_RESOURCES\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": null\n }\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -602,7 +749,7 @@ }, "response": [ { - "id": "5d1e68da-7773-4f6a-9cd9-87d5033b0677", + "id": "55cd84a0-632a-4f25-8717-a120f832dce4", "name": "Successful response", "originalRequest": { "url": { @@ -638,7 +785,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"completionDate\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"duplicateFrom\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"ownerIds\": [\n \"\",\n \"\"\n ],\n \"policyId\": \"\",\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_ENTITLEMENTS\",\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_TRUSTED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_ENABLED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"DISABLED\",\n \"UNKNOWN\"\n ]\n }\n }\n}", + "raw": "{\n \"completionDate\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"duplicateFrom\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"ownerIds\": null,\n \"policyId\": \"\",\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_UNSPECIFIED\",\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DELETED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": null\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_USERS_AND_RESOURCES\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": null\n }\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -655,7 +802,7 @@ "value": "application/json" } ], - "body": "{\n \"accessReview\": {\n \"accessReview\": {\n \"accessReviewTemplateId\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_WAIT\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_UNSPECIFIED\",\n \"autoGenerateReport\": \"\",\n \"autoResolve\": \"\",\n \"autoStartCampaign\": \"\",\n \"bindings\": {},\n \"campaignHealth\": {\n \"checkedAt\": \"\",\n \"phantomLockedCount\": \"\"\n },\n \"campaignInsights\": {\n \"markdown\": \"\"\n },\n \"closedAt\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_RESOURCE\",\n \"ACCESS_REVIEW_TASK_COLUMN_PROJECT\"\n ]\n },\n \"completionDate\": \"\",\n \"connectorSourcesFrozenAt\": \"\",\n \"createdAt\": \"\",\n \"createdById\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_BY_USER\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"errorState\": \"ACCESS_REVIEW_ERROR_STATE_UNSPECIFIED\",\n \"exclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DELETED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ]\n },\n \"exemptCertifiedAccessConflicts\": \"\",\n \"expectedTicketCount\": \"\",\n \"hasAccuracySupport\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DELETED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_2\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": [\n \"USER_DISABLED\",\n \"USER_DISABLED\"\n ]\n },\n \"multiApp\": {\n \"appEntitlementDetails\": {\n \"key_0\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_2\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n }\n },\n \"appEntitlements\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementIds\": [\n \"\",\n \"\"\n ]\n }\n }\n },\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"policyId\": \"\",\n \"reviewInstructions\": \"\",\n \"scheduledStartDate\": \"\",\n \"scope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DELETED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ]\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_INHERITANCE\",\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_TRUSTED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DELETED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_2\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"ENABLED\",\n \"ENABLED\"\n ]\n }\n },\n \"scopingVersion\": \"\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"singleApp\": {\n \"appId\": \"\"\n },\n \"startedAt\": \"\",\n \"state\": \"ACCESS_REVIEW_STATE_REVIEW\",\n \"updatedAt\": \"\",\n \"usePolicyOverride\": \"\"\n },\n \"createdByUserPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n },\n \"policyPath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\"\n },\n {\n \"@type\": \"\",\n \"key_0\": 9694.163332470012,\n \"key_1\": 985,\n \"key_2\": 9894.59690409841,\n \"key_3\": 2826\n }\n ]\n}", + "body": "{\n \"accessReview\": {\n \"accessReview\": {\n \"accessReviewTemplateId\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_WAIT\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_SKIP\",\n \"autoGenerateReport\": \"\",\n \"autoResolve\": \"\",\n \"autoStartCampaign\": \"\",\n \"bindings\": {},\n \"campaignHealth\": {\n \"checkedAt\": \"\",\n \"phantomLockedCount\": \"\"\n },\n \"campaignInsights\": {\n \"markdown\": \"\"\n },\n \"closedAt\": \"\",\n \"columnConfig\": {\n \"columns\": null,\n \"orderedColumns\": null\n },\n \"completionDate\": \"\",\n \"connectorSourcesFrozenAt\": \"\",\n \"createdAt\": \"\",\n \"createdById\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_BY_RESOURCE\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"errorState\": \"ACCESS_REVIEW_ERROR_STATE_UNSPECIFIED\",\n \"exclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ]\n },\n \"exemptCertifiedAccessConflicts\": \"\",\n \"expectedTicketCount\": \"\",\n \"hasAccuracySupport\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"appUserTypes\": null,\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": null\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": null\n },\n \"multiApp\": {\n \"appEntitlementDetails\": {\n \"key_0\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n }\n },\n \"appEntitlements\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementIds\": null\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementIds\": [\n \"\",\n \"\"\n ]\n }\n }\n },\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"policyId\": \"\",\n \"reviewInstructions\": \"\",\n \"reviewerAttributeConfig\": {\n \"bindings\": null\n },\n \"scheduledStartDate\": \"\",\n \"scope\": {\n \"appUserStatuses\": null,\n \"appUserTypes\": null\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_ENTITLEMENTS\",\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_TRUSTED\",\n \"accountTypes\": null,\n \"appUserStatuses\": null,\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": null,\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_USERS\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": null\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": null,\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": null\n }\n },\n \"scopingVersion\": \"\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"singleApp\": {\n \"appId\": \"\"\n },\n \"startedAt\": \"\",\n \"state\": \"ACCESS_REVIEW_STATE_COPYING_SETUP_ENTITLEMENTS\",\n \"updatedAt\": \"\",\n \"usePolicyOverride\": \"\"\n },\n \"createdByUserPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"policyPath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n },\n {\n \"@type\": \"\",\n \"key_0\": 4040.6293768607584,\n \"key_1\": 5445\n }\n ]\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -670,16 +817,16 @@ "description": "", "item": [ { - "name": "scope_and_entitlements", + "name": "report", "description": "", "item": [ { - "id": "2db75381-f6e2-4e2b-b6c5-9156a1e8d808", - "name": "Get Campaign Scope And Entitlements", + "id": "9b7e9790-18a7-4c3f-92f8-a4cb70d4a816", + "name": "List", "request": { - "name": "Get Campaign Scope And Entitlements", + "name": "List", "description": { - "content": "GetCampaignScopeAndEntitlements retrieves the current scope configuration and selected entitlements for an access review campaign.", + "content": "List the generated reports for an access review campaign, each with a\n time-limited download_url and its output format.", "type": "text/plain" }, "url": { @@ -688,12 +835,31 @@ "v1", "access_review", ":access_review_id", - "scope_and_entitlements" + "report" ], "host": [ "{{baseUrl}}" ], - "query": [], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], "variable": [ { "type": "any", @@ -719,7 +885,7 @@ }, "response": [ { - "id": "08424787-2b17-425e-a6f4-11ac6f6659e0", + "id": "5e1cab45-4413-4f9c-a283-d6403bffdd5d", "name": "Successful response", "originalRequest": { "url": { @@ -728,12 +894,31 @@ "v1", "access_review", ":access_review_id", - "scope_and_entitlements" + "report" ], "host": [ "{{baseUrl}}" ], - "query": [], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], "variable": [ { "disabled": false, @@ -772,7 +957,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n }\n ],\n \"list\": [\n {\n \"accessReviewEntitlement\": {\n \"accessReviewId\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customPolicyId\": \"\",\n \"deletedAt\": \"\",\n \"policyId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"appPath\": \"\",\n \"entitlementPath\": \"\",\n \"policyPath\": \"\"\n },\n {\n \"accessReviewEntitlement\": {\n \"accessReviewId\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customPolicyId\": \"\",\n \"deletedAt\": \"\",\n \"policyId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"appPath\": \"\",\n \"entitlementPath\": \"\",\n \"policyPath\": \"\"\n }\n ],\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_PERMANENT\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"DELETED\",\n \"DISABLED\"\n ]\n }\n }\n}", + "body": "{\n \"list\": [\n {\n \"accessReviewId\": \"\",\n \"createdAt\": \"\",\n \"downloadUrl\": \"\",\n \"format\": \"ACCESS_REVIEW_REPORT_FORMAT_UNSPECIFIED\",\n \"hashes\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"id\": \"\",\n \"state\": \"REPORT_STATE_ERROR\"\n },\n {\n \"accessReviewId\": \"\",\n \"createdAt\": \"\",\n \"downloadUrl\": \"\",\n \"format\": \"ACCESS_REVIEW_REPORT_FORMAT_CSV\",\n \"hashes\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"id\": \"\",\n \"state\": \"REPORT_STATE_ERROR\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -783,12 +968,12 @@ } }, { - "id": "adafa7a0-629f-4760-9686-213e9c2b9f6f", - "name": "Set Campaign Scope And Entitlements", + "id": "4c3c4345-465a-4d57-829d-a6b13ae1e9cf", + "name": "Generate Report", "request": { - "name": "Set Campaign Scope And Entitlements", + "name": "Generate Report", "description": { - "content": "SetCampaignScopeAndEntitlements replaces the scope configuration and selected entitlements for an access review campaign.", + "content": "Generate a report of the campaign's reviews and decisions. The format\n defaults to JSON (also available: CSV, XLSX). Works on in-flight (OPEN)\n and closed campaigns. Asynchronous — the report record is created\n immediately; the file is materialized in the background.", "type": "text/plain" }, "url": { @@ -797,7 +982,7 @@ "v1", "access_review", ":access_review_id", - "scope_and_entitlements" + "report" ], "host": [ "{{baseUrl}}" @@ -829,7 +1014,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"ENABLED\",\n \"ENABLED\"\n ]\n }\n }\n}", + "raw": "{\n \"format\": \"ACCESS_REVIEW_REPORT_FORMAT_JSON\",\n \"reportColumnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_REPORT_COLUMN_DECISIONS\",\n \"ACCESS_REVIEW_REPORT_COLUMN_MANAGER\"\n ]\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -841,7 +1026,7 @@ }, "response": [ { - "id": "2f5aa850-8890-4a3c-9aca-2e63f64d5e4d", + "id": "0b357570-a9e3-4e79-8d13-bf6ed747dea1", "name": "Successful response", "originalRequest": { "url": { @@ -850,7 +1035,7 @@ "v1", "access_review", ":access_review_id", - "scope_and_entitlements" + "report" ], "host": [ "{{baseUrl}}" @@ -890,7 +1075,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"ENABLED\",\n \"ENABLED\"\n ]\n }\n }\n}", + "raw": "{\n \"format\": \"ACCESS_REVIEW_REPORT_FORMAT_JSON\",\n \"reportColumnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_REPORT_COLUMN_DECISIONS\",\n \"ACCESS_REVIEW_REPORT_COLUMN_MANAGER\"\n ]\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -907,7 +1092,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n }\n ],\n \"list\": [\n {\n \"accessReviewEntitlement\": {\n \"accessReviewId\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customPolicyId\": \"\",\n \"deletedAt\": \"\",\n \"policyId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"appPath\": \"\",\n \"entitlementPath\": \"\",\n \"policyPath\": \"\"\n },\n {\n \"accessReviewEntitlement\": {\n \"accessReviewId\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customPolicyId\": \"\",\n \"deletedAt\": \"\",\n \"policyId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"appPath\": \"\",\n \"entitlementPath\": \"\",\n \"policyPath\": \"\"\n }\n ],\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_PERMANENT\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"DELETED\",\n \"DISABLED\"\n ]\n }\n }\n}", + "body": "{}", "cookie": [], "_postman_previewlanguage": "json" } @@ -920,16 +1105,16 @@ ] }, { - "name": "scope_by_resource_type", + "name": "scope_and_entitlements", "description": "", "item": [ { - "id": "6108bd1c-34e2-4154-bf19-e5727130f647", - "name": "Set Campaign Scope By Resource Type", + "id": "8a1353ca-71fa-4c3d-adcb-57519ed02123", + "name": "Get Campaign Scope And Entitlements", "request": { - "name": "Set Campaign Scope By Resource Type", + "name": "Get Campaign Scope And Entitlements", "description": { - "content": "SetCampaignScopeByResourceType sets the campaign scope by selecting specific resource types to include in the review.", + "content": "GetCampaignScopeAndEntitlements retrieves the current scope configuration and selected entitlements for an access review campaign.", "type": "text/plain" }, "url": { @@ -938,7 +1123,116 @@ "v1", "access_review", ":access_review_id", - "scope_by_resource_type" + "scope_and_entitlements" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "access_review_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "3e5f45fd-8d57-4dd3-b6bc-9937c0a376a9", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "access_review", + ":access_review_id", + "scope_and_entitlements" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "access_review_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 1108\n },\n {\n \"@type\": \"\",\n \"key_0\": 7509,\n \"key_1\": 191.34383673107715\n }\n ],\n \"list\": [\n {\n \"accessReviewEntitlement\": {\n \"accessReviewId\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customPolicyId\": \"\",\n \"deletedAt\": \"\",\n \"policyId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"appPath\": \"\",\n \"entitlementPath\": \"\",\n \"policyPath\": \"\"\n },\n {\n \"accessReviewEntitlement\": {\n \"accessReviewId\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customPolicyId\": \"\",\n \"deletedAt\": \"\",\n \"policyId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"appPath\": \"\",\n \"entitlementPath\": \"\",\n \"policyPath\": \"\"\n }\n ],\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": null,\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": null,\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_USERS\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": null\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "bf48d133-6273-4f4b-8abc-bd936e1b2c4c", + "name": "Set Campaign Scope And Entitlements", + "request": { + "name": "Set Campaign Scope And Entitlements", + "description": { + "content": "SetCampaignScopeAndEntitlements replaces the scope configuration and selected entitlements for an access review campaign.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "access_review", + ":access_review_id", + "scope_and_entitlements" ], "host": [ "{{baseUrl}}" @@ -970,7 +1264,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"resourceTypeSelections\": [\n {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n },\n {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n ],\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_USER\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"UNKNOWN\",\n \"DELETED\"\n ]\n }\n }\n}", + "raw": "{\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"expandMask\": {\n \"paths\": null\n },\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"accountTypes\": null,\n \"appUserStatuses\": null,\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": null\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": null,\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_ALL\",\n \"includedAccessProfileIds\": null\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_PERMANENT\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_USERS_AND_RESOURCES\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": null\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": null\n }\n },\n \"userStatus\": null\n }\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -982,7 +1276,148 @@ }, "response": [ { - "id": "b280f3cb-b2ce-4d44-b726-604abba73b09", + "id": "22f68cf8-173c-4f5b-a3ec-ac6c2a277a5a", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "access_review", + ":access_review_id", + "scope_and_entitlements" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "access_review_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"expandMask\": {\n \"paths\": null\n },\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"accountTypes\": null,\n \"appUserStatuses\": null,\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": null\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": null,\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_ALL\",\n \"includedAccessProfileIds\": null\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_PERMANENT\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_USERS_AND_RESOURCES\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": null\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": null\n }\n },\n \"userStatus\": null\n }\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 1108\n },\n {\n \"@type\": \"\",\n \"key_0\": 7509,\n \"key_1\": 191.34383673107715\n }\n ],\n \"list\": [\n {\n \"accessReviewEntitlement\": {\n \"accessReviewId\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customPolicyId\": \"\",\n \"deletedAt\": \"\",\n \"policyId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"appPath\": \"\",\n \"entitlementPath\": \"\",\n \"policyPath\": \"\"\n },\n {\n \"accessReviewEntitlement\": {\n \"accessReviewId\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customPolicyId\": \"\",\n \"deletedAt\": \"\",\n \"policyId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"appPath\": \"\",\n \"entitlementPath\": \"\",\n \"policyPath\": \"\"\n }\n ],\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": null,\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": null,\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_USERS\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": null\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "scope_by_resource_type", + "description": "", + "item": [ + { + "id": "745da082-5696-473a-a2c6-6d1a3c0be0bb", + "name": "Set Campaign Scope By Resource Type", + "request": { + "name": "Set Campaign Scope By Resource Type", + "description": { + "content": "SetCampaignScopeByResourceType sets the campaign scope by selecting specific resource types to include in the review.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "access_review", + ":access_review_id", + "scope_by_resource_type" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "access_review_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"resourceTypeSelections\": [\n {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n },\n {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n ],\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"accountTypes\": null,\n \"appUserStatuses\": null,\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": null\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_PERMANENT\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_USERS\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": null\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_2\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_3\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_4\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": null\n }\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "0a0f0586-c2f0-4344-8ae1-6d9f3669d66a", "name": "Successful response", "originalRequest": { "url": { @@ -1031,7 +1466,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"resourceTypeSelections\": [\n {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n },\n {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n ],\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_USER\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"UNKNOWN\",\n \"DELETED\"\n ]\n }\n }\n}", + "raw": "{\n \"resourceTypeSelections\": [\n {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n },\n {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n ],\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"accountTypes\": null,\n \"appUserStatuses\": null,\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": null\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_PERMANENT\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_USERS\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": null\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_2\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_3\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_4\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": null\n }\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -1067,7 +1502,7 @@ "description": "", "item": [ { - "id": "3bfc368a-f3db-420c-8fb6-4f2b9c813b0c", + "id": "f908d579-e5c4-4d14-aa8a-89aefd039775", "name": "Delete", "request": { "name": "Delete", @@ -1124,7 +1559,7 @@ }, "response": [ { - "id": "862ae9c4-ad98-4614-a2c4-473f3f0503a8", + "id": "ab61572f-067d-480e-86f1-7b5e109352c4", "name": "Successful response", "originalRequest": { "url": { @@ -1200,7 +1635,7 @@ } }, { - "id": "6dc904cd-ee52-4dad-8e51-09d3dc29a7d4", + "id": "303f559e-e904-4a52-b8eb-c6d5bf5843e1", "name": "Get", "request": { "name": "Get", @@ -1244,7 +1679,7 @@ }, "response": [ { - "id": "4cc01045-afff-4ce2-af91-524503724ed2", + "id": "e1027a04-8ae3-4319-b6bf-d3d0fe6f1ac3", "name": "Successful response", "originalRequest": { "url": { @@ -1296,7 +1731,7 @@ "value": "application/json" } ], - "body": "{\n \"accessReview\": {\n \"accessReview\": {\n \"accessReviewTemplateId\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_WAIT\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_UNSPECIFIED\",\n \"autoGenerateReport\": \"\",\n \"autoResolve\": \"\",\n \"autoStartCampaign\": \"\",\n \"bindings\": {},\n \"campaignHealth\": {\n \"checkedAt\": \"\",\n \"phantomLockedCount\": \"\"\n },\n \"campaignInsights\": {\n \"markdown\": \"\"\n },\n \"closedAt\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_TASK_AGE\",\n \"ACCESS_REVIEW_TASK_COLUMN_DUE\"\n ]\n },\n \"completionDate\": \"\",\n \"connectorSourcesFrozenAt\": \"\",\n \"createdAt\": \"\",\n \"createdById\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_BY_APP\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"errorState\": \"ACCESS_REVIEW_ERROR_STATE_SELECTION_QUOTA_EXCEED_ERROR\",\n \"exclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ]\n },\n \"exemptCertifiedAccessConflicts\": \"\",\n \"expectedTicketCount\": \"\",\n \"hasAccuracySupport\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\",\n \"APP_USER_TYPE_USER\"\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": [\n \"USER_DELETED\",\n \"USER_DISABLED\"\n ]\n },\n \"multiApp\": {\n \"appEntitlementDetails\": {\n \"key_0\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n },\n \"key_1\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_2\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n }\n },\n \"appEntitlements\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementIds\": [\n \"\",\n \"\"\n ]\n }\n }\n },\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"policyId\": \"\",\n \"reviewInstructions\": \"\",\n \"scheduledStartDate\": \"\",\n \"scope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ]\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_INHERITANCE\",\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"ENABLED\",\n \"UNKNOWN\"\n ]\n }\n },\n \"scopingVersion\": \"\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"singleApp\": {\n \"appId\": \"\"\n },\n \"startedAt\": \"\",\n \"state\": \"ACCESS_REVIEW_STATE_STARTING\",\n \"updatedAt\": \"\",\n \"usePolicyOverride\": \"\"\n },\n \"createdByUserPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"policyPath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 8536.645411957956,\n \"key_1\": 6099.262530422278,\n \"key_2\": 3504.3643671760315,\n \"key_3\": 5402.620729222207\n },\n {\n \"@type\": \"\"\n }\n ]\n}", + "body": "{\n \"accessReview\": {\n \"accessReview\": {\n \"accessReviewTemplateId\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_CONTINUE\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_UNSPECIFIED\",\n \"autoGenerateReport\": \"\",\n \"autoResolve\": \"\",\n \"autoStartCampaign\": \"\",\n \"bindings\": {},\n \"campaignHealth\": {\n \"checkedAt\": \"\",\n \"phantomLockedCount\": \"\"\n },\n \"campaignInsights\": {\n \"markdown\": \"\"\n },\n \"closedAt\": \"\",\n \"columnConfig\": {\n \"columns\": null,\n \"orderedColumns\": null\n },\n \"completionDate\": \"\",\n \"connectorSourcesFrozenAt\": \"\",\n \"createdAt\": \"\",\n \"createdById\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_BY_RESOURCE\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"errorState\": \"ACCESS_REVIEW_ERROR_STATE_SELECTION_QUOTA_EXCEED_ERROR\",\n \"exclusionScope\": {\n \"appUserStatuses\": null,\n \"appUserTypes\": null\n },\n \"exemptCertifiedAccessConflicts\": \"\",\n \"expectedTicketCount\": \"\",\n \"hasAccuracySupport\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"appUserTypes\": null,\n \"managerIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": null\n },\n \"key_1\": {\n \"values\": null\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": null,\n \"userStatuses\": null\n },\n \"multiApp\": {\n \"appEntitlementDetails\": {\n \"key_0\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n },\n \"key_1\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_2\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n }\n },\n \"appEntitlements\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementIds\": null\n }\n }\n },\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"policyId\": \"\",\n \"reviewInstructions\": \"\",\n \"reviewerAttributeConfig\": {\n \"bindings\": [\n {\n \"appId\": \"\",\n \"attributeKey\": \"\"\n },\n {\n \"appId\": \"\",\n \"attributeKey\": \"\"\n }\n ]\n },\n \"scheduledStartDate\": \"\",\n \"scope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DELETED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"appUserTypes\": null\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_RESOURCE\",\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"accountTypes\": null,\n \"appUserStatuses\": [\n \"APP_USER_STATUS_ENABLED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_USERS\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": null\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_2\": {\n \"values\": null\n }\n },\n \"userStatus\": [\n \"ENABLED\",\n \"UNKNOWN\"\n ]\n }\n },\n \"scopingVersion\": \"\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"singleApp\": {\n \"appId\": \"\"\n },\n \"startedAt\": \"\",\n \"state\": \"ACCESS_REVIEW_STATE_PENDING\",\n \"updatedAt\": \"\",\n \"usePolicyOverride\": \"\"\n },\n \"createdByUserPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n },\n \"policyPath\": \"\"\n },\n \"expanded\": null\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -1307,7 +1742,7 @@ } }, { - "id": "998d323b-1c71-4233-9022-78e010d8b9d0", + "id": "59c01269-dbb9-42b5-9428-ee5fd03314e1", "name": "Update", "request": { "name": "Update", @@ -1352,7 +1787,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"accessReview\": {\n \"accessReviewTemplateId\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_UNSPECIFIED\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_SKIP\",\n \"autoGenerateReport\": \"\",\n \"autoResolve\": \"\",\n \"autoStartCampaign\": \"\",\n \"bindings\": {},\n \"campaignHealth\": {\n \"checkedAt\": \"\",\n \"phantomLockedCount\": \"\"\n },\n \"campaignInsights\": {\n \"markdown\": \"\"\n },\n \"closedAt\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_DEPARTMENT\",\n \"ACCESS_REVIEW_TASK_COLUMN_CURRENT_STATE\"\n ]\n },\n \"completionDate\": \"\",\n \"connectorSourcesFrozenAt\": \"\",\n \"createdById\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_UNSPECIFIED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"exclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ]\n },\n \"exemptCertifiedAccessConflicts\": \"\",\n \"expectedTicketCount\": \"\",\n \"hasAccuracySupport\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_2\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": [\n \"USER_UNKNOWN\",\n \"USER_UNKNOWN\"\n ]\n },\n \"multiApp\": {\n \"appEntitlementDetails\": {\n \"key_0\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n }\n },\n \"appEntitlements\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementIds\": [\n \"\",\n \"\"\n ]\n }\n }\n },\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"policyId\": \"\",\n \"reviewInstructions\": \"\",\n \"scheduledStartDate\": \"\",\n \"scope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ]\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_ENTITLEMENTS\",\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_TRUSTED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"UNKNOWN\",\n \"DISABLED\"\n ]\n }\n },\n \"scopingVersion\": \"\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"singleApp\": {\n \"appId\": \"\"\n },\n \"startedAt\": \"\",\n \"state\": \"ACCESS_REVIEW_STATE_COPYING_SETUP_ENTITLEMENTS\",\n \"usePolicyOverride\": \"\"\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"accessReview\": {\n \"accessReviewTemplateId\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_UNSPECIFIED\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_NO_ACTION\",\n \"autoGenerateReport\": \"\",\n \"autoResolve\": \"\",\n \"autoStartCampaign\": \"\",\n \"bindings\": {},\n \"campaignHealth\": {\n \"checkedAt\": \"\",\n \"phantomLockedCount\": \"\"\n },\n \"campaignInsights\": {\n \"markdown\": \"\"\n },\n \"closedAt\": \"\",\n \"columnConfig\": {\n \"columns\": null,\n \"orderedColumns\": [\n {\n \"appUserAttributeKey\": \"\",\n \"builtin\": \"ACCESS_REVIEW_TASK_COLUMN_DEPARTMENT\"\n },\n {\n \"appUserAttributeKey\": \"\",\n \"builtin\": \"ACCESS_REVIEW_TASK_COLUMN_DEPARTMENT\"\n }\n ]\n },\n \"completionDate\": \"\",\n \"connectorSourcesFrozenAt\": \"\",\n \"createdById\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_UNSPECIFIED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"exclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_ENABLED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ]\n },\n \"exemptCertifiedAccessConflicts\": \"\",\n \"expectedTicketCount\": \"\",\n \"hasAccuracySupport\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_ENABLED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"appUserTypes\": null,\n \"managerIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": null\n },\n \"key_2\": {\n \"values\": null\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": [\n \"USER_ENABLED\",\n \"USER_ENABLED\"\n ]\n },\n \"multiApp\": {\n \"appEntitlementDetails\": {\n \"key_0\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_2\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n },\n \"key_1\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n },\n \"key_2\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n }\n },\n \"appEntitlements\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementIds\": null\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementIds\": null\n }\n }\n },\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"policyId\": \"\",\n \"reviewInstructions\": \"\",\n \"reviewerAttributeConfig\": {\n \"bindings\": null\n },\n \"scheduledStartDate\": \"\",\n \"scope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ]\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_ACCESS_CONFLICTS\",\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": null,\n \"riskLevelAttributeValueIds\": null\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": null\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_PERMANENT\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_UNSPECIFIED\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": null\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"ENABLED\",\n \"UNKNOWN\"\n ]\n }\n },\n \"scopingVersion\": \"\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"singleApp\": {\n \"appId\": \"\"\n },\n \"startedAt\": \"\",\n \"state\": \"ACCESS_REVIEW_STATE_PREPARING\",\n \"usePolicyOverride\": \"\"\n },\n \"expandMask\": {\n \"paths\": null\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -1364,7 +1799,7 @@ }, "response": [ { - "id": "feee9455-8c8f-4466-a152-c2caa5dc2ab3", + "id": "8b690d28-3a16-4a44-a9ef-d5d5b158c814", "name": "Successful response", "originalRequest": { "url": { @@ -1412,7 +1847,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"accessReview\": {\n \"accessReviewTemplateId\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_UNSPECIFIED\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_SKIP\",\n \"autoGenerateReport\": \"\",\n \"autoResolve\": \"\",\n \"autoStartCampaign\": \"\",\n \"bindings\": {},\n \"campaignHealth\": {\n \"checkedAt\": \"\",\n \"phantomLockedCount\": \"\"\n },\n \"campaignInsights\": {\n \"markdown\": \"\"\n },\n \"closedAt\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_DEPARTMENT\",\n \"ACCESS_REVIEW_TASK_COLUMN_CURRENT_STATE\"\n ]\n },\n \"completionDate\": \"\",\n \"connectorSourcesFrozenAt\": \"\",\n \"createdById\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_UNSPECIFIED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"exclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ]\n },\n \"exemptCertifiedAccessConflicts\": \"\",\n \"expectedTicketCount\": \"\",\n \"hasAccuracySupport\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_2\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": [\n \"USER_UNKNOWN\",\n \"USER_UNKNOWN\"\n ]\n },\n \"multiApp\": {\n \"appEntitlementDetails\": {\n \"key_0\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n }\n },\n \"appEntitlements\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementIds\": [\n \"\",\n \"\"\n ]\n }\n }\n },\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"policyId\": \"\",\n \"reviewInstructions\": \"\",\n \"scheduledStartDate\": \"\",\n \"scope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ]\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_ENTITLEMENTS\",\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_TRUSTED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"UNKNOWN\",\n \"DISABLED\"\n ]\n }\n },\n \"scopingVersion\": \"\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"singleApp\": {\n \"appId\": \"\"\n },\n \"startedAt\": \"\",\n \"state\": \"ACCESS_REVIEW_STATE_COPYING_SETUP_ENTITLEMENTS\",\n \"usePolicyOverride\": \"\"\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"accessReview\": {\n \"accessReviewTemplateId\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_UNSPECIFIED\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_NO_ACTION\",\n \"autoGenerateReport\": \"\",\n \"autoResolve\": \"\",\n \"autoStartCampaign\": \"\",\n \"bindings\": {},\n \"campaignHealth\": {\n \"checkedAt\": \"\",\n \"phantomLockedCount\": \"\"\n },\n \"campaignInsights\": {\n \"markdown\": \"\"\n },\n \"closedAt\": \"\",\n \"columnConfig\": {\n \"columns\": null,\n \"orderedColumns\": [\n {\n \"appUserAttributeKey\": \"\",\n \"builtin\": \"ACCESS_REVIEW_TASK_COLUMN_DEPARTMENT\"\n },\n {\n \"appUserAttributeKey\": \"\",\n \"builtin\": \"ACCESS_REVIEW_TASK_COLUMN_DEPARTMENT\"\n }\n ]\n },\n \"completionDate\": \"\",\n \"connectorSourcesFrozenAt\": \"\",\n \"createdById\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_UNSPECIFIED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"exclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_ENABLED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ]\n },\n \"exemptCertifiedAccessConflicts\": \"\",\n \"expectedTicketCount\": \"\",\n \"hasAccuracySupport\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_ENABLED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"appUserTypes\": null,\n \"managerIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": null\n },\n \"key_2\": {\n \"values\": null\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": [\n \"USER_ENABLED\",\n \"USER_ENABLED\"\n ]\n },\n \"multiApp\": {\n \"appEntitlementDetails\": {\n \"key_0\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_2\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n },\n \"key_1\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n },\n \"key_2\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n }\n },\n \"appEntitlements\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementIds\": null\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementIds\": null\n }\n }\n },\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"policyId\": \"\",\n \"reviewInstructions\": \"\",\n \"reviewerAttributeConfig\": {\n \"bindings\": null\n },\n \"scheduledStartDate\": \"\",\n \"scope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ]\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_ACCESS_CONFLICTS\",\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": null,\n \"riskLevelAttributeValueIds\": null\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": null\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_PERMANENT\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_UNSPECIFIED\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": null\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"ENABLED\",\n \"UNKNOWN\"\n ]\n }\n },\n \"scopingVersion\": \"\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"singleApp\": {\n \"appId\": \"\"\n },\n \"startedAt\": \"\",\n \"state\": \"ACCESS_REVIEW_STATE_PREPARING\",\n \"usePolicyOverride\": \"\"\n },\n \"expandMask\": {\n \"paths\": null\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -1429,7 +1864,7 @@ "value": "application/json" } ], - "body": "{\n \"accessReview\": {\n \"accessReview\": {\n \"accessReviewTemplateId\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_WAIT\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_NO_ACTION\",\n \"autoGenerateReport\": \"\",\n \"autoResolve\": \"\",\n \"autoStartCampaign\": \"\",\n \"bindings\": {},\n \"campaignHealth\": {\n \"checkedAt\": \"\",\n \"phantomLockedCount\": \"\"\n },\n \"campaignInsights\": {\n \"markdown\": \"\"\n },\n \"closedAt\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_ASSIGNED_TO\",\n \"ACCESS_REVIEW_TASK_COLUMN_APP\"\n ]\n },\n \"completionDate\": \"\",\n \"connectorSourcesFrozenAt\": \"\",\n \"createdAt\": \"\",\n \"createdById\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_BY_RESOURCE\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"errorState\": \"ACCESS_REVIEW_ERROR_STATE_SELECTION_QUOTA_EXCEED_ERROR\",\n \"exclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ]\n },\n \"exemptCertifiedAccessConflicts\": \"\",\n \"expectedTicketCount\": \"\",\n \"hasAccuracySupport\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\",\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": [\n \"USER_UNKNOWN\",\n \"USER_DELETED\"\n ]\n },\n \"multiApp\": {\n \"appEntitlementDetails\": {\n \"key_0\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_2\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n },\n \"key_1\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_2\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n }\n },\n \"appEntitlements\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementIds\": [\n \"\",\n \"\"\n ]\n }\n }\n },\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"policyId\": \"\",\n \"reviewInstructions\": \"\",\n \"scheduledStartDate\": \"\",\n \"scope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ]\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_INHERITANCE\",\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DELETED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_UNSPECIFIED\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"ENABLED\",\n \"DISABLED\"\n ]\n }\n },\n \"scopingVersion\": \"\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"singleApp\": {\n \"appId\": \"\"\n },\n \"startedAt\": \"\",\n \"state\": \"ACCESS_REVIEW_STATE_STARTING\",\n \"updatedAt\": \"\",\n \"usePolicyOverride\": \"\"\n },\n \"createdByUserPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n },\n \"policyPath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": 5241.814691860842,\n \"key_2\": \"string\"\n }\n ]\n}", + "body": "{\n \"accessReview\": {\n \"accessReview\": {\n \"accessReviewTemplateId\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_WAIT\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_UNSPECIFIED\",\n \"autoGenerateReport\": \"\",\n \"autoResolve\": \"\",\n \"autoStartCampaign\": \"\",\n \"bindings\": {},\n \"campaignHealth\": {\n \"checkedAt\": \"\",\n \"phantomLockedCount\": \"\"\n },\n \"campaignInsights\": {\n \"markdown\": \"\"\n },\n \"closedAt\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_ENROLLMENT_STATUS\",\n \"ACCESS_REVIEW_TASK_COLUMN_APP\"\n ],\n \"orderedColumns\": null\n },\n \"completionDate\": \"\",\n \"connectorSourcesFrozenAt\": \"\",\n \"createdAt\": \"\",\n \"createdById\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_UNSPECIFIED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"errorState\": \"ACCESS_REVIEW_ERROR_STATE_SELECTION_QUOTA_EXCEED_ERROR\",\n \"exclusionScope\": {\n \"appUserStatuses\": null,\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ]\n },\n \"exemptCertifiedAccessConflicts\": \"\",\n \"expectedTicketCount\": \"\",\n \"hasAccuracySupport\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"appUserTypes\": null,\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_2\": {\n \"values\": null\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": null\n },\n \"multiApp\": {\n \"appEntitlementDetails\": {\n \"key_0\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_2\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n },\n \"key_1\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_2\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n }\n },\n \"appEntitlements\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementIds\": null\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementIds\": [\n \"\",\n \"\"\n ]\n }\n }\n },\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"policyId\": \"\",\n \"reviewInstructions\": \"\",\n \"reviewerAttributeConfig\": {\n \"bindings\": null\n },\n \"scheduledStartDate\": \"\",\n \"scope\": {\n \"appUserStatuses\": null,\n \"appUserTypes\": null\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_UNSPECIFIED\",\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": null,\n \"appUserStatuses\": null,\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": null\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": null,\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_PERMANENT\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_USERS\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": null\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": null\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_2\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": null\n }\n },\n \"scopingVersion\": \"\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"singleApp\": {\n \"appId\": \"\"\n },\n \"startedAt\": \"\",\n \"state\": \"ACCESS_REVIEW_STATE_REVIEW\",\n \"updatedAt\": \"\",\n \"usePolicyOverride\": \"\"\n },\n \"createdByUserPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"policyPath\": \"\"\n },\n \"expanded\": null\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -1448,7 +1883,7 @@ "description": "", "item": [ { - "id": "b56903db-ad9f-4738-acdf-1dd2000c993b", + "id": "9264fc86-fd66-4d69-9e10-d6b39f31147b", "name": "Create", "request": { "name": "Create", @@ -1481,7 +1916,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"accessReviewDuration\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_UNSPECIFIED\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_UNSPECIFIED\",\n \"autoGenerateReport\": \"\",\n \"autoStartCampaign\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_STATUS\",\n \"ACCESS_REVIEW_TASK_COLUMN_VIEW_LINK\"\n ]\n },\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_UNSPECIFIED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"exemptCertifiedAccessConflicts\": \"\",\n \"isCampaignScheduleEnabled\": \"\",\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"ownerIds\": [\n \"\",\n \"\"\n ],\n \"policyId\": \"\",\n \"recurrenceRule\": {\n \"endDate\": \"\",\n \"frequency\": \"FREQUENCY_YEARLY\",\n \"interval\": \"\",\n \"occurrences\": \"\",\n \"startDate\": \"\"\n },\n \"reviewInstructions\": \"\",\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DELETED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_PERMANENT\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"ENABLED\",\n \"DELETED\"\n ]\n }\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_UNSPECIFIED\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"usePolicyOverride\": \"\"\n}", + "raw": "{\n \"accessReviewDuration\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_CONTINUE\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\",\n \"key_4\": \"\"\n },\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_UNSPECIFIED\",\n \"autoGenerateReport\": \"\",\n \"autoStartCampaign\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_VIEW_LINK\",\n \"ACCESS_REVIEW_TASK_COLUMN_VIEW_LINK\"\n ],\n \"orderedColumns\": [\n {\n \"appUserAttributeKey\": \"\",\n \"builtin\": \"ACCESS_REVIEW_TASK_COLUMN_VIEW_LINK\"\n },\n {\n \"appUserAttributeKey\": \"\",\n \"builtin\": \"ACCESS_REVIEW_TASK_COLUMN_CREATED_ON\"\n }\n ]\n },\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_BY_RESOURCE\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"exemptCertifiedAccessConflicts\": \"\",\n \"isCampaignScheduleEnabled\": \"\",\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"ownerIds\": [\n \"\",\n \"\"\n ],\n \"policyId\": \"\",\n \"recurrenceRule\": {\n \"frequency\": \"FREQUENCY_NONE\",\n \"endDate\": \"\",\n \"interval\": \"\",\n \"occurrences\": \"\",\n \"startDate\": \"\"\n },\n \"reviewInstructions\": \"\",\n \"reviewerAttributeConfig\": {\n \"bindings\": [\n {\n \"appId\": \"\",\n \"attributeKey\": \"\"\n },\n {\n \"appId\": \"\",\n \"attributeKey\": \"\"\n }\n ]\n },\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": null,\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DELETED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": null,\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": null\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_RESOURCES\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": null,\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": null\n },\n \"key_1\": {\n \"values\": null\n }\n },\n \"userStatus\": null\n }\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_RESOURCE\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"usePolicyOverride\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -1493,7 +1928,7 @@ }, "response": [ { - "id": "9bc72331-3757-403a-bdae-a8d205638538", + "id": "d6b4713c-58bd-46ec-b43c-a6a82a758eae", "name": "Successful response", "originalRequest": { "url": { @@ -1529,7 +1964,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"accessReviewDuration\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_UNSPECIFIED\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_UNSPECIFIED\",\n \"autoGenerateReport\": \"\",\n \"autoStartCampaign\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_STATUS\",\n \"ACCESS_REVIEW_TASK_COLUMN_VIEW_LINK\"\n ]\n },\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_UNSPECIFIED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"exemptCertifiedAccessConflicts\": \"\",\n \"isCampaignScheduleEnabled\": \"\",\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"ownerIds\": [\n \"\",\n \"\"\n ],\n \"policyId\": \"\",\n \"recurrenceRule\": {\n \"endDate\": \"\",\n \"frequency\": \"FREQUENCY_YEARLY\",\n \"interval\": \"\",\n \"occurrences\": \"\",\n \"startDate\": \"\"\n },\n \"reviewInstructions\": \"\",\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DELETED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_PERMANENT\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"ENABLED\",\n \"DELETED\"\n ]\n }\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_UNSPECIFIED\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"usePolicyOverride\": \"\"\n}", + "raw": "{\n \"accessReviewDuration\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_CONTINUE\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\",\n \"key_4\": \"\"\n },\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_UNSPECIFIED\",\n \"autoGenerateReport\": \"\",\n \"autoStartCampaign\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_VIEW_LINK\",\n \"ACCESS_REVIEW_TASK_COLUMN_VIEW_LINK\"\n ],\n \"orderedColumns\": [\n {\n \"appUserAttributeKey\": \"\",\n \"builtin\": \"ACCESS_REVIEW_TASK_COLUMN_VIEW_LINK\"\n },\n {\n \"appUserAttributeKey\": \"\",\n \"builtin\": \"ACCESS_REVIEW_TASK_COLUMN_CREATED_ON\"\n }\n ]\n },\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_BY_RESOURCE\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"exemptCertifiedAccessConflicts\": \"\",\n \"isCampaignScheduleEnabled\": \"\",\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"ownerIds\": [\n \"\",\n \"\"\n ],\n \"policyId\": \"\",\n \"recurrenceRule\": {\n \"frequency\": \"FREQUENCY_NONE\",\n \"endDate\": \"\",\n \"interval\": \"\",\n \"occurrences\": \"\",\n \"startDate\": \"\"\n },\n \"reviewInstructions\": \"\",\n \"reviewerAttributeConfig\": {\n \"bindings\": [\n {\n \"appId\": \"\",\n \"attributeKey\": \"\"\n },\n {\n \"appId\": \"\",\n \"attributeKey\": \"\"\n }\n ]\n },\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": null,\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DELETED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": null,\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": null\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_RESOURCES\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": null,\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": null\n },\n \"key_1\": {\n \"values\": null\n }\n },\n \"userStatus\": null\n }\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_RESOURCE\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"usePolicyOverride\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -1546,7 +1981,7 @@ "value": "application/json" } ], - "body": "{\n \"accessReviewTemplate\": {\n \"accessReviewDuration\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_WAIT\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_NO_ACTION\",\n \"autoGenerateReport\": \"\",\n \"autoStartCampaign\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_ENTITLEMENT_DESCRIPTION\",\n \"ACCESS_REVIEW_TASK_COLUMN_VIEW_LINK\"\n ]\n },\n \"createdAt\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_BY_USER\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"exemptCertifiedAccessConflicts\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_ENABLED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_USER\"\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": [\n \"USER_UNKNOWN\",\n \"USER_DISABLED\"\n ]\n },\n \"isCampaignScheduleEnabled\": \"\",\n \"nextScheduledCampaignAt\": \"\",\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"occurrences\": \"\",\n \"policyId\": \"\",\n \"recurrenceRule\": {\n \"endDate\": \"\",\n \"frequency\": \"FREQUENCY_NONE\",\n \"interval\": \"\",\n \"occurrences\": \"\",\n \"startDate\": \"\"\n },\n \"reviewInstructions\": \"\",\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"DISABLED\",\n \"UNKNOWN\"\n ]\n }\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_ACCESS_CONFLICTS\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"slackChannel\": {\n \"description\": \"\",\n \"name\": \"\"\n },\n \"updatedAt\": \"\",\n \"usePolicyOverride\": \"\"\n }\n}", + "body": "{\n \"accessReviewTemplate\": {\n \"accessReviewDuration\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_WAIT\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_SKIP\",\n \"autoGenerateReport\": \"\",\n \"autoStartCampaign\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_ENTITLEMENT\",\n \"ACCESS_REVIEW_TASK_COLUMN_DEPARTMENT\"\n ],\n \"orderedColumns\": [\n {\n \"appUserAttributeKey\": \"\",\n \"builtin\": \"ACCESS_REVIEW_TASK_COLUMN_RESOURCE_TYPE\"\n },\n {\n \"appUserAttributeKey\": \"\",\n \"builtin\": \"ACCESS_REVIEW_TASK_COLUMN_ACCOUNT_OWNER\"\n }\n ]\n },\n \"createdAt\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_BY_RESOURCE\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"exemptCertifiedAccessConflicts\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": null,\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": null\n },\n \"key_2\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_3\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": null,\n \"userStatuses\": [\n \"USER_DISABLED\",\n \"USER_DISABLED\"\n ]\n },\n \"isCampaignScheduleEnabled\": \"\",\n \"msTeamsChannel\": {\n \"channelName\": \"\",\n \"externalDirectoryId\": \"\"\n },\n \"nextScheduledCampaignAt\": \"\",\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"occurrences\": \"\",\n \"policyId\": \"\",\n \"recurrenceRule\": {\n \"frequency\": \"FREQUENCY_MONTHLY\",\n \"endDate\": \"\",\n \"interval\": \"\",\n \"occurrences\": \"\",\n \"startDate\": \"\"\n },\n \"reviewInstructions\": \"\",\n \"reviewerAttributeConfig\": {\n \"bindings\": [\n {\n \"appId\": \"\",\n \"attributeKey\": \"\"\n },\n {\n \"appId\": \"\",\n \"attributeKey\": \"\"\n }\n ]\n },\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": null,\n \"appUserStatuses\": null,\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": null,\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_UNSPECIFIED\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_PERMANENT\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_RESOURCES\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": null\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_2\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": null\n }\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_ACCESS_CONFLICTS\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"slackChannel\": {\n \"channelId\": \"\",\n \"description\": \"\",\n \"isChannelId\": \"\",\n \"name\": \"\"\n },\n \"updatedAt\": \"\",\n \"usePolicyOverride\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -1565,7 +2000,7 @@ "description": "", "item": [ { - "id": "2229876c-522e-49b0-987a-f18ab34b55a8", + "id": "070d6817-be0e-4eda-a17f-6619abc6703a", "name": "Get Scope And Entitlements", "request": { "name": "Get Scope And Entitlements", @@ -1610,7 +2045,7 @@ }, "response": [ { - "id": "871320b4-29c3-4522-b6b6-927873492a4d", + "id": "eecd45de-c83e-4ea8-9d87-307f2c52c30e", "name": "Successful response", "originalRequest": { "url": { @@ -1663,7 +2098,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": 9389.208453207648,\n \"key_2\": 5749\n },\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": 1142\n }\n ],\n \"list\": [\n {\n \"accessReviewTemplateEntitlement\": {\n \"accessReviewTemplateId\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customPolicyId\": \"\",\n \"deletedAt\": \"\",\n \"policyId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"appPath\": \"\",\n \"entitlementPath\": \"\",\n \"policyPath\": \"\"\n },\n {\n \"accessReviewTemplateEntitlement\": {\n \"accessReviewTemplateId\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customPolicyId\": \"\",\n \"deletedAt\": \"\",\n \"policyId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"appPath\": \"\",\n \"entitlementPath\": \"\",\n \"policyPath\": \"\"\n }\n ],\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_TRUSTED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_ENABLED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"DISABLED\",\n \"UNKNOWN\"\n ]\n }\n }\n}", + "body": "{\n \"expanded\": null,\n \"list\": [\n {\n \"accessReviewTemplateEntitlement\": {\n \"accessReviewTemplateId\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customPolicyId\": \"\",\n \"deletedAt\": \"\",\n \"policyId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"appPath\": \"\",\n \"entitlementPath\": \"\",\n \"policyPath\": \"\"\n },\n {\n \"accessReviewTemplateEntitlement\": {\n \"accessReviewTemplateId\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customPolicyId\": \"\",\n \"deletedAt\": \"\",\n \"policyId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"appPath\": \"\",\n \"entitlementPath\": \"\",\n \"policyPath\": \"\"\n }\n ],\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_TRUSTED\",\n \"accountTypes\": null,\n \"appUserStatuses\": null,\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": null\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_UNSPECIFIED\",\n \"includedAccessProfileIds\": null\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_PERMANENT\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_UNSPECIFIED\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": null\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": null,\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"DELETED\",\n \"ENABLED\"\n ]\n }\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -1674,7 +2109,7 @@ } }, { - "id": "34e59db8-0036-405b-a797-943dc3c40d56", + "id": "d2a12bd1-4b07-442c-a01b-2548427b0951", "name": "Set Scope And Entitlements", "request": { "name": "Set Scope And Entitlements", @@ -1720,7 +2155,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"DISABLED\",\n \"UNKNOWN\"\n ]\n }\n }\n}", + "raw": "{\n \"entitlements\": null,\n \"expandMask\": {\n \"paths\": null\n },\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"accountTypes\": null,\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_RESOURCES\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": null,\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"ENABLED\",\n \"ENABLED\"\n ]\n }\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -1732,7 +2167,7 @@ }, "response": [ { - "id": "44669390-3436-404a-8295-88a03617e22f", + "id": "84dfd296-d11c-4a91-8870-ab99da8c8e3c", "name": "Successful response", "originalRequest": { "url": { @@ -1781,7 +2216,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"DISABLED\",\n \"UNKNOWN\"\n ]\n }\n }\n}", + "raw": "{\n \"entitlements\": null,\n \"expandMask\": {\n \"paths\": null\n },\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"accountTypes\": null,\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_RESOURCES\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": null,\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"ENABLED\",\n \"ENABLED\"\n ]\n }\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -1798,7 +2233,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": 9389.208453207648,\n \"key_2\": 5749\n },\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": 1142\n }\n ],\n \"list\": [\n {\n \"accessReviewTemplateEntitlement\": {\n \"accessReviewTemplateId\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customPolicyId\": \"\",\n \"deletedAt\": \"\",\n \"policyId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"appPath\": \"\",\n \"entitlementPath\": \"\",\n \"policyPath\": \"\"\n },\n {\n \"accessReviewTemplateEntitlement\": {\n \"accessReviewTemplateId\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customPolicyId\": \"\",\n \"deletedAt\": \"\",\n \"policyId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"appPath\": \"\",\n \"entitlementPath\": \"\",\n \"policyPath\": \"\"\n }\n ],\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_TRUSTED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_ENABLED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"DISABLED\",\n \"UNKNOWN\"\n ]\n }\n }\n}", + "body": "{\n \"expanded\": null,\n \"list\": [\n {\n \"accessReviewTemplateEntitlement\": {\n \"accessReviewTemplateId\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customPolicyId\": \"\",\n \"deletedAt\": \"\",\n \"policyId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"appPath\": \"\",\n \"entitlementPath\": \"\",\n \"policyPath\": \"\"\n },\n {\n \"accessReviewTemplateEntitlement\": {\n \"accessReviewTemplateId\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customPolicyId\": \"\",\n \"deletedAt\": \"\",\n \"policyId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"appPath\": \"\",\n \"entitlementPath\": \"\",\n \"policyPath\": \"\"\n }\n ],\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_TRUSTED\",\n \"accountTypes\": null,\n \"appUserStatuses\": null,\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": null\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_UNSPECIFIED\",\n \"includedAccessProfileIds\": null\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_PERMANENT\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_UNSPECIFIED\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": null\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": null,\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"DELETED\",\n \"ENABLED\"\n ]\n }\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -1815,7 +2250,7 @@ "description": "", "item": [ { - "id": "f57ca2a9-67ee-4522-8ce1-4c46f5c6907b", + "id": "6d9925c4-6436-4303-9190-bf3897b25d26", "name": "Set Scope By Resource Type", "request": { "name": "Set Scope By Resource Type", @@ -1861,7 +2296,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"resourceTypeSelections\": [\n {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n },\n {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n ],\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_TRUSTED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"DELETED\",\n \"DELETED\"\n ]\n }\n }\n}", + "raw": "{\n \"resourceTypeSelections\": [\n {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n },\n {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n ],\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"appUserStatuses\": null,\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_RESOURCES\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": null,\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"DELETED\",\n \"DISABLED\"\n ]\n }\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -1873,7 +2308,7 @@ }, "response": [ { - "id": "750fea6b-06d1-48ad-b6f2-bd7ba257dfaa", + "id": "34b10df0-0fd8-4fc2-8ceb-e597ff388a02", "name": "Successful response", "originalRequest": { "url": { @@ -1922,7 +2357,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"resourceTypeSelections\": [\n {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n },\n {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n ],\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_TRUSTED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"DELETED\",\n \"DELETED\"\n ]\n }\n }\n}", + "raw": "{\n \"resourceTypeSelections\": [\n {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n },\n {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n ],\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"appUserStatuses\": null,\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_RESOURCES\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": null,\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"DELETED\",\n \"DISABLED\"\n ]\n }\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -1958,7 +2393,7 @@ "description": "", "item": [ { - "id": "e0c139d7-deff-41cd-8c2e-bb51ff687f58", + "id": "d6355a6e-edfa-41a2-a381-4e11d468e21b", "name": "Delete", "request": { "name": "Delete", @@ -2015,7 +2450,7 @@ }, "response": [ { - "id": "2d7e57af-07f2-4e45-b3af-22ab4a004879", + "id": "b5e822fd-8d09-40cc-95b2-e0e935d5ec9f", "name": "Successful response", "originalRequest": { "url": { @@ -2091,7 +2526,7 @@ } }, { - "id": "a0bf57fd-e1a9-4bba-8df2-165d7200c153", + "id": "cc08cdd4-0f8e-4b95-b54b-0916635ea2f8", "name": "Get", "request": { "name": "Get", @@ -2135,7 +2570,7 @@ }, "response": [ { - "id": "515bebce-087c-452b-8229-61581ac5f54d", + "id": "75af9bd0-0154-446e-8b1d-d126b3d88b8f", "name": "Successful response", "originalRequest": { "url": { @@ -2187,7 +2622,7 @@ "value": "application/json" } ], - "body": "{\n \"accessReviewTemplate\": {\n \"accessReviewDuration\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_UNSPECIFIED\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_UNSPECIFIED\",\n \"autoGenerateReport\": \"\",\n \"autoStartCampaign\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_ENTITLEMENT_DESCRIPTION\",\n \"ACCESS_REVIEW_TASK_COLUMN_PROJECT\"\n ]\n },\n \"createdAt\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_UNSPECIFIED\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"exemptCertifiedAccessConflicts\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": [\n \"USER_UNKNOWN\",\n \"USER_DELETED\"\n ]\n },\n \"isCampaignScheduleEnabled\": \"\",\n \"nextScheduledCampaignAt\": \"\",\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"occurrences\": \"\",\n \"policyId\": \"\",\n \"recurrenceRule\": {\n \"endDate\": \"\",\n \"frequency\": \"FREQUENCY_DAILY\",\n \"interval\": \"\",\n \"occurrences\": \"\",\n \"startDate\": \"\"\n },\n \"reviewInstructions\": \"\",\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"UNKNOWN\",\n \"DISABLED\"\n ]\n }\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_ACCESS_CONFLICTS\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"slackChannel\": {\n \"description\": \"\",\n \"name\": \"\"\n },\n \"updatedAt\": \"\",\n \"usePolicyOverride\": \"\"\n }\n}", + "body": "{\n \"accessReviewTemplate\": {\n \"accessReviewDuration\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_WAIT\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_REVOKED\",\n \"autoGenerateReport\": \"\",\n \"autoStartCampaign\": \"\",\n \"columnConfig\": {\n \"columns\": null,\n \"orderedColumns\": [\n {\n \"appUserAttributeKey\": \"\",\n \"builtin\": \"ACCESS_REVIEW_TASK_COLUMN_RESOURCE_PARENT\"\n },\n {\n \"appUserAttributeKey\": \"\",\n \"builtin\": \"ACCESS_REVIEW_TASK_COLUMN_ACCOUNT_OWNER\"\n }\n ]\n },\n \"createdAt\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_BY_APP\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"exemptCertifiedAccessConflicts\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": null,\n \"appUserTypes\": null,\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": null\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_2\": {\n \"values\": null\n },\n \"key_3\": {\n \"values\": null\n },\n \"key_4\": {\n \"values\": null\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": null\n },\n \"isCampaignScheduleEnabled\": \"\",\n \"msTeamsChannel\": {\n \"channelName\": \"\",\n \"externalDirectoryId\": \"\"\n },\n \"nextScheduledCampaignAt\": \"\",\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"occurrences\": \"\",\n \"policyId\": \"\",\n \"recurrenceRule\": {\n \"frequency\": \"FREQUENCY_UNSPECIFIED\",\n \"endDate\": \"\",\n \"interval\": \"\",\n \"occurrences\": \"\",\n \"startDate\": \"\"\n },\n \"reviewInstructions\": \"\",\n \"reviewerAttributeConfig\": {\n \"bindings\": [\n {\n \"appId\": \"\",\n \"attributeKey\": \"\"\n },\n {\n \"appId\": \"\",\n \"attributeKey\": \"\"\n }\n ]\n },\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_TRUSTED\",\n \"accountTypes\": null,\n \"appUserStatuses\": null,\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_UNSPECIFIED\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_USERS_AND_RESOURCES\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_2\": {\n \"values\": null\n },\n \"key_3\": {\n \"values\": null\n }\n },\n \"userStatus\": null\n }\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_ACCESS_CONFLICTS\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"slackChannel\": {\n \"channelId\": \"\",\n \"description\": \"\",\n \"isChannelId\": \"\",\n \"name\": \"\"\n },\n \"updatedAt\": \"\",\n \"usePolicyOverride\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -2198,7 +2633,7 @@ } }, { - "id": "7fac762e-4a04-4b3c-b7fd-2d1e84efa5ef", + "id": "f3d6c1b7-aa18-4e1f-bd50-8b484cfbb1c2", "name": "Update", "request": { "name": "Update", @@ -2243,7 +2678,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"accessReviewTemplate\": {\n \"accessReviewDuration\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_CONTINUE\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_UNSPECIFIED\",\n \"autoGenerateReport\": \"\",\n \"autoStartCampaign\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_STATUS\",\n \"ACCESS_REVIEW_TASK_COLUMN_RESOURCE_CHILDREN\"\n ]\n },\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_UNSPECIFIED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"exemptCertifiedAccessConflicts\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DELETED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": [\n \"USER_UNKNOWN\",\n \"USER_DELETED\"\n ]\n },\n \"isCampaignScheduleEnabled\": \"\",\n \"nextScheduledCampaignAt\": \"\",\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"occurrences\": \"\",\n \"policyId\": \"\",\n \"recurrenceRule\": {\n \"endDate\": \"\",\n \"frequency\": \"FREQUENCY_DAILY\",\n \"interval\": \"\",\n \"occurrences\": \"\",\n \"startDate\": \"\"\n },\n \"reviewInstructions\": \"\",\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"DELETED\",\n \"UNKNOWN\"\n ]\n }\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_UNSPECIFIED\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"slackChannel\": {\n \"description\": \"\",\n \"name\": \"\"\n },\n \"usePolicyOverride\": \"\"\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"accessReviewTemplate\": {\n \"accessReviewDuration\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_WAIT\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_SKIP\",\n \"autoGenerateReport\": \"\",\n \"autoStartCampaign\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_ACCESS_HOLDER_TYPE\",\n \"ACCESS_REVIEW_TASK_COLUMN_PROJECT\"\n ],\n \"orderedColumns\": [\n {\n \"appUserAttributeKey\": \"\",\n \"builtin\": \"ACCESS_REVIEW_TASK_COLUMN_RESOURCE_PARENT\"\n },\n {\n \"appUserAttributeKey\": \"\",\n \"builtin\": \"ACCESS_REVIEW_TASK_COLUMN_DUE\"\n }\n ]\n },\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_UNSPECIFIED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"exemptCertifiedAccessConflicts\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": null,\n \"appUserTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"managerIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": null,\n \"userStatuses\": [\n \"USER_UNKNOWN\",\n \"USER_ENABLED\"\n ]\n },\n \"isCampaignScheduleEnabled\": \"\",\n \"msTeamsChannel\": {\n \"channelName\": \"\",\n \"externalDirectoryId\": \"\"\n },\n \"nextScheduledCampaignAt\": \"\",\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"occurrences\": \"\",\n \"policyId\": \"\",\n \"recurrenceRule\": {\n \"frequency\": \"FREQUENCY_WEEKLY\",\n \"endDate\": \"\",\n \"interval\": \"\",\n \"occurrences\": \"\",\n \"startDate\": \"\"\n },\n \"reviewInstructions\": \"\",\n \"reviewerAttributeConfig\": {\n \"bindings\": [\n {\n \"appId\": \"\",\n \"attributeKey\": \"\"\n },\n {\n \"appId\": \"\",\n \"attributeKey\": \"\"\n }\n ]\n },\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": null,\n \"appUserStatuses\": null,\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": null,\n \"riskLevelAttributeValueIds\": null\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": null\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_USERS_AND_RESOURCES\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": null\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": null\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_2\": {\n \"values\": null\n },\n \"key_3\": {\n \"values\": null\n }\n },\n \"userStatus\": null\n }\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_INHERITANCE\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"slackChannel\": {\n \"channelId\": \"\",\n \"description\": \"\",\n \"isChannelId\": \"\",\n \"name\": \"\"\n },\n \"usePolicyOverride\": \"\"\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -2255,7 +2690,7 @@ }, "response": [ { - "id": "160833be-0116-4959-b9a8-a4d9ddeeb9d9", + "id": "a2f7fb13-dabe-4bc5-9b50-bb728bc13f4c", "name": "Successful response", "originalRequest": { "url": { @@ -2303,7 +2738,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"accessReviewTemplate\": {\n \"accessReviewDuration\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_CONTINUE\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_UNSPECIFIED\",\n \"autoGenerateReport\": \"\",\n \"autoStartCampaign\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_STATUS\",\n \"ACCESS_REVIEW_TASK_COLUMN_RESOURCE_CHILDREN\"\n ]\n },\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_UNSPECIFIED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"exemptCertifiedAccessConflicts\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DELETED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": [\n \"USER_UNKNOWN\",\n \"USER_DELETED\"\n ]\n },\n \"isCampaignScheduleEnabled\": \"\",\n \"nextScheduledCampaignAt\": \"\",\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"occurrences\": \"\",\n \"policyId\": \"\",\n \"recurrenceRule\": {\n \"endDate\": \"\",\n \"frequency\": \"FREQUENCY_DAILY\",\n \"interval\": \"\",\n \"occurrences\": \"\",\n \"startDate\": \"\"\n },\n \"reviewInstructions\": \"\",\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"DELETED\",\n \"UNKNOWN\"\n ]\n }\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_UNSPECIFIED\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"slackChannel\": {\n \"description\": \"\",\n \"name\": \"\"\n },\n \"usePolicyOverride\": \"\"\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"accessReviewTemplate\": {\n \"accessReviewDuration\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_WAIT\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_SKIP\",\n \"autoGenerateReport\": \"\",\n \"autoStartCampaign\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_ACCESS_HOLDER_TYPE\",\n \"ACCESS_REVIEW_TASK_COLUMN_PROJECT\"\n ],\n \"orderedColumns\": [\n {\n \"appUserAttributeKey\": \"\",\n \"builtin\": \"ACCESS_REVIEW_TASK_COLUMN_RESOURCE_PARENT\"\n },\n {\n \"appUserAttributeKey\": \"\",\n \"builtin\": \"ACCESS_REVIEW_TASK_COLUMN_DUE\"\n }\n ]\n },\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_UNSPECIFIED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"exemptCertifiedAccessConflicts\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": null,\n \"appUserTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"managerIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": null,\n \"userStatuses\": [\n \"USER_UNKNOWN\",\n \"USER_ENABLED\"\n ]\n },\n \"isCampaignScheduleEnabled\": \"\",\n \"msTeamsChannel\": {\n \"channelName\": \"\",\n \"externalDirectoryId\": \"\"\n },\n \"nextScheduledCampaignAt\": \"\",\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"occurrences\": \"\",\n \"policyId\": \"\",\n \"recurrenceRule\": {\n \"frequency\": \"FREQUENCY_WEEKLY\",\n \"endDate\": \"\",\n \"interval\": \"\",\n \"occurrences\": \"\",\n \"startDate\": \"\"\n },\n \"reviewInstructions\": \"\",\n \"reviewerAttributeConfig\": {\n \"bindings\": [\n {\n \"appId\": \"\",\n \"attributeKey\": \"\"\n },\n {\n \"appId\": \"\",\n \"attributeKey\": \"\"\n }\n ]\n },\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": null,\n \"appUserStatuses\": null,\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": null,\n \"riskLevelAttributeValueIds\": null\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_INCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": null\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_USERS_AND_RESOURCES\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": null\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": null\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_2\": {\n \"values\": null\n },\n \"key_3\": {\n \"values\": null\n }\n },\n \"userStatus\": null\n }\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_INHERITANCE\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"slackChannel\": {\n \"channelId\": \"\",\n \"description\": \"\",\n \"isChannelId\": \"\",\n \"name\": \"\"\n },\n \"usePolicyOverride\": \"\"\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -2320,7 +2755,7 @@ "value": "application/json" } ], - "body": "{\n \"accessReviewTemplate\": {\n \"accessReviewDuration\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_CONTINUE\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_UNSPECIFIED\",\n \"autoGenerateReport\": \"\",\n \"autoStartCampaign\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_STATUS\",\n \"ACCESS_REVIEW_TASK_COLUMN_ENTITLEMENT_DESCRIPTION\"\n ]\n },\n \"createdAt\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_BY_APP\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"exemptCertifiedAccessConflicts\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_ENABLED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": [\n \"USER_DISABLED\",\n \"USER_DELETED\"\n ]\n },\n \"isCampaignScheduleEnabled\": \"\",\n \"nextScheduledCampaignAt\": \"\",\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"occurrences\": \"\",\n \"policyId\": \"\",\n \"recurrenceRule\": {\n \"endDate\": \"\",\n \"frequency\": \"FREQUENCY_NONE\",\n \"interval\": \"\",\n \"occurrences\": \"\",\n \"startDate\": \"\"\n },\n \"reviewInstructions\": \"\",\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_TRUSTED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DELETED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"UNKNOWN\",\n \"DISABLED\"\n ]\n }\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_ENTITLEMENTS\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"slackChannel\": {\n \"description\": \"\",\n \"name\": \"\"\n },\n \"updatedAt\": \"\",\n \"usePolicyOverride\": \"\"\n }\n}", + "body": "{\n \"accessReviewTemplate\": {\n \"accessReviewDuration\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_WAIT\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_REVOKED\",\n \"autoGenerateReport\": \"\",\n \"autoStartCampaign\": \"\",\n \"columnConfig\": {\n \"columns\": null,\n \"orderedColumns\": null\n },\n \"createdAt\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_UNSTRUCTURED\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"exemptCertifiedAccessConflicts\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"managerIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": null\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": null,\n \"userStatuses\": null\n },\n \"isCampaignScheduleEnabled\": \"\",\n \"msTeamsChannel\": {\n \"channelName\": \"\",\n \"externalDirectoryId\": \"\"\n },\n \"nextScheduledCampaignAt\": \"\",\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"occurrences\": \"\",\n \"policyId\": \"\",\n \"recurrenceRule\": {\n \"frequency\": \"FREQUENCY_MONTHLY\",\n \"endDate\": \"\",\n \"interval\": \"\",\n \"occurrences\": \"\",\n \"startDate\": \"\"\n },\n \"reviewInstructions\": \"\",\n \"reviewerAttributeConfig\": {\n \"bindings\": null\n },\n \"scope\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_ENABLED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": null,\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": null\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_USERS_AND_RESOURCES\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": null\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": null,\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": null\n }\n },\n \"userStatus\": [\n \"UNKNOWN\",\n \"ENABLED\"\n ]\n }\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_ENTITLEMENTS\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"slackChannel\": {\n \"channelId\": \"\",\n \"description\": \"\",\n \"isChannelId\": \"\",\n \"name\": \"\"\n },\n \"updatedAt\": \"\",\n \"usePolicyOverride\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -2339,7 +2774,7 @@ "description": "", "item": [ { - "id": "2dddf523-9f15-4962-a35a-db173d8b2dfb", + "id": "b6cca3c3-5d68-4c61-8e77-adcfa6d82372", "name": "List", "request": { "name": "List", @@ -2390,7 +2825,7 @@ }, "response": [ { - "id": "8c5dd3b1-a5fd-4213-a45a-fa1ed10779e8", + "id": "42ff8fae-8b2d-40f1-96a2-2b3511f1a05e", "name": "Successful response", "originalRequest": { "url": { @@ -2449,7 +2884,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": 6301.311567462213,\n \"key_2\": 2992.9027216935133\n },\n {\n \"@type\": \"\",\n \"key_0\": 8375.818692508892\n }\n ],\n \"list\": [\n {\n \"accessReview\": {\n \"accessReviewTemplateId\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_WAIT\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_NO_ACTION\",\n \"autoGenerateReport\": \"\",\n \"autoResolve\": \"\",\n \"autoStartCampaign\": \"\",\n \"bindings\": {},\n \"campaignHealth\": {\n \"checkedAt\": \"\",\n \"phantomLockedCount\": \"\"\n },\n \"campaignInsights\": {\n \"markdown\": \"\"\n },\n \"closedAt\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_JOB_TITLE\",\n \"ACCESS_REVIEW_TASK_COLUMN_RESOURCE_TYPE\"\n ]\n },\n \"completionDate\": \"\",\n \"connectorSourcesFrozenAt\": \"\",\n \"createdAt\": \"\",\n \"createdById\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_BY_RESOURCE\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"errorState\": \"ACCESS_REVIEW_ERROR_STATE_UNSPECIFIED\",\n \"exclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ]\n },\n \"exemptCertifiedAccessConflicts\": \"\",\n \"expectedTicketCount\": \"\",\n \"hasAccuracySupport\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": [\n \"USER_UNKNOWN\",\n \"USER_DELETED\"\n ]\n },\n \"multiApp\": {\n \"appEntitlementDetails\": {\n \"key_0\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_2\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n }\n },\n \"appEntitlements\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementIds\": [\n \"\",\n \"\"\n ]\n }\n }\n },\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"policyId\": \"\",\n \"reviewInstructions\": \"\",\n \"scheduledStartDate\": \"\",\n \"scope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\",\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ]\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_INHERITANCE\",\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_TRUSTED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\",\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_ENABLED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_TEMPORARY\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"DELETED\",\n \"ENABLED\"\n ]\n }\n },\n \"scopingVersion\": \"\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"singleApp\": {\n \"appId\": \"\"\n },\n \"startedAt\": \"\",\n \"state\": \"ACCESS_REVIEW_STATE_DELETING\",\n \"updatedAt\": \"\",\n \"usePolicyOverride\": \"\"\n },\n \"createdByUserPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"policyPath\": \"\"\n },\n {\n \"accessReview\": {\n \"accessReviewTemplateId\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_UNSPECIFIED\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_UNSPECIFIED\",\n \"autoGenerateReport\": \"\",\n \"autoResolve\": \"\",\n \"autoStartCampaign\": \"\",\n \"bindings\": {},\n \"campaignHealth\": {\n \"checkedAt\": \"\",\n \"phantomLockedCount\": \"\"\n },\n \"campaignInsights\": {\n \"markdown\": \"\"\n },\n \"closedAt\": \"\",\n \"columnConfig\": {\n \"columns\": [\n \"ACCESS_REVIEW_TASK_COLUMN_CREATED_BY\",\n \"ACCESS_REVIEW_TASK_COLUMN_RESOURCE_CHILDREN\"\n ]\n },\n \"completionDate\": \"\",\n \"connectorSourcesFrozenAt\": \"\",\n \"createdAt\": \"\",\n \"createdById\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_UNSTRUCTURED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"errorState\": \"ACCESS_REVIEW_ERROR_STATE_UNSPECIFIED\",\n \"exclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ]\n },\n \"exemptCertifiedAccessConflicts\": \"\",\n \"expectedTicketCount\": \"\",\n \"hasAccuracySupport\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_ENABLED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": [\n \"USER_DISABLED\",\n \"USER_UNKNOWN\"\n ]\n },\n \"multiApp\": {\n \"appEntitlementDetails\": {\n \"key_0\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_2\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_3\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n },\n \"key_1\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_2\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n },\n \"key_2\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n },\n \"key_3\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n }\n },\n \"appEntitlements\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementIds\": [\n \"\",\n \"\"\n ]\n }\n }\n },\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"policyId\": \"\",\n \"reviewInstructions\": \"\",\n \"scheduledStartDate\": \"\",\n \"scope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DELETED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ]\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_ACCESS_CONFLICTS\",\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_TRUSTED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_USER\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DELETED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": [\n \"ENABLED\",\n \"DISABLED\"\n ]\n }\n },\n \"scopingVersion\": \"\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"singleApp\": {\n \"appId\": \"\"\n },\n \"startedAt\": \"\",\n \"state\": \"ACCESS_REVIEW_STATE_DELETED\",\n \"updatedAt\": \"\",\n \"usePolicyOverride\": \"\"\n },\n \"createdByUserPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n },\n \"policyPath\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"expanded\": null,\n \"list\": [\n {\n \"accessReview\": {\n \"accessReviewTemplateId\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_CONTINUE\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_NO_ACTION\",\n \"autoGenerateReport\": \"\",\n \"autoResolve\": \"\",\n \"autoStartCampaign\": \"\",\n \"bindings\": {},\n \"campaignHealth\": {\n \"checkedAt\": \"\",\n \"phantomLockedCount\": \"\"\n },\n \"campaignInsights\": {\n \"markdown\": \"\"\n },\n \"closedAt\": \"\",\n \"columnConfig\": {\n \"columns\": null,\n \"orderedColumns\": null\n },\n \"completionDate\": \"\",\n \"connectorSourcesFrozenAt\": \"\",\n \"createdAt\": \"\",\n \"createdById\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_BY_USER\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"errorState\": \"ACCESS_REVIEW_ERROR_STATE_UNSPECIFIED\",\n \"exclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_ENABLED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ]\n },\n \"exemptCertifiedAccessConflicts\": \"\",\n \"expectedTicketCount\": \"\",\n \"hasAccuracySupport\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_ENABLED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"appUserTypes\": null,\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": null\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": null,\n \"userStatuses\": [\n \"USER_ENABLED\",\n \"USER_ENABLED\"\n ]\n },\n \"multiApp\": {\n \"appEntitlementDetails\": {\n \"key_0\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n }\n },\n \"appEntitlements\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementIds\": [\n \"\",\n \"\"\n ]\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementIds\": null\n },\n \"key_2\": {\n \"appId\": \"\",\n \"entitlementIds\": [\n \"\",\n \"\"\n ]\n }\n }\n },\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"policyId\": \"\",\n \"reviewInstructions\": \"\",\n \"reviewerAttributeConfig\": {\n \"bindings\": [\n {\n \"appId\": \"\",\n \"attributeKey\": \"\"\n },\n {\n \"appId\": \"\",\n \"attributeKey\": \"\"\n }\n ]\n },\n \"scheduledStartDate\": \"\",\n \"scope\": {\n \"appUserStatuses\": null,\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ]\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_RESOURCE\",\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_TRUSTED\",\n \"accountTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\",\n \"APP_USER_TYPE_USER\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_ENABLED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": [\n \"\",\n \"\"\n ]\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_SPECIFIC\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_UNSPECIFIED\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_UNSPECIFIED\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n }\n },\n \"userStatus\": null\n }\n },\n \"scopingVersion\": \"\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"singleApp\": {\n \"appId\": \"\"\n },\n \"startedAt\": \"\",\n \"state\": \"ACCESS_REVIEW_STATE_OPEN\",\n \"updatedAt\": \"\",\n \"usePolicyOverride\": \"\"\n },\n \"createdByUserPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"read\": \"\"\n },\n \"policyPath\": \"\"\n },\n {\n \"accessReview\": {\n \"accessReviewTemplateId\": \"\",\n \"accuracyIssueAction\": \"ACCURACY_ISSUE_ACTION_WAIT\",\n \"autoCloseCampaign\": \"\",\n \"autoCloseDecision\": \"CLOSE_DECISION_REVOKED\",\n \"autoGenerateReport\": \"\",\n \"autoResolve\": \"\",\n \"autoStartCampaign\": \"\",\n \"bindings\": {},\n \"campaignHealth\": {\n \"checkedAt\": \"\",\n \"phantomLockedCount\": \"\"\n },\n \"campaignInsights\": {\n \"markdown\": \"\"\n },\n \"closedAt\": \"\",\n \"columnConfig\": {\n \"columns\": null,\n \"orderedColumns\": [\n {\n \"appUserAttributeKey\": \"\",\n \"builtin\": \"ACCESS_REVIEW_TASK_COLUMN_ACCOUNT_OWNER\"\n },\n {\n \"appUserAttributeKey\": \"\",\n \"builtin\": \"ACCESS_REVIEW_TASK_COLUMN_DUE\"\n }\n ]\n },\n \"completionDate\": \"\",\n \"connectorSourcesFrozenAt\": \"\",\n \"createdAt\": \"\",\n \"createdById\": \"\",\n \"defaultView\": \"ACCESS_REVIEW_VIEW_TYPE_BY_APP\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"errorState\": \"ACCESS_REVIEW_ERROR_STATE_SELECTION_QUOTA_EXCEED_ERROR\",\n \"exclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_ENABLED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ]\n },\n \"exemptCertifiedAccessConflicts\": \"\",\n \"expectedTicketCount\": \"\",\n \"hasAccuracySupport\": \"\",\n \"id\": \"\",\n \"inclusionScope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DELETED\",\n \"APP_USER_STATUS_DISABLED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"APP_USER_TYPE_USER\"\n ],\n \"managerIds\": null,\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": null\n }\n },\n \"noAccountOwners\": \"\",\n \"userIds\": null,\n \"userStatuses\": null\n },\n \"multiApp\": {\n \"appEntitlementDetails\": {\n \"key_0\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_1\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n },\n \"key_2\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n },\n \"key_1\": {\n \"entitlementDetails\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"policyId\": \"\"\n }\n }\n }\n },\n \"appEntitlements\": {\n \"key_0\": {\n \"appId\": \"\",\n \"entitlementIds\": null\n }\n }\n },\n \"notificationConfig\": {\n \"sendClose\": \"\",\n \"sendKickoff\": \"\",\n \"sendReminders\": \"\"\n },\n \"policyId\": \"\",\n \"reviewInstructions\": \"\",\n \"reviewerAttributeConfig\": {\n \"bindings\": [\n {\n \"appId\": \"\",\n \"attributeKey\": \"\"\n },\n {\n \"appId\": \"\",\n \"attributeKey\": \"\"\n }\n ]\n },\n \"scheduledStartDate\": \"\",\n \"scope\": {\n \"appUserStatuses\": [\n \"APP_USER_STATUS_DISABLED\",\n \"APP_USER_STATUS_DELETED\"\n ],\n \"appUserTypes\": null\n },\n \"scopeType\": \"ACCESS_REVIEW_SCOPE_TYPE_BY_INHERITANCE\",\n \"scopeV2\": {\n \"accountCelExpression\": {\n \"expression\": \"\"\n },\n \"accountCriteria\": {\n \"accountDomain\": \"APP_USER_DOMAIN_EXTERNAL\",\n \"accountTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"appUserStatuses\": [\n \"APP_USER_STATUS_UNSPECIFIED\",\n \"APP_USER_STATUS_UNSPECIFIED\"\n ],\n \"noAccountOwner\": \"\"\n },\n \"allAccessConflicts\": {},\n \"allAccounts\": {},\n \"allGrants\": {},\n \"allUsers\": {},\n \"appAccess\": {},\n \"appSelectionCriteria\": {\n \"complianceFrameworkAttributeValueIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelAttributeValueIds\": null\n },\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"excludedResourceTypeSelections\": {},\n \"excludedSpecificResources\": {},\n \"grantsByCriteria\": {\n \"accessProfileFilter\": {\n \"excludedAccessProfileIds\": [\n \"\",\n \"\"\n ],\n \"filterType\": \"ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_ALL\",\n \"includedAccessProfileIds\": [\n \"\",\n \"\"\n ]\n },\n \"daysSinceAdded\": \"\",\n \"daysSinceLastUsed\": \"\",\n \"daysSinceReviewed\": \"\",\n \"grantsAddedBetween\": {\n \"endDate\": \"\",\n \"startDate\": \"\"\n },\n \"sourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\",\n \"typeFilter\": \"GRANT_FILTER_TYPE_PERMANENT\"\n },\n \"principalTypeFilter\": \"PRINCIPAL_TYPE_FILTER_USERS_AND_RESOURCES\",\n \"resourceSelection\": {},\n \"resourceTypeSelections\": {},\n \"scopeRoleSelection\": {},\n \"selectedUsers\": {\n \"userIds\": null\n },\n \"specificAccessConflicts\": {},\n \"specificResources\": {},\n \"userCriteria\": {\n \"groupAppEntitlementsRef\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"managerUserIds\": [\n \"\",\n \"\"\n ],\n \"multiUserProfileAttributes\": {\n \"key_0\": {\n \"values\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"key_1\": {\n \"values\": null\n }\n },\n \"userStatus\": null\n }\n },\n \"scopingVersion\": \"\",\n \"signatureConfig\": {\n \"meaningOfSignature\": \"\",\n \"requireSignature\": \"\",\n \"stepUpProviderId\": \"\",\n \"tspUrl\": \"\"\n },\n \"singleApp\": {\n \"appId\": \"\"\n },\n \"startedAt\": \"\",\n \"state\": \"ACCESS_REVIEW_STATE_DRAFT\",\n \"updatedAt\": \"\",\n \"usePolicyOverride\": \"\"\n },\n \"createdByUserPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n },\n \"policyPath\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -2466,7 +2901,7 @@ "description": "", "item": [ { - "id": "9971b978-ffa7-4d5b-be52-8a76e48a6ab7", + "id": "701d9d27-aab8-420a-88fa-63732eee5a9f", "name": "Create Monitor", "request": { "name": "Create Monitor", @@ -2499,7 +2934,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"description\": \"\",\n \"notificationConfig\": {\n \"emailNotifications\": {\n \"enabled\": \"\",\n \"identityUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"slackNotifications\": {\n \"channelId\": \"\",\n \"channelName\": \"\",\n \"enabled\": \"\"\n }\n }\n}", + "raw": "{\n \"displayName\": \"\",\n \"description\": \"\",\n \"notificationConfig\": {\n \"emailNotifications\": {\n \"enabled\": \"\",\n \"identityUserIds\": null\n },\n \"slackNotifications\": {\n \"channelId\": \"\",\n \"channelName\": \"\",\n \"enabled\": \"\"\n }\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -2511,7 +2946,7 @@ }, "response": [ { - "id": "083db433-6bb7-4ab8-ad8b-239731d78728", + "id": "fdda8ef7-da94-4499-88b0-a656e64a08e9", "name": "A conflict monitor defines a Separation of Duty rule between two entitlement sets.\n It detects when any user holds entitlements from both set A and set B simultaneously.", "originalRequest": { "url": { @@ -2547,7 +2982,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"description\": \"\",\n \"notificationConfig\": {\n \"emailNotifications\": {\n \"enabled\": \"\",\n \"identityUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"slackNotifications\": {\n \"channelId\": \"\",\n \"channelName\": \"\",\n \"enabled\": \"\"\n }\n }\n}", + "raw": "{\n \"displayName\": \"\",\n \"description\": \"\",\n \"notificationConfig\": {\n \"emailNotifications\": {\n \"enabled\": \"\",\n \"identityUserIds\": null\n },\n \"slackNotifications\": {\n \"channelId\": \"\",\n \"channelName\": \"\",\n \"enabled\": \"\"\n }\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -2564,7 +2999,7 @@ "value": "application/json" } ], - "body": "{\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"entitlementSetAId\": \"\",\n \"entitlementSetBId\": \"\",\n \"id\": \"\",\n \"notificationConfig\": {\n \"emailNotifications\": {\n \"enabled\": \"\",\n \"identityUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"slackNotifications\": {\n \"channelId\": \"\",\n \"channelName\": \"\",\n \"enabled\": \"\"\n }\n },\n \"updatedAt\": \"\"\n}", + "body": "{\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"entitlementSetAId\": \"\",\n \"entitlementSetBId\": \"\",\n \"id\": \"\",\n \"negateGroupB\": \"\",\n \"notificationConfig\": {\n \"emailNotifications\": {\n \"enabled\": \"\",\n \"identityUserIds\": null\n },\n \"slackNotifications\": {\n \"channelId\": \"\",\n \"channelName\": \"\",\n \"enabled\": \"\"\n }\n },\n \"updatedAt\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -2579,7 +3014,7 @@ "description": "", "item": [ { - "id": "43f2af7c-8ac6-4221-95dd-ec9adfe31ab1", + "id": "74ff4120-5807-4dc8-a45b-bed7429d0259", "name": "Delete Monitor", "request": { "name": "Delete Monitor", @@ -2636,7 +3071,7 @@ }, "response": [ { - "id": "38c4661c-bc1f-440d-b5aa-c56b6ce7fb32", + "id": "64fcc005-e651-4b5f-b625-024229156dff", "name": "The response message for deleting a conflict monitor.", "originalRequest": { "url": { @@ -2712,7 +3147,7 @@ } }, { - "id": "8974096e-b257-4496-b66b-611902ef4aaf", + "id": "ca790bb4-b4f1-418b-becd-b494e358cd2f", "name": "Get Monitor", "request": { "name": "Get Monitor", @@ -2756,7 +3191,7 @@ }, "response": [ { - "id": "30fc30ef-fa07-4cb2-be08-b560f82681ec", + "id": "9416088e-1b9e-4e10-b2b1-9484171a1444", "name": "A conflict monitor defines a Separation of Duty rule between two entitlement sets.\n It detects when any user holds entitlements from both set A and set B simultaneously.", "originalRequest": { "url": { @@ -2808,7 +3243,7 @@ "value": "application/json" } ], - "body": "{\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"entitlementSetAId\": \"\",\n \"entitlementSetBId\": \"\",\n \"id\": \"\",\n \"notificationConfig\": {\n \"emailNotifications\": {\n \"enabled\": \"\",\n \"identityUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"slackNotifications\": {\n \"channelId\": \"\",\n \"channelName\": \"\",\n \"enabled\": \"\"\n }\n },\n \"updatedAt\": \"\"\n}", + "body": "{\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"entitlementSetAId\": \"\",\n \"entitlementSetBId\": \"\",\n \"id\": \"\",\n \"negateGroupB\": \"\",\n \"notificationConfig\": {\n \"emailNotifications\": {\n \"enabled\": \"\",\n \"identityUserIds\": null\n },\n \"slackNotifications\": {\n \"channelId\": \"\",\n \"channelName\": \"\",\n \"enabled\": \"\"\n }\n },\n \"updatedAt\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -2819,7 +3254,7 @@ } }, { - "id": "f09f2648-e8f5-4079-b6f3-87586883d489", + "id": "19a1758e-92fc-44dc-9290-f3fba19a3085", "name": "Update Monitor", "request": { "name": "Update Monitor", @@ -2864,7 +3299,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"description\": \"\",\n \"displayName\": \"\",\n \"notificationConfig\": {\n \"emailNotifications\": {\n \"enabled\": \"\",\n \"identityUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"slackNotifications\": {\n \"channelId\": \"\",\n \"channelName\": \"\",\n \"enabled\": \"\"\n }\n }\n}", + "raw": "{\n \"description\": \"\",\n \"displayName\": \"\",\n \"negateGroupB\": \"\",\n \"notificationConfig\": {\n \"emailNotifications\": {\n \"enabled\": \"\",\n \"identityUserIds\": null\n },\n \"slackNotifications\": {\n \"channelId\": \"\",\n \"channelName\": \"\",\n \"enabled\": \"\"\n }\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -2876,7 +3311,7 @@ }, "response": [ { - "id": "04e8b26a-5a06-482a-bdea-c64a15cdf8f6", + "id": "ffdbc715-e982-483b-8211-4435d2beb1a4", "name": "A conflict monitor defines a Separation of Duty rule between two entitlement sets.\n It detects when any user holds entitlements from both set A and set B simultaneously.", "originalRequest": { "url": { @@ -2924,7 +3359,130 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"description\": \"\",\n \"displayName\": \"\",\n \"notificationConfig\": {\n \"emailNotifications\": {\n \"enabled\": \"\",\n \"identityUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"slackNotifications\": {\n \"channelId\": \"\",\n \"channelName\": \"\",\n \"enabled\": \"\"\n }\n }\n}", + "raw": "{\n \"description\": \"\",\n \"displayName\": \"\",\n \"negateGroupB\": \"\",\n \"notificationConfig\": {\n \"emailNotifications\": {\n \"enabled\": \"\",\n \"identityUserIds\": null\n },\n \"slackNotifications\": {\n \"channelId\": \"\",\n \"channelName\": \"\",\n \"enabled\": \"\"\n }\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"entitlementSetAId\": \"\",\n \"entitlementSetBId\": \"\",\n \"id\": \"\",\n \"negateGroupB\": \"\",\n \"notificationConfig\": {\n \"emailNotifications\": {\n \"enabled\": \"\",\n \"identityUserIds\": null\n },\n \"slackNotifications\": {\n \"channelId\": \"\",\n \"channelName\": \"\",\n \"enabled\": \"\"\n }\n },\n \"updatedAt\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "app_users", + "description": "", + "item": [ + { + "name": "owned_service_accounts", + "description": "", + "item": [ + { + "id": "6a3afe54-3df3-4aa0-a4ce-770f38975a28", + "name": "List Owned Service Accounts", + "request": { + "name": "List Owned Service Accounts", + "description": { + "content": "ListOwnedServiceAccounts returns the service accounts owned by the calling\n user. The owner is the authenticated caller; it is not accepted as an input.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "app_users", + "owned_service_accounts" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "7cfc6d0f-70d0-4a22-83f7-45d66dff4ad7", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "app_users", + "owned_service_accounts" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -2941,7 +3499,7 @@ "value": "application/json" } ], - "body": "{\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"entitlementSetAId\": \"\",\n \"entitlementSetBId\": \"\",\n \"id\": \"\",\n \"notificationConfig\": {\n \"emailNotifications\": {\n \"enabled\": \"\",\n \"identityUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"slackNotifications\": {\n \"channelId\": \"\",\n \"channelName\": \"\",\n \"enabled\": \"\"\n }\n },\n \"updatedAt\": \"\"\n}", + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 3274\n },\n {\n \"@type\": \"\",\n \"key_0\": 2589.0775292898006,\n \"key_1\": 8614.175753235291\n }\n ],\n \"list\": [\n {\n \"appPath\": \"\",\n \"appUser\": {\n \"agentStatus\": \"APP_USER_AGENT_STATUS_DISABLED\",\n \"appId\": \"\",\n \"appUserType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"identityUserId\": \"\",\n \"isExternal\": \"\",\n \"nhiDetail\": \"\",\n \"nhiType\": \"APP_USER_NHI_TYPE_APP_REGISTRATION\",\n \"profile\": null,\n \"status\": {\n \"details\": \"\",\n \"status\": \"STATUS_ENABLED\"\n },\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"identityUserPath\": \"\",\n \"lastUsagePath\": \"\"\n },\n {\n \"appPath\": \"\",\n \"appUser\": {\n \"agentStatus\": \"APP_USER_AGENT_STATUS_DISABLED\",\n \"appId\": \"\",\n \"appUserType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"emails\": null,\n \"employeeIds\": null,\n \"id\": \"\",\n \"identityUserId\": \"\",\n \"isExternal\": \"\",\n \"nhiDetail\": \"\",\n \"nhiType\": \"APP_USER_NHI_TYPE_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": \"string\",\n \"key_1\": false,\n \"key_2\": false\n },\n \"status\": {\n \"details\": \"\",\n \"status\": \"STATUS_DELETED\"\n },\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"identityUserPath\": \"\",\n \"lastUsagePath\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -2960,7 +3518,7 @@ "description": "", "item": [ { - "id": "a5bbbd00-72bb-42e7-b08b-9cce882df89c", + "id": "2048d024-1271-4948-ada6-ff452c67d7c0", "name": "Delete App Entitlement Monitor Binding", "request": { "name": "Delete App Entitlement Monitor Binding", @@ -2993,7 +3551,7 @@ "method": "DELETE", "body": { "mode": "raw", - "raw": "{\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"entitlementGroup\": \"ENTITLEMENT_GROUP_B\",\n \"monitorId\": \"\"\n}", + "raw": "{\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"entitlementGroup\": \"ENTITLEMENT_GROUP_UNSPECIFIED\",\n \"monitorId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -3005,7 +3563,7 @@ }, "response": [ { - "id": "782a09a6-8d71-470c-aaf3-46922b26fc69", + "id": "00662dfe-093b-4c95-9673-c4f340dded05", "name": "The response message for deleting an app entitlement monitor binding.", "originalRequest": { "url": { @@ -3041,7 +3599,7 @@ "method": "DELETE", "body": { "mode": "raw", - "raw": "{\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"entitlementGroup\": \"ENTITLEMENT_GROUP_B\",\n \"monitorId\": \"\"\n}", + "raw": "{\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"entitlementGroup\": \"ENTITLEMENT_GROUP_UNSPECIFIED\",\n \"monitorId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -3069,7 +3627,7 @@ } }, { - "id": "8d36e649-5d10-4fcd-ad11-1998838bf56a", + "id": "53a04085-9d74-4283-9dc9-316a633abdba", "name": "Create App Entitlement Monitor Binding", "request": { "name": "Create App Entitlement Monitor Binding", @@ -3102,7 +3660,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"entitlementGroup\": \"ENTITLEMENT_GROUP_UNSPECIFIED\",\n \"monitorId\": \"\"\n}", + "raw": "{\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"entitlementGroup\": \"ENTITLEMENT_GROUP_B\",\n \"monitorId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -3114,7 +3672,7 @@ }, "response": [ { - "id": "a7df9ae1-0e5d-4671-8c87-577b9da10b3a", + "id": "6d72098d-70ac-47ce-b57e-e666ebff3a2c", "name": "Represents the association of an app entitlement with one side (A or B) of a conflict monitor.", "originalRequest": { "url": { @@ -3150,7 +3708,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"entitlementGroup\": \"ENTITLEMENT_GROUP_UNSPECIFIED\",\n \"monitorId\": \"\"\n}", + "raw": "{\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"entitlementGroup\": \"ENTITLEMENT_GROUP_B\",\n \"monitorId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -3167,7 +3725,7 @@ "value": "application/json" } ], - "body": "{\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"entitlementGroup\": \"ENTITLEMENT_GROUP_A\",\n \"monitorId\": \"\",\n \"updatedAt\": \"\"\n}", + "body": "{\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"entitlementGroup\": \"ENTITLEMENT_GROUP_UNSPECIFIED\",\n \"monitorId\": \"\",\n \"updatedAt\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -3182,7 +3740,7 @@ "description": "", "item": [ { - "id": "8941f93d-86b8-448e-8b08-feb7d23a7ab7", + "id": "a5280294-e2d6-4341-b229-5ef1d5c26dca", "name": "Get App Entitlement Monitor Binding", "request": { "name": "Get App Entitlement Monitor Binding", @@ -3216,7 +3774,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"entitlementGroup\": \"ENTITLEMENT_GROUP_UNSPECIFIED\",\n \"monitorId\": \"\"\n}", + "raw": "{\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"entitlementGroup\": \"ENTITLEMENT_GROUP_B\",\n \"monitorId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -3228,7 +3786,7 @@ }, "response": [ { - "id": "95203961-950e-43c3-9505-5b8b8220b880", + "id": "8dd02223-49a9-4be4-bb44-5f4a515eba14", "name": "Represents the association of an app entitlement with one side (A or B) of a conflict monitor.", "originalRequest": { "url": { @@ -3265,7 +3823,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"entitlementGroup\": \"ENTITLEMENT_GROUP_UNSPECIFIED\",\n \"monitorId\": \"\"\n}", + "raw": "{\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"entitlementGroup\": \"ENTITLEMENT_GROUP_B\",\n \"monitorId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -3282,7 +3840,7 @@ "value": "application/json" } ], - "body": "{\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"entitlementGroup\": \"ENTITLEMENT_GROUP_A\",\n \"monitorId\": \"\",\n \"updatedAt\": \"\"\n}", + "body": "{\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"entitlementGroup\": \"ENTITLEMENT_GROUP_UNSPECIFIED\",\n \"monitorId\": \"\",\n \"updatedAt\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -3301,7 +3859,7 @@ "description": "", "item": [ { - "id": "89642125-cb76-4719-a4c3-579aef303df0", + "id": "20b60457-a350-4c30-8d1a-f2f9e5cfa93b", "name": "List", "request": { "name": "List", @@ -3352,7 +3910,7 @@ }, "response": [ { - "id": "c48a776d-f415-4010-a5a0-7aa9b3ce66ad", + "id": "4fa948ea-a16e-4581-a8ed-fb9083b08ffe", "name": "The ListAppsResponse message contains a list of results and a nextPageToken if applicable.", "originalRequest": { "url": { @@ -3411,7 +3969,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"accessModel\": \"APP_ACCESS_MODEL_UNSPECIFIED\",\n \"appAccountId\": \"\",\n \"appAccountName\": \"\",\n \"appOwners\": [\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": {\n \"key_0\": 5144.800270680396\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_HUMAN\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"ENABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": 2704,\n \"key_1\": 1537\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_HUMAN\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"appUserMapper\": {\n \"mappingCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n },\n \"certifyPolicyId\": \"\",\n \"connectorVersion\": \"\",\n \"createdAt\": \"\",\n \"defaultRequestCatalogId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enableConnectorSourcedOwnership\": \"\",\n \"fieldMask\": \"\",\n \"grantPolicyId\": \"\",\n \"iconUrl\": \"\",\n \"id\": \"\",\n \"identityMatching\": \"APP_USER_IDENTITY_MATCHING_UNSPECIFIED\",\n \"instructions\": \"\",\n \"isDirectory\": \"\",\n \"isManuallyManaged\": \"\",\n \"logoUri\": \"\",\n \"monthlyCostUsd\": \"\",\n \"parentAppId\": \"\",\n \"revokePolicyId\": \"\",\n \"strictAccessEntitlementProvisioning\": \"\",\n \"updatedAt\": \"\",\n \"userCount\": \"\"\n },\n {\n \"accessModel\": \"APP_ACCESS_MODEL_SPARSE\",\n \"appAccountId\": \"\",\n \"appAccountName\": \"\",\n \"appOwners\": [\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": {\n \"key_0\": 1863.3928459258532,\n \"key_1\": \"string\"\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": {\n \"key_0\": 3409.690842718314,\n \"key_1\": true,\n \"key_2\": true\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_SERVICE\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"appUserMapper\": {\n \"mappingCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n },\n \"certifyPolicyId\": \"\",\n \"connectorVersion\": \"\",\n \"createdAt\": \"\",\n \"defaultRequestCatalogId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enableConnectorSourcedOwnership\": \"\",\n \"fieldMask\": \"\",\n \"grantPolicyId\": \"\",\n \"iconUrl\": \"\",\n \"id\": \"\",\n \"identityMatching\": \"APP_USER_IDENTITY_MATCHING_CUSTOM\",\n \"instructions\": \"\",\n \"isDirectory\": \"\",\n \"isManuallyManaged\": \"\",\n \"logoUri\": \"\",\n \"monthlyCostUsd\": \"\",\n \"parentAppId\": \"\",\n \"revokePolicyId\": \"\",\n \"strictAccessEntitlementProvisioning\": \"\",\n \"updatedAt\": \"\",\n \"userCount\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -3422,7 +3980,7 @@ } }, { - "id": "dd53928a-59e5-46f1-bf28-f7f6f23c6fe8", + "id": "1153aa5a-0bd1-43e6-ab05-ca424e71925d", "name": "Create", "request": { "name": "Create", @@ -3455,7 +4013,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"appEntitlementOwnerRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"certifyPolicyId\": \"\",\n \"description\": \"\",\n \"grantPolicyId\": \"\",\n \"identityMatching\": \"APP_USER_IDENTITY_MATCHING_CUSTOM\",\n \"instructions\": \"\",\n \"monthlyCostUsd\": \"\",\n \"owners\": [\n \"\",\n \"\"\n ],\n \"revokePolicyId\": \"\",\n \"strictAccessEntitlementProvisioning\": \"\"\n}", + "raw": "{\n \"displayName\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appEntitlementOwnerRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"certifyPolicyId\": \"\",\n \"description\": \"\",\n \"grantPolicyId\": \"\",\n \"identityMatching\": \"APP_USER_IDENTITY_MATCHING_CUSTOM\",\n \"instructions\": \"\",\n \"matchBatonRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalId\": \"\"\n },\n \"monthlyCostUsd\": \"\",\n \"owners\": null,\n \"revokePolicyId\": \"\",\n \"strictAccessEntitlementProvisioning\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -3467,8 +4025,8 @@ }, "response": [ { - "id": "0ec9387b-c5e0-4568-891f-be37dfe3a52c", - "name": "Returns the new app's values.", + "id": "184a3418-ea10-47c2-a2c8-17ce64c087bb", + "name": "CreateAppResponse contains the newly created application.", "originalRequest": { "url": { "path": [ @@ -3503,7 +4061,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"appEntitlementOwnerRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"certifyPolicyId\": \"\",\n \"description\": \"\",\n \"grantPolicyId\": \"\",\n \"identityMatching\": \"APP_USER_IDENTITY_MATCHING_CUSTOM\",\n \"instructions\": \"\",\n \"monthlyCostUsd\": \"\",\n \"owners\": [\n \"\",\n \"\"\n ],\n \"revokePolicyId\": \"\",\n \"strictAccessEntitlementProvisioning\": \"\"\n}", + "raw": "{\n \"displayName\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appEntitlementOwnerRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"certifyPolicyId\": \"\",\n \"description\": \"\",\n \"grantPolicyId\": \"\",\n \"identityMatching\": \"APP_USER_IDENTITY_MATCHING_CUSTOM\",\n \"instructions\": \"\",\n \"matchBatonRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalId\": \"\"\n },\n \"monthlyCostUsd\": \"\",\n \"owners\": null,\n \"revokePolicyId\": \"\",\n \"strictAccessEntitlementProvisioning\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -3520,7 +4078,7 @@ "value": "application/json" } ], - "body": "{\n \"app\": {\n \"accessModel\": \"APP_ACCESS_MODEL_CLASSIC\",\n \"appAccountId\": \"\",\n \"appAccountName\": \"\",\n \"appOwners\": [\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\"\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_AGENT\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": {\n \"key_0\": 7467.798639988377,\n \"key_1\": 5814\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_SERVICE\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"appUserMapper\": {\n \"mappingCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n },\n \"certifyPolicyId\": \"\",\n \"connectorVersion\": \"\",\n \"createdAt\": \"\",\n \"defaultRequestCatalogId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enableConnectorSourcedOwnership\": \"\",\n \"fieldMask\": \"\",\n \"grantPolicyId\": \"\",\n \"iconUrl\": \"\",\n \"id\": \"\",\n \"identityMatching\": \"APP_USER_IDENTITY_MATCHING_UNSPECIFIED\",\n \"instructions\": \"\",\n \"isDirectory\": \"\",\n \"isManuallyManaged\": \"\",\n \"logoUri\": \"\",\n \"monthlyCostUsd\": \"\",\n \"parentAppId\": \"\",\n \"revokePolicyId\": \"\",\n \"strictAccessEntitlementProvisioning\": \"\",\n \"updatedAt\": \"\",\n \"userCount\": \"\"\n }\n}", + "body": "{\n \"app\": {\n \"accessModel\": \"APP_ACCESS_MODEL_HYBRID\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appAccountId\": \"\",\n \"appAccountName\": \"\",\n \"appOwners\": null,\n \"appUserMapper\": {\n \"appId\": \"\",\n \"mappingCases\": [\n {\n \"appId\": \"\",\n \"appUserKeyCel\": \"\",\n \"caseIndex\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserKeyCel\": \"\",\n \"caseIndex\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n },\n \"certifyPolicyId\": \"\",\n \"connectorVersion\": \"\",\n \"createdAt\": \"\",\n \"defaultRequestCatalogId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enableConnectorSourcedOwnership\": \"\",\n \"fieldMask\": \"\",\n \"grantPolicyId\": \"\",\n \"iconUrl\": \"\",\n \"id\": \"\",\n \"identityMatching\": \"APP_USER_IDENTITY_MATCHING_CUSTOM\",\n \"instructions\": \"\",\n \"isDirectory\": \"\",\n \"isManuallyManaged\": \"\",\n \"logoUri\": \"\",\n \"matchBatonRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalId\": \"\"\n },\n \"monthlyCostUsd\": \"\",\n \"parentAppId\": \"\",\n \"revokeGrantSources\": \"\",\n \"revokePolicyId\": \"\",\n \"strictAccessEntitlementProvisioning\": \"\",\n \"updatedAt\": \"\",\n \"userCount\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -3539,7 +4097,7 @@ "description": "", "item": [ { - "id": "1d0bd733-e4a0-402f-826c-039c8c1cdf93", + "id": "840dad81-13e5-4df7-bda4-b5ad0b9ef06e", "name": "Get App Access Requests Defaults", "request": { "name": "Get App Access Requests Defaults", @@ -3584,7 +4142,7 @@ }, "response": [ { - "id": "2a821505-6b43-4738-a72c-14efade1d6f7", + "id": "197923b7-1ad9-405d-b53c-fa66ff80cc75", "name": "Successful response", "originalRequest": { "url": { @@ -3637,7 +4195,7 @@ "value": "application/json" } ], - "body": "{\n \"appId\": \"\",\n \"catalogIds\": [\n \"\",\n \"\"\n ],\n \"defaultsEnabled\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\",\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"state\": \"APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_FAILED\"\n}", + "body": "{\n \"appId\": \"\",\n \"catalogIds\": [\n \"\",\n \"\"\n ],\n \"defaultsEnabled\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\",\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"state\": \"APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_CANCELING\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -3648,7 +4206,7 @@ } }, { - "id": "fcf2e271-7244-469f-a9af-52eb993819f8", + "id": "62afd47f-89d4-4448-9507-66a202683348", "name": "Create App Access Requests Defaults", "request": { "name": "Create App Access Requests Defaults", @@ -3694,7 +4252,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"catalogIds\": [\n \"\",\n \"\"\n ],\n \"defaultsEnabled\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\",\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"state\": \"APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_UNSPECIFIED\"\n}", + "raw": "{\n \"catalogIds\": [\n \"\",\n \"\"\n ],\n \"defaultsEnabled\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\",\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"state\": \"APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_FAILED\"\n}", "options": { "raw": { "headerFamily": "json", @@ -3706,7 +4264,7 @@ }, "response": [ { - "id": "b2418d8a-8f13-4e86-b6c7-616d791527b4", + "id": "a9d823a9-5296-4667-92fc-6f21f5799455", "name": "Successful response", "originalRequest": { "url": { @@ -3755,7 +4313,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"catalogIds\": [\n \"\",\n \"\"\n ],\n \"defaultsEnabled\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\",\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"state\": \"APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_UNSPECIFIED\"\n}", + "raw": "{\n \"catalogIds\": [\n \"\",\n \"\"\n ],\n \"defaultsEnabled\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\",\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"state\": \"APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_FAILED\"\n}", "options": { "raw": { "headerFamily": "json", @@ -3772,7 +4330,7 @@ "value": "application/json" } ], - "body": "{\n \"appId\": \"\",\n \"catalogIds\": [\n \"\",\n \"\"\n ],\n \"defaultsEnabled\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\",\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"state\": \"APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_FAILED\"\n}", + "body": "{\n \"appId\": \"\",\n \"catalogIds\": [\n \"\",\n \"\"\n ],\n \"defaultsEnabled\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\",\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"state\": \"APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_CANCELING\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -3787,7 +4345,7 @@ "description": "", "item": [ { - "id": "b37db2d2-0126-41cd-9454-0db590f7bbb2", + "id": "1eec3d6f-0041-4605-aa90-444b5a64ea03", "name": "Cancel App Access Requests Defaults", "request": { "name": "Cancel App Access Requests Defaults", @@ -3846,7 +4404,7 @@ }, "response": [ { - "id": "eca302d4-3c9a-4e8b-8288-a3f46c6f6cf1", + "id": "6a0ce3dc-2f4c-4cc9-8ae5-de6001bdfb74", "name": "Successful response", "originalRequest": { "url": { @@ -3913,7 +4471,7 @@ "value": "application/json" } ], - "body": "{\n \"appId\": \"\",\n \"catalogIds\": [\n \"\",\n \"\"\n ],\n \"defaultsEnabled\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\",\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"state\": \"APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_FAILED\"\n}", + "body": "{\n \"appId\": \"\",\n \"catalogIds\": [\n \"\",\n \"\"\n ],\n \"defaultsEnabled\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\",\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"state\": \"APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_CANCELING\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -3932,7 +4490,7 @@ "description": "", "item": [ { - "id": "0aed12b5-afe3-433f-ac42-dfdcc4ea449d", + "id": "93f751ec-69f9-4b8a-9ca1-3af60e3f5fc0", "name": "List", "request": { "name": "List", @@ -3996,7 +4554,7 @@ }, "response": [ { - "id": "10d63c73-0331-48fb-8703-fd7be93e259b", + "id": "16ebc5ed-a98b-4f84-8205-eab0f7456ce6", "name": "The response message for listing app users.", "originalRequest": { "url": { @@ -4068,7 +4626,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\"\n },\n {\n \"@type\": \"\",\n \"key_0\": true,\n \"key_1\": 4350\n }\n ],\n \"list\": [\n {\n \"appPath\": \"\",\n \"appUser\": {\n \"appId\": \"\",\n \"appUserType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"identityUserId\": \"\",\n \"isExternal\": \"\",\n \"profile\": {\n \"key_0\": 1302\n },\n \"status\": {\n \"details\": \"\",\n \"status\": \"STATUS_DELETED\"\n },\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"identityUserPath\": \"\",\n \"lastUsagePath\": \"\"\n },\n {\n \"appPath\": \"\",\n \"appUser\": {\n \"appId\": \"\",\n \"appUserType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"identityUserId\": \"\",\n \"isExternal\": \"\",\n \"profile\": {\n \"key_0\": 9872.030942867212,\n \"key_1\": false,\n \"key_2\": 7889\n },\n \"status\": {\n \"details\": \"\",\n \"status\": \"STATUS_DELETED\"\n },\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"identityUserPath\": \"\",\n \"lastUsagePath\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n },\n {\n \"@type\": \"\"\n }\n ],\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -4087,7 +4645,7 @@ "description": "", "item": [ { - "id": "7d5617c8-039c-4918-9d77-6678021389af", + "id": "93d2d3c2-a935-427f-97cc-a941cd6a7a72", "name": "List App User Credentials", "request": { "name": "List App User Credentials", @@ -4163,7 +4721,7 @@ }, "response": [ { - "id": "0885bffa-f1bf-4714-bcca-d49ed6a498f5", + "id": "03e3564b-3c55-4ea8-8c68-82ccf6e52d32", "name": "The response message for listing credentials of an app user.", "originalRequest": { "url": { @@ -4247,7 +4805,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"encryptedData\": {\n \"description\": \"\",\n \"encryptedBytes\": \"\",\n \"keyId\": \"\",\n \"name\": \"\",\n \"provider\": \"\",\n \"schema\": \"\"\n },\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"encryptedData\": {\n \"description\": \"\",\n \"encryptedBytes\": \"\",\n \"keyId\": \"\",\n \"name\": \"\",\n \"provider\": \"\",\n \"schema\": \"\"\n },\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -4268,7 +4826,7 @@ "description": "", "item": [ { - "id": "25a49c14-7cb4-49ec-b1d6-e560f411eddf", + "id": "e0bfbe25-7c1b-4cdf-9e29-9a0c998c0f8d", "name": "List", "request": { "name": "List", @@ -4332,7 +4890,7 @@ }, "response": [ { - "id": "2081d370-d685-4d9e-8703-fb12ff990555", + "id": "cec7bafb-429c-4aa3-b91d-a9cd0ab0b597", "name": "The ConnectorServiceListResponse message contains a list of results and a nextPageToken if applicable", "originalRequest": { "url": { @@ -4404,7 +4962,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 3464,\n \"key_1\": true\n },\n {\n \"@type\": \"\",\n \"key_0\": 8951.624575367432\n }\n ],\n \"list\": [\n {\n \"appPath\": \"\",\n \"capabilitiesPath\": \"\",\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\",\n \"key_0\": 2756,\n \"key_1\": true,\n \"key_2\": 4139.511384399703\n },\n \"configUpdatedAt\": \"\",\n \"connectorApiVersion\": \"\",\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"downloadUrl\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {\n \"authEmail\": \"\",\n \"authorizedAt\": \"\"\n },\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": [\n \"\",\n \"\"\n ],\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_RUNNING\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": [\n \"\",\n \"\"\n ]\n },\n \"syncDisabledAt\": \"\",\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"updatedAt\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"usersPath\": \"\"\n },\n {\n \"appPath\": \"\",\n \"capabilitiesPath\": \"\",\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\",\n \"key_0\": false\n },\n \"configUpdatedAt\": \"\",\n \"connectorApiVersion\": \"\",\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"downloadUrl\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {\n \"authEmail\": \"\",\n \"authorizedAt\": \"\"\n },\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": [\n \"\",\n \"\"\n ],\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_RUNNING\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": [\n \"\",\n \"\"\n ]\n },\n \"syncDisabledAt\": \"\",\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"updatedAt\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"usersPath\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"expanded\": null,\n \"list\": [\n {\n \"appPath\": \"\",\n \"capabilitiesPath\": \"\",\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": null,\n \"configUpdatedAt\": \"\",\n \"connectorApiVersion\": \"\",\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"downloadUrl\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {\n \"authEmail\": \"\",\n \"authorizedAt\": \"\"\n },\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": null,\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_ERROR\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": null\n },\n \"syncDisabledAt\": \"\",\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"updatedAt\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"usersPath\": \"\"\n },\n {\n \"appPath\": \"\",\n \"capabilitiesPath\": \"\",\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": 2805.1049071556,\n \"key_2\": 3635.1663548926563,\n \"key_3\": 695\n },\n \"configUpdatedAt\": \"\",\n \"connectorApiVersion\": \"\",\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"downloadUrl\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {\n \"authEmail\": \"\",\n \"authorizedAt\": \"\"\n },\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": null,\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_UNSPECIFIED\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": [\n \"\",\n \"\"\n ]\n },\n \"syncDisabledAt\": \"\",\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"updatedAt\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"usersPath\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -4415,7 +4973,7 @@ } }, { - "id": "6d1ebdcc-fc8a-4dd1-92b2-d96f8cca9c9c", + "id": "a90fd4dc-73a5-40b0-922e-d120bbb86fc7", "name": "Create Delegated", "request": { "name": "Create Delegated", @@ -4461,7 +5019,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appEntitlementOwnerRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appManagedStateBindingRef\": {\n \"appId\": \"\",\n \"resourceId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"catalogId\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{\n \"appEntitlementOwnerRefs\": null,\n \"appManagedStateBindingRef\": {\n \"appId\": \"\",\n \"resourceId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"catalogId\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", "options": { "raw": { "headerFamily": "json", @@ -4473,7 +5031,7 @@ }, "response": [ { - "id": "1e32d7ae-bc59-4881-9fe7-cce0d0ff2ded", + "id": "8fbd26ea-32da-4349-bab2-d4e6dc07e6fb", "name": "The ConnectorServiceCreateResponse is the response returned from creating a connector.", "originalRequest": { "url": { @@ -4522,7 +5080,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appEntitlementOwnerRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appManagedStateBindingRef\": {\n \"appId\": \"\",\n \"resourceId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"catalogId\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{\n \"appEntitlementOwnerRefs\": null,\n \"appManagedStateBindingRef\": {\n \"appId\": \"\",\n \"resourceId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"catalogId\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", "options": { "raw": { "headerFamily": "json", @@ -4539,7 +5097,7 @@ "value": "application/json" } ], - "body": "{\n \"connectorView\": {\n \"appPath\": \"\",\n \"capabilitiesPath\": \"\",\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\",\n \"key_0\": 809\n },\n \"configUpdatedAt\": \"\",\n \"connectorApiVersion\": \"\",\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"downloadUrl\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {\n \"authEmail\": \"\",\n \"authorizedAt\": \"\"\n },\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": [\n \"\",\n \"\"\n ],\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_DISABLED\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": [\n \"\",\n \"\"\n ]\n },\n \"syncDisabledAt\": \"\",\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"updatedAt\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"usersPath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": true,\n \"key_1\": 407.1002305973659,\n \"key_2\": true\n },\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": 2513.530580303274,\n \"key_2\": \"string\",\n \"key_3\": 8060.7826606760955\n }\n ]\n}", + "body": "{\n \"connectorView\": {\n \"appPath\": \"\",\n \"capabilitiesPath\": \"\",\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": null,\n \"configUpdatedAt\": \"\",\n \"connectorApiVersion\": \"\",\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"downloadUrl\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {\n \"authEmail\": \"\",\n \"authorizedAt\": \"\"\n },\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": [\n \"\",\n \"\"\n ],\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_ERROR\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": null\n },\n \"syncDisabledAt\": \"\",\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"updatedAt\": \"\",\n \"userIds\": null\n },\n \"usersPath\": \"\"\n },\n \"expanded\": null\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -4562,7 +5120,7 @@ "description": "", "item": [ { - "id": "6fe0ef4a-cf18-4d74-a762-246f26c07392", + "id": "8a30d3ad-b929-4d52-ac1b-5943b280ff4a", "name": "Confirm Sync Valid", "request": { "name": "Confirm Sync Valid", @@ -4643,7 +5201,7 @@ }, "response": [ { - "id": "6bdba89a-b14e-49d9-81a0-081add6836fd", + "id": "805e768d-5d7e-43f9-82c4-7a85bff5214b", "name": "Empty response body. Status code indicates success.", "originalRequest": { "url": { @@ -4755,7 +5313,7 @@ "description": "", "item": [ { - "id": "48f51e24-86bd-41fa-9606-8a829bd52931", + "id": "c598ca7f-db2f-4f00-b3e9-50ffcf37a3c6", "name": "Get Credentials", "request": { "name": "Get Credentials", @@ -4823,7 +5381,7 @@ }, "response": [ { - "id": "c4504b64-589d-4777-862d-8460c483678b", + "id": "27f7cb66-2d05-4715-b08d-581cd8e89fea", "name": "ConnectorServiceGetCredentialsResponse is the response returned by the get method.", "originalRequest": { "url": { @@ -4899,7 +5457,7 @@ "value": "application/json" } ], - "body": "{\n \"credential\": {\n \"appId\": \"\",\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"credential\": {\n \"appId\": \"\",\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -4910,7 +5468,7 @@ } }, { - "id": "7ee612e3-90db-4c8b-9a27-74df3983352b", + "id": "30e53c0a-f355-46b9-ae57-e330b3a2691b", "name": "Revoke Credential", "request": { "name": "Revoke Credential", @@ -4991,7 +5549,7 @@ }, "response": [ { - "id": "68f99ca1-2466-46d8-9554-6c608c8d2b3b", + "id": "94472cc5-2934-4d7a-aa67-db21e561ebcc", "name": "Empty response body. Status code indicates success.", "originalRequest": { "url": { @@ -5099,12 +5657,12 @@ "description": "", "item": [ { - "id": "306cd768-5272-45ff-a1dd-be1b0a1faa78", + "id": "6d5897b8-19e7-4b77-8f0f-0279d173f5bf", "name": "Force Sync", "request": { "name": "Force Sync", "description": { - "content": "Trigger an immediate sync for a connector. The sync is queued and may not start instantly.", + "content": "Trigger an immediate sync for a connector. The sync is queued and may not start\n instantly. Poll the connector's sync_status (or GetConnector) for progress; an empty\n success response means the sync was accepted onto the queue, not that it has finished.", "type": "text/plain" }, "url": { @@ -5169,8 +5727,8 @@ }, "response": [ { - "id": "d5812b4d-3063-47a4-a4d9-0b8d943ea9da", - "name": "Empty response body. Status code indicates success.", + "id": "bf786bda-f9e9-49ee-8ce7-547bfe3536cb", + "name": "Empty response body. Status code indicates success. Poll the connector sync status\n for progress after ForceSync accepts the request.", "originalRequest": { "url": { "path": [ @@ -5260,16 +5818,16 @@ ] }, { - "name": "pause", + "name": "mcp_resources", "description": "", "item": [ { - "id": "6ed6e2c3-85f0-41b2-9240-28aa5f6f5f3f", - "name": "Pause Sync", + "id": "4c909637-fa71-4754-97ef-ee95ee5697e8", + "name": "List", "request": { - "name": "Pause Sync", + "name": "List", "description": { - "content": "Pause syncing and provisioning for a connector. No new syncs or grant/revoke operations will run until the connector is resumed.", + "content": "List returns the MCP resources discovered for a single (app_id,\n connector_id), paginated. To filter by kind or state, use Search.", "type": "text/plain" }, "url": { @@ -5280,12 +5838,31 @@ ":app_id", "connectors", ":connector_id", - "pause" + "mcp_resources" ], "host": [ "{{baseUrl}}" ], - "query": [], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], "variable": [ { "type": "any", @@ -5310,32 +5887,19 @@ ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "f2251162-1bb5-4fe3-a971-c781090e7bda", - "name": "Empty response body. Status code indicates success.", + "id": "06db6ae7-531a-4b82-94ee-fd298c206c1a", + "name": "MCPResourceServiceListResponse returns a list of MCP resources.", "originalRequest": { "url": { "path": [ @@ -5345,12 +5909,31 @@ ":app_id", "connectors", ":connector_id", - "pause" + "mcp_resources" ], "host": [ "{{baseUrl}}" ], - "query": [], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], "variable": [ { "disabled": false, @@ -5375,10 +5958,6 @@ ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -5392,17 +5971,8 @@ "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -5412,7 +5982,7 @@ "value": "application/json" } ], - "body": "{}", + "body": "{\n \"nextPageToken\": \"\",\n \"resources\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"discoveryHash\": \"\",\n \"entitlementActive\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"kind\": \"MCP_RESOURCE_KIND_UNSPECIFIED\",\n \"lastDiscoveredAt\": \"\",\n \"mimeType\": \"\",\n \"name\": \"\",\n \"state\": \"MCP_RESOURCE_STATE_PENDING_REVIEW\",\n \"title\": \"\",\n \"updatedAt\": \"\",\n \"uri\": \"\",\n \"uriTemplate\": \"\"\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"discoveryHash\": \"\",\n \"entitlementActive\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"kind\": \"MCP_RESOURCE_KIND_UNSPECIFIED\",\n \"lastDiscoveredAt\": \"\",\n \"mimeType\": \"\",\n \"name\": \"\",\n \"state\": \"MCP_RESOURCE_STATE_APPROVED\",\n \"title\": \"\",\n \"updatedAt\": \"\",\n \"uri\": \"\",\n \"uriTemplate\": \"\"\n }\n ]\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -5421,87 +5991,20 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "resume", - "description": "", - "item": [ + }, { - "id": "fa9253ea-5005-48cf-8a83-4e56d5d6103c", - "name": "Resume Sync", - "request": { - "name": "Resume Sync", - "description": { - "content": "Resume syncing and provisioning for a connector that was previously paused. Clears the paused state and triggers a new sync.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "connectors", - ":connector_id", - "resume" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "connector_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "name": "{id}", + "description": "", + "item": [ { - "id": "fa022796-d4d3-43d4-8347-2627bd2732c7", - "name": "Empty response body. Status code indicates success.", - "originalRequest": { + "id": "f1351f38-dd79-4e3f-8a09-09df4a773d42", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get retrieves a single discovered MCP resource by app_id + connector_id +\n id, including its approval state, kind, URI or URI template, and bound\n app_entitlement_id.", + "type": "text/plain" + }, "url": { "path": [ "api", @@ -5510,7 +6013,8 @@ ":app_id", "connectors", ":connector_id", - "resume" + "mcp_resources", + ":id" ], "host": [ "{{baseUrl}}" @@ -5518,155 +6022,144 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" + } }, { + "type": "any", + "value": "", + "key": "connector_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, + } + }, + { "type": "any", "value": "", - "key": "connector_id" + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "fcdafefd-bf24-4173-84bd-bb45e8fa224f", + "name": "MCPResourceServiceGetResponse returns a single MCP resource.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "mcp_resources", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"resource\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"discoveryHash\": \"\",\n \"entitlementActive\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"kind\": \"MCP_RESOURCE_KIND_STATIC\",\n \"lastDiscoveredAt\": \"\",\n \"mimeType\": \"\",\n \"name\": \"\",\n \"state\": \"MCP_RESOURCE_STATE_PENDING_REVIEW\",\n \"title\": \"\",\n \"updatedAt\": \"\",\n \"uri\": \"\",\n \"uriTemplate\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "schedule", - "description": "", - "item": [ - { - "id": "f2c5b118-dad9-4dec-a492-cfc461f4de65", - "name": "Update Connector Schedule", - "request": { - "name": "Update Connector Schedule", - "description": { - "content": "Update the sync schedule for a connector.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "connectors", - ":connector_id", - "schedule" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "connector_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"cron\": {\n \"cronSpec\": \"\",\n \"timezone\": \"\"\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } }, - "auth": null - }, - "response": [ { - "id": "91bd1e14-06dc-4f58-8307-d17589779377", - "name": "Empty response body. Status code indicates success.", - "originalRequest": { + "id": "091dd528-97a4-4fed-a27f-e069dc7c242d", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update modifies a resource's lifecycle state via update_mask. Set\n resource.state = MCP_RESOURCE_STATE_APPROVED with update_mask \"state\" to\n move it out of PENDING_REVIEW (or DISABLED to block it). Resource metadata\n is discovery-owned and read-only. resource must include id, app_id, and\n connector_id.", + "type": "text/plain" + }, "url": { "path": [ "api", @@ -5675,7 +6168,8 @@ ":app_id", "connectors", ":connector_id", - "schedule" + "mcp_resources", + ":id" ], "host": [ "{{baseUrl}}" @@ -5683,24 +6177,34 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" + } }, { + "type": "any", + "value": "", + "key": "connector_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, + } + }, + { "type": "any", "value": "", - "key": "connector_id" + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } ] }, @@ -5712,69 +6216,26 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"cron\": {\n \"cronSpec\": \"\",\n \"timezone\": \"\"\n }\n}", + "raw": "{\n \"resource\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"discoveryHash\": \"\",\n \"id\": \"\",\n \"kind\": \"MCP_RESOURCE_KIND_STATIC\",\n \"lastDiscoveredAt\": \"\",\n \"mimeType\": \"\",\n \"name\": \"\",\n \"state\": \"MCP_RESOURCE_STATE_APPROVED\",\n \"title\": \"\",\n \"updatedAt\": \"\",\n \"uri\": \"\",\n \"uriTemplate\": \"\"\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "syncs", - "description": "", - "item": [ - { - "name": "{sync_id}", - "description": "", - "item": [ - { - "name": "download_url", - "description": "", - "item": [ + "response": [ { - "id": "73c85e5f-42c2-41ed-b035-d3de9fe5923a", - "name": "Get Connector Sync Download Url", - "request": { - "name": "Get Connector Sync Download Url", - "description": { - "content": "GetConnectorSyncDownloadURL generates a short-lived download URL for a completed connector sync artifact.", - "type": "text/plain" - }, + "id": "10baf6a2-d5a0-41eb-a51c-dea483e4afc9", + "name": "MCPResourceServiceUpdateResponse returns the updated MCP resource.", + "originalRequest": { "url": { "path": [ "api", @@ -5783,9 +6244,8 @@ ":app_id", "connectors", ":connector_id", - "syncs", - ":sync_id", - "download_url" + "mcp_resources", + ":id" ], "host": [ "{{baseUrl}}" @@ -5793,68 +6253,216 @@ "query": [], "variable": [ { - "type": "any", - "value": "", - "key": "app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - } - }, - { + }, "type": "any", "value": "", - "key": "connector_id", + "key": "app_id" + }, + { "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - } - }, - { + }, "type": "any", "value": "", - "key": "sync_id", + "key": "connector_id" + }, + { "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - } + }, + "type": "any", + "value": "", + "key": "id" } ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], - "method": "GET", - "body": {}, - "auth": null + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"resource\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"discoveryHash\": \"\",\n \"id\": \"\",\n \"kind\": \"MCP_RESOURCE_KIND_STATIC\",\n \"lastDiscoveredAt\": \"\",\n \"mimeType\": \"\",\n \"name\": \"\",\n \"state\": \"MCP_RESOURCE_STATE_APPROVED\",\n \"title\": \"\",\n \"updatedAt\": \"\",\n \"uri\": \"\",\n \"uriTemplate\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "fc2e2ffa-c961-4089-a460-b8743cb2d12d", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"resource\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"discoveryHash\": \"\",\n \"entitlementActive\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"kind\": \"MCP_RESOURCE_KIND_UNSPECIFIED\",\n \"lastDiscoveredAt\": \"\",\n \"mimeType\": \"\",\n \"name\": \"\",\n \"state\": \"MCP_RESOURCE_STATE_DISABLED\",\n \"title\": \"\",\n \"updatedAt\": \"\",\n \"uri\": \"\",\n \"uriTemplate\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "history", + "description": "", + "item": [ + { + "id": "a8f3aba7-19cd-44e0-891d-d9b16fc8959f", + "name": "List History", + "request": { + "name": "List History", + "description": { + "content": "ListHistory returns the change history (newest first) for a single MCP\n resource — each entry is a snapshot plus who/when metadata.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "mcp_resources", + ":id", + "history" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "033343e9-5bcd-4ecb-846a-1cf0838f32f9", + "name": "MCPResourceServiceListHistoryResponse returns MCP resource history entries.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", "connectors", ":connector_id", - "syncs", - ":sync_id", - "download_url" + "mcp_resources", + ":id", + "history" ], "host": [ "{{baseUrl}}" ], - "query": [], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], "variable": [ { "disabled": false, @@ -5884,7 +6492,7 @@ }, "type": "any", "value": "", - "key": "sync_id" + "key": "id" } ] }, @@ -5913,7 +6521,7 @@ "value": "application/json" } ], - "body": "{\n \"downloadUrl\": \"\"\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -5926,88 +6534,189 @@ ] } ] - } - ] - } - ] - }, - { - "name": "{id}", - "description": "", - "item": [ - { - "id": "0523f77d-9111-4d67-b8c4-576c15f90412", - "name": "Delete", - "request": { - "name": "Delete", - "description": { - "content": "Delete a connector.", - "type": "text/plain" }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "connectors", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, + { + "name": "search", + "description": "", + "item": [ { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "id": "9146fdf4-b755-4771-93cf-8e60455ee5ac", + "name": "Search", + "request": { + "name": "Search", + "description": { + "content": "Search returns a connector's MCP resources filtered by kind, state, or\n text query. Filter on MCP_RESOURCE_STATE_PENDING_REVIEW to find resources\n awaiting approval, then approve them with Update.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "mcp_resources", + "search" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"includeGrantStatus\": \"\",\n \"kindFilter\": [\n \"MCP_RESOURCE_KIND_UNSPECIFIED\",\n \"MCP_RESOURCE_KIND_TEMPLATE\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"sortBy\": \"MCP_RESOURCE_SORT_BY_UNSPECIFIED\",\n \"sortDirection\": \"SORT_DIRECTION_ASC\",\n \"stateFilter\": [\n \"MCP_RESOURCE_STATE_PENDING_REVIEW\",\n \"MCP_RESOURCE_STATE_APPROVED\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "a075687a-a29b-4414-b9e5-1eb9b8cc8910", + "name": "MCPResourceServiceSearchResponse returns matching MCP resources.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "mcp_resources", + "search" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"includeGrantStatus\": \"\",\n \"kindFilter\": [\n \"MCP_RESOURCE_KIND_UNSPECIFIED\",\n \"MCP_RESOURCE_KIND_TEMPLATE\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"sortBy\": \"MCP_RESOURCE_SORT_BY_UNSPECIFIED\",\n \"sortDirection\": \"SORT_DIRECTION_ASC\",\n \"stateFilter\": [\n \"MCP_RESOURCE_STATE_PENDING_REVIEW\",\n \"MCP_RESOURCE_STATE_APPROVED\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"discoveryHash\": \"\",\n \"entitlementActive\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"kind\": \"MCP_RESOURCE_KIND_UNSPECIFIED\",\n \"lastDiscoveredAt\": \"\",\n \"mimeType\": \"\",\n \"name\": \"\",\n \"state\": \"MCP_RESOURCE_STATE_DISABLED\",\n \"title\": \"\",\n \"updatedAt\": \"\",\n \"uri\": \"\",\n \"uriTemplate\": \"\"\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"discoveryHash\": \"\",\n \"entitlementActive\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"kind\": \"MCP_RESOURCE_KIND_TEMPLATE\",\n \"lastDiscoveredAt\": \"\",\n \"mimeType\": \"\",\n \"name\": \"\",\n \"state\": \"MCP_RESOURCE_STATE_UNSPECIFIED\",\n \"title\": \"\",\n \"updatedAt\": \"\",\n \"uri\": \"\",\n \"uriTemplate\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } } ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + } + ] + }, + { + "name": "mcp_tools", + "description": "", + "item": [ { - "id": "205baa7b-d238-4778-82a2-bd08b31f8099", - "name": "Empty response body. Status code indicates success.", - "originalRequest": { + "id": "b7df69a8-703a-4225-9aac-2bce158d6d3c", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List returns the MCP tools discovered for a single (app_id, connector_id),\n paginated. To filter by state, classification, or visibility, use Search.", + "type": "text/plain" + }, "url": { "path": [ "api", @@ -6015,895 +6724,365 @@ "apps", ":app_id", "connectors", - ":id" + ":connector_id", + "mcp_tools" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [ + "query": [ { "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" }, - "type": "any", - "value": "", - "key": "app_id" + "key": "page_size", + "value": "" }, { "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { "type": "any", "value": "", - "key": "id" + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "0ba3eee4-a18a-4e15-9e61-dbc1eb63c21c", - "name": "Get", - "request": { - "name": "Get", - "description": { - "content": "Get a connector.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "connectors", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, + "response": [ { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "456f74a1-b40c-4f39-a84c-8230dacea62a", - "name": "The ConnectorServiceGetResponse message contains the connectorView, and an expand mask.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "connectors", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" + "id": "7c0d33b1-2d8a-4202-9c52-dd6d0f3f1647", + "name": "MCPToolServiceListResponse returns a list of MCP tools.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "mcp_tools" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + } + ] }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "header": [ + { + "key": "Accept", + "value": "application/json" }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"nextPageToken\": \"\",\n \"tools\": [\n {\n \"allowedClientTypes\": null,\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"classification\": \"TOOL_CLASSIFICATION_READ\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"defaultClassification\": \"TOOL_CLASSIFICATION_DESTRUCTIVE\",\n \"defaultDisplayName\": \"\",\n \"defaultVisibility\": \"TOOL_VISIBILITY_FEATURED\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"discoveryHash\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"inputSchemaJson\": \"\",\n \"lastCalledAt\": \"\",\n \"requestable\": \"\",\n \"requestableViaToolset\": \"\",\n \"state\": \"MCP_TOOL_STATE_DISABLED\",\n \"toolName\": \"\",\n \"updatedAt\": \"\",\n \"visibility\": \"TOOL_VISIBILITY_AVAILABLE\"\n },\n {\n \"allowedClientTypes\": [\n \"MCP_CLIENT_TYPE_PERSONAL\",\n \"MCP_CLIENT_TYPE_SHARED\"\n ],\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"classification\": \"TOOL_CLASSIFICATION_UNSPECIFIED\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"defaultClassification\": \"TOOL_CLASSIFICATION_DESTRUCTIVE\",\n \"defaultDisplayName\": \"\",\n \"defaultVisibility\": \"TOOL_VISIBILITY_UNSPECIFIED\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"discoveryHash\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"inputSchemaJson\": \"\",\n \"lastCalledAt\": \"\",\n \"requestable\": \"\",\n \"requestableViaToolset\": \"\",\n \"state\": \"MCP_TOOL_STATE_PENDING_REVIEW\",\n \"toolName\": \"\",\n \"updatedAt\": \"\",\n \"visibility\": \"TOOL_VISIBILITY_UNSPECIFIED\"\n }\n ]\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"connectorView\": {\n \"appPath\": \"\",\n \"capabilitiesPath\": \"\",\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\",\n \"key_0\": 1007,\n \"key_1\": false,\n \"key_2\": 9720\n },\n \"configUpdatedAt\": \"\",\n \"connectorApiVersion\": \"\",\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"downloadUrl\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {\n \"authEmail\": \"\",\n \"authorizedAt\": \"\"\n },\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": [\n \"\",\n \"\"\n ],\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_DONE\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": [\n \"\",\n \"\"\n ]\n },\n \"syncDisabledAt\": \"\",\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"updatedAt\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"usersPath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 5670.0767612709615\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n }\n ]\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "63743698-9434-462f-a69c-75c466b6216a", - "name": "Update", - "request": { - "name": "Update", - "description": { - "content": "Update a connector.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "connectors", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": false\n },\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {},\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": [\n \"\",\n \"\"\n ],\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_RUNNING\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": [\n \"\",\n \"\"\n ]\n },\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } }, - "auth": null - }, - "response": [ { - "id": "fa695b57-e922-406f-91be-da458ac913da", - "name": "ConnectorServiceUpdateResponse is the response returned by the update method.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "connectors", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "name": "{id}", + "description": "", + "item": [ + { + "id": "800ead08-e9dd-4bf8-99d9-9fbc27d80837", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete soft-deletes an MCP tool. It reappears as PENDING_REVIEW if the\n connector rediscovers it on the next sync.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "mcp_tools", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" }, - "type": "any", - "value": "", - "key": "app_id" + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } }, + "auth": null + }, + "response": [ { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "id": "7de38c06-a1c2-4015-bd2a-bae4ced4c2cd", + "name": "MCPToolServiceDeleteResponse confirms deletion.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "mcp_tools", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, - "type": "any", - "value": "", - "key": "id" + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + { + "id": "ddbe8944-1f9b-4f5a-ab63-974b0a309c15", + "name": "Get", + "request": { + "name": "Get", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "Get retrieves a single discovered MCP tool by app_id + connector_id + id,\n including its approval state, classification, visibility, input schema, and\n bound app_entitlement_id.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": false\n },\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {},\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": [\n \"\",\n \"\"\n ],\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_RUNNING\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": [\n \"\",\n \"\"\n ]\n },\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"connectorView\": {\n \"appPath\": \"\",\n \"capabilitiesPath\": \"\",\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\",\n \"key_0\": 9492.636450514861\n },\n \"configUpdatedAt\": \"\",\n \"connectorApiVersion\": \"\",\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"downloadUrl\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {\n \"authEmail\": \"\",\n \"authorizedAt\": \"\"\n },\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": [\n \"\",\n \"\"\n ],\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_DISABLED\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": [\n \"\",\n \"\"\n ]\n },\n \"syncDisabledAt\": \"\",\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"updatedAt\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"usersPath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\"\n },\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": 7777.956164277244\n }\n ]\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "create", - "description": "", - "item": [ - { - "id": "a0b4d357-f926-447b-8f19-3dbcf35176ca", - "name": "Create", - "request": { - "name": "Create", - "description": { - "content": "Create a configured connector.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "connectors", - "create" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\",\n \"key_0\": 6003,\n \"key_1\": 5089.204092021851,\n \"key_2\": 1541.223784952055\n },\n \"description\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "5bfa54bd-e328-4358-8b76-edba56c22587", - "name": "The ConnectorServiceCreateResponse is the response returned from creating a connector.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "connectors", - "create" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\",\n \"key_0\": 6003,\n \"key_1\": 5089.204092021851,\n \"key_2\": 1541.223784952055\n },\n \"description\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"connectorView\": {\n \"appPath\": \"\",\n \"capabilitiesPath\": \"\",\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\",\n \"key_0\": 809\n },\n \"configUpdatedAt\": \"\",\n \"connectorApiVersion\": \"\",\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"downloadUrl\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {\n \"authEmail\": \"\",\n \"authorizedAt\": \"\"\n },\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": [\n \"\",\n \"\"\n ],\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_DISABLED\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": [\n \"\",\n \"\"\n ]\n },\n \"syncDisabledAt\": \"\",\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"updatedAt\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"usersPath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": true,\n \"key_1\": 407.1002305973659,\n \"key_2\": true\n },\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": 2513.530580303274,\n \"key_2\": \"string\",\n \"key_3\": 8060.7826606760955\n }\n ]\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - }, - { - "name": "entitlements", - "description": "", - "item": [ - { - "id": "adba34db-398a-49a3-a660-4f682871c832", - "name": "List", - "request": { - "name": "List", - "description": { - "content": "List app entitlements associated with an app.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "5e7b563b-9c73-4427-b9ce-90fa377b7108", - "name": "The ListAppEntitlementsResponse message contains a list of results and a nextPageToken if applicable.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": true\n },\n {\n \"@type\": \"\",\n \"key_0\": 9815,\n \"key_1\": \"string\"\n }\n ],\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 8211.696429567206,\n \"key_2\": 5442\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\",\n \"key_4\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n }\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 4082\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": 1323\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "9f7c308d-730b-4e9d-aaa7-d2102a008b7f", - "name": "Create", - "request": { - "name": "Create", - "description": { - "content": "Create a new app entitlement for an app. This is used to define a custom permission, group, or role within the app.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"alias\": \"\",\n \"appEntitlementOwnerIds\": [\n \"\",\n \"\"\n ],\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"description\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"grantPolicyId\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": 7428.171336166251,\n \"key_2\": 8589\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "9c4df8f8-30de-4306-8e7f-53ba1108fda4", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"alias\": \"\",\n \"appEntitlementOwnerIds\": [\n \"\",\n \"\"\n ],\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"description\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"grantPolicyId\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": 7428.171336166251,\n \"key_2\": 8589\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"appEntitlementView\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 7029.9408443412\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n }\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 6430.255319595535\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": \"string\"\n }\n ]\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{app_entitlement_id}", - "description": "", - "item": [ - { - "name": "add-manual-user", - "description": "", - "item": [ - { - "id": "32d54ece-34c0-4dff-8f05-6dd59fd67f6d", - "name": "Add Manually Managed Members", - "request": { - "name": "Add Manually Managed Members", - "description": { - "content": "Add users as manually managed members of an app entitlement. These memberships are tracked directly by ConductorOne rather than synced from the app.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - ":app_entitlement_id", - "add-manual-user" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "app_entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "a3d9326a-f5ac-46a7-96df-93f2dda45ae3", - "name": "Successful response", - "originalRequest": { "url": { "path": [ "api", "v1", "apps", ":app_id", - "entitlements", - ":app_entitlement_id", - "add-manual-user" + "connectors", + ":connector_id", + "mcp_tools", + ":id" ], "host": [ "{{baseUrl}}" @@ -6911,451 +7090,51 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" + } }, { + "type": "any", + "value": "", + "key": "connector_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, + } + }, + { "type": "any", "value": "", - "key": "app_entitlement_id" + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"bulkActionId\": \"\",\n \"failedUsersErrorMap\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "automation", - "description": "", - "item": [ - { - "id": "1a94a2ee-0af5-49fd-b857-2077a6749f28", - "name": "Delete Automation", - "request": { - "name": "Delete Automation", - "description": { - "content": "Delete the automation rule for an app entitlement.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - ":app_entitlement_id", - "automation" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "app_entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "c8be0cff-78d4-4990-be95-e9147a1f4b11", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - ":app_entitlement_id", - "automation" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_entitlement_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "53343668-0293-4397-bba2-3f470071325c", - "name": "Get Automation", - "request": { - "name": "Get Automation", - "description": { - "content": "Get the automation rule for an app entitlement.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - ":app_entitlement_id", - "automation" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "app_entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "82830631-739e-4c02-8dc9-97c636d3a84c", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - ":app_entitlement_id", - "automation" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_entitlement_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"AppEntitlementAutomation\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"basic\": {\n \"expression\": \"\"\n },\n \"cel\": {\n \"expression\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"lastRunStatus\": {\n \"errorMessage\": \"\",\n \"lastCompletedAt\": \"\",\n \"status\": \"APP_ENTITLEMENT_AUTOMATION_RUN_STATUS_UNSPECIFIED\"\n },\n \"managedByRequestCatalogId\": \"\",\n \"none\": {},\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "create", - "description": "", - "item": [ - { - "id": "8f6ed94f-bdcc-4acb-86d5-7a0f15567641", - "name": "Create Automation", - "request": { - "name": "Create Automation", - "description": { - "content": "Create an automation rule for an app entitlement. Automations automatically provision or revoke access based on defined conditions.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - ":app_entitlement_id", - "automation", - "create" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "app_entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"automation\": {\n \"basic\": {\n \"expression\": \"\"\n },\n \"cel\": {\n \"expression\": \"\"\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"lastRunStatus\": {},\n \"none\": {}\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "e431e47c-cc5f-473f-a26f-7c724cd2152b", - "name": "Successful response", + "id": "7633fa6f-2ada-4807-a5e9-88847aff13ee", + "name": "MCPToolServiceGetResponse returns a single MCP tool.", "originalRequest": { "url": { "path": [ @@ -7363,10 +7142,10 @@ "v1", "apps", ":app_id", - "entitlements", - ":app_entitlement_id", - "automation", - "create" + "connectors", + ":connector_id", + "mcp_tools", + ":id" ], "host": [ "{{baseUrl}}" @@ -7391,15 +7170,21 @@ }, "type": "any", "value": "", - "key": "app_entitlement_id" + "key": "connector_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" } ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -7413,17 +7198,8 @@ "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"automation\": {\n \"basic\": {\n \"expression\": \"\"\n },\n \"cel\": {\n \"expression\": \"\"\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"lastRunStatus\": {},\n \"none\": {}\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -7433,7 +7209,7 @@ "value": "application/json" } ], - "body": "{\n \"automation\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"basic\": {\n \"expression\": \"\"\n },\n \"cel\": {\n \"expression\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"lastRunStatus\": {\n \"errorMessage\": \"\",\n \"lastCompletedAt\": \"\",\n \"status\": \"APP_ENTITLEMENT_AUTOMATION_RUN_STATUS_IN_PROGRESS\"\n },\n \"managedByRequestCatalogId\": \"\",\n \"none\": {},\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"tool\": {\n \"allowedClientTypes\": [\n \"MCP_CLIENT_TYPE_UNSPECIFIED\",\n \"MCP_CLIENT_TYPE_EPHEMERAL\"\n ],\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"classification\": \"TOOL_CLASSIFICATION_SENSITIVE\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"defaultClassification\": \"TOOL_CLASSIFICATION_SENSITIVE\",\n \"defaultDisplayName\": \"\",\n \"defaultVisibility\": \"TOOL_VISIBILITY_UNSPECIFIED\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"discoveryHash\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"inputSchemaJson\": \"\",\n \"lastCalledAt\": \"\",\n \"requestable\": \"\",\n \"requestableViaToolset\": \"\",\n \"state\": \"MCP_TOOL_STATE_APPROVED\",\n \"toolName\": \"\",\n \"updatedAt\": \"\",\n \"visibility\": \"TOOL_VISIBILITY_UNSPECIFIED\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -7442,20 +7218,14 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "exclusions", - "description": "", - "item": [ + }, { - "id": "29159ac9-b47c-4e2c-8737-644db9fe8967", - "name": "Remove Automation Exclusion", + "id": "918c83b2-69f1-4fc9-a68a-0fb85f22a3e4", + "name": "Update", "request": { - "name": "Remove Automation Exclusion", + "name": "Update", "description": { - "content": "Remove users from the automation exclusion list for an app entitlement.", + "content": "Update modifies an MCP tool's admin-editable fields via update_mask. This\n is how a tool is approved: set tool.state = MCP_TOOL_STATE_APPROVED with\n update_mask \"state\" to move it out of PENDING_REVIEW (or DISABLED to block\n it). Editable paths: display_name, description, classification, state,\n allowed_client_types, visibility. tool must include id, app_id, connector_id.", "type": "text/plain" }, "url": { @@ -7464,10 +7234,10 @@ "v1", "apps", ":app_id", - "entitlements", - ":app_entitlement_id", - "automation", - "exclusions" + "connectors", + ":connector_id", + "mcp_tools", + ":id" ], "host": [ "{{baseUrl}}" @@ -7487,7 +7257,17 @@ { "type": "any", "value": "", - "key": "app_entitlement_id", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", "disabled": false, "description": { "content": "(Required) ", @@ -7506,10 +7286,10 @@ "value": "application/json" } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{\n \"tool\": {\n \"allowedClientTypes\": [\n \"MCP_CLIENT_TYPE_UNSPECIFIED\",\n \"MCP_CLIENT_TYPE_UNSPECIFIED\"\n ],\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"classification\": \"TOOL_CLASSIFICATION_DESTRUCTIVE\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"defaultClassification\": \"TOOL_CLASSIFICATION_WRITE\",\n \"defaultDisplayName\": \"\",\n \"defaultVisibility\": \"TOOL_VISIBILITY_AVAILABLE\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"discoveryHash\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"inputSchemaJson\": \"\",\n \"state\": \"MCP_TOOL_STATE_PENDING_REVIEW\",\n \"toolName\": \"\",\n \"updatedAt\": \"\",\n \"visibility\": \"TOOL_VISIBILITY_UNSPECIFIED\"\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -7521,8 +7301,8 @@ }, "response": [ { - "id": "36b44b76-f50f-4c3f-911e-f6b29ad5662e", - "name": "Empty response with a status code indicating success.", + "id": "63af4d04-5965-4210-aeba-658d3c900d2c", + "name": "MCPToolServiceUpdateResponse returns the updated MCP tool.", "originalRequest": { "url": { "path": [ @@ -7530,10 +7310,10 @@ "v1", "apps", ":app_id", - "entitlements", - ":app_entitlement_id", - "automation", - "exclusions" + "connectors", + ":connector_id", + "mcp_tools", + ":id" ], "host": [ "{{baseUrl}}" @@ -7558,7 +7338,17 @@ }, "type": "any", "value": "", - "key": "app_entitlement_id" + "key": "connector_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" } ] }, @@ -7580,10 +7370,10 @@ "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{\n \"tool\": {\n \"allowedClientTypes\": [\n \"MCP_CLIENT_TYPE_UNSPECIFIED\",\n \"MCP_CLIENT_TYPE_UNSPECIFIED\"\n ],\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"classification\": \"TOOL_CLASSIFICATION_DESTRUCTIVE\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"defaultClassification\": \"TOOL_CLASSIFICATION_WRITE\",\n \"defaultDisplayName\": \"\",\n \"defaultVisibility\": \"TOOL_VISIBILITY_AVAILABLE\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"discoveryHash\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"inputSchemaJson\": \"\",\n \"state\": \"MCP_TOOL_STATE_PENDING_REVIEW\",\n \"toolName\": \"\",\n \"updatedAt\": \"\",\n \"visibility\": \"TOOL_VISIBILITY_UNSPECIFIED\"\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -7600,7 +7390,7 @@ "value": "application/json" } ], - "body": "{}", + "body": "{\n \"tool\": {\n \"allowedClientTypes\": [\n \"MCP_CLIENT_TYPE_UNSPECIFIED\",\n \"MCP_CLIENT_TYPE_PERSONAL\"\n ],\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"classification\": \"TOOL_CLASSIFICATION_SENSITIVE\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"defaultClassification\": \"TOOL_CLASSIFICATION_UNSPECIFIED\",\n \"defaultDisplayName\": \"\",\n \"defaultVisibility\": \"TOOL_VISIBILITY_AVAILABLE\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"discoveryHash\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"inputSchemaJson\": \"\",\n \"lastCalledAt\": \"\",\n \"requestable\": \"\",\n \"requestableViaToolset\": \"\",\n \"state\": \"MCP_TOOL_STATE_PENDING_REVIEW\",\n \"toolName\": \"\",\n \"updatedAt\": \"\",\n \"visibility\": \"TOOL_VISIBILITY_FEATURED\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -7611,314 +7401,219 @@ } }, { - "id": "25d95401-1c35-40fa-8cad-7f6b3458d016", - "name": "List Automation Exclusions", - "request": { - "name": "List Automation Exclusions", - "description": { - "content": "List users who are excluded from the automation rule for an app entitlement.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - ":app_entitlement_id", - "automation", - "exclusions" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } + "name": "history", + "description": "", + "item": [ + { + "id": "6f6b32b5-a5c0-449c-96dd-86325067949f", + "name": "List History", + "request": { + "name": "List History", + "description": { + "content": "ListHistory returns the change history (newest first) for a single MCP\n tool — each entry is a snapshot plus who/when metadata.", + "type": "text/plain" }, - { - "type": "any", - "value": "", - "key": "app_entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "334f4ba9-91a5-4b13-9374-584595a8aec7", - "name": "Successful response", - "originalRequest": { "url": { "path": [ "api", "v1", "apps", ":app_id", - "entitlements", - ":app_entitlement_id", - "automation", - "exclusions" + "connectors", + ":connector_id", + "mcp_tools", + ":id", + "history" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [ + "query": [ { "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" }, - "type": "any", - "value": "", - "key": "app_id" + "key": "page_size", + "value": "" }, { "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" }, - "type": "any", - "value": "", - "key": "app_entitlement_id" + "key": "page_token", + "value": "" } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": {\n \"key_0\": 4370.675747671273\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_SERVICE\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": {\n \"key_0\": 4086,\n \"key_1\": 4320.725017881062\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "8dcff364-3705-4576-8707-f393fd29a988", - "name": "Add Automation Exclusion", - "request": { - "name": "Add Automation Exclusion", - "description": { - "content": "Add users to the automation exclusion list for an app entitlement. Excluded users are not affected by the automation rule.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - ":app_entitlement_id", - "automation", - "exclusions" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "app_entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "82cf4243-81fb-40b2-a66c-bdd27bab49af", - "name": "Empty response with a status code indicating success.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - ":app_entitlement_id", - "automation", - "exclusions" - ], - "host": [ - "{{baseUrl}}" ], - "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" + } }, { + "type": "any", + "value": "", + "key": "connector_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, + } + }, + { "type": "any", "value": "", - "key": "app_entitlement_id" + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "ce3f28df-8ebc-4f3c-a84b-f2e986b7ae8d", + "name": "MCPToolServiceListHistoryResponse returns MCP tool history entries.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "mcp_tools", + ":id", + "history" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"metadata\": {\n \"actor\": {\n \"kind\": \"ACTOR_KIND_SUPPORT\",\n \"userId\": \"\"\n },\n \"annotations\": null,\n \"changeKind\": \"CHANGE_KIND_UNSPECIFIED\",\n \"createdAt\": \"\",\n \"id\": \"\",\n \"syslogEventId\": \"\",\n \"traceId\": \"\"\n },\n \"snapshot\": {\n \"allowedClientTypes\": null,\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"classification\": \"TOOL_CLASSIFICATION_UNSPECIFIED\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"defaultClassification\": \"TOOL_CLASSIFICATION_DANGEROUS\",\n \"defaultDisplayName\": \"\",\n \"defaultVisibility\": \"TOOL_VISIBILITY_FEATURED\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"discoveryHash\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"inputSchemaJson\": \"\",\n \"lastCalledAt\": \"\",\n \"requestable\": \"\",\n \"requestableViaToolset\": \"\",\n \"state\": \"MCP_TOOL_STATE_APPROVED\",\n \"toolName\": \"\",\n \"updatedAt\": \"\",\n \"visibility\": \"TOOL_VISIBILITY_UNSPECIFIED\"\n }\n },\n {\n \"metadata\": {\n \"actor\": {\n \"kind\": \"ACTOR_KIND_SLACK\",\n \"userId\": \"\"\n },\n \"annotations\": [\n {\n \"displayLabel\": \"\",\n \"displayUrl\": \"\",\n \"displayValue\": \"\",\n \"key\": \"\",\n \"kind\": \"ANNOTATION_KIND_REASON\",\n \"rawValue\": \"\"\n },\n {\n \"displayLabel\": \"\",\n \"displayUrl\": \"\",\n \"displayValue\": \"\",\n \"key\": \"\",\n \"kind\": \"ANNOTATION_KIND_GENERIC\",\n \"rawValue\": \"\"\n }\n ],\n \"changeKind\": \"CHANGE_KIND_PUT\",\n \"createdAt\": \"\",\n \"id\": \"\",\n \"syslogEventId\": \"\",\n \"traceId\": \"\"\n },\n \"snapshot\": {\n \"allowedClientTypes\": [\n \"MCP_CLIENT_TYPE_EPHEMERAL\",\n \"MCP_CLIENT_TYPE_PERSONAL\"\n ],\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"classification\": \"TOOL_CLASSIFICATION_READ\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"defaultClassification\": \"TOOL_CLASSIFICATION_READ\",\n \"defaultDisplayName\": \"\",\n \"defaultVisibility\": \"TOOL_VISIBILITY_AVAILABLE\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"discoveryHash\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"inputSchemaJson\": \"\",\n \"lastCalledAt\": \"\",\n \"requestable\": \"\",\n \"requestableViaToolset\": \"\",\n \"state\": \"MCP_TOOL_STATE_UNSPECIFIED\",\n \"toolName\": \"\",\n \"updatedAt\": \"\",\n \"visibility\": \"TOOL_VISIBILITY_AVAILABLE\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] } ] }, { - "name": "update", + "name": "search", "description": "", "item": [ { - "id": "5d86a360-34ae-44e3-ab8b-753fc4af7b64", - "name": "Update Automation", + "id": "ed85b0fa-e4d4-414b-8c1e-90c7b0c9b5bf", + "name": "Search", "request": { - "name": "Update Automation", + "name": "Search", "description": { - "content": "Update the automation rule for an app entitlement, including its display name, description, and conditions.", + "content": "Search returns a connector's MCP tools filtered by state, classification,\n visibility, access-profile binding, or text query. Filter on\n MCP_TOOL_STATE_PENDING_REVIEW to find tools awaiting approval, then approve\n them with Update.", "type": "text/plain" }, "url": { @@ -7927,10 +7622,10 @@ "v1", "apps", ":app_id", - "entitlements", - ":app_entitlement_id", - "automation", - "update" + "connectors", + ":connector_id", + "mcp_tools", + "search" ], "host": [ "{{baseUrl}}" @@ -7950,7 +7645,7 @@ { "type": "any", "value": "", - "key": "app_entitlement_id", + "key": "connector_id", "disabled": false, "description": { "content": "(Required) ", @@ -7972,7 +7667,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"basic\": {\n \"expression\": \"\"\n },\n \"cel\": {\n \"expression\": \"\"\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"none\": {},\n \"updateMask\": \"\"\n}", + "raw": "{\n \"accessProfileId\": \"\",\n \"accessProfileIds\": [\n \"\",\n \"\"\n ],\n \"classificationFilter\": [\n \"TOOL_CLASSIFICATION_SENSITIVE\",\n \"TOOL_CLASSIFICATION_READ\"\n ],\n \"excludeAccessProfileId\": \"\",\n \"excludeAccessProfileIds\": null,\n \"includeLastCalledAt\": \"\",\n \"includeRequestable\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"id\": \"\"\n }\n ],\n \"sortBy\": \"MCP_TOOL_SORT_BY_UNSPECIFIED\",\n \"sortDirection\": \"SORT_DIRECTION_DESC\",\n \"stateFilter\": [\n \"MCP_TOOL_STATE_PENDING_REVIEW\",\n \"MCP_TOOL_STATE_UNSPECIFIED\"\n ],\n \"visibilityFilter\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -7984,8 +7679,8 @@ }, "response": [ { - "id": "f5740d6a-2c4f-4281-9178-3cbe9e49e2b3", - "name": "Successful response", + "id": "b360cddd-9898-4345-80bf-f9a8746aa6ae", + "name": "MCPToolServiceSearchResponse returns matching MCP tools.", "originalRequest": { "url": { "path": [ @@ -7993,10 +7688,10 @@ "v1", "apps", ":app_id", - "entitlements", - ":app_entitlement_id", - "automation", - "update" + "connectors", + ":connector_id", + "mcp_tools", + "search" ], "host": [ "{{baseUrl}}" @@ -8021,7 +7716,7 @@ }, "type": "any", "value": "", - "key": "app_entitlement_id" + "key": "connector_id" } ] }, @@ -8046,7 +7741,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"basic\": {\n \"expression\": \"\"\n },\n \"cel\": {\n \"expression\": \"\"\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"none\": {},\n \"updateMask\": \"\"\n}", + "raw": "{\n \"accessProfileId\": \"\",\n \"accessProfileIds\": [\n \"\",\n \"\"\n ],\n \"classificationFilter\": [\n \"TOOL_CLASSIFICATION_SENSITIVE\",\n \"TOOL_CLASSIFICATION_READ\"\n ],\n \"excludeAccessProfileId\": \"\",\n \"excludeAccessProfileIds\": null,\n \"includeLastCalledAt\": \"\",\n \"includeRequestable\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"id\": \"\"\n }\n ],\n \"sortBy\": \"MCP_TOOL_SORT_BY_UNSPECIFIED\",\n \"sortDirection\": \"SORT_DIRECTION_DESC\",\n \"stateFilter\": [\n \"MCP_TOOL_STATE_PENDING_REVIEW\",\n \"MCP_TOOL_STATE_UNSPECIFIED\"\n ],\n \"visibilityFilter\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -8063,7 +7758,7 @@ "value": "application/json" } ], - "body": "{\n \"AppEntitlementAutomation\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"basic\": {\n \"expression\": \"\"\n },\n \"cel\": {\n \"expression\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"lastRunStatus\": {\n \"errorMessage\": \"\",\n \"lastCompletedAt\": \"\",\n \"status\": \"APP_ENTITLEMENT_AUTOMATION_RUN_STATUS_IN_PROGRESS\"\n },\n \"managedByRequestCatalogId\": \"\",\n \"none\": {},\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -8078,16 +7773,16 @@ ] }, { - "name": "grants", + "name": "mcp_toolsets", "description": "", "item": [ { - "id": "b9a346e6-a357-41f9-8a7c-206e41977348", - "name": "Search App Entitlements With Expired", + "id": "2feb0bad-8065-4be2-bd2d-f6f9110ed748", + "name": "List", "request": { - "name": "Search App Entitlements With Expired", + "name": "List", "description": { - "content": "Search app entitlements, include app users, users, expires, discovered.", + "content": "List returns the MCP toolsets (access profiles) defined for a single\n (app_id, connector_id), paginated.", "type": "text/plain" }, "url": { @@ -8096,9 +7791,9 @@ "v1", "apps", ":app_id", - "entitlements", - ":app_entitlement_id", - "grants" + "connectors", + ":connector_id", + "mcp_toolsets" ], "host": [ "{{baseUrl}}" @@ -8137,7 +7832,7 @@ { "type": "any", "value": "", - "key": "app_entitlement_id", + "key": "connector_id", "disabled": false, "description": { "content": "(Required) ", @@ -8158,8 +7853,8 @@ }, "response": [ { - "id": "5f808a92-ca51-49d0-8f5c-7ee49338a6ec", - "name": "The SearchAppEntitlementsWithExpiredResponse message contains a list of results and a nextPageToken if applicable.", + "id": "47703210-266f-437c-b325-1b9380c7ccea", + "name": "MCPAccessProfileServiceListResponse returns a list of MCP access profiles.", "originalRequest": { "url": { "path": [ @@ -8167,9 +7862,9 @@ "v1", "apps", ":app_id", - "entitlements", - ":app_entitlement_id", - "grants" + "connectors", + ":connector_id", + "mcp_toolsets" ], "host": [ "{{baseUrl}}" @@ -8213,7 +7908,7 @@ }, "type": "any", "value": "", - "key": "app_entitlement_id" + "key": "connector_id" } ] }, @@ -8242,7 +7937,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUser\": {\n \"appId\": \"\",\n \"appUserType\": \"APP_USER_TYPE_USER\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"identityUserId\": \"\",\n \"isExternal\": \"\",\n \"profile\": {\n \"key_0\": 7499\n },\n \"status\": {\n \"details\": \"\",\n \"status\": \"STATUS_UNSPECIFIED\"\n },\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"appUserId\": \"\",\n \"discovered\": \"\",\n \"expired\": \"\",\n \"grantReasons\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"derivedIdData\": \"\",\n \"derivedIdType\": \"\",\n \"reasonExpiresAt\": \"\",\n \"referenceStrength\": \"GRANT_REASON_REFERENCE_STRENGTH_UNSPECIFIED\",\n \"updatedAt\": \"\"\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"derivedIdData\": \"\",\n \"derivedIdType\": \"\",\n \"reasonExpiresAt\": \"\",\n \"referenceStrength\": \"GRANT_REASON_REFERENCE_STRENGTH_WEAK\",\n \"updatedAt\": \"\"\n }\n ],\n \"grantSources\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"ENABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": {\n \"key_0\": false,\n \"key_1\": false,\n \"key_2\": false\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUser\": {\n \"appId\": \"\",\n \"appUserType\": \"APP_USER_TYPE_USER\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"identityUserId\": \"\",\n \"isExternal\": \"\",\n \"profile\": {\n \"key_0\": 4385.537594182629,\n \"key_1\": 152,\n \"key_2\": 7617,\n \"key_3\": 2127.334292071936\n },\n \"status\": {\n \"details\": \"\",\n \"status\": \"STATUS_DELETED\"\n },\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"appUserId\": \"\",\n \"discovered\": \"\",\n \"expired\": \"\",\n \"grantReasons\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"derivedIdData\": \"\",\n \"derivedIdType\": \"\",\n \"reasonExpiresAt\": \"\",\n \"referenceStrength\": \"GRANT_REASON_REFERENCE_STRENGTH_WEAK\",\n \"updatedAt\": \"\"\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"derivedIdData\": \"\",\n \"derivedIdType\": \"\",\n \"reasonExpiresAt\": \"\",\n \"referenceStrength\": \"GRANT_REASON_REFERENCE_STRENGTH_WEAK\",\n \"updatedAt\": \"\"\n }\n ],\n \"grantSources\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": 3196.3451701342383,\n \"key_1\": \"string\",\n \"key_2\": false,\n \"key_3\": false\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"nextPageToken\": \"\",\n \"profiles\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"connectorDisplayName\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"requestable\": \"\",\n \"toolCount\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"connectorDisplayName\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"requestable\": \"\",\n \"toolCount\": \"\",\n \"updatedAt\": \"\"\n }\n ]\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -8251,20 +7946,14 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "remove-membership", - "description": "", - "item": [ + }, { - "id": "024d3778-52e4-4222-aff9-1796842c0164", - "name": "Remove Entitlement Membership", + "id": "a0394ca8-fa4c-4538-806b-d021e1374fcb", + "name": "Create", "request": { - "name": "Remove Entitlement Membership", + "name": "Create", "description": { - "content": "Remove a user from a ConductorOne-managed entitlement (catalog, group, or profile type). For access profiles, this creates a revoke task to deprovision access.", + "content": "Create creates a new MCP toolset (access profile) under a connector. The\n backend also provisions a backing AppEntitlement that users request in\n order to be granted the toolset's tools.", "type": "text/plain" }, "url": { @@ -8273,9 +7962,9 @@ "v1", "apps", ":app_id", - "entitlements", - ":app_entitlement_id", - "remove-membership" + "connectors", + ":connector_id", + "mcp_toolsets" ], "host": [ "{{baseUrl}}" @@ -8295,7 +7984,7 @@ { "type": "any", "value": "", - "key": "app_entitlement_id", + "key": "connector_id", "disabled": false, "description": { "content": "(Required) ", @@ -8314,10 +8003,10 @@ "value": "application/json" } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appUserId\": \"\"\n}", + "raw": "{\n \"description\": \"\",\n \"displayName\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -8329,8 +8018,8 @@ }, "response": [ { - "id": "538de69c-12a5-4ef7-8faf-0089247d0ce7", - "name": "Successful response", + "id": "17a62b77-acc9-42d7-b7af-cf71db74522d", + "name": "MCPAccessProfileServiceCreateResponse returns the created MCP access profile.", "originalRequest": { "url": { "path": [ @@ -8338,9 +8027,9 @@ "v1", "apps", ":app_id", - "entitlements", - ":app_entitlement_id", - "remove-membership" + "connectors", + ":connector_id", + "mcp_toolsets" ], "host": [ "{{baseUrl}}" @@ -8365,7 +8054,7 @@ }, "type": "any", "value": "", - "key": "app_entitlement_id" + "key": "connector_id" } ] }, @@ -8387,10 +8076,10 @@ "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appUserId\": \"\"\n}", + "raw": "{\n \"description\": \"\",\n \"displayName\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -8407,7 +8096,7 @@ "value": "application/json" } ], - "body": "{\n \"revokeTaskId\": \"\"\n}", + "body": "{\n \"profile\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"connectorDisplayName\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"requestable\": \"\",\n \"toolCount\": \"\",\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -8416,200 +8105,23 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "users", - "description": "", - "item": [ + }, { - "id": "a82c0d65-e223-4eae-891e-651dca806c43", - "name": "List Users", - "request": { - "name": "List Users", - "description": { - "content": "List the users, as AppEntitlementUsers objects, of an app entitlement.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - ":app_entitlement_id", - "users" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "app_entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + "name": "{access_profile_id}", + "description": "", + "item": [ { - "id": "fe9a6197-3d4e-4e68-b739-dce4e4c14c91", - "name": "The ListAppEntitlementUsersResponse message contains a list of results and a nextPageToken if applicable.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - ":app_entitlement_id", - "users" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_entitlement_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 5451.793528508338,\n \"key_1\": false\n },\n {\n \"@type\": \"\",\n \"key_0\": 2394.621249419395\n }\n ],\n \"list\": [\n {\n \"appEntitlementUserBindingCreatedAt\": \"\",\n \"appEntitlementUserBindingDeprovisionAt\": \"\",\n \"appUser\": {\n \"appPath\": \"\",\n \"appUser\": {\n \"appId\": \"\",\n \"appUserType\": \"APP_USER_TYPE_UNSPECIFIED\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"identityUserId\": \"\",\n \"isExternal\": \"\",\n \"profile\": {\n \"key_0\": 3989.2955735508617,\n \"key_1\": \"string\"\n },\n \"status\": {\n \"details\": \"\",\n \"status\": \"STATUS_DISABLED\"\n },\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"identityUserPath\": \"\",\n \"lastUsagePath\": \"\"\n },\n \"grantSources\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"originatingTicketId\": \"\"\n },\n {\n \"appEntitlementUserBindingCreatedAt\": \"\",\n \"appEntitlementUserBindingDeprovisionAt\": \"\",\n \"appUser\": {\n \"appPath\": \"\",\n \"appUser\": {\n \"appId\": \"\",\n \"appUserType\": \"APP_USER_TYPE_UNSPECIFIED\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"identityUserId\": \"\",\n \"isExternal\": \"\",\n \"profile\": {\n \"key_0\": false,\n \"key_1\": \"string\",\n \"key_2\": 569\n },\n \"status\": {\n \"details\": \"\",\n \"status\": \"STATUS_UNSPECIFIED\"\n },\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"identityUserPath\": \"\",\n \"lastUsagePath\": \"\"\n },\n \"grantSources\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"originatingTicketId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{app_user_id}", - "description": "", - "item": [ - { - "name": "remove-grant-duration", - "description": "", - "item": [ - { - "id": "7db7ad69-9b5b-4190-8b32-ac559d1139b6", - "name": "Remove Grant Duration", - "request": { - "name": "Remove Grant Duration", - "description": { - "content": "Remove the expiration time from a grant, converting it to an indefinite (standing) grant.", - "type": "text/plain" + "name": "tool_bindings", + "description": "", + "item": [ + { + "id": "ae04189d-28cf-4acf-9371-f9bc4414eabe", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List returns the tool bindings for a single toolset (access profile) —\n i.e. which MCP tools belong to the toolset — paginated.", + "type": "text/plain" }, "url": { "path": [ @@ -8617,16 +8129,35 @@ "v1", "apps", ":app_id", - "entitlements", - ":app_entitlement_id", - "users", - ":app_user_id", - "remove-grant-duration" + "connectors", + ":connector_id", + "mcp_toolsets", + ":access_profile_id", + "tool_bindings" ], "host": [ "{{baseUrl}}" ], - "query": [], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], "variable": [ { "type": "any", @@ -8641,7 +8172,7 @@ { "type": "any", "value": "", - "key": "app_entitlement_id", + "key": "connector_id", "disabled": false, "description": { "content": "(Required) ", @@ -8651,7 +8182,7 @@ { "type": "any", "value": "", - "key": "app_user_id", + "key": "access_profile_id", "disabled": false, "description": { "content": "(Required) ", @@ -8661,32 +8192,19 @@ ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "a9d4b94a-4753-4f83-9343-e688481b44b4", - "name": "The response message for removing the expiration time from a grant.", + "id": "f8641604-6dfa-4e8a-a0ba-b7b4a57a9f8d", + "name": "MCPAccessProfileToolBindingServiceListResponse returns tool bindings.", "originalRequest": { "url": { "path": [ @@ -8694,16 +8212,35 @@ "v1", "apps", ":app_id", - "entitlements", - ":app_entitlement_id", - "users", - ":app_user_id", - "remove-grant-duration" + "connectors", + ":connector_id", + "mcp_toolsets", + ":access_profile_id", + "tool_bindings" ], "host": [ "{{baseUrl}}" ], - "query": [], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], "variable": [ { "disabled": false, @@ -8723,7 +8260,7 @@ }, "type": "any", "value": "", - "key": "app_entitlement_id" + "key": "connector_id" }, { "disabled": false, @@ -8733,15 +8270,11 @@ }, "type": "any", "value": "", - "key": "app_user_id" + "key": "access_profile_id" } ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -8755,17 +8288,8 @@ "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -8775,7 +8299,7 @@ "value": "application/json" } ], - "body": "{\n \"binding\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionAt\": \"\",\n \"grantSources\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n }\n}", + "body": "{\n \"bindings\": [\n {\n \"accessProfileId\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"mcpToolId\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"accessProfileId\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"mcpToolId\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -8784,20 +8308,14 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "update-grant-duration", - "description": "", - "item": [ + }, { - "id": "fcce0c5e-05eb-446a-910c-d7571fa366d2", - "name": "Update Grant Duration", + "id": "33582e34-737b-4164-9802-d2d9778950d7", + "name": "Create Bindings", "request": { - "name": "Update Grant Duration", + "name": "Create Bindings", "description": { - "content": "Update the expiration time of an existing grant, changing when automatic revocation will occur.", + "content": "CreateBindings adds one or more MCP tools (mcp_tool_ids) to a toolset.", "type": "text/plain" }, "url": { @@ -8806,11 +8324,11 @@ "v1", "apps", ":app_id", - "entitlements", - ":app_entitlement_id", - "users", - ":app_user_id", - "update-grant-duration" + "connectors", + ":connector_id", + "mcp_toolsets", + ":access_profile_id", + "tool_bindings" ], "host": [ "{{baseUrl}}" @@ -8830,7 +8348,7 @@ { "type": "any", "value": "", - "key": "app_entitlement_id", + "key": "connector_id", "disabled": false, "description": { "content": "(Required) ", @@ -8840,7 +8358,7 @@ { "type": "any", "value": "", - "key": "app_user_id", + "key": "access_profile_id", "disabled": false, "description": { "content": "(Required) ", @@ -8862,7 +8380,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"newDeprovisionAt\": \"\"\n}", + "raw": "{\n \"mcpToolIds\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -8874,8 +8392,8 @@ }, "response": [ { - "id": "c68fa166-0946-4144-9343-836d18b96064", - "name": "The response message for updating the duration of a grant.", + "id": "f3e8e03e-3d0f-437b-ad2d-bf3e98112948", + "name": "MCPAccessProfileToolBindingServiceCreateResponse returns created bindings.", "originalRequest": { "url": { "path": [ @@ -8883,11 +8401,11 @@ "v1", "apps", ":app_id", - "entitlements", - ":app_entitlement_id", - "users", - ":app_user_id", - "update-grant-duration" + "connectors", + ":connector_id", + "mcp_toolsets", + ":access_profile_id", + "tool_bindings" ], "host": [ "{{baseUrl}}" @@ -8912,7 +8430,7 @@ }, "type": "any", "value": "", - "key": "app_entitlement_id" + "key": "connector_id" }, { "disabled": false, @@ -8922,7 +8440,7 @@ }, "type": "any", "value": "", - "key": "app_user_id" + "key": "access_profile_id" } ] }, @@ -8947,7 +8465,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"newDeprovisionAt\": \"\"\n}", + "raw": "{\n \"mcpToolIds\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -8964,7 +8482,7 @@ "value": "application/json" } ], - "body": "{\n \"binding\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionAt\": \"\",\n \"grantSources\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n }\n}", + "body": "{\n \"bindings\": null\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -8973,138 +8491,277 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - } - ] - }, - { - "name": "{identity_user_id}", - "description": "", - "item": [ - { - "name": "grants", - "description": "", - "item": [ + }, { - "id": "0d605612-2e8e-40f0-b5e5-c2664f3c5d16", - "name": "List App Users For Identity With Grant", - "request": { - "name": "List App Users For Identity With Grant", - "description": { - "content": "Returns a list of app users for the identity in the app. If that app user also has a grant to the entitlement from the request, data about the grant is also returned. It will always return ALL app users for this identity, but only SOME may have grant data.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - ":app_entitlement_id", - "users", - ":identity_user_id", - "grants" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } + "name": "delete", + "description": "", + "item": [ + { + "id": "6e07a886-c8a7-4822-b49b-3aacf34fe236", + "name": "Delete Bindings", + "request": { + "name": "Delete Bindings", + "description": { + "content": "DeleteBindings removes one or more MCP tools (mcp_tool_ids) from a toolset.\n Uses a POST .../delete action route because the tool IDs travel in the\n request body, which HTTP DELETE does not reliably support.", + "type": "text/plain" }, - { - "type": "any", - "value": "", - "key": "app_entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "mcp_toolsets", + ":access_profile_id", + "tool_bindings", + "delete" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "access_profile_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"mcpToolIds\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } } }, + "auth": null + }, + "response": [ { - "type": "any", - "value": "", - "key": "identity_user_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } + "id": "c6164f2d-292a-4f0a-944c-59b2ce678ff5", + "name": "MCPAccessProfileToolBindingServiceDeleteResponse confirms deletion.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "mcp_toolsets", + ":access_profile_id", + "tool_bindings", + "delete" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "access_profile_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"mcpToolIds\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + } + ] + }, + { + "name": "history", + "description": "", + "item": [ { - "id": "53071be2-a282-40f7-80d6-6bd5f88fccb0", - "name": "Successful response", - "originalRequest": { + "id": "2961cae4-fe51-4522-a7c1-d66df5c2a376", + "name": "List Tools By Profile History", + "request": { + "name": "List Tools By Profile History", + "description": { + "content": "ListToolsByProfileHistory returns the transactional history of\n tools bound to (app, connector, access_profile). Newest first.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", "apps", ":app_id", - "entitlements", - ":app_entitlement_id", - "users", - ":identity_user_id", - "grants" + "connectors", + ":connector_id", + "mcp_toolsets", + ":access_profile_id", + "tool_bindings", + "history" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [ + "query": [ { "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" }, - "type": "any", - "value": "", - "key": "app_id" + "key": "page_size", + "value": "" }, { "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { "type": "any", "value": "", - "key": "app_entitlement_id" + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } }, { + "type": "any", + "value": "", + "key": "connector_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, + } + }, + { "type": "any", "value": "", - "key": "identity_user_id" + "key": "access_profile_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } ] }, @@ -9112,123 +8769,150 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], "method": "GET", - "body": {} + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "c6d4e2a7-66f2-46af-a220-99edf5199340", + "name": "Contains a page of change-history entries for the tools bound to one toolset\n sorted newest first.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "mcp_toolsets", + ":access_profile_id", + "tool_bindings", + "history" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "access_profile_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"items\": [\n {\n \"changeKind\": \"LIST_CHANGE_KIND_REMOVED\",\n \"listIndex\": \"\"\n },\n {\n \"changeKind\": \"LIST_CHANGE_KIND_ADDED\",\n \"listIndex\": \"\"\n }\n ],\n \"metadata\": {\n \"actor\": {\n \"kind\": \"ACTOR_KIND_SLACK\",\n \"userId\": \"\"\n },\n \"annotations\": null,\n \"createdAt\": \"\",\n \"id\": \"\",\n \"syslogEventId\": \"\",\n \"traceId\": \"\"\n }\n },\n {\n \"items\": null,\n \"metadata\": {\n \"actor\": {\n \"kind\": \"ACTOR_KIND_UNSPECIFIED\",\n \"userId\": \"\"\n },\n \"annotations\": [\n {\n \"displayLabel\": \"\",\n \"displayUrl\": \"\",\n \"displayValue\": \"\",\n \"key\": \"\",\n \"kind\": \"ANNOTATION_KIND_BATCH\",\n \"rawValue\": \"\"\n },\n {\n \"displayLabel\": \"\",\n \"displayUrl\": \"\",\n \"displayValue\": \"\",\n \"key\": \"\",\n \"kind\": \"ANNOTATION_KIND_GENERIC\",\n \"rawValue\": \"\"\n }\n ],\n \"createdAt\": \"\",\n \"id\": \"\",\n \"syslogEventId\": \"\",\n \"traceId\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"bindings\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionAt\": \"\",\n \"grantSources\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionAt\": \"\",\n \"grantSources\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n }\n ]\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] } ] } ] - } - ] - } - ] - }, - { - "name": "{entitlement_id}", - "description": "", - "item": [ - { - "name": "ownerids", - "description": "", - "item": [ + }, { - "id": "1c900ee1-b033-406a-8166-43ad565d7596", - "name": "List Owner I Ds", - "request": { - "name": "List Owner I Ds", - "description": { - "content": "ListUserIDs lists owner IDs for a given app entitlement.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - ":entitlement_id", - "ownerids" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + "name": "{id}", + "description": "", + "item": [ { - "id": "09920714-9e88-4e14-be6f-68e75fb68549", - "name": "The response message for listing app entitlement owners IDs.", - "originalRequest": { + "id": "29d31009-b062-4757-a431-3ad44d589d2b", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete soft-deletes a toolset (access profile) and cascades to its tool\n bindings and backing entitlement.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", "apps", ":app_id", - "entitlements", - ":entitlement_id", - "ownerids" + "connectors", + ":connector_id", + "mcp_toolsets", + ":id" ], "host": [ "{{baseUrl}}" @@ -9236,151 +8920,180 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" + } }, { + "type": "any", + "value": "", + "key": "connector_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, + } + }, + { "type": "any", "value": "", - "key": "entitlement_id" + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } ] }, "header": [ { - "key": "Accept", + "key": "Content-Type", "value": "application/json" }, { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " + "key": "Accept", + "value": "application/json" } ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "owners", - "description": "", - "item": [ - { - "id": "595d9858-c57f-4c3b-83e5-81ec34b2768e", - "name": "Delete", - "request": { - "name": "Delete", - "description": { - "content": "Delete deletes the owners from a given app entitlement.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - ":entitlement_id", - "owners" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } } }, - { - "type": "any", - "value": "", - "key": "entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" + "auth": null }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + "response": [ + { + "id": "b7e283c4-c247-4fb8-ab98-3e9406c5d007", + "name": "MCPAccessProfileServiceDeleteResponse confirms deletion.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "mcp_toolsets", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } }, - "auth": null - }, - "response": [ { - "id": "2682ca9e-020d-42f4-9e88-8768d1febf99", - "name": "the empty response message for deleting app entitlement owners.", - "originalRequest": { + "id": "0fd3bec5-8c50-4050-aa2c-c59b7f516047", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get retrieves a single MCP toolset (access profile) by app_id +\n connector_id + id, including its display name, description, linked\n app_entitlement_id, and bound tool count.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", "apps", ":app_id", - "entitlements", - ":entitlement_id", - "owners" + "connectors", + ":connector_id", + "mcp_toolsets", + ":id" ], "host": [ "{{baseUrl}}" @@ -9388,117 +9101,347 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" + } }, { + "type": "any", + "value": "", + "key": "connector_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, + } + }, + { "type": "any", "value": "", - "key": "entitlement_id" + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "7d3a267f-6e77-4073-acbb-2fdcfbb2784a", - "name": "List", - "request": { - "name": "List", - "description": { - "content": "List owners for a given app entitlement.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - ":entitlement_id", - "owners" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ + "response": [ { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" + "id": "669942ca-e321-4f0c-b1c0-a952c73fc660", + "name": "MCPAccessProfileServiceGetResponse returns a single MCP access profile.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "mcp_toolsets", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} }, - "key": "page_size", - "value": "" + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"profile\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"connectorDisplayName\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"requestable\": \"\",\n \"toolCount\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "8aab066a-3ac8-419e-8a6c-d748d90db7d8", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update modifies a toolset's admin-editable fields via update_mask.\n Editable paths: display_name, description. profile must include id,\n app_id, and connector_id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "mcp_toolsets", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"profile\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"toolCount\": \"\",\n \"updatedAt\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } }, + "auth": null + }, + "response": [ { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" + "id": "ae78a378-66a9-485d-b786-e1e8a4667dd3", + "name": "MCPAccessProfileServiceUpdateResponse returns the updated MCP access profile.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "mcp_toolsets", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"profile\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"toolCount\": \"\",\n \"updatedAt\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, - "key": "page_token", - "value": "" + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"profile\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"connectorDisplayName\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"requestable\": \"\",\n \"toolCount\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "pause", + "description": "", + "item": [ + { + "id": "53d788e4-50ef-4148-a495-817012a6f8d0", + "name": "Pause Sync", + "request": { + "name": "Pause Sync", + "description": { + "content": "Pause syncing and provisioning for a connector. No new syncs or grant/revoke operations will run until the connector is resumed.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "pause" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], "variable": [ { "type": "any", @@ -9513,7 +9456,7 @@ { "type": "any", "value": "", - "key": "entitlement_id", + "key": "connector_id", "disabled": false, "description": { "content": "(Required) ", @@ -9523,19 +9466,32 @@ ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "bbbf46c2-b2de-490e-9990-e24fcf5fd6cc", - "name": "The response message for listing app entitlement owners.", + "id": "486e6374-6eb1-496f-b368-e585d872f849", + "name": "Empty response body. Status code indicates success.", "originalRequest": { "url": { "path": [ @@ -9543,33 +9499,14 @@ "v1", "apps", ":app_id", - "entitlements", - ":entitlement_id", - "owners" + "connectors", + ":connector_id", + "pause" ], "host": [ "{{baseUrl}}" ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], + "query": [], "variable": [ { "disabled": false, @@ -9589,11 +9526,15 @@ }, "type": "any", "value": "", - "key": "entitlement_id" + "key": "connector_id" } ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -9607,8 +9548,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -9618,7 +9568,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": {\n \"key_0\": 8373,\n \"key_1\": 906\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_SERVICE\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": {\n \"key_0\": false\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_AGENT\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{}", "cookie": [], "_postman_previewlanguage": "json" } @@ -9627,14 +9577,20 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "resume", + "description": "", + "item": [ { - "id": "8bc371f2-96c0-4dea-9b81-d1989480559b", - "name": "Add", + "id": "2ffb7145-3ee1-4e1c-8aac-2109d50f06a8", + "name": "Resume Sync", "request": { - "name": "Add", + "name": "Resume Sync", "description": { - "content": "Add an owner to a given app entitlement.", + "content": "Resume syncing and provisioning for a connector that was previously paused. Clears the paused state and triggers a new sync.", "type": "text/plain" }, "url": { @@ -9643,9 +9599,9 @@ "v1", "apps", ":app_id", - "entitlements", - ":entitlement_id", - "owners" + "connectors", + ":connector_id", + "resume" ], "host": [ "{{baseUrl}}" @@ -9665,7 +9621,7 @@ { "type": "any", "value": "", - "key": "entitlement_id", + "key": "connector_id", "disabled": false, "description": { "content": "(Required) ", @@ -9687,7 +9643,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"userId\": \"\"\n}", + "raw": "{}", "options": { "raw": { "headerFamily": "json", @@ -9699,8 +9655,8 @@ }, "response": [ { - "id": "f185de94-9fd1-44b4-8e9a-d2bb094f7261", - "name": "The empty response message for adding an app entitlement owner.", + "id": "b1176972-3379-4980-83f4-e8c44e749da1", + "name": "Empty response body. Status code indicates success.", "originalRequest": { "url": { "path": [ @@ -9708,9 +9664,9 @@ "v1", "apps", ":app_id", - "entitlements", - ":entitlement_id", - "owners" + "connectors", + ":connector_id", + "resume" ], "host": [ "{{baseUrl}}" @@ -9735,7 +9691,7 @@ }, "type": "any", "value": "", - "key": "entitlement_id" + "key": "connector_id" } ] }, @@ -9760,7 +9716,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"userId\": \"\"\n}", + "raw": "{}", "options": { "raw": { "headerFamily": "json", @@ -9786,14 +9742,20 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "schedule", + "description": "", + "item": [ { - "id": "797e48f1-35ae-40cc-97c2-b9ac4fcb4e3b", - "name": "Set", + "id": "62da42dc-b526-4c46-b049-f5c0c4512b54", + "name": "Update Connector Schedule", "request": { - "name": "Set", + "name": "Update Connector Schedule", "description": { - "content": "Sets the owners for a given app entitlement to the specified list of users.", + "content": "Update the sync schedule for a connector.", "type": "text/plain" }, "url": { @@ -9802,9 +9764,9 @@ "v1", "apps", ":app_id", - "entitlements", - ":entitlement_id", - "owners" + "connectors", + ":connector_id", + "schedule" ], "host": [ "{{baseUrl}}" @@ -9824,7 +9786,7 @@ { "type": "any", "value": "", - "key": "entitlement_id", + "key": "connector_id", "disabled": false, "description": { "content": "(Required) ", @@ -9843,10 +9805,10 @@ "value": "application/json" } ], - "method": "PUT", + "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{\n \"cron\": {\n \"cronSpec\": \"\",\n \"timezone\": \"\"\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -9858,8 +9820,8 @@ }, "response": [ { - "id": "3c7b9ef1-bfbe-4e67-8db2-5bb66b7e447c", - "name": "The empty response message for setting the app entitlement owners.", + "id": "ef1fd92d-27b5-4104-a1f6-caf48c4369f4", + "name": "Empty response body. Status code indicates success.", "originalRequest": { "url": { "path": [ @@ -9867,9 +9829,9 @@ "v1", "apps", ":app_id", - "entitlements", - ":entitlement_id", - "owners" + "connectors", + ":connector_id", + "schedule" ], "host": [ "{{baseUrl}}" @@ -9894,7 +9856,7 @@ }, "type": "any", "value": "", - "key": "entitlement_id" + "key": "connector_id" } ] }, @@ -9916,10 +9878,10 @@ "value": "Bearer " } ], - "method": "PUT", + "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{\n \"cron\": {\n \"cronSpec\": \"\",\n \"timezone\": \"\"\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -9945,82 +9907,468 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "syncs", + "description": "", + "item": [ { - "name": "{user_id}", + "name": "{sync_id}", "description": "", "item": [ { - "id": "5d6945b9-d9be-4afc-b9c2-4a897eb57835", - "name": "Remove", - "request": { - "name": "Remove", - "description": { - "content": "Remove an owner from a given app entitlement.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - ":entitlement_id", - "owners", - ":user_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } + "name": "download_url", + "description": "", + "item": [ + { + "id": "44d8e8ed-30be-403f-b9bf-39f5800e3892", + "name": "Get Connector Sync Download Url", + "request": { + "name": "Get Connector Sync Download Url", + "description": { + "content": "GetConnectorSyncDownloadURL generates a short-lived download URL for a completed connector sync artifact.", + "type": "text/plain" }, - { - "type": "any", - "value": "", - "key": "user_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "syncs", + ":sync_id", + "download_url" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "sync_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "9a9566a8-a5fb-4156-8fde-9fa05d88d3d1", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "syncs", + ":sync_id", + "download_url" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "sync_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"downloadUrl\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + }, + { + "name": "tool_bindings", + "description": "", + "item": [ + { + "name": "by_tool", + "description": "", + "item": [ + { + "name": "{mcp_tool_id}", + "description": "", + "item": [ + { + "name": "history", + "description": "", + "item": [ + { + "id": "9b3abe07-5f2e-4b70-b5ec-451d371e84a2", + "name": "List Profiles By Tool History", + "request": { + "name": "List Profiles By Tool History", + "description": { + "content": "ListProfilesByToolHistory returns the transactional history of\n profiles bound to (app, connector, mcp_tool). Newest first.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "tool_bindings", + "by_tool", + ":mcp_tool_id", + "history" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "mcp_tool_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "00a1a9d0-4e8f-42fb-89ff-0bbff1d5deeb", + "name": "Contains a page of change-history entries for the toolsets one tool has belonged to,\n sorted newest first.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "tool_bindings", + "by_tool", + ":mcp_tool_id", + "history" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "mcp_tool_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + }, + { + "name": "by_tools", + "description": "", + "item": [ + { + "id": "de98ae3f-ac60-4a2c-850c-3ef2242eb7e6", + "name": "Get Access Profiles For Tools", + "request": { + "name": "Get Access Profiles For Tools", + "description": { + "content": "GetAccessProfilesForTools returns the access profiles bound to each\n of the given MCP tools, hydrated with display_name. Used by the tools\n list to render the \"toolset\" column for visible rows.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + ":connector_id", + "tool_bindings", + "by_tools" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", "value": "application/json" } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"mcpToolIds\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -10032,8 +10380,8 @@ }, "response": [ { - "id": "70f40e6c-85ed-4e99-ba05-2b158b2070e3", - "name": "The empty response message for removing an app entitlement owner.", + "id": "0fc9fc13-0af8-40a0-a1ee-af4b651b155b", + "name": "MCPAccessProfileToolBindingServiceGetAccessProfilesForToolsResponse returns\n access profiles grouped by MCP tool.", "originalRequest": { "url": { "path": [ @@ -10041,10 +10389,10 @@ "v1", "apps", ":app_id", - "entitlements", - ":entitlement_id", - "owners", - ":user_id" + "connectors", + ":connector_id", + "tool_bindings", + "by_tools" ], "host": [ "{{baseUrl}}" @@ -10069,17 +10417,7 @@ }, "type": "any", "value": "", - "key": "entitlement_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "user_id" + "key": "connector_id" } ] }, @@ -10101,10 +10439,10 @@ "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"mcpToolIds\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -10121,7 +10459,7 @@ "value": "application/json" } ], - "body": "{}", + "body": "{\n \"accessProfilesForTools\": [\n {\n \"accessProfiles\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"connectorDisplayName\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"requestable\": \"\",\n \"toolCount\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"connectorDisplayName\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"requestable\": \"\",\n \"toolCount\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"mcpToolId\": \"\"\n },\n {\n \"accessProfiles\": null,\n \"mcpToolId\": \"\"\n }\n ]\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -10142,12 +10480,12 @@ "description": "", "item": [ { - "id": "44ea42a3-d386-4a8e-b595-f734725e851b", + "id": "12db78a6-ca1f-4dfc-bc25-553f83e731e8", "name": "Delete", "request": { "name": "Delete", "description": { - "content": "Delete an app entitlement by ID.", + "content": "Delete a connector.", "type": "text/plain" }, "url": { @@ -10156,7 +10494,7 @@ "v1", "apps", ":app_id", - "entitlements", + "connectors", ":id" ], "host": [ @@ -10211,8 +10549,8 @@ }, "response": [ { - "id": "7eb5dd24-3b86-42f1-af43-5c372eac0c4b", - "name": "Successful response", + "id": "2939e88f-511f-4f6f-8c7f-143a17ea33f0", + "name": "Empty response body. Status code indicates success.", "originalRequest": { "url": { "path": [ @@ -10220,7 +10558,7 @@ "v1", "apps", ":app_id", - "entitlements", + "connectors", ":id" ], "host": [ @@ -10299,12 +10637,12 @@ } }, { - "id": "fc74ec11-910b-4551-a743-6cefa583552d", + "id": "58e13b7b-b9f9-49f0-a0f6-b63a32e7826b", "name": "Get", "request": { "name": "Get", "description": { - "content": "Get an app entitlement by ID.", + "content": "Get a connector.", "type": "text/plain" }, "url": { @@ -10313,7 +10651,7 @@ "v1", "apps", ":app_id", - "entitlements", + "connectors", ":id" ], "host": [ @@ -10355,8 +10693,8 @@ }, "response": [ { - "id": "c1eec5df-4cf4-4554-89c9-daaa9c8369b3", - "name": "The get app entitlement response returns an entitlement view containing paths in the expanded array for the objects expanded as indicated by the expand mask in the request.", + "id": "b7401d7a-2570-45be-b2ec-decb1549fae3", + "name": "The ConnectorServiceGetResponse message contains the connectorView, and an expand mask.", "originalRequest": { "url": { "path": [ @@ -10364,7 +10702,7 @@ "v1", "apps", ":app_id", - "entitlements", + "connectors", ":id" ], "host": [ @@ -10419,7 +10757,7 @@ "value": "application/json" } ], - "body": "{\n \"appEntitlementView\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": true,\n \"key_2\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 9577,\n \"key_1\": 6114.028894023429\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n }\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 9421.429555112765,\n \"key_1\": \"string\",\n \"key_2\": 2241.7722222151483\n },\n {\n \"@type\": \"\",\n \"key_0\": 982.5588593031509,\n \"key_1\": \"string\",\n \"key_2\": 7206\n }\n ]\n}", + "body": "{\n \"connectorView\": {\n \"appPath\": \"\",\n \"capabilitiesPath\": \"\",\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\",\n \"key_0\": 4639.418876482151\n },\n \"configUpdatedAt\": \"\",\n \"connectorApiVersion\": \"\",\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"downloadUrl\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {\n \"authEmail\": \"\",\n \"authorizedAt\": \"\"\n },\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": null,\n \"profileIgnoreList\": null,\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_UNSPECIFIED\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": null\n },\n \"syncDisabledAt\": \"\",\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"updatedAt\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"usersPath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": \"string\"\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n }\n ]\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -10430,12 +10768,12 @@ } }, { - "id": "0c9b91d7-7580-4bdc-93d7-8b149a3cf0b9", + "id": "90be6be7-df17-4faf-b9c7-8ef672320976", "name": "Update", "request": { "name": "Update", "description": { - "content": "Update an app entitlement by ID.", + "content": "Update a connector.", "type": "text/plain" }, "url": { @@ -10444,7 +10782,7 @@ "v1", "apps", ":app_id", - "entitlements", + "connectors", ":id" ], "host": [ @@ -10487,7 +10825,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"entitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"defaultValuesApplied\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": 6765.907097697305\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"grantPolicyId\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 9937,\n \"key_1\": 9402,\n \"key_2\": 1193,\n \"key_3\": 5816\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"userEditedMask\": \"\"\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"overrideAccessRequestsDefaults\": \"\",\n \"updateMask\": \"\"\n}", + "raw": "{\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\"\n },\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {},\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": [\n \"\",\n \"\"\n ],\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_UNSPECIFIED\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": [\n \"\",\n \"\"\n ]\n },\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"userIds\": null\n },\n \"expandMask\": {\n \"paths\": null\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -10499,8 +10837,8 @@ }, "response": [ { - "id": "1170b428-5bc8-4f8a-9765-e3546509eaf4", - "name": "Successful response", + "id": "41652633-20c5-42bf-ad56-c8b6972965f8", + "name": "ConnectorServiceUpdateResponse is the response returned by the update method.", "originalRequest": { "url": { "path": [ @@ -10508,7 +10846,7 @@ "v1", "apps", ":app_id", - "entitlements", + "connectors", ":id" ], "host": [ @@ -10559,7 +10897,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"entitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"defaultValuesApplied\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": 6765.907097697305\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"grantPolicyId\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 9937,\n \"key_1\": 9402,\n \"key_2\": 1193,\n \"key_3\": 5816\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"userEditedMask\": \"\"\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"overrideAccessRequestsDefaults\": \"\",\n \"updateMask\": \"\"\n}", + "raw": "{\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\"\n },\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {},\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": [\n \"\",\n \"\"\n ],\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_UNSPECIFIED\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": [\n \"\",\n \"\"\n ]\n },\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"userIds\": null\n },\n \"expandMask\": {\n \"paths\": null\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -10576,7 +10914,7 @@ "value": "application/json" } ], - "body": "{\n \"appEntitlementView\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 9964,\n \"key_1\": 2999.266636293314\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 9573,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n }\n },\n \"expanded\": [\n {\n \"@type\": \"\"\n },\n {\n \"@type\": \"\",\n \"key_0\": 8473.837870166955\n }\n ]\n}", + "body": "{\n \"connectorView\": {\n \"appPath\": \"\",\n \"capabilitiesPath\": \"\",\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": null,\n \"configUpdatedAt\": \"\",\n \"connectorApiVersion\": \"\",\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"downloadUrl\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {\n \"authEmail\": \"\",\n \"authorizedAt\": \"\"\n },\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": null,\n \"profileIgnoreList\": null,\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_RUNNING\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": [\n \"\",\n \"\"\n ]\n },\n \"syncDisabledAt\": \"\",\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"updatedAt\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"usersPath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": true\n },\n {\n \"@type\": \"\"\n }\n ]\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -10589,420 +10927,161 @@ ] }, { - "name": "resource_types", + "name": "create", "description": "", "item": [ { - "name": "{app_resource_type_id}", - "description": "", - "item": [ - { - "name": "resources", - "description": "", - "item": [ + "id": "ed560e16-1619-4561-8672-acb568e65496", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create a configured connector.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "connectors", + "create" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ { - "name": "{app_resource_id}", - "description": "", - "item": [ - { - "id": "fb1a93d4-f428-40d4-9ab1-d948a059bc13", - "name": "List For App Resource", - "request": { - "name": "List For App Resource", - "description": { - "content": "List app entitlements associated with an app resource.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - "resource_types", - ":app_resource_type_id", - "resources", - ":app_resource_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "app_resource_type_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "app_resource_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "b9d05834-6462-4a2e-9c62-a4f020403a72", - "name": "The ListAppEntitlementsResponse message contains a list of results and a nextPageToken if applicable.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - "resource_types", - ":app_resource_type_id", - "resources", - ":app_resource_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_resource_type_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_resource_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": true\n },\n {\n \"@type\": \"\",\n \"key_0\": 9815,\n \"key_1\": \"string\"\n }\n ],\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 8211.696429567206,\n \"key_2\": 5442\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\",\n \"key_4\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n }\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 4082\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": 1323\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } ] - } - ] - } - ] - }, - { - "name": "users", - "description": "", - "item": [ - { - "name": "{app_user_id}", - "description": "", - "item": [ + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\",\n \"key_0\": 7761.208447976742,\n \"key_1\": \"string\",\n \"key_2\": 2688.4231474759113,\n \"key_3\": 1027\n },\n \"description\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"userIds\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ { - "id": "b683d67c-5d88-4515-88b9-f19d5cc77898", - "name": "List For App User", - "request": { - "name": "List For App User", - "description": { - "content": "List app entitlements associated with an app user.", - "type": "text/plain" - }, + "id": "ef132926-b772-4a19-b035-6c482f417ab4", + "name": "The ConnectorServiceCreateResponse is the response returned from creating a connector.", + "originalRequest": { "url": { "path": [ "api", "v1", "apps", ":app_id", - "entitlements", - "users", - ":app_user_id" + "connectors", + "create" ], "host": [ "{{baseUrl}}" ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], + "query": [], "variable": [ { - "type": "any", - "value": "", - "key": "app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - } - }, - { + }, "type": "any", "value": "", - "key": "app_user_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } + "key": "app_id" } ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], - "method": "GET", - "body": {}, - "auth": null + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\",\n \"key_0\": 7761.208447976742,\n \"key_1\": \"string\",\n \"key_2\": 2688.4231474759113,\n \"key_3\": 1027\n },\n \"description\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"userIds\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "0842335a-8493-4645-b0fe-cbddce3d4b1d", - "name": "The ListAppEntitlementsResponse message contains a list of results and a nextPageToken if applicable.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "entitlements", - "users", - ":app_user_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_user_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": true\n },\n {\n \"@type\": \"\",\n \"key_0\": 9815,\n \"key_1\": \"string\"\n }\n ],\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 8211.696429567206,\n \"key_2\": 5442\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\",\n \"key_4\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n }\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 4082\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": 1323\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "body": "{\n \"connectorView\": {\n \"appPath\": \"\",\n \"capabilitiesPath\": \"\",\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": null,\n \"configUpdatedAt\": \"\",\n \"connectorApiVersion\": \"\",\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"downloadUrl\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {\n \"authEmail\": \"\",\n \"authorizedAt\": \"\"\n },\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": [\n \"\",\n \"\"\n ],\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_ERROR\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": null\n },\n \"syncDisabledAt\": \"\",\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"updatedAt\": \"\",\n \"userIds\": null\n },\n \"usersPath\": \"\"\n },\n \"expanded\": null\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } ] } ] }, { - "name": "ownerids", + "name": "entitlement_configuration_rules", "description": "", "item": [ { - "id": "528677ae-dd27-4a12-a44f-6605f5ac93fb", - "name": "List Owner I Ds", + "id": "9f7591e2-db7b-49e5-b1eb-7588e25c7465", + "name": "List App Entitlement Routing Rules", "request": { - "name": "List Owner I Ds", + "name": "List App Entitlement Routing Rules", "description": { - "content": "ListOwnerIDs lists owner IDs for a given app.", + "content": "Invokes the c1.api.app.v1.AppEntitlementRoutingRuleService.ListAppEntitlementRoutingRules method.", "type": "text/plain" }, "url": { @@ -11011,7 +11090,7 @@ "v1", "apps", ":app_id", - "ownerids" + "entitlement_configuration_rules" ], "host": [ "{{baseUrl}}" @@ -11042,8 +11121,8 @@ }, "response": [ { - "id": "bf70dc99-14a1-4079-8a29-227b9a7ccbfa", - "name": "The response message for listing app owners IDs.", + "id": "a58a5537-e015-4e45-84ac-0af2c5c0476f", + "name": "Successful response", "originalRequest": { "url": { "path": [ @@ -11051,7 +11130,7 @@ "v1", "apps", ":app_id", - "ownerids" + "entitlement_configuration_rules" ], "host": [ "{{baseUrl}}" @@ -11095,7 +11174,7 @@ "value": "application/json" } ], - "body": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "body": "{\n \"list\": [\n {\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"priority\": \"\",\n \"settings\": {\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"maxGrantDuration\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\"\n },\n \"updatedAt\": \"\"\n },\n {\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"priority\": \"\",\n \"settings\": {\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"maxGrantDuration\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\"\n },\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -11104,20 +11183,14 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "owners", - "description": "", - "item": [ + }, { - "id": "0f4ad08d-d9e4-4125-9f55-1607b76bcf5a", - "name": "Delete", + "id": "cbeae516-668d-4091-a6e4-cdd94d090b1a", + "name": "Create App Entitlement Routing Rule", "request": { - "name": "Delete", + "name": "Create App Entitlement Routing Rule", "description": { - "content": "Delete deletes the owners from a given app.", + "content": "Invokes the c1.api.app.v1.AppEntitlementRoutingRuleService.CreateAppEntitlementRoutingRule method.", "type": "text/plain" }, "url": { @@ -11126,7 +11199,7 @@ "v1", "apps", ":app_id", - "owners" + "entitlement_configuration_rules" ], "host": [ "{{baseUrl}}" @@ -11155,10 +11228,10 @@ "value": "application/json" } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{\n \"condition\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"priority\": \"\",\n \"settings\": {\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"maxGrantDuration\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\"\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -11170,8 +11243,8 @@ }, "response": [ { - "id": "ec509275-88b9-4d7c-8cc1-ee3e6b066445", - "name": "the empty response message for deleting app owners.", + "id": "0c07a713-4f83-466c-9f62-89cb2b6f1a4a", + "name": "Successful response", "originalRequest": { "url": { "path": [ @@ -11179,7 +11252,7 @@ "v1", "apps", ":app_id", - "owners" + "entitlement_configuration_rules" ], "host": [ "{{baseUrl}}" @@ -11216,10 +11289,10 @@ "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{\n \"condition\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"priority\": \"\",\n \"settings\": {\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"maxGrantDuration\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\"\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -11236,7 +11309,7 @@ "value": "application/json" } ], - "body": "{}", + "body": "{\n \"routingRule\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"priority\": \"\",\n \"settings\": {\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"maxGrantDuration\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -11247,221 +11320,183 @@ } }, { - "id": "daecb6f6-f816-40d3-9dd1-710f1f41cc38", - "name": "List", - "request": { - "name": "List", - "description": { - "content": "List owners of an app.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "owners" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + "name": "{id}", + "description": "", + "item": [ { - "id": "0aa3d4e2-c557-4a7b-a73e-28c44d4cf85b", - "name": "Successful response", - "originalRequest": { + "id": "7a40a06c-c388-46e8-84e0-e0770032230b", + "name": "Delete App Entitlement Routing Rule", + "request": { + "name": "Delete App Entitlement Routing Rule", + "description": { + "content": "Invokes the c1.api.app.v1.AppEntitlementRoutingRuleService.DeleteAppEntitlementRoutingRule method.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", "apps", ":app_id", - "owners" + "entitlement_configuration_rules", + ":id" ], "host": [ "{{baseUrl}}" ], - "query": [ + "query": [], + "variable": [ { + "type": "any", + "value": "", + "key": "app_id", "disabled": false, "description": { - "content": "", + "content": "(Required) ", "type": "text/plain" - }, - "key": "page_size", - "value": "" + } }, { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ - { + "type": "any", + "value": "", + "key": "id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" + } } ] }, "header": [ { - "key": "Accept", + "key": "Content-Type", "value": "application/json" }, { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " + "key": "Accept", + "value": "application/json" } ], - "method": "GET", - "body": {} + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "8bf2b4d5-c41e-4388-b4cf-179579e8a153", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlement_configuration_rules", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": {\n \"key_0\": true,\n \"key_1\": 328.0962282864608,\n \"key_2\": 7591\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": {\n \"key_0\": true\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "9298b261-058a-4f1d-9338-a1be3be72227", - "name": "Set", - "request": { - "name": "Set", - "description": { - "content": "Sets the owners for a given app to the specified list of users.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "owners" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "PUT", - "body": { - "mode": "raw", - "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } }, - "auth": null - }, - "response": [ { - "id": "4f0aad32-9c66-429e-8824-120e363ea640", - "name": "The empty response message for setting the app owners.", - "originalRequest": { + "id": "ac93c257-fd85-4c03-be11-262e8404d7be", + "name": "Get App Entitlement Routing Rule", + "request": { + "name": "Get App Entitlement Routing Rule", + "description": { + "content": "Invokes the c1.api.app.v1.AppEntitlementRoutingRuleService.GetAppEntitlementRoutingRule method.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", "apps", ":app_id", - "owners" + "entitlement_configuration_rules", + ":id" ], "host": [ "{{baseUrl}}" @@ -11469,76 +11504,120 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, + } + }, + { "type": "any", "value": "", - "key": "app_id" + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "PUT", - "body": { - "mode": "raw", - "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "b672d485-4e7c-470b-9b1e-7d23a4f9b7f4", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlement_configuration_rules", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"routingRule\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"priority\": \"\",\n \"settings\": {\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"maxGrantDuration\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{user_id}", - "description": "", - "item": [ + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, { - "id": "95e6b701-9943-4f59-9664-3a6bd93452e8", - "name": "Remove", + "id": "c0b5b89e-ca1c-4947-9b69-063f53f72edc", + "name": "Update App Entitlement Routing Rule", "request": { - "name": "Remove", + "name": "Update App Entitlement Routing Rule", "description": { - "content": "Removes an owner from an app.", + "content": "Update an existing app entitlement configuration rule. The app_id field is\n immutable; moving a rule between apps is modeled as delete + create.", "type": "text/plain" }, "url": { @@ -11547,8 +11626,8 @@ "v1", "apps", ":app_id", - "owners", - ":user_id" + "entitlement_configuration_rules", + ":id" ], "host": [ "{{baseUrl}}" @@ -11568,7 +11647,7 @@ { "type": "any", "value": "", - "key": "user_id", + "key": "id", "disabled": false, "description": { "content": "(Required) ", @@ -11587,10 +11666,10 @@ "value": "application/json" } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"condition\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"settings\": {\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"maxGrantDuration\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\"\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -11602,8 +11681,8 @@ }, "response": [ { - "id": "19c415ae-ff67-43e5-9307-8bc3f10a7756", - "name": "Empty response with a status code indicating success.", + "id": "9ebfec27-bb26-4a39-8a4a-b611b1037fc2", + "name": "Successful response", "originalRequest": { "url": { "path": [ @@ -11611,8 +11690,8 @@ "v1", "apps", ":app_id", - "owners", - ":user_id" + "entitlement_configuration_rules", + ":id" ], "host": [ "{{baseUrl}}" @@ -11637,7 +11716,7 @@ }, "type": "any", "value": "", - "key": "user_id" + "key": "id" } ] }, @@ -11659,10 +11738,10 @@ "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"condition\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"settings\": {\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"maxGrantDuration\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\"\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -11679,7 +11758,7 @@ "value": "application/json" } ], - "body": "{}", + "body": "{\n \"routingRule\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"priority\": \"\",\n \"settings\": {\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"maxGrantDuration\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -11688,14 +11767,20 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "reorder", + "description": "", + "item": [ { - "id": "fd3418c4-85e9-435b-90f2-583f02bd2bb4", - "name": "Add", + "id": "d4de5099-6df5-462c-8f81-7e7ee001b1e3", + "name": "Reorder App Entitlement Routing Rules", "request": { - "name": "Add", + "name": "Reorder App Entitlement Routing Rules", "description": { - "content": "Adds an owner to an app.", + "content": "Reorder all configuration rules for an app in a single call. The caller\n supplies the full ordered list of rule IDs; the server assigns dense\n priorities (1..N) in that order. The request must be a permutation of every\n active rule in the app — missing or extra IDs are rejected.", "type": "text/plain" }, "url": { @@ -11704,8 +11789,8 @@ "v1", "apps", ":app_id", - "owners", - ":user_id" + "entitlement_configuration_rules", + "reorder" ], "host": [ "{{baseUrl}}" @@ -11721,16 +11806,6 @@ "content": "(Required) ", "type": "text/plain" } - }, - { - "type": "any", - "value": "", - "key": "user_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } } ] }, @@ -11747,7 +11822,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"ruleIds\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -11759,8 +11834,8 @@ }, "response": [ { - "id": "a36beb04-0294-45cd-a2c7-5f2d0a5e7cb8", - "name": "Empty response with a status code indicating success", + "id": "c22a5b1d-99e5-4aff-8ef3-0b1eb55031b2", + "name": "Successful response", "originalRequest": { "url": { "path": [ @@ -11768,8 +11843,8 @@ "v1", "apps", ":app_id", - "owners", - ":user_id" + "entitlement_configuration_rules", + "reorder" ], "host": [ "{{baseUrl}}" @@ -11785,16 +11860,6 @@ "type": "any", "value": "", "key": "app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "user_id" } ] }, @@ -11819,7 +11884,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"ruleIds\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -11836,7 +11901,7 @@ "value": "application/json" } ], - "body": "{}", + "body": "{\n \"list\": [\n {\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"priority\": \"\",\n \"settings\": {\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"maxGrantDuration\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\"\n },\n \"updatedAt\": \"\"\n },\n {\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"priority\": \"\",\n \"settings\": {\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"maxGrantDuration\": \"\",\n \"requestPolicyId\": \"\",\n \"requestSchemaId\": \"\"\n },\n \"updatedAt\": \"\"\n }\n ]\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -11851,16 +11916,16 @@ ] }, { - "name": "report", + "name": "entitlements", "description": "", "item": [ { - "id": "825af381-1df5-4eb8-b7b7-f0ebd1f53e07", + "id": "ad0910f9-32ab-42be-bd31-36794ac75768", "name": "List", "request": { "name": "List", "description": { - "content": "Get a list of reports for the given app.", + "content": "List app entitlements associated with an app. Query parameters are\n accepted in snake_case (page_size, page_token, app_user_id) and, as a\n compatibility shim, their camelCase equivalents (pageSize, pageToken,\n appUserId).", "type": "text/plain" }, "url": { @@ -11869,12 +11934,21 @@ "v1", "apps", ":app_id", - "report" + "entitlements" ], "host": [ "{{baseUrl}}" ], "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "app_user_id", + "value": "" + }, { "disabled": false, "description": { @@ -11892,6 +11966,15 @@ }, "key": "page_token", "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "q", + "value": "" } ], "variable": [ @@ -11919,8 +12002,8 @@ }, "response": [ { - "id": "1e68667c-a376-4a5b-b264-e77debe39a4a", - "name": "The AppReportServiceListResponse message contains a list of results and a nextPageToken if applicable.", + "id": "d02a891c-2fa7-4dc8-acd5-0dc60754d1d5", + "name": "The ListAppEntitlementsResponse message contains a list of results and a nextPageToken if applicable.", "originalRequest": { "url": { "path": [ @@ -11928,12 +12011,21 @@ "v1", "apps", ":app_id", - "report" + "entitlements" ], "host": [ "{{baseUrl}}" ], "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "app_user_id", + "value": "" + }, { "disabled": false, "description": { @@ -11951,6 +12043,15 @@ }, "key": "page_token", "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "q", + "value": "" } ], "variable": [ @@ -11991,7 +12092,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"downloadUrl\": \"\",\n \"hashes\": {\n \"key_0\": \"\"\n },\n \"id\": \"\",\n \"state\": \"REPORT_STATE_OK\"\n },\n {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"downloadUrl\": \"\",\n \"hashes\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"id\": \"\",\n \"state\": \"REPORT_STATE_UNSPECIFIED\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 4349\n },\n {\n \"@type\": \"\",\n \"key_0\": 1444,\n \"key_1\": \"string\",\n \"key_2\": 6481\n }\n ],\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 8310.474717575822,\n \"key_2\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n }\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -12002,12 +12103,12 @@ } }, { - "id": "596d85c3-8481-4f5f-8cb5-39584e35cd3f", - "name": "Generate Report", + "id": "92320f9e-23a3-4459-b03b-8a4d4e527dd9", + "name": "Create", "request": { - "name": "Generate Report", + "name": "Create", "description": { - "content": "Generate a report for the given app.", + "content": "Create a new app entitlement for an app. This is used to define a custom permission, group, or role within the app.", "type": "text/plain" }, "url": { @@ -12016,7 +12117,7 @@ "v1", "apps", ":app_id", - "report" + "entitlements" ], "host": [ "{{baseUrl}}" @@ -12048,7 +12149,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"displayName\": \"\",\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appEntitlementOwnerIds\": [\n \"\",\n \"\"\n ],\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": null,\n \"description\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"grantPolicyId\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -12060,8 +12161,8 @@ }, "response": [ { - "id": "6c6e912c-80bc-419d-bb2f-bd88bce7aa6c", - "name": "Empty response body. Status code indicates success.", + "id": "a1ea87b1-f58d-4612-b8ae-ff68855bceff", + "name": "Successful response", "originalRequest": { "url": { "path": [ @@ -12069,7 +12170,7 @@ "v1", "apps", ":app_id", - "report" + "entitlements" ], "host": [ "{{baseUrl}}" @@ -12109,7 +12210,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"displayName\": \"\",\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appEntitlementOwnerIds\": [\n \"\",\n \"\"\n ],\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": null,\n \"description\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"grantPolicyId\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -12126,7 +12227,7 @@ "value": "application/json" } ], - "body": "{}", + "body": "{\n \"appEntitlementView\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n }\n },\n \"expanded\": null\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -12135,310 +12236,22 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "resource_types", - "description": "", - "item": [ + }, { - "id": "bc56db88-8933-4d70-8448-3bc073fab3ae", - "name": "List", - "request": { - "name": "List", - "description": { - "content": "List app resource types.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "resource_types" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + "name": "{app_entitlement_id}", + "description": "", + "item": [ { - "id": "6921a742-32b4-4bf6-b902-5bb6a2b3f51e", - "name": "The AppResourceTypeServiceListResponse message contains a list of results and a nextPageToken if applicable.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "resource_types" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 1149,\n \"key_1\": 5926,\n \"key_2\": 8091.637046382094\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": false\n }\n ],\n \"list\": [\n {\n \"appPath\": \"\",\n \"appResourceType\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"traitIds\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n }\n },\n {\n \"appPath\": \"\",\n \"appResourceType\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"traitIds\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "2f44cf82-4fec-44b5-88ba-860c6307526d", - "name": "Create Manually Managed Resource Type", - "request": { - "name": "Create Manually Managed Resource Type", - "description": { - "content": "Create a manually managed resource type that classifies resources within an app.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "resource_types" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"resourceType\": \"ROLE\",\n \"displayName\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "a5deb14b-cf00-41b9-bba1-e80d778ea6ba", - "name": "The response message for creating a manually managed resource type.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "resource_types" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"resourceType\": \"ROLE\",\n \"displayName\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"appResourceType\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"traitIds\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": false\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n }\n ]\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{app_resource_type_id}", - "description": "", - "item": [ - { - "name": "resources", + "name": "add-manual-user", "description": "", "item": [ { - "id": "6dec3063-b9af-4983-8cd4-c5a1919fcb33", - "name": "List", + "id": "bad0e2c5-9890-4e6f-886f-3a0b52153125", + "name": "Add Manually Managed Members", "request": { - "name": "List", + "name": "Add Manually Managed Members", "description": { - "content": "List app resources for a given app and optionally filter by resource type.", + "content": "Add users as manually managed members of an app entitlement. These memberships are tracked directly by ConductorOne rather than synced from the app.\n Adding members to an access profile's enrollment entitlement requires the JML feature; without it the request fails with a failed-precondition error.", "type": "text/plain" }, "url": { @@ -12447,33 +12260,14 @@ "v1", "apps", ":app_id", - "resource_types", - ":app_resource_type_id", - "resources" + "entitlements", + ":app_entitlement_id", + "add-manual-user" ], "host": [ "{{baseUrl}}" ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], + "query": [], "variable": [ { "type": "any", @@ -12488,7 +12282,7 @@ { "type": "any", "value": "", - "key": "app_resource_type_id", + "key": "app_entitlement_id", "disabled": false, "description": { "content": "(Required) ", @@ -12498,19 +12292,32 @@ ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "ede6c271-1408-4b73-b696-5d9c42ef075d", - "name": "The AppResourceServiceListResponse message contains a list of results and a nextPageToken if applicable.", + "id": "3983e390-537d-4ef0-9173-89293a2893fc", + "name": "Successful response", "originalRequest": { "url": { "path": [ @@ -12518,33 +12325,14 @@ "v1", "apps", ":app_id", - "resource_types", - ":app_resource_type_id", - "resources" + "entitlements", + ":app_entitlement_id", + "add-manual-user" ], "host": [ "{{baseUrl}}" ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], + "query": [], "variable": [ { "disabled": false, @@ -12564,11 +12352,15 @@ }, "type": "any", "value": "", - "key": "app_resource_type_id" + "key": "app_entitlement_id" } ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -12582,8 +12374,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -12593,7 +12394,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": true,\n \"key_2\": 6915,\n \"key_3\": 1683\n },\n {\n \"@type\": \"\",\n \"key_0\": true,\n \"key_1\": 385.9515484087295\n }\n ],\n \"list\": [\n {\n \"appPath\": \"\",\n \"appResource\": {\n \"accessConfigId\": \"\",\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customDescription\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"matchBatonId\": \"\",\n \"parentAppResourceId\": \"\",\n \"parentAppResourceTypeId\": \"\",\n \"profile\": {\n \"key_0\": 6971,\n \"key_1\": 5419.377653369319\n },\n \"secretTrait\": {\n \"identityAppUserId\": \"\",\n \"lastUsedAt\": \"\",\n \"secretCreatedAt\": \"\",\n \"secretExpiresAt\": \"\"\n },\n \"updatedAt\": \"\"\n },\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n },\n \"parentResourcePath\": \"\",\n \"parentResourceTypePath\": \"\",\n \"resourceTypePath\": \"\"\n },\n {\n \"appPath\": \"\",\n \"appResource\": {\n \"accessConfigId\": \"\",\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customDescription\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"matchBatonId\": \"\",\n \"parentAppResourceId\": \"\",\n \"parentAppResourceTypeId\": \"\",\n \"profile\": {\n \"key_0\": \"string\"\n },\n \"secretTrait\": {\n \"identityAppUserId\": \"\",\n \"lastUsedAt\": \"\",\n \"secretCreatedAt\": \"\",\n \"secretExpiresAt\": \"\"\n },\n \"updatedAt\": \"\"\n },\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n },\n \"parentResourcePath\": \"\",\n \"parentResourceTypePath\": \"\",\n \"resourceTypePath\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"bulkActionId\": \"\",\n \"failedUsersErrorMap\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -12602,14 +12403,20 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "automation", + "description": "", + "item": [ { - "id": "9f7f8efa-f959-49dd-92bd-9e1ae849ca02", - "name": "Create Manually Managed App Resource", + "id": "6a37acee-666e-4822-b207-1808d98485e2", + "name": "Delete Automation", "request": { - "name": "Create Manually Managed App Resource", + "name": "Delete Automation", "description": { - "content": "Create a manually managed app resource tracked directly by ConductorOne under an existing resource type.", + "content": "Delete the automation rule for an app entitlement.", "type": "text/plain" }, "url": { @@ -12618,9 +12425,9 @@ "v1", "apps", ":app_id", - "resource_types", - ":app_resource_type_id", - "resources" + "entitlements", + ":app_entitlement_id", + "automation" ], "host": [ "{{baseUrl}}" @@ -12640,7 +12447,7 @@ { "type": "any", "value": "", - "key": "app_resource_type_id", + "key": "app_entitlement_id", "disabled": false, "description": { "content": "(Required) ", @@ -12659,10 +12466,10 @@ "value": "application/json" } ], - "method": "POST", + "method": "DELETE", "body": { "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"description\": \"\",\n \"matchBatonId\": \"\",\n \"resourceOwnerUserIds\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{}", "options": { "raw": { "headerFamily": "json", @@ -12674,8 +12481,8 @@ }, "response": [ { - "id": "5df1f90f-d7e6-4102-8c97-e4da306cdf49", - "name": "The response message for creating a manually managed app resource.", + "id": "7cf89794-a043-44dd-ac58-c88e83ea3644", + "name": "Successful response", "originalRequest": { "url": { "path": [ @@ -12683,9 +12490,9 @@ "v1", "apps", ":app_id", - "resource_types", - ":app_resource_type_id", - "resources" + "entitlements", + ":app_entitlement_id", + "automation" ], "host": [ "{{baseUrl}}" @@ -12710,7 +12517,7 @@ }, "type": "any", "value": "", - "key": "app_resource_type_id" + "key": "app_entitlement_id" } ] }, @@ -12732,10 +12539,10 @@ "value": "Bearer " } ], - "method": "POST", + "method": "DELETE", "body": { "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"description\": \"\",\n \"matchBatonId\": \"\",\n \"resourceOwnerUserIds\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{}", "options": { "raw": { "headerFamily": "json", @@ -12752,7 +12559,7 @@ "value": "application/json" } ], - "body": "{\n \"appResource\": {\n \"accessConfigId\": \"\",\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customDescription\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"matchBatonId\": \"\",\n \"parentAppResourceId\": \"\",\n \"parentAppResourceTypeId\": \"\",\n \"profile\": {\n \"key_0\": \"string\"\n },\n \"secretTrait\": {\n \"identityAppUserId\": \"\",\n \"lastUsedAt\": \"\",\n \"secretCreatedAt\": \"\",\n \"secretExpiresAt\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", + "body": "{}", "cookie": [], "_postman_previewlanguage": "json" } @@ -12763,28 +12570,75 @@ } }, { - "name": "{id}", - "description": "", - "item": [ - { - "id": "0995a5e3-432d-4ab4-81da-5b3372bfd431", - "name": "Delete Manually Managed App Resource", - "request": { - "name": "Delete Manually Managed App Resource", - "description": { - "content": "Delete a manually managed app resource and its associated entitlements from an app.", - "type": "text/plain" + "id": "d98672bb-bf0c-4a15-887d-698446f3170b", + "name": "Get Automation", + "request": { + "name": "Get Automation", + "description": { + "content": "Get the automation rule for an app entitlement.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":app_entitlement_id", + "automation" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } }, + { + "type": "any", + "value": "", + "key": "app_entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "82112609-93df-438a-ba36-0726333758c7", + "name": "Successful response", + "originalRequest": { "url": { "path": [ "api", "v1", "apps", ":app_id", - "resource_types", - ":app_resource_type_id", - "resources", - ":id" + "entitlements", + ":app_entitlement_id", + "automation" ], "host": [ "{{baseUrl}}" @@ -12792,19 +12646,95 @@ "query": [], "variable": [ { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, "type": "any", "value": "", - "key": "app_id", + "key": "app_id" + }, + { "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - } + }, + "type": "any", + "value": "", + "key": "app_entitlement_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"AppEntitlementAutomation\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"basic\": {\n \"expression\": \"\"\n },\n \"cel\": {\n \"expression\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"lastRunStatus\": {\n \"errorMessage\": \"\",\n \"lastCompletedAt\": \"\",\n \"status\": \"APP_ENTITLEMENT_AUTOMATION_RUN_STATUS_SUCCESS\"\n },\n \"managedByRequestCatalogId\": \"\",\n \"none\": {},\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "create", + "description": "", + "item": [ + { + "id": "49336c03-2701-4406-9512-7756191fe4f1", + "name": "Create Automation", + "request": { + "name": "Create Automation", + "description": { + "content": "Create an automation rule for an app entitlement. Automations automatically provision or revoke access based on defined conditions.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":app_entitlement_id", + "automation", + "create" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ { "type": "any", "value": "", - "key": "app_resource_type_id", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", @@ -12814,7 +12744,7 @@ { "type": "any", "value": "", - "key": "id", + "key": "app_entitlement_id", "disabled": false, "description": { "content": "(Required) ", @@ -12833,10 +12763,10 @@ "value": "application/json" } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"automation\": {\n \"basic\": {\n \"expression\": \"\"\n },\n \"cel\": {\n \"expression\": \"\"\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": null\n },\n \"lastRunStatus\": {},\n \"none\": {}\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -12848,8 +12778,8 @@ }, "response": [ { - "id": "399369e2-4e24-4204-8baf-578c525e5767", - "name": "The empty response message for deleting a manually managed app resource.", + "id": "1f6ad70d-677e-428e-bab4-0ef06b063115", + "name": "Successful response", "originalRequest": { "url": { "path": [ @@ -12857,10 +12787,10 @@ "v1", "apps", ":app_id", - "resource_types", - ":app_resource_type_id", - "resources", - ":id" + "entitlements", + ":app_entitlement_id", + "automation", + "create" ], "host": [ "{{baseUrl}}" @@ -12885,7 +12815,164 @@ }, "type": "any", "value": "", - "key": "app_resource_type_id" + "key": "app_entitlement_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"automation\": {\n \"basic\": {\n \"expression\": \"\"\n },\n \"cel\": {\n \"expression\": \"\"\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": null\n },\n \"lastRunStatus\": {},\n \"none\": {}\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"automation\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"basic\": {\n \"expression\": \"\"\n },\n \"cel\": {\n \"expression\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": null\n },\n \"lastRunStatus\": {\n \"errorMessage\": \"\",\n \"lastCompletedAt\": \"\",\n \"status\": \"APP_ENTITLEMENT_AUTOMATION_RUN_STATUS_SUCCESS\"\n },\n \"managedByRequestCatalogId\": \"\",\n \"none\": {},\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "exclusions", + "description": "", + "item": [ + { + "id": "3ad1d345-ad6e-4695-a83e-8c6ae152a3b7", + "name": "Remove Automation Exclusion", + "request": { + "name": "Remove Automation Exclusion", + "description": { + "content": "Remove users from the automation exclusion list for an app entitlement.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":app_entitlement_id", + "automation", + "exclusions" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"userIds\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "d521c793-d20a-49da-8593-656f7712d474", + "name": "Empty response with a status code indicating success.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":app_entitlement_id", + "automation", + "exclusions" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" }, { "disabled": false, @@ -12895,7 +12982,7 @@ }, "type": "any", "value": "", - "key": "id" + "key": "app_entitlement_id" } ] }, @@ -12920,7 +13007,7 @@ "method": "DELETE", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"userIds\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -12948,12 +13035,12 @@ } }, { - "id": "33b65816-15e3-4d6b-9246-0919a565159e", - "name": "Get", + "id": "e6c07e56-3042-42d3-981a-141e17c8e8fe", + "name": "List Automation Exclusions", "request": { - "name": "Get", + "name": "List Automation Exclusions", "description": { - "content": "Retrieve a single app resource by its app, resource type, and resource ID.", + "content": "List users who are excluded from the automation rule for an app entitlement.", "type": "text/plain" }, "url": { @@ -12962,10 +13049,10 @@ "v1", "apps", ":app_id", - "resource_types", - ":app_resource_type_id", - "resources", - ":id" + "entitlements", + ":app_entitlement_id", + "automation", + "exclusions" ], "host": [ "{{baseUrl}}" @@ -12985,17 +13072,7 @@ { "type": "any", "value": "", - "key": "app_resource_type_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "id", + "key": "app_entitlement_id", "disabled": false, "description": { "content": "(Required) ", @@ -13016,8 +13093,8 @@ }, "response": [ { - "id": "54bb6e3a-a619-4cd1-98d3-74c6b2f10f52", - "name": "The app resource service get response contains the app resource view and array of expanded items indicated by the request's expand mask.", + "id": "cb15f666-5270-433e-95c7-39f4b9016068", + "name": "Successful response", "originalRequest": { "url": { "path": [ @@ -13025,10 +13102,10 @@ "v1", "apps", ":app_id", - "resource_types", - ":app_resource_type_id", - "resources", - ":id" + "entitlements", + ":app_entitlement_id", + "automation", + "exclusions" ], "host": [ "{{baseUrl}}" @@ -13053,17 +13130,7 @@ }, "type": "any", "value": "", - "key": "app_resource_type_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" + "key": "app_entitlement_id" } ] }, @@ -13092,7 +13159,7 @@ "value": "application/json" } ], - "body": "{\n \"appResourceView\": {\n \"appPath\": \"\",\n \"appResource\": {\n \"accessConfigId\": \"\",\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customDescription\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"matchBatonId\": \"\",\n \"parentAppResourceId\": \"\",\n \"parentAppResourceTypeId\": \"\",\n \"profile\": {\n \"key_0\": 532.0900945357998\n },\n \"secretTrait\": {\n \"identityAppUserId\": \"\",\n \"lastUsedAt\": \"\",\n \"secretCreatedAt\": \"\",\n \"secretExpiresAt\": \"\"\n },\n \"updatedAt\": \"\"\n },\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n },\n \"parentResourcePath\": \"\",\n \"parentResourceTypePath\": \"\",\n \"resourceTypePath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 5367\n },\n {\n \"@type\": \"\",\n \"key_0\": 6842.16034711374,\n \"key_1\": \"string\"\n }\n ]\n}", + "body": "{\n \"list\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": null,\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": null,\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": null,\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": null,\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": null,\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": null,\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": null,\n \"managerIds\": null,\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_SERVICE\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": null,\n \"usernames\": null\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -13103,12 +13170,12 @@ } }, { - "id": "1ffa0a64-48af-4ef9-98be-80da5f2a9bfa", - "name": "Update", + "id": "b632aa4c-cdf9-44f1-9360-cdd2ca16724e", + "name": "Add Automation Exclusion", "request": { - "name": "Update", + "name": "Add Automation Exclusion", "description": { - "content": "Update an app resource's fields. Only the fields specified in the update mask are modified.", + "content": "Add users to the automation exclusion list for an app entitlement. Excluded users are not affected by the automation rule.", "type": "text/plain" }, "url": { @@ -13117,10 +13184,10 @@ "v1", "apps", ":app_id", - "resource_types", - ":app_resource_type_id", - "resources", - ":id" + "entitlements", + ":app_entitlement_id", + "automation", + "exclusions" ], "host": [ "{{baseUrl}}" @@ -13140,17 +13207,7 @@ { "type": "any", "value": "", - "key": "app_resource_type_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "id", + "key": "app_entitlement_id", "disabled": false, "description": { "content": "(Required) ", @@ -13172,7 +13229,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appResource\": {\n \"accessConfigId\": \"\",\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"customDescription\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"matchBatonId\": \"\",\n \"parentAppResourceId\": \"\",\n \"parentAppResourceTypeId\": \"\",\n \"secretTrait\": {\n \"identityAppUserId\": \"\",\n \"lastUsedAt\": \"\",\n \"secretCreatedAt\": \"\",\n \"secretExpiresAt\": \"\"\n }\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", "options": { "raw": { "headerFamily": "json", @@ -13184,8 +13241,8 @@ }, "response": [ { - "id": "96f4d24b-f208-4e04-bfd1-2745d02fb8f1", - "name": "The response message for updating an app resource.", + "id": "52c58d25-6d24-4e4d-b8d8-63cab57df9c9", + "name": "Empty response with a status code indicating success.", "originalRequest": { "url": { "path": [ @@ -13193,10 +13250,10 @@ "v1", "apps", ":app_id", - "resource_types", - ":app_resource_type_id", - "resources", - ":id" + "entitlements", + ":app_entitlement_id", + "automation", + "exclusions" ], "host": [ "{{baseUrl}}" @@ -13221,7 +13278,164 @@ }, "type": "any", "value": "", - "key": "app_resource_type_id" + "key": "app_entitlement_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "update", + "description": "", + "item": [ + { + "id": "d82a71c2-a9dd-421a-bcf8-c6402c74ccf1", + "name": "Update Automation", + "request": { + "name": "Update Automation", + "description": { + "content": "Update the automation rule for an app entitlement, including its display name, description, and conditions.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":app_entitlement_id", + "automation", + "update" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"basic\": {\n \"expression\": \"\"\n },\n \"cel\": {\n \"expression\": \"\"\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"none\": {},\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "7dbbc75b-0412-4bd0-868c-46826a97353c", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":app_entitlement_id", + "automation", + "update" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" }, { "disabled": false, @@ -13231,7 +13445,7 @@ }, "type": "any", "value": "", - "key": "id" + "key": "app_entitlement_id" } ] }, @@ -13256,7 +13470,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appResource\": {\n \"accessConfigId\": \"\",\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"customDescription\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"matchBatonId\": \"\",\n \"parentAppResourceId\": \"\",\n \"parentAppResourceTypeId\": \"\",\n \"secretTrait\": {\n \"identityAppUserId\": \"\",\n \"lastUsedAt\": \"\",\n \"secretCreatedAt\": \"\",\n \"secretExpiresAt\": \"\"\n }\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"basic\": {\n \"expression\": \"\"\n },\n \"cel\": {\n \"expression\": \"\"\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"none\": {},\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -13273,7 +13487,7 @@ "value": "application/json" } ], - "body": "{\n \"appResourceView\": {\n \"appPath\": \"\",\n \"appResource\": {\n \"accessConfigId\": \"\",\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customDescription\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"matchBatonId\": \"\",\n \"parentAppResourceId\": \"\",\n \"parentAppResourceTypeId\": \"\",\n \"profile\": {\n \"key_0\": 6298,\n \"key_1\": false,\n \"key_2\": true\n },\n \"secretTrait\": {\n \"identityAppUserId\": \"\",\n \"lastUsedAt\": \"\",\n \"secretCreatedAt\": \"\",\n \"secretExpiresAt\": \"\"\n },\n \"updatedAt\": \"\"\n },\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"read\": \"\"\n },\n \"parentResourcePath\": \"\",\n \"parentResourceTypePath\": \"\",\n \"resourceTypePath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": 3211.754626438299\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": \"string\"\n }\n ]\n}", + "body": "{\n \"AppEntitlementAutomation\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"basic\": {\n \"expression\": \"\"\n },\n \"cel\": {\n \"expression\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"lastRunStatus\": {\n \"errorMessage\": \"\",\n \"lastCompletedAt\": \"\",\n \"status\": \"APP_ENTITLEMENT_AUTOMATION_RUN_STATUS_FAILED\"\n },\n \"managedByRequestCatalogId\": \"\",\n \"none\": {},\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -13286,238 +13500,206 @@ ] } ] - } - ] - }, - { - "name": "{id}", - "description": "", - "item": [ + }, { - "id": "5b03b3a9-a2fb-4202-9d31-564fa23fa84b", - "name": "Delete Manually Managed Resource Type", - "request": { - "name": "Delete Manually Managed Resource Type", - "description": { - "content": "Delete a manually managed resource type and all its associated resources from an app.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "resource_types", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "name": "grants", + "description": "", + "item": [ { - "id": "4f054d1c-cb59-43ad-aa8d-0328975b31d0", - "name": "The empty response message for deleting a manually managed resource type.", - "originalRequest": { + "id": "85354ecb-cfd1-4379-9bff-f0c6420e9180", + "name": "Search App Entitlements With Expired", + "request": { + "name": "Search App Entitlements With Expired", + "description": { + "content": "Search app entitlements, include app users, users, expires, discovered.\n Response rows are large — request a small page_size (≤10) to keep responses small.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", "apps", ":app_id", - "resource_types", - ":id" + "entitlements", + ":app_entitlement_id", + "grants" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [ + "query": [ { "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" }, - "type": "any", - "value": "", - "key": "app_id" + "key": "page_size", + "value": "" }, { "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" }, - "type": "any", - "value": "", - "key": "id" - } + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "d236184d-aeff-4bfa-8e14-12219989b98c", + "name": "The SearchAppEntitlementsWithExpiredResponse message contains a list of results and a nextPageToken if applicable.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":app_entitlement_id", + "grants" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUser\": {\n \"agentStatus\": \"APP_USER_AGENT_STATUS_DELETED\",\n \"appId\": \"\",\n \"appUserType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIds\": null,\n \"id\": \"\",\n \"identityUserId\": \"\",\n \"isExternal\": \"\",\n \"nhiDetail\": \"\",\n \"nhiType\": \"APP_USER_NHI_TYPE_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": 4351,\n \"key_1\": 4632\n },\n \"status\": {\n \"details\": \"\",\n \"status\": \"STATUS_DISABLED\"\n },\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernames\": null\n },\n \"appUserId\": \"\",\n \"discovered\": \"\",\n \"expired\": \"\",\n \"grantReasons\": null,\n \"grantSources\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": null,\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": null,\n \"employeeIdSources\": null,\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": null,\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": null,\n \"roleIds\": null,\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_HUMAN\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUser\": {\n \"agentStatus\": \"APP_USER_AGENT_STATUS_DISABLED\",\n \"appId\": \"\",\n \"appUserType\": \"APP_USER_TYPE_USER\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"identityUserId\": \"\",\n \"isExternal\": \"\",\n \"nhiDetail\": \"\",\n \"nhiType\": \"APP_USER_NHI_TYPE_ASSUMABLE_ROLE\",\n \"profile\": null,\n \"status\": {\n \"details\": \"\",\n \"status\": \"STATUS_ENABLED\"\n },\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernames\": null\n },\n \"appUserId\": \"\",\n \"discovered\": \"\",\n \"expired\": \"\",\n \"grantReasons\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"derivedIdData\": \"\",\n \"derivedIdType\": \"\",\n \"reasonExpiresAt\": \"\",\n \"referenceStrength\": \"GRANT_REASON_REFERENCE_STRENGTH_WEAK\",\n \"updatedAt\": \"\"\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"derivedIdData\": \"\",\n \"derivedIdType\": \"\",\n \"reasonExpiresAt\": \"\",\n \"referenceStrength\": \"GRANT_REASON_REFERENCE_STRENGTH_WEAK\",\n \"updatedAt\": \"\"\n }\n ],\n \"grantSources\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": null,\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": null,\n \"employeeIdSources\": null,\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": null,\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": null,\n \"managerIds\": null,\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": null,\n \"roleIds\": null,\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_SERVICE\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": null\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, { - "id": "8e356525-a9d0-4bc6-951b-193064ef3b34", - "name": "Get", - "request": { - "name": "Get", - "description": { - "content": "Get an app resource type.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "resource_types", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + "name": "remove-membership", + "description": "", + "item": [ { - "id": "5f85bf9b-37a3-438b-a56f-952acdef232b", - "name": "The AppResourceTypeServiceGetResponse contains an expanded array containing the expanded values indicated by the expand mask\n in the request and an app resource type view containing the resource type and JSONPATHs indicating which objects are where in the expand mask.", - "originalRequest": { + "id": "df354445-aaa1-4e72-a949-534d8261a52d", + "name": "Remove Entitlement Membership", + "request": { + "name": "Remove Entitlement Membership", + "description": { + "content": "Remove a user from a manually managed entitlement. For ConductorOne\n catalogs, groups, and profile types, the existing resource-specific\n removal behavior applies. When the SSO provider feature is enabled, an SSO\n application's sign-in entitlement removes only direct manual access and\n preserves independent requested, connector, and group-derived access.\n Removing a member from an access profile requires the JML feature; without\n it the request fails with a failed-precondition error.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", "apps", ":app_id", - "resource_types", - ":id" + "entitlements", + ":app_entitlement_id", + "remove-membership" ], "host": [ "{{baseUrl}}" @@ -13525,244 +13707,332 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" + } }, { + "type": "any", + "value": "", + "key": "app_entitlement_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" + } } ] }, "header": [ { - "key": "Accept", + "key": "Content-Type", "value": "application/json" }, { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " + "key": "Accept", + "value": "application/json" } ], - "method": "GET", - "body": {} + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"appUserId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "fae9c6b8-0502-49dd-9765-f66174409cf9", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":app_entitlement_id", + "remove-membership" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"appUserId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"revokeTaskId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"appResourceTypeView\": {\n \"appPath\": \"\",\n \"appResourceType\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"traitIds\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n }\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 479.06840882887104,\n \"key_1\": \"string\"\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": 6496.497192271957\n }\n ]\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, { - "id": "f70e981e-0866-46ff-b23b-30514ccf2b67", - "name": "Update Manually Managed Resource Type", - "request": { - "name": "Update Manually Managed Resource Type", - "description": { - "content": "Update a manually managed resource type's fields. Only the fields specified in the update mask are modified.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "resource_types", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appResourceType\": {\n \"displayName\": \"\",\n \"traitIds\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "name": "users", + "description": "", + "item": [ { - "id": "c0088ca4-52ac-45cc-b417-e1d9378b6ea7", - "name": "The response message for updating a manually managed resource type.", - "originalRequest": { + "id": "d4c02187-77db-4b4f-ab47-69a71cf337a4", + "name": "List Users", + "request": { + "name": "List Users", + "description": { + "content": "List the users, as AppEntitlementUsers objects, of an app entitlement.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", "apps", ":app_id", - "resource_types", - ":id" + "entitlements", + ":app_entitlement_id", + "users" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [ + "query": [ { "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" }, - "type": "any", - "value": "", - "key": "app_id" + "key": "page_size", + "value": "" }, { "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { "type": "any", "value": "", - "key": "id" + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appResourceType\": {\n \"displayName\": \"\",\n \"traitIds\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "8ed40585-b7b1-4601-b4d8-897c1be10a8d", + "name": "The ListAppEntitlementUsersResponse message contains a list of results and a nextPageToken if applicable.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":app_entitlement_id", + "users" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": true\n },\n {\n \"@type\": \"\",\n \"key_0\": true,\n \"key_1\": \"string\"\n }\n ],\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"appResourceType\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"traitIds\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": 9748.13371475905\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n }\n ]\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "{resource_type_id}", - "description": "", - "item": [ - { - "name": "resource", - "description": "", - "item": [ + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, { - "name": "{resource_id}", + "name": "{app_user_id}", "description": "", "item": [ { - "name": "ownerids", + "name": "remove-grant-duration", "description": "", "item": [ { - "id": "1df930ab-8afa-490d-b148-9f2ed2d95479", - "name": "Delete", + "id": "74f95f37-f6ed-485b-bc43-0350c731293a", + "name": "Remove Grant Duration", "request": { - "name": "Delete", + "name": "Remove Grant Duration", "description": { - "content": "Delete deletes the owners from a given app resource.", + "content": "Remove the expiration time from a grant, converting it to an indefinite (standing) grant.", "type": "text/plain" }, "url": { @@ -13771,11 +14041,11 @@ "v1", "apps", ":app_id", - "resource_types", - ":resource_type_id", - "resource", - ":resource_id", - "ownerids" + "entitlements", + ":app_entitlement_id", + "users", + ":app_user_id", + "remove-grant-duration" ], "host": [ "{{baseUrl}}" @@ -13795,7 +14065,7 @@ { "type": "any", "value": "", - "key": "resource_type_id", + "key": "app_entitlement_id", "disabled": false, "description": { "content": "(Required) ", @@ -13805,7 +14075,7 @@ { "type": "any", "value": "", - "key": "resource_id", + "key": "app_user_id", "disabled": false, "description": { "content": "(Required) ", @@ -13824,7 +14094,7 @@ "value": "application/json" } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", "raw": "{}", @@ -13839,8 +14109,8 @@ }, "response": [ { - "id": "cba1eaf7-3708-4bee-854c-4b2f50a976af", - "name": "the empty response message for deleting app resource owners.", + "id": "49620785-b481-4576-81fd-8662c4b45320", + "name": "The response message for removing the expiration time from a grant.", "originalRequest": { "url": { "path": [ @@ -13848,11 +14118,11 @@ "v1", "apps", ":app_id", - "resource_types", - ":resource_type_id", - "resource", - ":resource_id", - "ownerids" + "entitlements", + ":app_entitlement_id", + "users", + ":app_user_id", + "remove-grant-duration" ], "host": [ "{{baseUrl}}" @@ -13877,7 +14147,7 @@ }, "type": "any", "value": "", - "key": "resource_type_id" + "key": "app_entitlement_id" }, { "disabled": false, @@ -13887,7 +14157,7 @@ }, "type": "any", "value": "", - "key": "resource_id" + "key": "app_user_id" } ] }, @@ -13909,7 +14179,7 @@ "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", "raw": "{}", @@ -13929,164 +14199,7 @@ "value": "application/json" } ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "60598a50-27bc-4ae6-ae71-7e1c1592aa9f", - "name": "List Owner I Ds", - "request": { - "name": "List Owner I Ds", - "description": { - "content": "ListOwnerIDs lists owner IDs for a given app resource.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "resource_types", - ":resource_type_id", - "resource", - ":resource_id", - "ownerids" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "resource_type_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "resource_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "6353bcbc-a9e2-45a5-8f10-70f8e951cf7e", - "name": "The response message for listing app resource owners IDs.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "resource_types", - ":resource_type_id", - "resource", - ":resource_id", - "ownerids" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "resource_type_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "resource_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "body": "{\n \"binding\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionAt\": \"\",\n \"grantSources\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -14099,16 +14212,16 @@ ] }, { - "name": "owners", + "name": "update-grant-duration", "description": "", "item": [ { - "id": "b8188ae0-002f-4d13-92cf-425b73e72c0a", - "name": "Remove", + "id": "d536a3b9-5ad6-4b30-81d4-1251f708e787", + "name": "Update Grant Duration", "request": { - "name": "Remove", + "name": "Update Grant Duration", "description": { - "content": "Remove a user from the owners of an app resource.", + "content": "Update the expiration time of an existing grant, changing when automatic revocation will occur.", "type": "text/plain" }, "url": { @@ -14117,11 +14230,11 @@ "v1", "apps", ":app_id", - "resource_types", - ":resource_type_id", - "resource", - ":resource_id", - "owners" + "entitlements", + ":app_entitlement_id", + "users", + ":app_user_id", + "update-grant-duration" ], "host": [ "{{baseUrl}}" @@ -14141,7 +14254,7 @@ { "type": "any", "value": "", - "key": "resource_type_id", + "key": "app_entitlement_id", "disabled": false, "description": { "content": "(Required) ", @@ -14151,7 +14264,7 @@ { "type": "any", "value": "", - "key": "resource_id", + "key": "app_user_id", "disabled": false, "description": { "content": "(Required) ", @@ -14170,10 +14283,10 @@ "value": "application/json" } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"userId\": \"\"\n}", + "raw": "{\n \"newDeprovisionAt\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -14185,8 +14298,8 @@ }, "response": [ { - "id": "f9333ca5-c8aa-4c51-ba4c-73d22de7646f", - "name": "The empty response message for removing an owner from an app resource.", + "id": "3859dde9-8a4b-4509-93da-c373caf88803", + "name": "The response message for updating the duration of a grant.", "originalRequest": { "url": { "path": [ @@ -14194,11 +14307,11 @@ "v1", "apps", ":app_id", - "resource_types", - ":resource_type_id", - "resource", - ":resource_id", - "owners" + "entitlements", + ":app_entitlement_id", + "users", + ":app_user_id", + "update-grant-duration" ], "host": [ "{{baseUrl}}" @@ -14223,7 +14336,7 @@ }, "type": "any", "value": "", - "key": "resource_type_id" + "key": "app_entitlement_id" }, { "disabled": false, @@ -14233,7 +14346,7 @@ }, "type": "any", "value": "", - "key": "resource_id" + "key": "app_user_id" } ] }, @@ -14255,10 +14368,10 @@ "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"userId\": \"\"\n}", + "raw": "{\n \"newDeprovisionAt\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -14275,7 +14388,7 @@ "value": "application/json" } ], - "body": "{}", + "body": "{\n \"binding\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionAt\": \"\",\n \"grantSources\": null\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -14284,14 +14397,26 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + } + ] + }, + { + "name": "{identity_user_id}", + "description": "", + "item": [ + { + "name": "grants", + "description": "", + "item": [ { - "id": "0844ca25-2c41-4aa3-a5f2-b22caada337a", - "name": "List", + "id": "f188e016-5116-4fb2-b681-e28097d241f9", + "name": "List App Users For Identity With Grant", "request": { - "name": "List", + "name": "List App Users For Identity With Grant", "description": { - "content": "List all owners of an app resource.", + "content": "Returns a list of app users for the identity in the app. If that app user also has a grant to the entitlement from the request, data about the grant is also returned. It will always return ALL app users for this identity, but only SOME may have grant data.", "type": "text/plain" }, "url": { @@ -14300,35 +14425,16 @@ "v1", "apps", ":app_id", - "resource_types", - ":resource_type_id", - "resource", - ":resource_id", - "owners" + "entitlements", + ":app_entitlement_id", + "users", + ":identity_user_id", + "grants" ], "host": [ "{{baseUrl}}" ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], + "query": [], "variable": [ { "type": "any", @@ -14343,7 +14449,7 @@ { "type": "any", "value": "", - "key": "resource_type_id", + "key": "app_entitlement_id", "disabled": false, "description": { "content": "(Required) ", @@ -14353,7 +14459,7 @@ { "type": "any", "value": "", - "key": "resource_id", + "key": "identity_user_id", "disabled": false, "description": { "content": "(Required) ", @@ -14374,8 +14480,8 @@ }, "response": [ { - "id": "d4d5bad0-70bb-4143-a121-7904294bff5d", - "name": "The ListAppResourceOwnersResponse message contains a list of results and a nextPageToken if applicable", + "id": "6d251223-ba26-40b6-a47d-a61986b1603c", + "name": "Successful response", "originalRequest": { "url": { "path": [ @@ -14383,35 +14489,16 @@ "v1", "apps", ":app_id", - "resource_types", - ":resource_type_id", - "resource", - ":resource_id", - "owners" + "entitlements", + ":app_entitlement_id", + "users", + ":identity_user_id", + "grants" ], "host": [ "{{baseUrl}}" ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], + "query": [], "variable": [ { "disabled": false, @@ -14431,7 +14518,7 @@ }, "type": "any", "value": "", - "key": "resource_type_id" + "key": "app_entitlement_id" }, { "disabled": false, @@ -14441,7 +14528,7 @@ }, "type": "any", "value": "", - "key": "resource_id" + "key": "identity_user_id" } ] }, @@ -14470,7 +14557,7 @@ "value": "application/json" } ], - "body": "{\n \"immutableUserIds\": [\n \"\",\n \"\"\n ],\n \"list\": [\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": {\n \"key_0\": \"string\",\n \"key_1\": true,\n \"key_2\": true,\n \"key_3\": \"string\"\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_AGENT\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"ENABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": {\n \"key_0\": true\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"bindings\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionAt\": \"\",\n \"grantSources\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionAt\": \"\",\n \"grantSources\": null\n }\n ]\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -14479,652 +14566,328 @@ "protocolProfileBehavior": { "disableBodyPruning": true } + } + ] + } + ] + } + ] + } + ] + }, + { + "name": "{entitlement_id}", + "description": "", + "item": [ + { + "name": "ownerids", + "description": "", + "item": [ + { + "id": "d9e1a290-8c05-4201-ae3a-d1a6e39c8c8d", + "name": "List Owner I Ds", + "request": { + "name": "List Owner I Ds", + "description": { + "content": "ListUserIDs lists owner IDs for a given app entitlement.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "ownerids" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } }, { - "id": "9d9c90dc-f182-46a8-9f2a-d7fe354b3fab", - "name": "Add", - "request": { - "name": "Add", - "description": { - "content": "Add a user as an owner of an app resource.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "resource_types", - ":resource_type_id", - "resource", - ":resource_id", - "owners" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "resource_type_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "resource_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" + "type": "any", + "value": "", + "key": "entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "88c6b1c8-35ad-43c4-8b33-bb8b33fa2f9f", + "name": "The response message for listing app entitlement owners IDs.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "ownerids" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"userId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } + "type": "any", + "value": "", + "key": "app_id" }, - "auth": null - }, - "response": [ { - "id": "cc5a3c7c-2d2f-4462-b41d-9ace1dc6772d", - "name": "The empty response message for adding an owner to an app resource.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "resource_types", - ":resource_type_id", - "resource", - ":resource_id", - "owners" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "resource_type_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "resource_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"userId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" + "type": "any", + "value": "", + "key": "entitlement_id" } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, - { - "id": "315ede16-2849-49fc-bd47-81581e47859e", - "name": "Set", - "request": { - "name": "Set", + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { "description": { - "content": "Sets the owners for a given app resource to the specified list of users.", + "content": "Added as a part of security scheme: bearer", "type": "text/plain" }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "resource_types", - ":resource_type_id", - "resource", - ":resource_id", - "owners" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "resource_type_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "resource_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "PUT", - "body": { - "mode": "raw", - "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "40ee0ea6-64f4-4ccf-b575-155b37e2127e", - "name": "The empty response message for setting the app resource owners.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "resource_types", - ":resource_type_id", - "resource", - ":resource_id", - "owners" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "resource_type_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "resource_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "PUT", - "body": { - "mode": "raw", - "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true + "key": "Authorization", + "value": "Bearer " } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" } - ] + ], + "body": "{\n \"userIds\": null\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] - } - ] - } - ] - } - ] - }, - { - "name": "usage_controls", - "description": "", - "item": [ - { - "id": "7b91df7d-2bc1-41ed-8a69-59d2968293a9", - "name": "Get", - "request": { - "name": "Get", - "description": { - "content": "Get usage controls, as an AppUsageControls object which describes some peripheral configuration, for an app.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "usage_controls" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } } ] }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ { - "id": "d5d6ae03-1df2-44c3-8ed8-dcf183bb1c4b", - "name": "The GetAppUsageControlsResponse message contains the retrieved AppUsageControls object.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "usage_controls" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { + "name": "owners", + "description": "", + "item": [ + { + "id": "4cc0eb25-c7a1-46a8-b61f-2857da078b60", + "name": "Delete", + "request": { + "name": "Delete", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "Delete deletes the owners from a given app entitlement.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"appUsageControls\": {\n \"appId\": \"\",\n \"notify\": \"\",\n \"notifyAfterDays\": \"\",\n \"revoke\": \"\",\n \"revokeAfterDays\": \"\"\n },\n \"hasUsageData\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "fddc0822-a0d0-41de-a95f-f4bddbff21b9", - "name": "Update", - "request": { - "name": "Update", - "description": { - "content": "Update usage controls for an app.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "usage_controls" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appUsageControls\": {\n \"appId\": \"\",\n \"notify\": \"\",\n \"notifyAfterDays\": \"\",\n \"revoke\": \"\",\n \"revokeAfterDays\": \"\"\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "1162e101-eeb9-4894-b8d0-c4a6a72eb276", - "name": "The UpdateAppUsageControlsResponse message contains the updated AppUsageControls object.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_id", - "usage_controls" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" }, - "type": "any", - "value": "", - "key": "app_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appUsageControls\": {\n \"appId\": \"\",\n \"notify\": \"\",\n \"notifyAfterDays\": \"\",\n \"revoke\": \"\",\n \"revokeAfterDays\": \"\"\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + "auth": null + }, + "response": [ + { + "id": "898af49e-ca85-4dd7-9993-6eaed3fae454", + "name": "the empty response message for deleting app entitlement owners.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "entitlement_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"appUsageControls\": {\n \"appId\": \"\",\n \"notify\": \"\",\n \"notifyAfterDays\": \"\",\n \"revoke\": \"\",\n \"revokeAfterDays\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "users", - "description": "", - "item": [ - { - "name": "{user_id}", - "description": "", - "item": [ - { - "name": "app_users", - "description": "", - "item": [ + }, { - "id": "e9680777-e877-4492-acec-382845439745", - "name": "List App Users For User", + "id": "152c3669-a3f3-4854-a9ad-bdebbf21ef45", + "name": "List", "request": { - "name": "List App Users For User", + "name": "List", "description": { - "content": "List app user accounts within a specific app that are correlated to a given C1 user.", + "content": "List owners for a given app entitlement.", "type": "text/plain" }, "url": { @@ -15133,9 +14896,9 @@ "v1", "apps", ":app_id", - "users", - ":user_id", - "app_users" + "entitlements", + ":entitlement_id", + "owners" ], "host": [ "{{baseUrl}}" @@ -15174,7 +14937,7 @@ { "type": "any", "value": "", - "key": "user_id", + "key": "entitlement_id", "disabled": false, "description": { "content": "(Required) ", @@ -15195,8 +14958,8 @@ }, "response": [ { - "id": "dec0a41e-173e-49a1-9cac-fc9d0b79ec1e", - "name": "The response message for listing app users correlated to a specific C1 user.", + "id": "c9067b7c-872b-4304-a407-a24b23a3f20f", + "name": "The response message for listing app entitlement owners.", "originalRequest": { "url": { "path": [ @@ -15204,9 +14967,9 @@ "v1", "apps", ":app_id", - "users", - ":user_id", - "app_users" + "entitlements", + ":entitlement_id", + "owners" ], "host": [ "{{baseUrl}}" @@ -15250,7 +15013,7 @@ }, "type": "any", "value": "", - "key": "user_id" + "key": "entitlement_id" } ] }, @@ -15279,7 +15042,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": true\n },\n {\n \"@type\": \"\"\n }\n ],\n \"list\": [\n {\n \"appPath\": \"\",\n \"appUser\": {\n \"appId\": \"\",\n \"appUserType\": \"APP_USER_TYPE_USER\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"identityUserId\": \"\",\n \"isExternal\": \"\",\n \"profile\": {\n \"key_0\": \"string\",\n \"key_1\": 5370.408981925408,\n \"key_2\": 233\n },\n \"status\": {\n \"details\": \"\",\n \"status\": \"STATUS_ENABLED\"\n },\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"identityUserPath\": \"\",\n \"lastUsagePath\": \"\"\n },\n {\n \"appPath\": \"\",\n \"appUser\": {\n \"appId\": \"\",\n \"appUserType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"identityUserId\": \"\",\n \"isExternal\": \"\",\n \"profile\": {\n \"key_0\": \"string\",\n \"key_1\": true,\n \"key_2\": \"string\"\n },\n \"status\": {\n \"details\": \"\",\n \"status\": \"STATUS_DISABLED\"\n },\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"identityUserPath\": \"\",\n \"lastUsagePath\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -15288,108 +15051,25 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - } - ] - } - ] - } - ] - }, - { - "name": "{app_user_app_id}", - "description": "", - "item": [ - { - "name": "app_users", - "description": "", - "item": [ - { - "name": "{app_user_id}", - "description": "", - "item": [ - { - "id": "35328e53-6ed4-42a6-9b7b-56dafa8b654d", - "name": "Update", - "request": { - "name": "Update", - "description": { - "content": "Update an app user by ID. Only the fields specified in the update mask are updated.\n Currently, only the appUserType, and identityUserId fields can be updated.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":app_user_app_id", - "app_users", - ":app_user_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_user_app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "app_user_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appUser\": {\n \"appUserType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"status\": {}\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } }, - "auth": null - }, - "response": [ { - "id": "66a24865-f870-4e34-a574-29570b85e458", - "name": "Successful response", - "originalRequest": { + "id": "c75ddc73-eb6a-4468-b59b-32d8adf33dfd", + "name": "Add", + "request": { + "name": "Add", + "description": { + "content": "Add an owner to a given app entitlement.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", "apps", - ":app_user_app_id", - "app_users", - ":app_user_id" + ":app_id", + "entitlements", + ":entitlement_id", + "owners" ], "host": [ "{{baseUrl}}" @@ -15397,24 +15077,24 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_user_app_id" + } }, { + "type": "any", + "value": "", + "key": "entitlement_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_user_id" + } } ] }, @@ -15426,86 +15106,129 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appUser\": {\n \"appUserType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"status\": {}\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"userId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"appUserView\": {\n \"appPath\": \"\",\n \"appUser\": {\n \"appId\": \"\",\n \"appUserType\": \"APP_USER_TYPE_UNSPECIFIED\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"identityUserId\": \"\",\n \"isExternal\": \"\",\n \"profile\": {\n \"key_0\": false,\n \"key_1\": 7332.313622946476\n },\n \"status\": {\n \"details\": \"\",\n \"status\": \"STATUS_ENABLED\"\n },\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"identityUserPath\": \"\",\n \"lastUsagePath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 4325\n },\n {\n \"@type\": \"\"\n }\n ]\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - } - ] - }, - { - "name": "{connector_app_id}", - "description": "", - "item": [ - { - "name": "connectors", - "description": "", - "item": [ - { - "name": "{connector_id}", - "description": "", - "item": [ - { - "name": "delegated", - "description": "", - "item": [ - { - "id": "40e6ae9b-06b4-40d7-b928-cc7aa0f20bf5", - "name": "Update Delegated", - "request": { - "name": "Update Delegated", - "description": { - "content": "Update a delegated connector.", - "type": "text/plain" - }, - "url": { - "path": [ + "id": "129cb989-8b73-4b72-9f20-24926d7aa5f2", + "name": "The empty response message for adding an app entitlement owner.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "entitlement_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"userId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "ffbeecc8-3d9b-400d-a49a-9973811a9d5e", + "name": "Set", + "request": { + "name": "Set", + "description": { + "content": "Sets the owners for a given app entitlement to the specified list of users.", + "type": "text/plain" + }, + "url": { + "path": [ "api", "v1", "apps", - ":connector_app_id", - "connectors", - ":connector_id", - "delegated" + ":app_id", + "entitlements", + ":entitlement_id", + "owners" ], "host": [ "{{baseUrl}}" @@ -15515,7 +15238,7 @@ { "type": "any", "value": "", - "key": "connector_app_id", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", @@ -15525,7 +15248,7 @@ { "type": "any", "value": "", - "key": "connector_id", + "key": "entitlement_id", "disabled": false, "description": { "content": "(Required) ", @@ -15544,10 +15267,10 @@ "value": "application/json" } ], - "method": "POST", + "method": "PUT", "body": { "mode": "raw", - "raw": "{\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\"\n },\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {},\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": [\n \"\",\n \"\"\n ],\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_RUNNING\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": [\n \"\",\n \"\"\n ]\n },\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", "options": { "raw": { "headerFamily": "json", @@ -15559,18 +15282,18 @@ }, "response": [ { - "id": "43df9d93-8db8-4b77-b988-0e09db5d41ca", - "name": "ConnectorServiceUpdateResponse is the response returned by the update method.", + "id": "970fcea9-7b90-4e0c-8fbe-11b457393c98", + "name": "The empty response message for setting the app entitlement owners.", "originalRequest": { "url": { "path": [ "api", "v1", "apps", - ":connector_app_id", - "connectors", - ":connector_id", - "delegated" + ":app_id", + "entitlements", + ":entitlement_id", + "owners" ], "host": [ "{{baseUrl}}" @@ -15585,7 +15308,7 @@ }, "type": "any", "value": "", - "key": "connector_app_id" + "key": "app_id" }, { "disabled": false, @@ -15595,7 +15318,7 @@ }, "type": "any", "value": "", - "key": "connector_id" + "key": "entitlement_id" } ] }, @@ -15617,10 +15340,10 @@ "value": "Bearer " } ], - "method": "POST", + "method": "PUT", "body": { "mode": "raw", - "raw": "{\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\"\n },\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {},\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": [\n \"\",\n \"\"\n ],\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_RUNNING\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": [\n \"\",\n \"\"\n ]\n },\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", "options": { "raw": { "headerFamily": "json", @@ -15637,7 +15360,7 @@ "value": "application/json" } ], - "body": "{\n \"connectorView\": {\n \"appPath\": \"\",\n \"capabilitiesPath\": \"\",\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": {\n \"@type\": \"\",\n \"key_0\": 9492.636450514861\n },\n \"configUpdatedAt\": \"\",\n \"connectorApiVersion\": \"\",\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"downloadUrl\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {\n \"authEmail\": \"\",\n \"authorizedAt\": \"\"\n },\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": [\n \"\",\n \"\"\n ],\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_DISABLED\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": [\n \"\",\n \"\"\n ]\n },\n \"syncDisabledAt\": \"\",\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"updatedAt\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"usersPath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\"\n },\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": 7777.956164277244\n }\n ]\n}", + "body": "{}", "cookie": [], "_postman_previewlanguage": "json" } @@ -15646,1016 +15369,1064 @@ "protocolProfileBehavior": { "disableBodyPruning": true } + }, + { + "name": "{user_id}", + "description": "", + "item": [ + { + "id": "163f082f-a036-4b4b-95e7-b6dc2b741213", + "name": "Remove", + "request": { + "name": "Remove", + "description": { + "content": "Remove an owner from a given app entitlement.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners", + ":user_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "user_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "1815af8b-b234-4489-9f93-a19d49a3c589", + "name": "The empty response message for removing an app entitlement owner.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners", + ":user_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "entitlement_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "user_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] } ] } ] - } - ] - } - ] - }, - { - "name": "{id}", - "description": "", - "item": [ - { - "id": "e89ff726-8e3e-4c5a-933c-538504c56301", - "name": "Delete", - "request": { - "name": "Delete", - "description": { - "content": "Delete an app.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } }, - "auth": null - }, - "response": [ { - "id": "5aaa05c6-1f34-4836-a69a-27d09a092d46", - "name": "Empty response body. Status code indicates success.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + "name": "{id}", + "description": "", + "item": [ + { + "id": "a6199c42-5889-4225-8d80-c62b4322fc91", + "name": "Delete", + "request": { + "name": "Delete", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "Delete an app entitlement by ID.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "2add7a4e-1339-4d11-8b84-09edb0b1be49", - "name": "Get", - "request": { - "name": "Get", - "description": { - "content": "Get an app by ID.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "8db49c50-2ed5-4215-bdcd-db5d7219ebe8", - "name": "The GetAppResponse message contains the details of the requested app in the app field.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "id": "90430596-c7fa-4055-bdda-8928e18ed1c4", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, - "type": "any", - "value": "", - "key": "id" + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { + { + "id": "b12dd149-f3f0-4a15-a8aa-28455a73f395", + "name": "Get", + "request": { + "name": "Get", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "Get an app entitlement by ID.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"app\": {\n \"accessModel\": \"APP_ACCESS_MODEL_UNSPECIFIED\",\n \"appAccountId\": \"\",\n \"appAccountName\": \"\",\n \"appOwners\": [\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": 5617\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": {\n \"key_0\": 4517.915453863159,\n \"key_1\": 8362\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"appUserMapper\": {\n \"mappingCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n },\n \"certifyPolicyId\": \"\",\n \"connectorVersion\": \"\",\n \"createdAt\": \"\",\n \"defaultRequestCatalogId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enableConnectorSourcedOwnership\": \"\",\n \"fieldMask\": \"\",\n \"grantPolicyId\": \"\",\n \"iconUrl\": \"\",\n \"id\": \"\",\n \"identityMatching\": \"APP_USER_IDENTITY_MATCHING_CUSTOM\",\n \"instructions\": \"\",\n \"isDirectory\": \"\",\n \"isManuallyManaged\": \"\",\n \"logoUri\": \"\",\n \"monthlyCostUsd\": \"\",\n \"parentAppId\": \"\",\n \"revokePolicyId\": \"\",\n \"strictAccessEntitlementProvisioning\": \"\",\n \"updatedAt\": \"\",\n \"userCount\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "c55b0630-6fda-4a0e-b008-124300d41978", - "name": "Update", - "request": { - "name": "Update", - "description": { - "content": "Update an existing app.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"app\": {\n \"accessModel\": \"APP_ACCESS_MODEL_SPARSE\",\n \"appUserMapper\": {\n \"mappingCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n },\n \"certifyPolicyId\": \"\",\n \"connectorVersion\": \"\",\n \"defaultRequestCatalogId\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enableConnectorSourcedOwnership\": \"\",\n \"grantPolicyId\": \"\",\n \"iconUrl\": \"\",\n \"identityMatching\": \"APP_USER_IDENTITY_MATCHING_UNSPECIFIED\",\n \"instructions\": \"\",\n \"isManuallyManaged\": \"\",\n \"monthlyCostUsd\": \"\",\n \"revokePolicyId\": \"\",\n \"strictAccessEntitlementProvisioning\": \"\"\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "7537feb0-43d8-429d-9295-fddba3a66dd7", - "name": "Returns the updated app's new values.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "id": "705e348a-c469-408d-9d91-d00189bdf088", + "name": "The get app entitlement response returns an entitlement view containing paths in the expanded array for the objects expanded as indicated by the expand mask in the request.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} }, - "type": "any", - "value": "", - "key": "id" + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appEntitlementView\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": null,\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 8824,\n \"key_1\": false,\n \"key_2\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"read\": \"\"\n }\n },\n \"expanded\": null\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + { + "id": "8b442ca4-1011-42d3-918a-488402524d63", + "name": "Update", + "request": { + "name": "Update", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "Update an app entitlement by ID.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"app\": {\n \"accessModel\": \"APP_ACCESS_MODEL_SPARSE\",\n \"appUserMapper\": {\n \"mappingCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n },\n \"certifyPolicyId\": \"\",\n \"connectorVersion\": \"\",\n \"defaultRequestCatalogId\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enableConnectorSourcedOwnership\": \"\",\n \"grantPolicyId\": \"\",\n \"iconUrl\": \"\",\n \"identityMatching\": \"APP_USER_IDENTITY_MATCHING_UNSPECIFIED\",\n \"instructions\": \"\",\n \"isManuallyManaged\": \"\",\n \"monthlyCostUsd\": \"\",\n \"revokePolicyId\": \"\",\n \"strictAccessEntitlementProvisioning\": \"\"\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"app\": {\n \"accessModel\": \"APP_ACCESS_MODEL_UNSPECIFIED\",\n \"appAccountId\": \"\",\n \"appAccountName\": \"\",\n \"appOwners\": [\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": {\n \"key_0\": 9618\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_AGENT\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"ENABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": 4188.997916145491\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"appUserMapper\": {\n \"mappingCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n },\n \"certifyPolicyId\": \"\",\n \"connectorVersion\": \"\",\n \"createdAt\": \"\",\n \"defaultRequestCatalogId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enableConnectorSourcedOwnership\": \"\",\n \"fieldMask\": \"\",\n \"grantPolicyId\": \"\",\n \"iconUrl\": \"\",\n \"id\": \"\",\n \"identityMatching\": \"APP_USER_IDENTITY_MATCHING_STRICT\",\n \"instructions\": \"\",\n \"isDirectory\": \"\",\n \"isManuallyManaged\": \"\",\n \"logoUri\": \"\",\n \"monthlyCostUsd\": \"\",\n \"parentAppId\": \"\",\n \"revokePolicyId\": \"\",\n \"strictAccessEntitlementProvisioning\": \"\",\n \"updatedAt\": \"\",\n \"userCount\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "{src_app_id}", - "description": "", - "item": [ - { - "name": "{src_app_entitlement_id}", - "description": "", - "item": [ - { - "name": "bindings", - "description": "", - "item": [ - { - "name": "{dst_app_id}", - "description": "", - "item": [ - { - "name": "{dst_app_entitlement_id}", - "description": "", - "item": [ + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ { - "id": "32fcf396-e966-43dd-a008-668c8271f707", - "name": "Delete", - "request": { - "name": "Delete", - "description": { - "content": "Delete a proxy binding between a source and destination entitlement.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":src_app_id", - ":src_app_entitlement_id", - "bindings", - ":dst_app_id", - ":dst_app_entitlement_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "src_app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "src_app_entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "dst_app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "dst_app_entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"entitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"defaultValuesApplied\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 9068,\n \"key_1\": 3834\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"grantPolicyId\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"userEditedMask\": \"\"\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"overrideAccessRequestsDefaults\": \"\",\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "79c52ba7-6dd8-4b40-a47e-66f782999ad5", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } + "type": "any", + "value": "", + "key": "app_id" }, - "auth": null + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" }, - "response": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"entitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"defaultValuesApplied\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 9068,\n \"key_1\": 3834\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"grantPolicyId\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"userEditedMask\": \"\"\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"overrideAccessRequestsDefaults\": \"\",\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appEntitlementView\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": null,\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n }\n },\n \"expanded\": null\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "resource_types", + "description": "", + "item": [ + { + "name": "{app_resource_type_id}", + "description": "", + "item": [ + { + "name": "resources", + "description": "", + "item": [ + { + "name": "{app_resource_id}", + "description": "", + "item": [ { - "id": "53855a5c-e552-4f3e-a134-091c3f17061f", - "name": "The empty response message for deleting an entitlement proxy binding.", - "originalRequest": { + "id": "c6ecc418-fd28-4322-a77f-aae1f3fa7195", + "name": "List For App Resource", + "request": { + "name": "List For App Resource", + "description": { + "content": "List app entitlements associated with an app resource.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", "apps", - ":src_app_id", - ":src_app_entitlement_id", - "bindings", - ":dst_app_id", - ":dst_app_entitlement_id" + ":app_id", + "entitlements", + "resource_types", + ":app_resource_type_id", + "resources", + ":app_resource_id" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [ + "query": [ { "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" }, - "type": "any", - "value": "", - "key": "src_app_id" + "key": "page_size", + "value": "" }, { "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { "type": "any", "value": "", - "key": "src_app_entitlement_id" - }, - { + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "dst_app_id" + } }, { + "type": "any", + "value": "", + "key": "app_resource_type_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, + } + }, + { "type": "any", "value": "", - "key": "dst_app_entitlement_id" + "key": "app_resource_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "ee777441-cfa7-454a-8e7b-879376d2cd86", + "name": "The ListAppEntitlementsResponse message contains a list of results and a nextPageToken if applicable.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + "resource_types", + ":app_resource_type_id", + "resources", + ":app_resource_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_resource_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 4349\n },\n {\n \"@type\": \"\",\n \"key_0\": 1444,\n \"key_1\": \"string\",\n \"key_2\": 6481\n }\n ],\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 8310.474717575822,\n \"key_2\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n }\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } + ] + } + ] + } + ] + } + ] + }, + { + "name": "users", + "description": "", + "item": [ + { + "name": "{app_user_id}", + "description": "", + "item": [ + { + "id": "4b326d91-4d8b-4691-88f4-2b70717d1464", + "name": "List For App User", + "request": { + "name": "List For App User", + "description": { + "content": "List app entitlements associated with an app user.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "entitlements", + "users", + ":app_user_id" ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_user_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ { - "id": "7299783f-2977-4dbc-aa7d-104dd3c99334", - "name": "Get", - "request": { - "name": "Get", - "description": { - "content": "Retrieve a specific proxy binding between a source and destination entitlement.", - "type": "text/plain" - }, + "id": "b8d8c9fc-c83b-412b-b2ad-8d6c0bffc59f", + "name": "The ListAppEntitlementsResponse message contains a list of results and a nextPageToken if applicable.", + "originalRequest": { "url": { "path": [ "api", "v1", "apps", - ":src_app_id", - ":src_app_entitlement_id", - "bindings", - ":dst_app_id", - ":dst_app_entitlement_id" + ":app_id", + "entitlements", + "users", + ":app_user_id" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [ + "query": [ { - "type": "any", - "value": "", - "key": "src_app_id", "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" - } + }, + "key": "page_size", + "value": "" }, { - "type": "any", - "value": "", - "key": "src_app_entitlement_id", "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "dst_app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "dst_app_entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "120c1f03-e3b3-468a-b268-d2b397eaad9a", - "name": "The response message for getting a specific entitlement proxy binding.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":src_app_id", - ":src_app_entitlement_id", - "bindings", - ":dst_app_id", - ":dst_app_entitlement_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "src_app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "src_app_entitlement_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "dst_app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "dst_app_entitlement_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" + "key": "page_token", + "value": "" } ], - "body": "{\n \"appProxyEntitlementView\": {\n \"appProxyEntitlement\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disabledAt\": \"\",\n \"dstAppEntitlementId\": \"\",\n \"dstAppId\": \"\",\n \"implicit\": \"\",\n \"srcAppEntitlementId\": \"\",\n \"srcAppId\": \"\",\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n },\n \"dstAppEntitlementPath\": \"\",\n \"dstAppPath\": \"\",\n \"srcAppEntitlementPath\": \"\",\n \"srcAppPath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\"\n },\n {\n \"@type\": \"\",\n \"key_0\": 8521.239392550215\n }\n ]\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "e3335f94-304f-4254-9436-3cfca398970f", - "name": "Create", - "request": { - "name": "Create", - "description": { - "content": "Create a proxy binding between a source and destination entitlement, establishing a hierarchical relationship.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "apps", - ":src_app_id", - ":src_app_entitlement_id", - "bindings", - ":dst_app_id", - ":dst_app_entitlement_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], "variable": [ { - "type": "any", - "value": "", - "key": "src_app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - } - }, - { + }, "type": "any", "value": "", - "key": "src_app_entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } + "key": "app_id" }, { - "type": "any", - "value": "", - "key": "dst_app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - } - }, - { + }, "type": "any", "value": "", - "key": "dst_app_entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } + "key": "app_user_id" } ] }, "header": [ { - "key": "Content-Type", + "key": "Accept", "value": "application/json" }, { - "key": "Accept", - "value": "application/json" + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null + "method": "GET", + "body": {} }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "57b11356-9898-45a1-8ca6-b33a1f49a1e4", - "name": "The response message for creating an entitlement proxy binding.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "apps", - ":src_app_id", - ":src_app_entitlement_id", - "bindings", - ":dst_app_id", - ":dst_app_entitlement_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "src_app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "src_app_entitlement_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "dst_app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "dst_app_entitlement_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"appProxyEntitlementView\": {\n \"appProxyEntitlement\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disabledAt\": \"\",\n \"dstAppEntitlementId\": \"\",\n \"dstAppId\": \"\",\n \"implicit\": \"\",\n \"srcAppEntitlementId\": \"\",\n \"srcAppId\": \"\",\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n },\n \"dstAppEntitlementPath\": \"\",\n \"dstAppPath\": \"\",\n \"srcAppEntitlementPath\": \"\",\n \"srcAppPath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 8219.130666939063\n },\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": false,\n \"key_2\": false\n }\n ]\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 4349\n },\n {\n \"@type\": \"\",\n \"key_0\": 1444,\n \"key_1\": \"string\",\n \"key_2\": 6481\n }\n ],\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 8310.474717575822,\n \"key_2\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n }\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } ] } ] } ] - } - ] - }, - { - "name": "connectors", - "description": "", - "item": [ + }, { - "name": "credentials", + "name": "mcp_servers", "description": "", "item": [ { - "id": "6153fd8b-6679-49df-a75c-3397077c4782", - "name": "Rotate Credential", + "id": "36ab3c81-30b8-4327-b1db-7c0f26745470", + "name": "List", "request": { - "name": "Rotate Credential", + "name": "List", "description": { - "content": "Rotate credentials for a connector.", + "content": "List retrieves MCP servers for an app.", "type": "text/plain" }, "url": { @@ -16663,14 +16434,172 @@ "api", "v1", "apps", - "connectors", - "credentials" + ":app_id", + "mcp_servers" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "5e6ea5de-eaef-48b5-869a-8b0dbc2ce35d", + "name": "MCPServerServiceListResponse returns a paginated list of MCP servers.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "mcp_servers" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"appId\": \"\",\n \"authMethod\": \"MCP_SERVER_AUTH_METHOD_OAUTH2\",\n \"awsAccessKeyId\": \"\",\n \"awsSecretAccessKeyConfigured\": \"\",\n \"awsSessionTokenConfigured\": \"\",\n \"basicAuthPasswordConfigured\": \"\",\n \"basicAuthUsername\": \"\",\n \"bearerTokenConfigured\": \"\",\n \"configFieldValues\": {\n \"key_0\": \"\"\n },\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"credentialsSetupUrl\": \"\",\n \"customHeaderName\": \"\",\n \"customHeaderValueConfigured\": \"\",\n \"dataSensitivity\": \"MCP_SERVER_DATA_SENSITIVITY_UNSPECIFIED\",\n \"defaultToolPrefix\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"endpointUrl\": \"\",\n \"endpointUrlLocked\": \"\",\n \"lastCalledAt\": \"\",\n \"mcpServerCatalogId\": \"\",\n \"oauth2AuthorizeUrl\": \"\",\n \"oauth2ClientId\": \"\",\n \"oauth2ClientIdMode\": \"MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_CIMD\",\n \"oauth2ClientSecretExpiresAt\": \"\",\n \"oauth2CodeChallengeMethodsSupported\": [\n \"\",\n \"\"\n ],\n \"oauth2CredentialsConfigured\": \"\",\n \"oauth2ExtraAuthorizeParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"oauth2ExtraTokenParams\": {\n \"key_0\": \"\"\n },\n \"oauth2IssuerUrl\": \"\",\n \"oauth2JwtAudience\": \"\",\n \"oauth2JwtIssuer\": \"\",\n \"oauth2JwtPrivateKeyConfigured\": \"\",\n \"oauth2JwtSubject\": \"\",\n \"oauth2Mode\": \"MCP_SERVER_AUTH_OAUTH2_MODE_CLIENT_CREDENTIALS\",\n \"oauth2Pkce\": \"\",\n \"oauth2Scopes\": null,\n \"oauth2ScopesSupported\": [\n \"\",\n \"\"\n ],\n \"oauth2ServiceAuthorized\": \"\",\n \"oauth2ServiceAuthorizedAsEmail\": \"\",\n \"oauth2ServiceAuthorizedAsName\": \"\",\n \"oauth2ServiceAuthorizedAt\": \"\",\n \"oauth2ServiceAuthorizedBy\": \"\",\n \"oauth2TokenEndpointAuthMethod\": \"\",\n \"oauth2TokenUrl\": \"\",\n \"requireToolApproval\": \"OPTIONAL_BOOL_FALSE\",\n \"serverType\": \"MCP_SERVER_TYPE_HOSTED\",\n \"sourceAppId\": \"\",\n \"tokenSharing\": \"MCP_SERVER_TOKEN_SHARING_PER_USER\",\n \"toolPrefix\": \"\",\n \"transportType\": \"MCP_SERVER_TRANSPORT_TYPE_STREAMABLE_HTTP\",\n \"tunnelApplianceId\": \"\",\n \"tunnelBridgeId\": \"\",\n \"tunnelServiceName\": \"\",\n \"tunneled\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"appId\": \"\",\n \"authMethod\": \"MCP_SERVER_AUTH_METHOD_BEARER_TOKEN\",\n \"awsAccessKeyId\": \"\",\n \"awsSecretAccessKeyConfigured\": \"\",\n \"awsSessionTokenConfigured\": \"\",\n \"basicAuthPasswordConfigured\": \"\",\n \"basicAuthUsername\": \"\",\n \"bearerTokenConfigured\": \"\",\n \"configFieldValues\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"credentialsSetupUrl\": \"\",\n \"customHeaderName\": \"\",\n \"customHeaderValueConfigured\": \"\",\n \"dataSensitivity\": \"MCP_SERVER_DATA_SENSITIVITY_RESTRICTED\",\n \"defaultToolPrefix\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"endpointUrl\": \"\",\n \"endpointUrlLocked\": \"\",\n \"lastCalledAt\": \"\",\n \"mcpServerCatalogId\": \"\",\n \"oauth2AuthorizeUrl\": \"\",\n \"oauth2ClientId\": \"\",\n \"oauth2ClientIdMode\": \"MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_CIMD\",\n \"oauth2ClientSecretExpiresAt\": \"\",\n \"oauth2CodeChallengeMethodsSupported\": [\n \"\",\n \"\"\n ],\n \"oauth2CredentialsConfigured\": \"\",\n \"oauth2ExtraAuthorizeParams\": {\n \"key_0\": \"\"\n },\n \"oauth2ExtraTokenParams\": {\n \"key_0\": \"\"\n },\n \"oauth2IssuerUrl\": \"\",\n \"oauth2JwtAudience\": \"\",\n \"oauth2JwtIssuer\": \"\",\n \"oauth2JwtPrivateKeyConfigured\": \"\",\n \"oauth2JwtSubject\": \"\",\n \"oauth2Mode\": \"MCP_SERVER_AUTH_OAUTH2_MODE_PASSTHROUGH\",\n \"oauth2Pkce\": \"\",\n \"oauth2Scopes\": null,\n \"oauth2ScopesSupported\": null,\n \"oauth2ServiceAuthorized\": \"\",\n \"oauth2ServiceAuthorizedAsEmail\": \"\",\n \"oauth2ServiceAuthorizedAsName\": \"\",\n \"oauth2ServiceAuthorizedAt\": \"\",\n \"oauth2ServiceAuthorizedBy\": \"\",\n \"oauth2TokenEndpointAuthMethod\": \"\",\n \"oauth2TokenUrl\": \"\",\n \"requireToolApproval\": \"OPTIONAL_BOOL_UNSPECIFIED\",\n \"serverType\": \"MCP_SERVER_TYPE_UNSPECIFIED\",\n \"sourceAppId\": \"\",\n \"tokenSharing\": \"MCP_SERVER_TOKEN_SHARING_SHARED\",\n \"toolPrefix\": \"\",\n \"transportType\": \"MCP_SERVER_TRANSPORT_TYPE_SSE\",\n \"tunnelApplianceId\": \"\",\n \"tunnelBridgeId\": \"\",\n \"tunnelServiceName\": \"\",\n \"tunneled\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "45b98b6f-0e82-4718-8abb-541bc91d7008", + "name": "Register", + "request": { + "name": "Register", + "description": { + "content": "Register a new MCP server under an application. Set server_type to HOSTED\n (C1 runs a catalog integration) or EXTERNAL (a third-party MCP server you\n point C1 at by URL). Auth credentials are validated and stored securely.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "mcp_servers" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -16685,7 +16614,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appId\": \"\",\n \"connectorId\": \"\"\n}", + "raw": "{\n \"accessProfileIds\": null,\n \"acknowledgedFindingIds\": null,\n \"appManagedStateBindingRef\": {\n \"appId\": \"\",\n \"resourceId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"dataSensitivity\": \"MCP_SERVER_DATA_SENSITIVITY_RESTRICTED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"externalConfig\": {\n \"basicAuth\": {\n \"password\": \"\",\n \"username\": \"\"\n },\n \"bearerToken\": {\n \"token\": \"\"\n },\n \"customHeader\": {\n \"headerName\": \"\",\n \"headerValue\": \"\"\n },\n \"none\": {},\n \"oauth2\": {\n \"authorizeUrl\": \"\",\n \"clientId\": \"\",\n \"clientIdMode\": \"MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_DCR\",\n \"clientSecret\": \"\",\n \"codeChallengeMethodsSupported\": null,\n \"extraAuthorizeParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"extraTokenParams\": {\n \"key_0\": \"\"\n },\n \"issuerUrl\": \"\",\n \"jwtAudience\": \"\",\n \"jwtIssuer\": \"\",\n \"jwtPrivateKey\": \"\",\n \"jwtSubject\": \"\",\n \"mode\": \"MCP_SERVER_AUTH_OAUTH2_MODE_CLIENT_CREDENTIALS\",\n \"pkce\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ],\n \"scopesSupported\": [\n \"\",\n \"\"\n ],\n \"tokenEndpointAuthMethod\": \"\",\n \"tokenUrl\": \"\"\n },\n \"requireToolApproval\": \"OPTIONAL_BOOL_TRUE\",\n \"tokenSharing\": \"MCP_SERVER_TOKEN_SHARING_SHARED\",\n \"transportType\": \"MCP_SERVER_TRANSPORT_TYPE_STREAMABLE_HTTP\",\n \"url\": \"\"\n },\n \"hostedConfig\": {\n \"awsSigv4\": {\n \"accessKeyId\": \"\",\n \"secretAccessKey\": \"\",\n \"sessionToken\": \"\"\n },\n \"basicAuth\": {\n \"password\": \"\",\n \"username\": \"\"\n },\n \"bearerToken\": {\n \"token\": \"\"\n },\n \"configFields\": {\n \"key_0\": \"\"\n },\n \"customHeader\": {\n \"headerName\": \"\",\n \"headerValue\": \"\"\n },\n \"googleServiceAccount\": {\n \"credentialsJson\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ]\n },\n \"mcpServerCatalogId\": \"\",\n \"none\": {},\n \"oauth2\": {\n \"authorizeUrl\": \"\",\n \"clientId\": \"\",\n \"clientIdMode\": \"MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_UNSPECIFIED\",\n \"clientSecret\": \"\",\n \"codeChallengeMethodsSupported\": null,\n \"extraAuthorizeParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"extraTokenParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"issuerUrl\": \"\",\n \"jwtAudience\": \"\",\n \"jwtIssuer\": \"\",\n \"jwtPrivateKey\": \"\",\n \"jwtSubject\": \"\",\n \"mode\": \"MCP_SERVER_AUTH_OAUTH2_MODE_SERVICE\",\n \"pkce\": \"\",\n \"scopes\": null,\n \"scopesSupported\": [\n \"\",\n \"\"\n ],\n \"tokenEndpointAuthMethod\": \"\",\n \"tokenUrl\": \"\"\n },\n \"requireToolApproval\": \"OPTIONAL_BOOL_UNSPECIFIED\",\n \"sourceAppId\": \"\",\n \"tokenSharing\": \"MCP_SERVER_TOKEN_SHARING_PER_USER\"\n },\n \"oauthDiagnosticId\": \"\",\n \"serverType\": \"MCP_SERVER_TYPE_UNSPECIFIED\",\n \"toolPrefix\": \"\",\n \"tunnelApplianceId\": \"\",\n \"tunnelPath\": \"\",\n \"tunnelServiceName\": \"\",\n \"tunneled\": \"\",\n \"userIds\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -16697,22 +16626,33 @@ }, "response": [ { - "id": "e7a8bd18-1f01-40d7-a070-2da3ef6a654d", - "name": "ConnectorServiceRotateCredentialResponse is the response returned by the rotate method.", + "id": "53504ae1-eb61-4abb-96ab-e705eccf42d6", + "name": "MCPServerServiceRegisterResponse returns the newly created MCP server.", "originalRequest": { "url": { "path": [ "api", "v1", "apps", - "connectors", - "credentials" + ":app_id", + "mcp_servers" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] }, "header": [ { @@ -16735,7 +16675,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appId\": \"\",\n \"connectorId\": \"\"\n}", + "raw": "{\n \"accessProfileIds\": null,\n \"acknowledgedFindingIds\": null,\n \"appManagedStateBindingRef\": {\n \"appId\": \"\",\n \"resourceId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"dataSensitivity\": \"MCP_SERVER_DATA_SENSITIVITY_RESTRICTED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"externalConfig\": {\n \"basicAuth\": {\n \"password\": \"\",\n \"username\": \"\"\n },\n \"bearerToken\": {\n \"token\": \"\"\n },\n \"customHeader\": {\n \"headerName\": \"\",\n \"headerValue\": \"\"\n },\n \"none\": {},\n \"oauth2\": {\n \"authorizeUrl\": \"\",\n \"clientId\": \"\",\n \"clientIdMode\": \"MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_DCR\",\n \"clientSecret\": \"\",\n \"codeChallengeMethodsSupported\": null,\n \"extraAuthorizeParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"extraTokenParams\": {\n \"key_0\": \"\"\n },\n \"issuerUrl\": \"\",\n \"jwtAudience\": \"\",\n \"jwtIssuer\": \"\",\n \"jwtPrivateKey\": \"\",\n \"jwtSubject\": \"\",\n \"mode\": \"MCP_SERVER_AUTH_OAUTH2_MODE_CLIENT_CREDENTIALS\",\n \"pkce\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ],\n \"scopesSupported\": [\n \"\",\n \"\"\n ],\n \"tokenEndpointAuthMethod\": \"\",\n \"tokenUrl\": \"\"\n },\n \"requireToolApproval\": \"OPTIONAL_BOOL_TRUE\",\n \"tokenSharing\": \"MCP_SERVER_TOKEN_SHARING_SHARED\",\n \"transportType\": \"MCP_SERVER_TRANSPORT_TYPE_STREAMABLE_HTTP\",\n \"url\": \"\"\n },\n \"hostedConfig\": {\n \"awsSigv4\": {\n \"accessKeyId\": \"\",\n \"secretAccessKey\": \"\",\n \"sessionToken\": \"\"\n },\n \"basicAuth\": {\n \"password\": \"\",\n \"username\": \"\"\n },\n \"bearerToken\": {\n \"token\": \"\"\n },\n \"configFields\": {\n \"key_0\": \"\"\n },\n \"customHeader\": {\n \"headerName\": \"\",\n \"headerValue\": \"\"\n },\n \"googleServiceAccount\": {\n \"credentialsJson\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ]\n },\n \"mcpServerCatalogId\": \"\",\n \"none\": {},\n \"oauth2\": {\n \"authorizeUrl\": \"\",\n \"clientId\": \"\",\n \"clientIdMode\": \"MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_UNSPECIFIED\",\n \"clientSecret\": \"\",\n \"codeChallengeMethodsSupported\": null,\n \"extraAuthorizeParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"extraTokenParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"issuerUrl\": \"\",\n \"jwtAudience\": \"\",\n \"jwtIssuer\": \"\",\n \"jwtPrivateKey\": \"\",\n \"jwtSubject\": \"\",\n \"mode\": \"MCP_SERVER_AUTH_OAUTH2_MODE_SERVICE\",\n \"pkce\": \"\",\n \"scopes\": null,\n \"scopesSupported\": [\n \"\",\n \"\"\n ],\n \"tokenEndpointAuthMethod\": \"\",\n \"tokenUrl\": \"\"\n },\n \"requireToolApproval\": \"OPTIONAL_BOOL_UNSPECIFIED\",\n \"sourceAppId\": \"\",\n \"tokenSharing\": \"MCP_SERVER_TOKEN_SHARING_PER_USER\"\n },\n \"oauthDiagnosticId\": \"\",\n \"serverType\": \"MCP_SERVER_TYPE_UNSPECIFIED\",\n \"toolPrefix\": \"\",\n \"tunnelApplianceId\": \"\",\n \"tunnelPath\": \"\",\n \"tunnelServiceName\": \"\",\n \"tunneled\": \"\",\n \"userIds\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -16752,7 +16692,7 @@ "value": "application/json" } ], - "body": "{\n \"credential\": {\n \"appId\": \"\",\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"accessProfilesAttached\": \"\",\n \"mcpServer\": {\n \"appId\": \"\",\n \"authMethod\": \"MCP_SERVER_AUTH_METHOD_OAUTH2\",\n \"awsAccessKeyId\": \"\",\n \"awsSecretAccessKeyConfigured\": \"\",\n \"awsSessionTokenConfigured\": \"\",\n \"basicAuthPasswordConfigured\": \"\",\n \"basicAuthUsername\": \"\",\n \"bearerTokenConfigured\": \"\",\n \"configFieldValues\": {\n \"key_0\": \"\"\n },\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"credentialsSetupUrl\": \"\",\n \"customHeaderName\": \"\",\n \"customHeaderValueConfigured\": \"\",\n \"dataSensitivity\": \"MCP_SERVER_DATA_SENSITIVITY_PUBLIC\",\n \"defaultToolPrefix\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"endpointUrl\": \"\",\n \"endpointUrlLocked\": \"\",\n \"lastCalledAt\": \"\",\n \"mcpServerCatalogId\": \"\",\n \"oauth2AuthorizeUrl\": \"\",\n \"oauth2ClientId\": \"\",\n \"oauth2ClientIdMode\": \"MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_UNSPECIFIED\",\n \"oauth2ClientSecretExpiresAt\": \"\",\n \"oauth2CodeChallengeMethodsSupported\": [\n \"\",\n \"\"\n ],\n \"oauth2CredentialsConfigured\": \"\",\n \"oauth2ExtraAuthorizeParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"oauth2ExtraTokenParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"oauth2IssuerUrl\": \"\",\n \"oauth2JwtAudience\": \"\",\n \"oauth2JwtIssuer\": \"\",\n \"oauth2JwtPrivateKeyConfigured\": \"\",\n \"oauth2JwtSubject\": \"\",\n \"oauth2Mode\": \"MCP_SERVER_AUTH_OAUTH2_MODE_JWT_BEARER\",\n \"oauth2Pkce\": \"\",\n \"oauth2Scopes\": [\n \"\",\n \"\"\n ],\n \"oauth2ScopesSupported\": null,\n \"oauth2ServiceAuthorized\": \"\",\n \"oauth2ServiceAuthorizedAsEmail\": \"\",\n \"oauth2ServiceAuthorizedAsName\": \"\",\n \"oauth2ServiceAuthorizedAt\": \"\",\n \"oauth2ServiceAuthorizedBy\": \"\",\n \"oauth2TokenEndpointAuthMethod\": \"\",\n \"oauth2TokenUrl\": \"\",\n \"requireToolApproval\": \"OPTIONAL_BOOL_UNSPECIFIED\",\n \"serverType\": \"MCP_SERVER_TYPE_HOSTED\",\n \"sourceAppId\": \"\",\n \"tokenSharing\": \"MCP_SERVER_TOKEN_SHARING_SHARED\",\n \"toolPrefix\": \"\",\n \"transportType\": \"MCP_SERVER_TRANSPORT_TYPE_UNSPECIFIED\",\n \"tunnelApplianceId\": \"\",\n \"tunnelBridgeId\": \"\",\n \"tunnelServiceName\": \"\",\n \"tunneled\": \"\",\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -16761,24 +16701,18 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "validate_config", - "description": "", - "item": [ + }, { - "name": "http", + "name": "{connector_id}", "description": "", "item": [ { - "id": "5ad62440-df67-48fd-b30b-798f344e694b", - "name": "Validate Http Connector Config", + "id": "a531d181-e32d-438b-8581-5fb648a7b570", + "name": "Delete", "request": { - "name": "Validate Http Connector Config", + "name": "Delete", "description": { - "content": "Validate an HTTP connector configuration and return any diagnostics or errors found.", + "content": "Delete an MCP server. Its connector stops and it is soft-deleted from this\n tenant's MCP catalog, and any per-user credentials issued against it are\n revoked.", "type": "text/plain" }, "url": { @@ -16786,15 +16720,36 @@ "api", "v1", "apps", - "connectors", - "validate_config", - "http" + ":app_id", + "mcp_servers", + ":connector_id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -16806,10 +16761,10 @@ "value": "application/json" } ], - "method": "POST", + "method": "DELETE", "body": { "mode": "raw", - "raw": "{\n \"text\": \"\"\n}", + "raw": "{}", "options": { "raw": { "headerFamily": "json", @@ -16821,23 +16776,44 @@ }, "response": [ { - "id": "3dd438c2-bd98-4d46-a2ab-3d7afef9246f", - "name": "The EditorValidateResponse message contains validation results.", + "id": "853eaae2-d0b7-4531-a89f-361746dffa69", + "name": "MCPServerServiceDeleteResponse confirms deletion.", "originalRequest": { "url": { "path": [ "api", "v1", "apps", - "connectors", - "validate_config", - "http" + ":app_id", + "mcp_servers", + ":connector_id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + } + ] }, "header": [ { @@ -16857,10 +16833,10 @@ "value": "Bearer " } ], - "method": "POST", + "method": "DELETE", "body": { "mode": "raw", - "raw": "{\n \"text\": \"\"\n}", + "raw": "{}", "options": { "raw": { "headerFamily": "json", @@ -16877,7 +16853,7 @@ "value": "application/json" } ], - "body": "{\n \"markers\": [\n {\n \"endColumn\": \"\",\n \"endLineNumber\": \"\",\n \"message\": \"\",\n \"severity\": \"ERROR\",\n \"startColumn\": \"\",\n \"startLineNumber\": \"\"\n },\n {\n \"endColumn\": \"\",\n \"endLineNumber\": \"\",\n \"message\": \"\",\n \"severity\": \"HINT\",\n \"startColumn\": \"\",\n \"startLineNumber\": \"\"\n }\n ]\n}", + "body": "{}", "cookie": [], "_postman_previewlanguage": "json" } @@ -16886,644 +16862,943 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - } - ] - } - ] - } - ] - }, - { - "name": "attribute", - "description": "", - "item": [ - { - "name": "{id}", - "description": "", - "item": [ - { - "id": "e97c1b58-b7ef-4a93-8b3e-909c462bfd7f", - "name": "Delete Attribute Value", - "request": { - "name": "Delete Attribute Value", - "description": { - "content": "Delete an attribute value by id.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "attribute", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ + }, { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "45930715-6fec-41dd-9099-164cf99583af", - "name": "DeleteAttributeValueResponse is the empty response for deleting an attribute value.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "attribute", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ + "id": "2081b269-3a1e-475b-b7a1-1ff33a9d2d43", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get retrieves a single MCP server.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "mcp_servers", + ":connector_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "id": "88a298f6-b177-4926-953a-429bf1ea2243", + "name": "MCPServerServiceGetResponse returns a single MCP server.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "mcp_servers", + ":connector_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} }, - "type": "any", - "value": "", - "key": "id" + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"mcpServer\": {\n \"appId\": \"\",\n \"authMethod\": \"MCP_SERVER_AUTH_METHOD_OAUTH2\",\n \"awsAccessKeyId\": \"\",\n \"awsSecretAccessKeyConfigured\": \"\",\n \"awsSessionTokenConfigured\": \"\",\n \"basicAuthPasswordConfigured\": \"\",\n \"basicAuthUsername\": \"\",\n \"bearerTokenConfigured\": \"\",\n \"configFieldValues\": {\n \"key_0\": \"\"\n },\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"credentialsSetupUrl\": \"\",\n \"customHeaderName\": \"\",\n \"customHeaderValueConfigured\": \"\",\n \"dataSensitivity\": \"MCP_SERVER_DATA_SENSITIVITY_INTERNAL\",\n \"defaultToolPrefix\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"endpointUrl\": \"\",\n \"endpointUrlLocked\": \"\",\n \"lastCalledAt\": \"\",\n \"mcpServerCatalogId\": \"\",\n \"oauth2AuthorizeUrl\": \"\",\n \"oauth2ClientId\": \"\",\n \"oauth2ClientIdMode\": \"MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_DCR\",\n \"oauth2ClientSecretExpiresAt\": \"\",\n \"oauth2CodeChallengeMethodsSupported\": null,\n \"oauth2CredentialsConfigured\": \"\",\n \"oauth2ExtraAuthorizeParams\": {\n \"key_0\": \"\"\n },\n \"oauth2ExtraTokenParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"oauth2IssuerUrl\": \"\",\n \"oauth2JwtAudience\": \"\",\n \"oauth2JwtIssuer\": \"\",\n \"oauth2JwtPrivateKeyConfigured\": \"\",\n \"oauth2JwtSubject\": \"\",\n \"oauth2Mode\": \"MCP_SERVER_AUTH_OAUTH2_MODE_AUTHORIZATION_CODE\",\n \"oauth2Pkce\": \"\",\n \"oauth2Scopes\": [\n \"\",\n \"\"\n ],\n \"oauth2ScopesSupported\": null,\n \"oauth2ServiceAuthorized\": \"\",\n \"oauth2ServiceAuthorizedAsEmail\": \"\",\n \"oauth2ServiceAuthorizedAsName\": \"\",\n \"oauth2ServiceAuthorizedAt\": \"\",\n \"oauth2ServiceAuthorizedBy\": \"\",\n \"oauth2TokenEndpointAuthMethod\": \"\",\n \"oauth2TokenUrl\": \"\",\n \"requireToolApproval\": \"OPTIONAL_BOOL_TRUE\",\n \"serverType\": \"MCP_SERVER_TYPE_HOSTED\",\n \"sourceAppId\": \"\",\n \"tokenSharing\": \"MCP_SERVER_TOKEN_SHARING_UNSPECIFIED\",\n \"toolPrefix\": \"\",\n \"transportType\": \"MCP_SERVER_TRANSPORT_TYPE_STREAMABLE_HTTP\",\n \"tunnelApplianceId\": \"\",\n \"tunnelBridgeId\": \"\",\n \"tunnelServiceName\": \"\",\n \"tunneled\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + { + "id": "03e961aa-beab-4c4f-be02-5680f8b4b6e4", + "name": "Update", + "request": { + "name": "Update", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "Update modifies an existing MCP server's editable fields.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "mcp_servers", + ":connector_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"mcpServer\": {\n \"appId\": \"\",\n \"authMethod\": \"MCP_SERVER_AUTH_METHOD_CUSTOM_HEADER\",\n \"connectorId\": \"\",\n \"dataSensitivity\": \"MCP_SERVER_DATA_SENSITIVITY_CONFIDENTIAL\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"mcpServerCatalogId\": \"\",\n \"requireToolApproval\": \"OPTIONAL_BOOL_FALSE\",\n \"serverType\": \"MCP_SERVER_TYPE_HOSTED\",\n \"sourceAppId\": \"\",\n \"toolPrefix\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "9a79d067-265e-468b-af10-802338e91d96", + "name": "MCPServerServiceUpdateResponse returns the updated MCP server.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "mcp_servers", + ":connector_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"mcpServer\": {\n \"appId\": \"\",\n \"authMethod\": \"MCP_SERVER_AUTH_METHOD_CUSTOM_HEADER\",\n \"connectorId\": \"\",\n \"dataSensitivity\": \"MCP_SERVER_DATA_SENSITIVITY_CONFIDENTIAL\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"mcpServerCatalogId\": \"\",\n \"requireToolApproval\": \"OPTIONAL_BOOL_FALSE\",\n \"serverType\": \"MCP_SERVER_TYPE_HOSTED\",\n \"sourceAppId\": \"\",\n \"toolPrefix\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"mcpServer\": {\n \"appId\": \"\",\n \"authMethod\": \"MCP_SERVER_AUTH_METHOD_AWS_SIGV4\",\n \"awsAccessKeyId\": \"\",\n \"awsSecretAccessKeyConfigured\": \"\",\n \"awsSessionTokenConfigured\": \"\",\n \"basicAuthPasswordConfigured\": \"\",\n \"basicAuthUsername\": \"\",\n \"bearerTokenConfigured\": \"\",\n \"configFieldValues\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"credentialsSetupUrl\": \"\",\n \"customHeaderName\": \"\",\n \"customHeaderValueConfigured\": \"\",\n \"dataSensitivity\": \"MCP_SERVER_DATA_SENSITIVITY_RESTRICTED\",\n \"defaultToolPrefix\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"endpointUrl\": \"\",\n \"endpointUrlLocked\": \"\",\n \"lastCalledAt\": \"\",\n \"mcpServerCatalogId\": \"\",\n \"oauth2AuthorizeUrl\": \"\",\n \"oauth2ClientId\": \"\",\n \"oauth2ClientIdMode\": \"MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_UNSPECIFIED\",\n \"oauth2ClientSecretExpiresAt\": \"\",\n \"oauth2CodeChallengeMethodsSupported\": null,\n \"oauth2CredentialsConfigured\": \"\",\n \"oauth2ExtraAuthorizeParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"oauth2ExtraTokenParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"oauth2IssuerUrl\": \"\",\n \"oauth2JwtAudience\": \"\",\n \"oauth2JwtIssuer\": \"\",\n \"oauth2JwtPrivateKeyConfigured\": \"\",\n \"oauth2JwtSubject\": \"\",\n \"oauth2Mode\": \"MCP_SERVER_AUTH_OAUTH2_MODE_PASSTHROUGH\",\n \"oauth2Pkce\": \"\",\n \"oauth2Scopes\": [\n \"\",\n \"\"\n ],\n \"oauth2ScopesSupported\": [\n \"\",\n \"\"\n ],\n \"oauth2ServiceAuthorized\": \"\",\n \"oauth2ServiceAuthorizedAsEmail\": \"\",\n \"oauth2ServiceAuthorizedAsName\": \"\",\n \"oauth2ServiceAuthorizedAt\": \"\",\n \"oauth2ServiceAuthorizedBy\": \"\",\n \"oauth2TokenEndpointAuthMethod\": \"\",\n \"oauth2TokenUrl\": \"\",\n \"requireToolApproval\": \"OPTIONAL_BOOL_FALSE\",\n \"serverType\": \"MCP_SERVER_TYPE_HOSTED\",\n \"sourceAppId\": \"\",\n \"tokenSharing\": \"MCP_SERVER_TOKEN_SHARING_SHARED\",\n \"toolPrefix\": \"\",\n \"transportType\": \"MCP_SERVER_TRANSPORT_TYPE_STREAMABLE_HTTP\",\n \"tunnelApplianceId\": \"\",\n \"tunnelBridgeId\": \"\",\n \"tunnelServiceName\": \"\",\n \"tunneled\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } - } - }, - "status": "OK", - "code": 200, - "header": [ + }, { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - }, - { - "name": "attributes", - "description": "", - "item": [ - { - "id": "57f02d2d-ad6a-402d-ac7b-d39b76032299", - "name": "Create Attribute Value", - "request": { - "name": "Create Attribute Value", - "description": { - "content": "Create a new attribute value.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "attributes" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"attributeTypeId\": \"\",\n \"value\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "a3c30233-26ba-478f-b8a3-76fe1b5b1918", - "name": "CreateAttributeValueResponse is the response for creating an attribute value.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "attributes" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"attributeTypeId\": \"\",\n \"value\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"value\": {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{id}", - "description": "", - "item": [ - { - "id": "68306832-8e55-449d-a778-35b77de8edc8", - "name": "Get Attribute Value", - "request": { - "name": "Get Attribute Value", - "description": { - "content": "Get an attribute value by id.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "attributes", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "a593cab6-4c1b-475d-8f1d-5f9fbae5a3cc", - "name": "GetAttributeValueResponse is the response for getting an attribute value by id.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "attributes", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ + "name": "credentials", + "description": "", + "item": [ { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "id": "02981e48-43ac-42a0-84a5-d2238b0d0759", + "name": "Update Credentials", + "request": { + "name": "Update Credentials", + "description": { + "content": "UpdateCredentials replaces the auth config and/or config fields for an MCP server.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "mcp_servers", + ":connector_id", + "credentials" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"externalConfig\": {\n \"basicAuth\": {\n \"password\": \"\",\n \"username\": \"\"\n },\n \"bearerToken\": {\n \"token\": \"\"\n },\n \"customHeader\": {\n \"headerName\": \"\",\n \"headerValue\": \"\"\n },\n \"none\": {},\n \"oauth2\": {\n \"authorizeUrl\": \"\",\n \"clientId\": \"\",\n \"clientIdMode\": \"MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_UNSPECIFIED\",\n \"clientSecret\": \"\",\n \"codeChallengeMethodsSupported\": [\n \"\",\n \"\"\n ],\n \"extraAuthorizeParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"extraTokenParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"issuerUrl\": \"\",\n \"jwtAudience\": \"\",\n \"jwtIssuer\": \"\",\n \"jwtPrivateKey\": \"\",\n \"jwtSubject\": \"\",\n \"mode\": \"MCP_SERVER_AUTH_OAUTH2_MODE_PASSTHROUGH\",\n \"pkce\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ],\n \"scopesSupported\": null,\n \"tokenEndpointAuthMethod\": \"\",\n \"tokenUrl\": \"\"\n },\n \"requireToolApproval\": \"OPTIONAL_BOOL_UNSPECIFIED\",\n \"tokenSharing\": \"MCP_SERVER_TOKEN_SHARING_PER_USER\",\n \"transportType\": \"MCP_SERVER_TRANSPORT_TYPE_UNSPECIFIED\",\n \"url\": \"\"\n },\n \"hostedConfig\": {\n \"awsSigv4\": {\n \"accessKeyId\": \"\",\n \"secretAccessKey\": \"\",\n \"sessionToken\": \"\"\n },\n \"basicAuth\": {\n \"password\": \"\",\n \"username\": \"\"\n },\n \"bearerToken\": {\n \"token\": \"\"\n },\n \"configFields\": {\n \"key_0\": \"\"\n },\n \"customHeader\": {\n \"headerName\": \"\",\n \"headerValue\": \"\"\n },\n \"googleServiceAccount\": {\n \"credentialsJson\": \"\",\n \"scopes\": null\n },\n \"mcpServerCatalogId\": \"\",\n \"none\": {},\n \"oauth2\": {\n \"authorizeUrl\": \"\",\n \"clientId\": \"\",\n \"clientIdMode\": \"MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_UNSPECIFIED\",\n \"clientSecret\": \"\",\n \"codeChallengeMethodsSupported\": [\n \"\",\n \"\"\n ],\n \"extraAuthorizeParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"extraTokenParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"issuerUrl\": \"\",\n \"jwtAudience\": \"\",\n \"jwtIssuer\": \"\",\n \"jwtPrivateKey\": \"\",\n \"jwtSubject\": \"\",\n \"mode\": \"MCP_SERVER_AUTH_OAUTH2_MODE_JWT_BEARER\",\n \"pkce\": \"\",\n \"scopes\": null,\n \"scopesSupported\": null,\n \"tokenEndpointAuthMethod\": \"\",\n \"tokenUrl\": \"\"\n },\n \"requireToolApproval\": \"OPTIONAL_BOOL_FALSE\",\n \"sourceAppId\": \"\",\n \"tokenSharing\": \"MCP_SERVER_TOKEN_SHARING_PER_USER\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null }, - "type": "any", - "value": "", - "key": "id" + "response": [ + { + "id": "44e19453-a070-4811-8c3d-251d77357b1c", + "name": "MCPServerServiceUpdateCredentialsResponse returns the updated MCP server.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "mcp_servers", + ":connector_id", + "credentials" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"externalConfig\": {\n \"basicAuth\": {\n \"password\": \"\",\n \"username\": \"\"\n },\n \"bearerToken\": {\n \"token\": \"\"\n },\n \"customHeader\": {\n \"headerName\": \"\",\n \"headerValue\": \"\"\n },\n \"none\": {},\n \"oauth2\": {\n \"authorizeUrl\": \"\",\n \"clientId\": \"\",\n \"clientIdMode\": \"MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_UNSPECIFIED\",\n \"clientSecret\": \"\",\n \"codeChallengeMethodsSupported\": [\n \"\",\n \"\"\n ],\n \"extraAuthorizeParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"extraTokenParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"issuerUrl\": \"\",\n \"jwtAudience\": \"\",\n \"jwtIssuer\": \"\",\n \"jwtPrivateKey\": \"\",\n \"jwtSubject\": \"\",\n \"mode\": \"MCP_SERVER_AUTH_OAUTH2_MODE_PASSTHROUGH\",\n \"pkce\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ],\n \"scopesSupported\": null,\n \"tokenEndpointAuthMethod\": \"\",\n \"tokenUrl\": \"\"\n },\n \"requireToolApproval\": \"OPTIONAL_BOOL_UNSPECIFIED\",\n \"tokenSharing\": \"MCP_SERVER_TOKEN_SHARING_PER_USER\",\n \"transportType\": \"MCP_SERVER_TRANSPORT_TYPE_UNSPECIFIED\",\n \"url\": \"\"\n },\n \"hostedConfig\": {\n \"awsSigv4\": {\n \"accessKeyId\": \"\",\n \"secretAccessKey\": \"\",\n \"sessionToken\": \"\"\n },\n \"basicAuth\": {\n \"password\": \"\",\n \"username\": \"\"\n },\n \"bearerToken\": {\n \"token\": \"\"\n },\n \"configFields\": {\n \"key_0\": \"\"\n },\n \"customHeader\": {\n \"headerName\": \"\",\n \"headerValue\": \"\"\n },\n \"googleServiceAccount\": {\n \"credentialsJson\": \"\",\n \"scopes\": null\n },\n \"mcpServerCatalogId\": \"\",\n \"none\": {},\n \"oauth2\": {\n \"authorizeUrl\": \"\",\n \"clientId\": \"\",\n \"clientIdMode\": \"MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_UNSPECIFIED\",\n \"clientSecret\": \"\",\n \"codeChallengeMethodsSupported\": [\n \"\",\n \"\"\n ],\n \"extraAuthorizeParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"extraTokenParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"issuerUrl\": \"\",\n \"jwtAudience\": \"\",\n \"jwtIssuer\": \"\",\n \"jwtPrivateKey\": \"\",\n \"jwtSubject\": \"\",\n \"mode\": \"MCP_SERVER_AUTH_OAUTH2_MODE_JWT_BEARER\",\n \"pkce\": \"\",\n \"scopes\": null,\n \"scopesSupported\": null,\n \"tokenEndpointAuthMethod\": \"\",\n \"tokenUrl\": \"\"\n },\n \"requireToolApproval\": \"OPTIONAL_BOOL_FALSE\",\n \"sourceAppId\": \"\",\n \"tokenSharing\": \"MCP_SERVER_TOKEN_SHARING_PER_USER\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"mcpServer\": {\n \"appId\": \"\",\n \"authMethod\": \"MCP_SERVER_AUTH_METHOD_AWS_SIGV4\",\n \"awsAccessKeyId\": \"\",\n \"awsSecretAccessKeyConfigured\": \"\",\n \"awsSessionTokenConfigured\": \"\",\n \"basicAuthPasswordConfigured\": \"\",\n \"basicAuthUsername\": \"\",\n \"bearerTokenConfigured\": \"\",\n \"configFieldValues\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"credentialsSetupUrl\": \"\",\n \"customHeaderName\": \"\",\n \"customHeaderValueConfigured\": \"\",\n \"dataSensitivity\": \"MCP_SERVER_DATA_SENSITIVITY_PUBLIC\",\n \"defaultToolPrefix\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"endpointUrl\": \"\",\n \"endpointUrlLocked\": \"\",\n \"lastCalledAt\": \"\",\n \"mcpServerCatalogId\": \"\",\n \"oauth2AuthorizeUrl\": \"\",\n \"oauth2ClientId\": \"\",\n \"oauth2ClientIdMode\": \"MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_UNSPECIFIED\",\n \"oauth2ClientSecretExpiresAt\": \"\",\n \"oauth2CodeChallengeMethodsSupported\": [\n \"\",\n \"\"\n ],\n \"oauth2CredentialsConfigured\": \"\",\n \"oauth2ExtraAuthorizeParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"oauth2ExtraTokenParams\": {\n \"key_0\": \"\"\n },\n \"oauth2IssuerUrl\": \"\",\n \"oauth2JwtAudience\": \"\",\n \"oauth2JwtIssuer\": \"\",\n \"oauth2JwtPrivateKeyConfigured\": \"\",\n \"oauth2JwtSubject\": \"\",\n \"oauth2Mode\": \"MCP_SERVER_AUTH_OAUTH2_MODE_AUTHORIZATION_CODE\",\n \"oauth2Pkce\": \"\",\n \"oauth2Scopes\": null,\n \"oauth2ScopesSupported\": null,\n \"oauth2ServiceAuthorized\": \"\",\n \"oauth2ServiceAuthorizedAsEmail\": \"\",\n \"oauth2ServiceAuthorizedAsName\": \"\",\n \"oauth2ServiceAuthorizedAt\": \"\",\n \"oauth2ServiceAuthorizedBy\": \"\",\n \"oauth2TokenEndpointAuthMethod\": \"\",\n \"oauth2TokenUrl\": \"\",\n \"requireToolApproval\": \"OPTIONAL_BOOL_TRUE\",\n \"serverType\": \"MCP_SERVER_TYPE_HOSTED\",\n \"sourceAppId\": \"\",\n \"tokenSharing\": \"MCP_SERVER_TOKEN_SHARING_SHARED\",\n \"toolPrefix\": \"\",\n \"transportType\": \"MCP_SERVER_TRANSPORT_TYPE_UNSPECIFIED\",\n \"tunnelApplianceId\": \"\",\n \"tunnelBridgeId\": \"\",\n \"tunnelServiceName\": \"\",\n \"tunneled\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } ] }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ { - "key": "Content-Type", - "value": "application/json" + "name": "resync_tools", + "description": "", + "item": [ + { + "id": "cea94fe2-3b5a-45ea-a049-9ff45a7ea726", + "name": "Resync Tools", + "request": { + "name": "Resync Tools", + "description": { + "content": "ResyncTools re-runs per-identity tool discovery for the calling user's\n own credential on a per-user MCP server, so a session opened before the\n user connected (or after their visible tools changed) doesn't have to\n wait for the next unrelated MCPTool/AppEntitlementUserBinding change to\n pick it up.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "mcp_servers", + ":connector_id", + "resync_tools" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "1145314a-1bc6-4d89-b8e7-b70fff0d02ed", + "name": "MCPServerServiceResyncToolsResponse is empty on success.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "mcp_servers", + ":connector_id", + "resync_tools" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] } - ], - "body": "{\n \"value\": {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "compliance_frameworks", - "description": "", - "item": [ - { - "id": "590928da-1cf1-469c-9519-f24c8a82ca11", - "name": "List Compliance Frameworks", - "request": { - "name": "List Compliance Frameworks", - "description": { - "content": "List all compliance framework attribute values (e.g., SOC 2, HIPAA) with pagination.", - "type": "text/plain" + ] }, - "url": { - "path": [ - "api", - "v1", - "attributes", - "compliance_frameworks" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, + { + "name": "search", + "description": "", + "item": [ { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "adb0a6e2-b391-4dfc-8d9b-e040f6bfd168", - "name": "ListComplianceFrameworksResponse is the response for listing compliance framework attribute values.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "attributes", - "compliance_frameworks" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" + "id": "49fe8ef5-90cd-401b-b902-b916c506f822", + "name": "Search With Tool Count", + "request": { + "name": "Search With Tool Count", + "description": { + "content": "SearchWithToolCount searches MCP servers with filtering and returns per-server tool state counts.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "mcp_servers", + "search" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" }, - "key": "page_size", - "value": "" + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"includeLastCalledAt\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"toolState\": \"MCP_TOOL_STATE_DISABLED\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } }, + "auth": null + }, + "response": [ { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" + "id": "f976002b-b020-4fe1-a766-6d964e0b0152", + "name": "MCPServerServiceSearchWithToolCountResponse returns matching MCP servers with tool counts.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "mcp_servers", + "search" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"includeLastCalledAt\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"toolState\": \"MCP_TOOL_STATE_DISABLED\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, - "key": "page_token", - "value": "" + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" } - ], - "body": "{\n \"list\": [\n {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n },\n {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + ] } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, { - "id": "449a769d-d321-424f-85b0-78e0360bbca1", - "name": "Create Compliance Framework Attribute Value", - "request": { - "name": "Create Compliance Framework Attribute Value", - "description": { - "content": "Create a compliance framework value.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "attributes", - "compliance_frameworks" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"value\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "name": "mcp_toolsets", + "description": "", + "item": [ { - "id": "243ca88a-a627-4f19-9883-79802264c56d", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "attributes", - "compliance_frameworks" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"value\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ + "name": "by_app_entitlement_id", + "description": "", + "item": [ { - "key": "Content-Type", - "value": "application/json" + "name": "{app_entitlement_id}", + "description": "", + "item": [ + { + "id": "08dc2c81-a1b5-40c9-bc92-b8fb71ceb1d2", + "name": "Get By App Entitlement Id", + "request": { + "name": "Get By App Entitlement Id", + "description": { + "content": "GetByAppEntitlementId looks up the toolset (access profile) linked to a\n synced role entitlement, by app_id + app_entitlement_id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "mcp_toolsets", + "by_app_entitlement_id", + ":app_entitlement_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "3a1f5f28-60a4-4d7f-ba77-31750d2d35e0", + "name": "MCPAccessProfileServiceGetByAppEntitlementIdResponse returns the matched profile.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "mcp_toolsets", + "by_app_entitlement_id", + ":app_entitlement_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"profile\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"connectorDisplayName\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"requestable\": \"\",\n \"toolCount\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] } - ], - "body": "{\n \"value\": {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + ] } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, { - "name": "{id}", + "name": "ownerids", "description": "", "item": [ { - "id": "e672119c-4a59-480b-847d-df1f91c197f2", - "name": "Delete Compliance Framework Attribute Value", + "id": "96381504-2759-4bc4-a349-f87660cca605", + "name": "List Owner I Ds", "request": { - "name": "Delete Compliance Framework Attribute Value", + "name": "List Owner I Ds", "description": { - "content": "Delete an attribute value by id.", + "content": "ListOwnerIDs lists owner IDs for a given app.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "attributes", - "compliance_frameworks", - ":id" + "apps", + ":app_id", + "ownerids" ], "host": [ "{{baseUrl}}" @@ -17533,7 +17808,7 @@ { "type": "any", "value": "", - "key": "id", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", @@ -17543,40 +17818,27 @@ ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "f7bbaa3a-9278-418f-b5cd-3abd1072b6ce", - "name": "Successful response", + "id": "097fa897-f3e2-4b4c-8d25-4e6760eb55ca", + "name": "The response message for listing app owners IDs.", "originalRequest": { "url": { "path": [ "api", "v1", - "attributes", - "compliance_frameworks", - ":id" + "apps", + ":app_id", + "ownerids" ], "host": [ "{{baseUrl}}" @@ -17591,15 +17853,11 @@ }, "type": "any", "value": "", - "key": "id" + "key": "app_id" } ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -17613,17 +17871,8 @@ "value": "Bearer " } ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -17633,7 +17882,7 @@ "value": "application/json" } ], - "body": "{}", + "body": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -17642,23 +17891,29 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "owners", + "description": "", + "item": [ { - "id": "bb449d46-dbfb-4cf1-a8e4-815cf469cc00", - "name": "Get Compliance Framework Attribute Value", + "id": "5b8ed73f-4cff-4bb8-a33f-aa28e537fd1f", + "name": "Delete", "request": { - "name": "Get Compliance Framework Attribute Value", + "name": "Delete", "description": { - "content": "Get an attribute value by id.", + "content": "Delete deletes the owners from a given app.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "attributes", - "compliance_frameworks", - ":id" + "apps", + ":app_id", + "owners" ], "host": [ "{{baseUrl}}" @@ -17668,7 +17923,7 @@ { "type": "any", "value": "", - "key": "id", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", @@ -17678,27 +17933,40 @@ ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "933712c4-f41f-4c16-bc24-c5a0ae4cff22", - "name": "Successful response", + "id": "88aab31d-c137-47cd-8f31-2113442ca344", + "name": "the empty response message for deleting app owners.", "originalRequest": { "url": { "path": [ "api", "v1", - "attributes", - "compliance_frameworks", - ":id" + "apps", + ":app_id", + "owners" ], "host": [ "{{baseUrl}}" @@ -17713,11 +17981,15 @@ }, "type": "any", "value": "", - "key": "id" + "key": "app_id" } ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -17731,8 +18003,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -17742,7 +18023,7 @@ "value": "application/json" } ], - "body": "{\n \"value\": {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n }\n}", + "body": "{}", "cookie": [], "_postman_previewlanguage": "json" } @@ -17751,77 +18032,23 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - } - ] - }, - { - "name": "risk_levels", - "description": "", - "item": [ - { - "id": "7f77d497-03f5-446b-9305-92591ff3e1b2", - "name": "List Risk Levels", - "request": { - "name": "List Risk Levels", - "description": { - "content": "List all risk level attribute values with pagination.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "attributes", - "risk_levels" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [] }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ { - "id": "9c7bb3f4-c14b-48c2-93fc-ffb33a3f0b64", - "name": "ListRiskLevelsResponse is the response for listing risk level attribute values.", - "originalRequest": { + "id": "c3b0fa30-fdcb-496f-be52-014386b186ed", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List owners of an app.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "attributes", - "risk_levels" + "apps", + ":app_id", + "owners" ], "host": [ "{{baseUrl}}" @@ -17846,184 +18073,11 @@ "value": "" } ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n },\n {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "86533eeb-d525-4876-935b-6590e1963edd", - "name": "Create Risk Level Attribute Value", - "request": { - "name": "Create Risk Level Attribute Value", - "description": { - "content": "Create a risk level attribute.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "attributes", - "risk_levels" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"value\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "a954ae2c-b45b-4fdb-8e0e-6ba4611be850", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "attributes", - "risk_levels" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"value\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"value\": {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{id}", - "description": "", - "item": [ - { - "id": "4ed42af4-2daa-4b0f-83c6-ccb425bfe387", - "name": "Delete Risk Level Attribute Value", - "request": { - "name": "Delete Risk Level Attribute Value", - "description": { - "content": "Delete a risk level attribute value by id.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "attributes", - "risk_levels", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], "variable": [ { "type": "any", "value": "", - "key": "id", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", @@ -18033,45 +18087,51 @@ ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "4a42d12d-422d-47b6-9f59-4c7f9567d195", + "id": "34c61347-58ee-46b7-9171-7a4a708df57b", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "attributes", - "risk_levels", - ":id" + "apps", + ":app_id", + "owners" ], "host": [ "{{baseUrl}}" ], - "query": [], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], "variable": [ { "disabled": false, @@ -18081,15 +18141,11 @@ }, "type": "any", "value": "", - "key": "id" + "key": "app_id" } ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -18103,17 +18159,8 @@ "value": "Bearer " } ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -18123,7 +18170,7 @@ "value": "application/json" } ], - "body": "{}", + "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"ENABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": null,\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": {\n \"key_0\": 8370,\n \"key_1\": \"string\"\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_HUMAN\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": null\n },\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": null,\n \"directoryIds\": null,\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": null,\n \"employeeIdSources\": null,\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": null,\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": {\n \"key_0\": 9154\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": null\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -18134,21 +18181,21 @@ } }, { - "id": "aaa7694b-c206-43d8-a3f6-6fca5ff343cc", - "name": "Get Risk Level Attribute Value", + "id": "049c8108-7f97-4ee1-a6df-9c15668b13cd", + "name": "Set", "request": { - "name": "Get Risk Level Attribute Value", + "name": "Set", "description": { - "content": "Get a risk level attribute value by id.", + "content": "Sets the owners for a given app to the specified list of users.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "attributes", - "risk_levels", - ":id" + "apps", + ":app_id", + "owners" ], "host": [ "{{baseUrl}}" @@ -18158,7 +18205,7 @@ { "type": "any", "value": "", - "key": "id", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", @@ -18168,27 +18215,40 @@ ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "9ceab297-97f4-48c9-bc1b-803f31f2510d", - "name": "Successful response", + "id": "b74f2063-403f-4d65-99ef-6c75aed709a4", + "name": "The empty response message for setting the app owners.", "originalRequest": { "url": { "path": [ "api", "v1", - "attributes", - "risk_levels", - ":id" + "apps", + ":app_id", + "owners" ], "host": [ "{{baseUrl}}" @@ -18203,11 +18263,15 @@ }, "type": "any", "value": "", - "key": "id" + "key": "app_id" } ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -18221,8 +18285,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -18232,7 +18305,7 @@ "value": "application/json" } ], - "body": "{\n \"value\": {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n }\n}", + "body": "{}", "cookie": [], "_postman_previewlanguage": "json" } @@ -18241,192 +18314,48 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - } - ] - }, - { - "name": "types", - "description": "", - "item": [ - { - "id": "162adeb5-026c-4567-b96b-a3181bf0c0c7", - "name": "List Attribute Types", - "request": { - "name": "List Attribute Types", - "description": { - "content": "List all attribute types.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "attributes", - "types" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [] }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ { - "id": "69d306af-cbf1-4098-be4d-740d742fa6b7", - "name": "ListAttributeTypesResponse is the response for listing attribute types.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "attributes", - "types" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"id\": \"\",\n \"name\": \"\"\n },\n {\n \"id\": \"\",\n \"name\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{attribute_type_id}", - "description": "", - "item": [ - { - "name": "values", - "description": "", - "item": [ - { - "id": "6b7ad9c0-0ee3-423a-9f89-3ba2c8411105", - "name": "List Attribute Values", - "request": { - "name": "List Attribute Values", - "description": { - "content": "List all attribute values for a given attribute type.", - "type": "text/plain" + "name": "{user_id}", + "description": "", + "item": [ + { + "id": "b9189f09-2e62-4fbd-852c-d127aff004fb", + "name": "Remove", + "request": { + "name": "Remove", + "description": { + "content": "Removes an owner from an app.", + "type": "text/plain" }, "url": { "path": [ "api", "v1", - "attributes", - "types", - ":attribute_type_id", - "values" + "apps", + ":app_id", + "owners", + ":user_id" ], "host": [ "{{baseUrl}}" ], - "query": [ + "query": [], + "variable": [ { + "type": "any", + "value": "", + "key": "app_id", "disabled": false, "description": { - "content": "", + "content": "(Required) ", "type": "text/plain" - }, - "key": "page_size", - "value": "" + } }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ { "type": "any", "value": "", - "key": "attribute_type_id", + "key": "user_id", "disabled": false, "description": { "content": "(Required) ", @@ -18436,52 +18365,203 @@ ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "5847d6e6-12c2-4dc7-95e3-92fbcd266ec2", - "name": "ListAttributeValuesResponse is the response for listing attribute values for a given AttributeType.", + "id": "cc2b27e2-935b-47a6-ade9-69c7c30aba97", + "name": "Empty response with a status code indicating success.", "originalRequest": { "url": { "path": [ "api", "v1", - "attributes", - "types", - ":attribute_type_id", - "values" + "apps", + ":app_id", + "owners", + ":user_id" ], "host": [ "{{baseUrl}}" ], - "query": [ + "query": [], + "variable": [ { "disabled": false, "description": { - "content": "", + "content": "(Required) ", "type": "text/plain" }, - "key": "page_size", - "value": "" + "type": "any", + "value": "", + "key": "app_id" }, { "disabled": false, "description": { - "content": "", + "content": "(Required) ", "type": "text/plain" }, - "key": "page_token", - "value": "" + "type": "any", + "value": "", + "key": "user_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "a251023e-4bd6-44a3-a887-60e79760846a", + "name": "Add", + "request": { + "name": "Add", + "description": { + "content": "Adds an owner to an app.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "owners", + ":user_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "user_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "1ca67662-173b-40a0-9769-b3e2705c62e5", + "name": "Empty response with a status code indicating success", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "owners", + ":user_id" + ], + "host": [ + "{{baseUrl}}" ], + "query": [], "variable": [ { "disabled": false, @@ -18491,11 +18571,25 @@ }, "type": "any", "value": "", - "key": "attribute_type_id" + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "user_id" } ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -18509,8 +18603,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -18520,7 +18623,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n },\n {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{}", "cookie": [], "_postman_previewlanguage": "json" } @@ -18533,316 +18636,174 @@ ] } ] - } - ] - } - ] - }, - { - "name": "auth-configs", - "description": "", - "item": [ - { - "id": "d092121d-f807-4cd6-af5d-b653da9de7b7", - "name": "List", - "request": { - "name": "List", - "description": { - "content": "List returns all authentication provider configurations for the tenant.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "auth-configs" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [] }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ { - "id": "364428db-edd6-4cd2-a399-cd02cb99cf7e", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "auth-configs" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" + "name": "report", + "description": "", + "item": [ + { + "id": "cc68c5c2-a8a5-44a9-8d95-e4fbcb5f7a9d", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "Get a list of reports for the given app.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "report" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" + "id": "ca7ee1e6-8588-4053-9871-5c808dce1ffc", + "name": "The AppReportServiceListResponse message contains a list of results and a nextPageToken if applicable.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "report" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} }, - "key": "page_token", - "value": "" + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"downloadUrl\": \"\",\n \"hashes\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"id\": \"\",\n \"state\": \"REPORT_STATE_UNSPECIFIED\"\n },\n {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"downloadUrl\": \"\",\n \"hashes\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"id\": \"\",\n \"state\": \"REPORT_STATE_ERROR\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"bootstrapDomains\": [\n \"\",\n \"\"\n ],\n \"c1Local\": {\n \"delegatedVerifiers\": [\n \"DELEGATED_VERIFIER_TYPE_UNSPECIFIED\",\n \"DELEGATED_VERIFIER_TYPE_MICROSOFT\"\n ]\n },\n \"createdAt\": \"\",\n \"deprecationDeadline\": \"\",\n \"deprecationMessage\": \"\",\n \"displayName\": \"\",\n \"google\": {\n \"hostedDomains\": [\n \"\",\n \"\"\n ]\n },\n \"id\": \"\",\n \"isDefaultBootstrap\": \"\",\n \"jumpcloud\": {\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"microsoft\": {\n \"tenantIds\": [\n \"\",\n \"\"\n ]\n },\n \"oidc\": {\n \"exactMatchClaims\": {\n \"key_0\": \"\"\n },\n \"issuerId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ]\n },\n \"okta\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"onelogin\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"pingone\": {\n \"environmentId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"providerType\": \"AUTH_CONFIG_PROVIDER_TYPE_GOOGLE\",\n \"status\": \"AUTH_CONFIG_STATUS_DEPRECATED\",\n \"updatedAt\": \"\"\n },\n {\n \"bootstrapDomains\": [\n \"\",\n \"\"\n ],\n \"c1Local\": {\n \"delegatedVerifiers\": [\n \"DELEGATED_VERIFIER_TYPE_GITHUB\",\n \"DELEGATED_VERIFIER_TYPE_MICROSOFT\"\n ]\n },\n \"createdAt\": \"\",\n \"deprecationDeadline\": \"\",\n \"deprecationMessage\": \"\",\n \"displayName\": \"\",\n \"google\": {\n \"hostedDomains\": [\n \"\",\n \"\"\n ]\n },\n \"id\": \"\",\n \"isDefaultBootstrap\": \"\",\n \"jumpcloud\": {\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"microsoft\": {\n \"tenantIds\": [\n \"\",\n \"\"\n ]\n },\n \"oidc\": {\n \"exactMatchClaims\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"issuerId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ]\n },\n \"okta\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"onelogin\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"pingone\": {\n \"environmentId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"providerType\": \"AUTH_CONFIG_PROVIDER_TYPE_OKTA\",\n \"status\": \"AUTH_CONFIG_STATUS_DISABLED\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "fd4f79b5-9eea-4d2b-9521-f7339e898b17", - "name": "Create", - "request": { - "name": "Create", - "description": { - "content": "Create registers a new authentication provider configuration for the tenant.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "auth-configs" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"bootstrapDomains\": [\n \"\",\n \"\"\n ],\n \"c1Local\": {\n \"delegatedVerifiers\": [\n \"DELEGATED_VERIFIER_TYPE_UNSPECIFIED\",\n \"DELEGATED_VERIFIER_TYPE_MICROSOFT\"\n ]\n },\n \"deprecationDeadline\": \"\",\n \"deprecationMessage\": \"\",\n \"google\": {\n \"hostedDomains\": [\n \"\",\n \"\"\n ]\n },\n \"isDefaultBootstrap\": \"\",\n \"jumpcloud\": {\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"microsoft\": {\n \"tenantIds\": [\n \"\",\n \"\"\n ]\n },\n \"oidc\": {\n \"exactMatchClaims\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"issuerId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ]\n },\n \"okta\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"onelogin\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"pingone\": {\n \"environmentId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"status\": \"AUTH_CONFIG_STATUS_UNSPECIFIED\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "60507b53-b66f-4ba3-a167-c313b6aade4e", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "auth-configs" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + { + "id": "2fd70b84-0638-4044-b6b3-1863e625faba", + "name": "Generate Report", + "request": { + "name": "Generate Report", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "Generate a report for the given app.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"bootstrapDomains\": [\n \"\",\n \"\"\n ],\n \"c1Local\": {\n \"delegatedVerifiers\": [\n \"DELEGATED_VERIFIER_TYPE_UNSPECIFIED\",\n \"DELEGATED_VERIFIER_TYPE_MICROSOFT\"\n ]\n },\n \"deprecationDeadline\": \"\",\n \"deprecationMessage\": \"\",\n \"google\": {\n \"hostedDomains\": [\n \"\",\n \"\"\n ]\n },\n \"isDefaultBootstrap\": \"\",\n \"jumpcloud\": {\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"microsoft\": {\n \"tenantIds\": [\n \"\",\n \"\"\n ]\n },\n \"oidc\": {\n \"exactMatchClaims\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"issuerId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ]\n },\n \"okta\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"onelogin\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"pingone\": {\n \"environmentId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"status\": \"AUTH_CONFIG_STATUS_UNSPECIFIED\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"authConfig\": {\n \"bootstrapDomains\": [\n \"\",\n \"\"\n ],\n \"c1Local\": {\n \"delegatedVerifiers\": [\n \"DELEGATED_VERIFIER_TYPE_MICROSOFT\",\n \"DELEGATED_VERIFIER_TYPE_UNSPECIFIED\"\n ]\n },\n \"createdAt\": \"\",\n \"deprecationDeadline\": \"\",\n \"deprecationMessage\": \"\",\n \"displayName\": \"\",\n \"google\": {\n \"hostedDomains\": [\n \"\",\n \"\"\n ]\n },\n \"id\": \"\",\n \"isDefaultBootstrap\": \"\",\n \"jumpcloud\": {\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"microsoft\": {\n \"tenantIds\": [\n \"\",\n \"\"\n ]\n },\n \"oidc\": {\n \"exactMatchClaims\": {\n \"key_0\": \"\"\n },\n \"issuerId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ]\n },\n \"okta\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"onelogin\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"pingone\": {\n \"environmentId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"providerType\": \"AUTH_CONFIG_PROVIDER_TYPE_PINGONE\",\n \"status\": \"AUTH_CONFIG_STATUS_UNSPECIFIED\",\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{id}", - "description": "", - "item": [ - { - "id": "45431f72-ce6d-4de0-90dc-5773a0d60cfc", - "name": "Delete", - "request": { - "name": "Delete", - "description": { - "content": "Delete removes an authentication provider configuration from the tenant.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "auth-configs", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "2c66a5f9-1132-4ebe-9fcf-63eff344aa61", - "name": "Successful response", - "originalRequest": { "url": { "path": [ "api", "v1", - "auth-configs", - ":id" + "apps", + ":app_id", + "report" ], "host": [ "{{baseUrl}}" @@ -18850,14 +18811,14 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" + } } ] }, @@ -18869,17 +18830,9 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", "raw": "{}", @@ -18889,95 +18842,143 @@ "language": "json" } } - } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "b897df42-4006-430c-ad8d-ae8e6701ebbf", + "name": "Empty response body. Status code indicates success.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "report" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, { - "id": "5d8dbd25-62e5-4798-ab79-a235030684d1", - "name": "Get", - "request": { - "name": "Get", - "description": { - "content": "Get retrieves a single authentication provider configuration by its ID.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "auth-configs", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + "name": "resource_types", + "description": "", + "item": [ { - "id": "f7fe1fe1-d2b9-4255-998f-2441a68afdc2", - "name": "Successful response", - "originalRequest": { + "id": "ec8f71ec-5a32-447f-aea4-94c386692381", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List app resource types.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "auth-configs", - ":id" + "apps", + ":app_id", + "resource_types" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [ + "query": [ { "disabled": false, "description": { - "content": "(Required) ", + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", "type": "text/plain" }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { "type": "any", "value": "", - "key": "id" + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } ] }, @@ -18985,104 +18986,112 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], "method": "GET", - "body": {} + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "8d1f9fac-db84-46d0-a039-88501a474c0a", + "name": "The AppResourceTypeServiceListResponse message contains a list of results and a nextPageToken if applicable.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\"\n },\n {\n \"@type\": \"\"\n }\n ],\n \"list\": [\n {\n \"appPath\": \"\",\n \"appResourceType\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"traitIds\": null,\n \"updatedAt\": \"\"\n }\n },\n {\n \"appPath\": \"\",\n \"appResourceType\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"traitIds\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"authConfig\": {\n \"bootstrapDomains\": [\n \"\",\n \"\"\n ],\n \"c1Local\": {\n \"delegatedVerifiers\": [\n \"DELEGATED_VERIFIER_TYPE_GITHUB\",\n \"DELEGATED_VERIFIER_TYPE_GITHUB\"\n ]\n },\n \"createdAt\": \"\",\n \"deprecationDeadline\": \"\",\n \"deprecationMessage\": \"\",\n \"displayName\": \"\",\n \"google\": {\n \"hostedDomains\": [\n \"\",\n \"\"\n ]\n },\n \"id\": \"\",\n \"isDefaultBootstrap\": \"\",\n \"jumpcloud\": {\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"microsoft\": {\n \"tenantIds\": [\n \"\",\n \"\"\n ]\n },\n \"oidc\": {\n \"exactMatchClaims\": {\n \"key_0\": \"\"\n },\n \"issuerId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ]\n },\n \"okta\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"onelogin\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"pingone\": {\n \"environmentId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"providerType\": \"AUTH_CONFIG_PROVIDER_TYPE_MICROSOFT\",\n \"status\": \"AUTH_CONFIG_STATUS_DISABLED\",\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "09788237-4639-47f7-85a2-16ac0db712e2", - "name": "Update", - "request": { - "name": "Update", - "description": { - "content": "Update modifies an existing authentication provider configuration. Use the update mask to specify which fields to change.", - "type": "text/plain" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, - "url": { - "path": [ - "api", - "v1", - "auth-configs", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"authConfig\": {\n \"bootstrapDomains\": [\n \"\",\n \"\"\n ],\n \"c1Local\": {\n \"delegatedVerifiers\": [\n \"DELEGATED_VERIFIER_TYPE_UNSPECIFIED\",\n \"DELEGATED_VERIFIER_TYPE_MICROSOFT\"\n ]\n },\n \"deprecationDeadline\": \"\",\n \"deprecationMessage\": \"\",\n \"displayName\": \"\",\n \"google\": {\n \"hostedDomains\": [\n \"\",\n \"\"\n ]\n },\n \"id\": \"\",\n \"isDefaultBootstrap\": \"\",\n \"jumpcloud\": {\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"microsoft\": {\n \"tenantIds\": [\n \"\",\n \"\"\n ]\n },\n \"oidc\": {\n \"exactMatchClaims\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"issuerId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ]\n },\n \"okta\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"onelogin\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"pingone\": {\n \"environmentId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"status\": \"AUTH_CONFIG_STATUS_UNSPECIFIED\"\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ { - "id": "dcb03850-1081-4b32-ad5a-7a50703b91a8", - "name": "Successful response", - "originalRequest": { + "id": "40dab53d-eb0b-4048-8f19-17be9d2a59fc", + "name": "Create Manually Managed Resource Type", + "request": { + "name": "Create Manually Managed Resource Type", + "description": { + "content": "Create a manually managed resource type that classifies resources within an app.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "auth-configs", - ":id" + "apps", + ":app_id", + "resource_types" ], "host": [ "{{baseUrl}}" @@ -19090,14 +19099,14 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" + } } ] }, @@ -19109,370 +19118,33 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"authConfig\": {\n \"bootstrapDomains\": [\n \"\",\n \"\"\n ],\n \"c1Local\": {\n \"delegatedVerifiers\": [\n \"DELEGATED_VERIFIER_TYPE_UNSPECIFIED\",\n \"DELEGATED_VERIFIER_TYPE_MICROSOFT\"\n ]\n },\n \"deprecationDeadline\": \"\",\n \"deprecationMessage\": \"\",\n \"displayName\": \"\",\n \"google\": {\n \"hostedDomains\": [\n \"\",\n \"\"\n ]\n },\n \"id\": \"\",\n \"isDefaultBootstrap\": \"\",\n \"jumpcloud\": {\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"microsoft\": {\n \"tenantIds\": [\n \"\",\n \"\"\n ]\n },\n \"oidc\": {\n \"exactMatchClaims\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"issuerId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ]\n },\n \"okta\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"onelogin\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"pingone\": {\n \"environmentId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"status\": \"AUTH_CONFIG_STATUS_UNSPECIFIED\"\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"resourceType\": \"ROLE\",\n \"displayName\": \"\"\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"authConfig\": {\n \"bootstrapDomains\": [\n \"\",\n \"\"\n ],\n \"c1Local\": {\n \"delegatedVerifiers\": [\n \"DELEGATED_VERIFIER_TYPE_GOOGLE\",\n \"DELEGATED_VERIFIER_TYPE_UNSPECIFIED\"\n ]\n },\n \"createdAt\": \"\",\n \"deprecationDeadline\": \"\",\n \"deprecationMessage\": \"\",\n \"displayName\": \"\",\n \"google\": {\n \"hostedDomains\": [\n \"\",\n \"\"\n ]\n },\n \"id\": \"\",\n \"isDefaultBootstrap\": \"\",\n \"jumpcloud\": {\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"microsoft\": {\n \"tenantIds\": [\n \"\",\n \"\"\n ]\n },\n \"oidc\": {\n \"exactMatchClaims\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"issuerId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ]\n },\n \"okta\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"onelogin\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"pingone\": {\n \"environmentId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"providerType\": \"AUTH_CONFIG_PROVIDER_TYPE_PINGONE\",\n \"status\": \"AUTH_CONFIG_STATUS_DISABLED\",\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - }, - { - "name": "auth", - "description": "", - "item": [ - { - "name": "introspect", - "description": "", - "item": [ - { - "id": "32988bcb-e45b-4de9-b6d7-3bc3556ccc92", - "name": "Introspect", - "request": { - "name": "Introspect", - "description": { - "content": "Introspect returns the current user's principle_id, user_id and a list of roles, permissions, and enabled features.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "auth", - "introspect" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "1697af9e-6682-4140-a8a8-174b82ed6f89", - "name": "IntrospectResponse contains information about the current user who is authenticated.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "auth", - "introspect" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"features\": [\n \"\",\n \"\"\n ],\n \"permissions\": [\n \"\",\n \"\"\n ],\n \"principleId\": \"\",\n \"roles\": [\n \"\",\n \"\"\n ],\n \"userId\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - }, - { - "name": "automation_executions", - "description": "", - "item": [ - { - "id": "ef2d42db-8c38-460b-b526-b726eab02d75", - "name": "List Automation Executions", - "request": { - "name": "List Automation Executions", - "description": { - "content": "List all automation executions in the tenant with pagination support.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "automation_executions" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "014d8cc2-3b98-4252-b608-92e873f6e22e", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "automation_executions" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"automationExecutions\": [\n {\n \"automationTemplateId\": \"\",\n \"completedAt\": \"\",\n \"context\": {\n \"context\": {\n \"key_0\": \"string\",\n \"key_1\": true,\n \"key_2\": 3363\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"deletedAt\": \"\",\n \"duration\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"state\": \"AUTOMATION_EXECUTION_STATE_UNSPECIFIED\",\n \"updatedAt\": \"\"\n },\n {\n \"automationTemplateId\": \"\",\n \"completedAt\": \"\",\n \"context\": {\n \"context\": {\n \"key_0\": false,\n \"key_1\": \"string\",\n \"key_2\": \"string\"\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"deletedAt\": \"\",\n \"duration\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"state\": \"AUTOMATION_EXECUTION_STATE_WAITING\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{id}", - "description": "", - "item": [ - { - "id": "9d0ce5b8-d5f3-44d1-8142-69e8f699e508", - "name": "Get Automation Execution", - "request": { - "name": "Get Automation Execution", - "description": { - "content": "Retrieve a single automation execution by its unique identifier, with optional expanded related objects.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "automation_executions", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "f7a1f97c-c1cb-4c2f-84e1-ca34df4122b0", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "automation_executions", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} + "auth": null }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"automationExecution\": {\n \"automationTemplateId\": \"\",\n \"completedAt\": \"\",\n \"context\": {\n \"context\": {\n \"key_0\": 3574.412342640423,\n \"key_1\": 6602,\n \"key_2\": 642.502270713139\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"deletedAt\": \"\",\n \"duration\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"state\": \"AUTOMATION_EXECUTION_STATE_DONE\",\n \"updatedAt\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": false,\n \"key_2\": true,\n \"key_3\": \"string\"\n },\n {\n \"@type\": \"\",\n \"key_0\": false\n }\n ],\n \"view\": {\n \"automationExecution\": {\n \"automationTemplateId\": \"\",\n \"completedAt\": \"\",\n \"context\": {\n \"context\": {\n \"key_0\": 8146.455147280163,\n \"key_1\": 9229.092365382667,\n \"key_2\": 2295.6970613541407\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"deletedAt\": \"\",\n \"duration\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"state\": \"AUTOMATION_EXECUTION_STATE_COMPLETE_STEP\",\n \"updatedAt\": \"\"\n },\n \"automationExecutionTriggerPath\": \"\",\n \"automationPath\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "actions", - "description": "", - "item": [ - { - "name": "terminate", - "description": "", - "item": [ + "response": [ { - "id": "46b5595c-750f-4093-80ea-0c34e6ac34ac", - "name": "Terminate Automation", - "request": { - "name": "Terminate Automation", - "description": { - "content": "Terminate a running automation execution asynchronously, stopping it and marking it as terminated.", - "type": "text/plain" - }, + "id": "b737e813-7722-48d8-8f3d-f779a4507b6b", + "name": "The response message for creating a manually managed resource type.", + "originalRequest": { "url": { "path": [ "api", "v1", - "automation_executions", - ":id", - "actions", - "terminate" + "apps", + ":app_id", + "resource_types" ], "host": [ "{{baseUrl}}" @@ -19480,14 +19152,14 @@ "query": [], "variable": [ { - "type": "any", - "value": "", - "key": "id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - } + }, + "type": "any", + "value": "", + "key": "app_id" } ] }, @@ -19499,1416 +19171,932 @@ { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"resourceType\": \"ROLE\",\n \"displayName\": \"\"\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - }, - "auth": null + } }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "93f28d57-df02-4e01-9d7a-090531a885fc", - "name": "Successful response", - "originalRequest": { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appResourceType\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"traitIds\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 6103.612351702288,\n \"key_1\": 9151\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": 2597\n }\n ]\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{app_resource_type_id}", + "description": "", + "item": [ + { + "name": "resources", + "description": "", + "item": [ + { + "id": "95c9e035-e47d-42d8-9913-6e36428230a8", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List app resources for a given app and optionally filter by resource type.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "automation_executions", - ":id", - "actions", - "terminate" + "apps", + ":app_id", + "resource_types", + ":app_resource_type_id", + "resources" ], "host": [ "{{baseUrl}}" ], - "query": [], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], "variable": [ { + "type": "any", + "value": "", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, + } + }, + { "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Content-Type", + "value": "", + "key": "app_resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "b3e27b23-2afd-4024-97ec-4e728bacdedc", + "name": "The AppResourceServiceListResponse message contains a list of results and a nextPageToken if applicable.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":app_resource_type_id", + "resources" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_resource_type_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": null,\n \"list\": [\n {\n \"appPath\": \"\",\n \"appResource\": {\n \"accessConfigId\": \"\",\n \"agentTrait\": {\n \"identityAppUserId\": \"\",\n \"status\": \"AGENT_STATUS_DELETED\"\n },\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customDescription\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"matchBatonId\": \"\",\n \"nhiDetail\": \"\",\n \"nhiType\": \"NHI_TYPE_APP_REGISTRATION\",\n \"parentAppResourceId\": \"\",\n \"parentAppResourceTypeId\": \"\",\n \"profile\": null,\n \"secretTrait\": {\n \"createdByAppUserId\": \"\",\n \"credentialDetail\": \"\",\n \"identityAppUserId\": \"\",\n \"lastUsedAt\": \"\",\n \"secretCreatedAt\": \"\",\n \"secretExpiresAt\": \"\"\n },\n \"updatedAt\": \"\"\n },\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"parentResourcePath\": \"\",\n \"parentResourceTypePath\": \"\",\n \"resourceTypePath\": \"\"\n },\n {\n \"appPath\": \"\",\n \"appResource\": {\n \"accessConfigId\": \"\",\n \"agentTrait\": {\n \"identityAppUserId\": \"\",\n \"status\": \"AGENT_STATUS_UNSPECIFIED\"\n },\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customDescription\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"matchBatonId\": \"\",\n \"nhiDetail\": \"\",\n \"nhiType\": \"NHI_TYPE_APP_REGISTRATION\",\n \"parentAppResourceId\": \"\",\n \"parentAppResourceTypeId\": \"\",\n \"profile\": null,\n \"secretTrait\": {\n \"createdByAppUserId\": \"\",\n \"credentialDetail\": \"\",\n \"identityAppUserId\": \"\",\n \"lastUsedAt\": \"\",\n \"secretCreatedAt\": \"\",\n \"secretExpiresAt\": \"\"\n },\n \"updatedAt\": \"\"\n },\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"parentResourcePath\": \"\",\n \"parentResourceTypePath\": \"\",\n \"resourceTypePath\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "14f1789b-dfa3-47eb-9e0f-b5c26818a529", + "name": "Create Manually Managed App Resource", + "request": { + "name": "Create Manually Managed App Resource", + "description": { + "content": "Create a manually managed app resource tracked directly by ConductorOne under an existing resource type.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":app_resource_type_id", + "resources" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ { - "key": "Accept", + "key": "Content-Type", "value": "application/json" }, { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " + "key": "Accept", + "value": "application/json" } ], "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"displayName\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"description\": \"\",\n \"matchBatonId\": \"\",\n \"resourceOwnerUserIds\": [\n \"\",\n \"\"\n ]\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "68712593-1a9d-43d4-a26a-8e0e5b492c78", + "name": "The response message for creating a manually managed app resource.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":app_resource_type_id", + "resources" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_resource_type_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"description\": \"\",\n \"matchBatonId\": \"\",\n \"resourceOwnerUserIds\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appResource\": {\n \"accessConfigId\": \"\",\n \"agentTrait\": {\n \"identityAppUserId\": \"\",\n \"status\": \"AGENT_STATUS_READY\"\n },\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customDescription\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"matchBatonId\": \"\",\n \"nhiDetail\": \"\",\n \"nhiType\": \"NHI_TYPE_MANAGED_IDENTITY\",\n \"parentAppResourceId\": \"\",\n \"parentAppResourceTypeId\": \"\",\n \"profile\": null,\n \"secretTrait\": {\n \"createdByAppUserId\": \"\",\n \"credentialDetail\": \"\",\n \"identityAppUserId\": \"\",\n \"lastUsedAt\": \"\",\n \"secretCreatedAt\": \"\",\n \"secretExpiresAt\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - } - ] - } - ] - }, - { - "name": "automations", - "description": "", - "item": [ - { - "id": "afe94c42-dbf6-4da2-a67a-9a5e56636cba", - "name": "List Automations", - "request": { - "name": "List Automations", - "description": { - "content": "List all automations in the tenant with pagination support.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "automations" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "bfac6363-941a-4647-897a-8944801fda00", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "automations" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"appId\": \"\",\n \"automationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": false,\n \"key_1\": \"string\"\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": 3304\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_VERIFY_EMAIL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_PAPER_VAULT\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_REQUEST\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_ASSIGNEE\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DELETED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": 4399\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"circuitBreaker\": {\n \"observedCount\": \"\",\n \"period\": \"CIRCUIT_BREAKER_PERIOD_MONTH\",\n \"threshold\": \"\",\n \"trippedAt\": \"\"\n },\n \"circuitBreakerMax\": \"\",\n \"circuitBreakerPeriod\": \"CIRCUIT_BREAKER_PERIOD_HOUR\",\n \"context\": {\n \"context\": {\n \"key_0\": 4066,\n \"key_1\": \"string\"\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"draftAutomationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": false,\n \"key_1\": 8948.649096582127\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": 5035.301654860565\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_VERIFY_EMAIL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_UNSPECIFIED\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_REVOKE\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_ASSIGNEE\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"UNKNOWN\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": 2768.4166158362113\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"draftTriggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_UNSPECIFIED\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_CONDUCTOR_ONE\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_UNSPECIFIED\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ],\n \"enabled\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"lastExecutedAt\": \"\",\n \"primaryTriggerType\": \"TRIGGER_TYPE_UNSPECIFIED\",\n \"triggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_UNSPECIFIED\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_DIRECT\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_UNSPECIFIED\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ]\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "57417ba9-ed9d-45a2-b238-fc222373a864", - "name": "Create Automation", - "request": { - "name": "Create Automation", - "description": { - "content": "Create a new automation with the specified steps, triggers, and configuration.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "automations" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appId\": \"\",\n \"automationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": true,\n \"key_1\": 8579\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": \"string\"\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_SSO_INTERNAL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_UNSPECIFIED\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_REQUEST\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_SUBJECT\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"UNKNOWN\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": 9396\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"circuitBreakerMax\": \"\",\n \"circuitBreakerPeriod\": \"CIRCUIT_BREAKER_PERIOD_HOUR\",\n \"context\": {\n \"context\": {\n \"key_0\": \"string\",\n \"key_1\": 2933.7974081925513,\n \"key_2\": 9865.887619471616,\n \"key_3\": 7147\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"draftAutomationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": 9848,\n \"key_1\": \"string\",\n \"key_2\": 1399\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": false,\n \"key_1\": 1490,\n \"key_2\": \"string\",\n \"key_3\": true\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_VERIFY_EMAIL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_APP_VAULT\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_REQUEST\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_ASSIGNEE\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DELETED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": true,\n \"key_1\": 4224.89966658085,\n \"key_2\": 1524.9438421485406,\n \"key_3\": \"string\"\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"draftTriggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_DIRECT\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ],\n \"enabled\": \"\",\n \"isDraft\": \"\",\n \"triggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_DIRECT\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_CONDUCTOR_ONE\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "78a5c8bc-0414-45db-b395-3c15a73f6742", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "automations" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appId\": \"\",\n \"automationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": true,\n \"key_1\": 8579\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": \"string\"\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_SSO_INTERNAL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_UNSPECIFIED\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_REQUEST\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_SUBJECT\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"UNKNOWN\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": 9396\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"circuitBreakerMax\": \"\",\n \"circuitBreakerPeriod\": \"CIRCUIT_BREAKER_PERIOD_HOUR\",\n \"context\": {\n \"context\": {\n \"key_0\": \"string\",\n \"key_1\": 2933.7974081925513,\n \"key_2\": 9865.887619471616,\n \"key_3\": 7147\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"draftAutomationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": 9848,\n \"key_1\": \"string\",\n \"key_2\": 1399\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": false,\n \"key_1\": 1490,\n \"key_2\": \"string\",\n \"key_3\": true\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_VERIFY_EMAIL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_APP_VAULT\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_REQUEST\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_ASSIGNEE\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DELETED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": true,\n \"key_1\": 4224.89966658085,\n \"key_2\": 1524.9438421485406,\n \"key_3\": \"string\"\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"draftTriggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_DIRECT\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ],\n \"enabled\": \"\",\n \"isDraft\": \"\",\n \"triggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_DIRECT\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_CONDUCTOR_ONE\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"automation\": {\n \"appId\": \"\",\n \"automationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": false,\n \"key_1\": 5981.195534218664,\n \"key_2\": 622,\n \"key_3\": 4535.634015535279\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": true\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_UNSPECIFIED\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_APP_VAULT\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_REVOKE\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_ASSIGNEE\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DISABLED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": \"string\",\n \"key_1\": false\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"circuitBreaker\": {\n \"observedCount\": \"\",\n \"period\": \"CIRCUIT_BREAKER_PERIOD_MONTH\",\n \"threshold\": \"\",\n \"trippedAt\": \"\"\n },\n \"circuitBreakerMax\": \"\",\n \"circuitBreakerPeriod\": \"CIRCUIT_BREAKER_PERIOD_DAY\",\n \"context\": {\n \"context\": {\n \"key_0\": 7794,\n \"key_1\": 9802.480113730422\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"draftAutomationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": \"string\"\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": \"string\",\n \"key_1\": true\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_VERIFY_EMAIL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_UNSPECIFIED\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_REVIEW\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_ASSIGNEE\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DISABLED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": 8072.164479191679,\n \"key_1\": 4832,\n \"key_2\": 2658\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"draftTriggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_USER\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ],\n \"enabled\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"lastExecutedAt\": \"\",\n \"primaryTriggerType\": \"TRIGGER_TYPE_GRANT_DELETED\",\n \"triggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_CONDUCTOR_ONE\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ]\n },\n \"webhookCapabilityUrl\": \"\",\n \"webhookHmacSecret\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{id}", - "description": "", - "item": [ - { - "id": "23341828-1b08-459f-a539-724f120bffed", - "name": "Delete Automation", - "request": { - "name": "Delete Automation", - "description": { - "content": "Delete an automation by its unique identifier, removing it and its associated triggers.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "automations", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "d323a285-ce66-434c-a394-6bbe0b140542", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "automations", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "0d893bd0-1d3f-4e3e-91de-0f628d362304", - "name": "Get Automation", - "request": { - "name": "Get Automation", - "description": { - "content": "Retrieve a single automation by its unique identifier.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "automations", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "ce6f3786-eac6-4fe7-81d9-f4b23fc1caa9", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "automations", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"automation\": {\n \"appId\": \"\",\n \"automationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": true,\n \"key_1\": false,\n \"key_2\": 4014\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": 9108,\n \"key_1\": \"string\",\n \"key_2\": false,\n \"key_3\": true\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_VERIFY_EMAIL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_APP_VAULT\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_REQUEST\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_UNSPECIFIED\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DISABLED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": false\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"circuitBreaker\": {\n \"observedCount\": \"\",\n \"period\": \"CIRCUIT_BREAKER_PERIOD_WEEK\",\n \"threshold\": \"\",\n \"trippedAt\": \"\"\n },\n \"circuitBreakerMax\": \"\",\n \"circuitBreakerPeriod\": \"CIRCUIT_BREAKER_PERIOD_WEEK\",\n \"context\": {\n \"context\": {\n \"key_0\": 4846,\n \"key_1\": 3248.6868895816624\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"draftAutomationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": \"string\"\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": \"string\"\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_SSO_INTERNAL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_PAPER_VAULT\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_REVIEW\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_ASSIGNEE\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DISABLED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": 5667\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"draftTriggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_USER\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_DIRECT\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_DIRECT\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ],\n \"enabled\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"lastExecutedAt\": \"\",\n \"primaryTriggerType\": \"TRIGGER_TYPE_SCHEDULE\",\n \"triggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_USER\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_UNSPECIFIED\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_USER\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_UNSPECIFIED\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_UNSPECIFIED\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ]\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "fe15e6f1-abfe-426b-ae12-c8720f957736", - "name": "Update Automation", - "request": { - "name": "Update Automation", - "description": { - "content": "Update an existing automation's properties, steps, or triggers using a field mask.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "automations", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"automation\": {\n \"appId\": \"\",\n \"automationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": 7503,\n \"key_1\": 6824\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": \"string\",\n \"key_1\": false\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_VERIFY_EMAIL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_UNSPECIFIED\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_REVIEW\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_ASSIGNEE\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DISABLED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": \"string\"\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"circuitBreaker\": {\n \"observedCount\": \"\",\n \"period\": \"CIRCUIT_BREAKER_PERIOD_MONTH\",\n \"threshold\": \"\",\n \"trippedAt\": \"\"\n },\n \"circuitBreakerMax\": \"\",\n \"circuitBreakerPeriod\": \"CIRCUIT_BREAKER_PERIOD_MONTH\",\n \"context\": {\n \"context\": {\n \"key_0\": 9487.635466567652\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"draftAutomationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": true\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": false,\n \"key_1\": 5781.869712234567\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_VERIFY_EMAIL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_PAPER_VAULT\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_UNSPECIFIED\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_SUBJECT\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DELETED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": false,\n \"key_1\": \"string\"\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"draftTriggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_UNSPECIFIED\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ],\n \"enabled\": \"\",\n \"isDraft\": \"\",\n \"lastExecutedAt\": \"\",\n \"primaryTriggerType\": \"TRIGGER_TYPE_USER_CREATED\",\n \"triggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_UNSPECIFIED\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_UNSPECIFIED\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ]\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "a5080695-b0d2-4636-a71b-0a944b9d6474", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "automations", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"automation\": {\n \"appId\": \"\",\n \"automationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": 7503,\n \"key_1\": 6824\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": \"string\",\n \"key_1\": false\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_VERIFY_EMAIL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_UNSPECIFIED\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_REVIEW\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_ASSIGNEE\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DISABLED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": \"string\"\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"circuitBreaker\": {\n \"observedCount\": \"\",\n \"period\": \"CIRCUIT_BREAKER_PERIOD_MONTH\",\n \"threshold\": \"\",\n \"trippedAt\": \"\"\n },\n \"circuitBreakerMax\": \"\",\n \"circuitBreakerPeriod\": \"CIRCUIT_BREAKER_PERIOD_MONTH\",\n \"context\": {\n \"context\": {\n \"key_0\": 9487.635466567652\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"draftAutomationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": true\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": false,\n \"key_1\": 5781.869712234567\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_VERIFY_EMAIL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_PAPER_VAULT\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_UNSPECIFIED\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_SUBJECT\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DELETED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": false,\n \"key_1\": \"string\"\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"draftTriggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_UNSPECIFIED\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ],\n \"enabled\": \"\",\n \"isDraft\": \"\",\n \"lastExecutedAt\": \"\",\n \"primaryTriggerType\": \"TRIGGER_TYPE_USER_CREATED\",\n \"triggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_UNSPECIFIED\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_UNSPECIFIED\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ]\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"automation\": {\n \"appId\": \"\",\n \"automationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": \"string\",\n \"key_1\": 8317\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": true\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_SSO_INTERNAL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_APP_VAULT\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_UNSPECIFIED\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_SUBJECT\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DELETED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": \"string\",\n \"key_1\": 1838.024547188799,\n \"key_2\": 6133,\n \"key_3\": 2847\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"circuitBreaker\": {\n \"observedCount\": \"\",\n \"period\": \"CIRCUIT_BREAKER_PERIOD_WEEK\",\n \"threshold\": \"\",\n \"trippedAt\": \"\"\n },\n \"circuitBreakerMax\": \"\",\n \"circuitBreakerPeriod\": \"CIRCUIT_BREAKER_PERIOD_DAY\",\n \"context\": {\n \"context\": {\n \"key_0\": 6205.785330500015,\n \"key_1\": false\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"draftAutomationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": false,\n \"key_1\": false\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": \"string\",\n \"key_1\": false\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_SSO_INTERNAL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_APP_VAULT\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_REVOKE\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_ASSIGNEE\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DISABLED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": true\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"draftTriggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_USER\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_UNSPECIFIED\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_USER\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ],\n \"enabled\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"lastExecutedAt\": \"\",\n \"primaryTriggerType\": \"TRIGGER_TYPE_ACCESS_CONFLICT\",\n \"triggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_USER\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_CONDUCTOR_ONE\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_CONDUCTOR_ONE\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ]\n },\n \"webhookCapabilityUrl\": \"\",\n \"webhookHmacSecret\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "circuit_breaker", - "description": "", - "item": [ - { - "name": "clear", - "description": "", - "item": [ - { - "id": "3c8f8507-231d-4d18-a1a8-d7b1de77f1d6", - "name": "Clear Automation Circuit Breaker", - "request": { - "name": "Clear Automation Circuit Breaker", - "description": { - "content": "Clear the circuit breaker on an automation that was auto-disabled by the\n rate cap. Future events flow normally; existing paused executions are not\n affected (use ResolvePausedAutomationExecutions to run or cancel them).", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "automations", - ":id", - "circuit_breaker", - "clear" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"decision\": \"PAUSED_EXECUTION_DECISION_UNSPECIFIED\",\n \"reason\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } }, - "auth": null - }, - "response": [ { - "id": "6f2dcca9-f899-43d1-8685-f852edab4954", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "automations", - ":id", - "circuit_breaker", - "clear" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + "name": "{id}", + "description": "", + "item": [ + { + "id": "5c8f7951-368c-4cf3-b808-f2db10075a2b", + "name": "Delete Manually Managed App Resource", + "request": { + "name": "Delete Manually Managed App Resource", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "Delete a manually managed app resource and its associated entitlements from an app.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"decision\": \"PAUSED_EXECUTION_DECISION_UNSPECIFIED\",\n \"reason\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"bulkActionId\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "resolve_paused", - "description": "", - "item": [ - { - "id": "212b7fbc-1086-4d79-9ef9-50de54992244", - "name": "Resolve Paused Automation Executions", - "request": { - "name": "Resolve Paused Automation Executions", - "description": { - "content": "Decide what to do with the executions that were paused while the\n automation's circuit breaker was tripped. Idempotent.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "automations", - ":id", - "circuit_breaker", - "resolve_paused" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"decision\": \"PAUSED_EXECUTION_DECISION_RUN\",\n \"reason\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "1725a5ae-dbc4-48fd-a25b-cbdde70533c5", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "automations", - ":id", - "circuit_breaker", - "resolve_paused" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":app_resource_type_id", + "resources", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "id": "2cb46158-8ef9-462e-a24a-f4f9c9f6aa36", + "name": "The empty response message for deleting a manually managed app resource.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":app_resource_type_id", + "resources", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, - "type": "any", - "value": "", - "key": "id" + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + { + "id": "4326c58e-aa26-4057-b4fc-468498be71e0", + "name": "Get", + "request": { + "name": "Get", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "Retrieve a single app resource by its app, resource type, and resource ID.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"decision\": \"PAUSED_EXECUTION_DECISION_RUN\",\n \"reason\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":app_resource_type_id", + "resources", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "6a1373a1-17b0-4304-8480-79d2b02a9c55", + "name": "The app resource service get response contains the app resource view and array of expanded items indicated by the request's expand mask.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":app_resource_type_id", + "resources", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appResourceView\": {\n \"appPath\": \"\",\n \"appResource\": {\n \"accessConfigId\": \"\",\n \"agentTrait\": {\n \"identityAppUserId\": \"\",\n \"status\": \"AGENT_STATUS_READY\"\n },\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customDescription\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"matchBatonId\": \"\",\n \"nhiDetail\": \"\",\n \"nhiType\": \"NHI_TYPE_MANAGED_IDENTITY\",\n \"parentAppResourceId\": \"\",\n \"parentAppResourceTypeId\": \"\",\n \"profile\": null,\n \"secretTrait\": {\n \"createdByAppUserId\": \"\",\n \"credentialDetail\": \"\",\n \"identityAppUserId\": \"\",\n \"lastUsedAt\": \"\",\n \"secretCreatedAt\": \"\",\n \"secretExpiresAt\": \"\"\n },\n \"updatedAt\": \"\"\n },\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n },\n \"parentResourcePath\": \"\",\n \"parentResourceTypePath\": \"\",\n \"resourceTypePath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\"\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": 8467.894922331434\n }\n ]\n}", + "cookie": [], + "_postman_previewlanguage": "json" } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"bulkActionId\": \"\",\n \"erroredCount\": \"\",\n \"pausedCount\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - }, - { - "name": "execute", - "description": "", - "item": [ - { - "id": "7db42018-d102-414c-a896-e58f6110b0ab", - "name": "Execute Automation", - "request": { - "name": "Execute Automation", - "description": { - "content": "Trigger an on-demand execution of an automation, returning the new execution's identifier.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "automations", - ":id", - "execute" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"context\": {\n \"context\": {\n \"key_0\": 2352,\n \"key_1\": 9294\n }\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "a9143a94-49ed-483f-b27c-3d83382c45de", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "automations", - ":id", - "execute" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"context\": {\n \"context\": {\n \"key_0\": 2352,\n \"key_1\": 9294\n }\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + { + "id": "7db8eb90-a7ea-44fa-be41-85ec540d7b79", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update an app resource's fields. Only the fields specified in the update mask are modified.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":app_resource_type_id", + "resources", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appResource\": {\n \"accessConfigId\": \"\",\n \"agentTrait\": {\n \"identityAppUserId\": \"\",\n \"status\": \"AGENT_STATUS_UNSPECIFIED\"\n },\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"customDescription\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"matchBatonId\": \"\",\n \"parentAppResourceId\": \"\",\n \"parentAppResourceTypeId\": \"\",\n \"secretTrait\": {\n \"createdByAppUserId\": \"\",\n \"credentialDetail\": \"\",\n \"identityAppUserId\": \"\",\n \"lastUsedAt\": \"\",\n \"secretCreatedAt\": \"\",\n \"secretExpiresAt\": \"\"\n }\n },\n \"expandMask\": {\n \"paths\": null\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "2a0e2c9b-3567-4f36-9594-2a94dfe82ed1", + "name": "The response message for updating an app resource.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":app_resource_type_id", + "resources", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appResource\": {\n \"accessConfigId\": \"\",\n \"agentTrait\": {\n \"identityAppUserId\": \"\",\n \"status\": \"AGENT_STATUS_UNSPECIFIED\"\n },\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"customDescription\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"matchBatonId\": \"\",\n \"parentAppResourceId\": \"\",\n \"parentAppResourceTypeId\": \"\",\n \"secretTrait\": {\n \"createdByAppUserId\": \"\",\n \"credentialDetail\": \"\",\n \"identityAppUserId\": \"\",\n \"lastUsedAt\": \"\",\n \"secretCreatedAt\": \"\",\n \"secretExpiresAt\": \"\"\n }\n },\n \"expandMask\": {\n \"paths\": null\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appResourceView\": {\n \"appPath\": \"\",\n \"appResource\": {\n \"accessConfigId\": \"\",\n \"agentTrait\": {\n \"identityAppUserId\": \"\",\n \"status\": \"AGENT_STATUS_UNSPECIFIED\"\n },\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customDescription\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"matchBatonId\": \"\",\n \"nhiDetail\": \"\",\n \"nhiType\": \"NHI_TYPE_UNSPECIFIED\",\n \"parentAppResourceId\": \"\",\n \"parentAppResourceTypeId\": \"\",\n \"profile\": {\n \"key_0\": 6725,\n \"key_1\": \"string\",\n \"key_2\": true\n },\n \"secretTrait\": {\n \"createdByAppUserId\": \"\",\n \"credentialDetail\": \"\",\n \"identityAppUserId\": \"\",\n \"lastUsedAt\": \"\",\n \"secretCreatedAt\": \"\",\n \"secretExpiresAt\": \"\"\n },\n \"updatedAt\": \"\"\n },\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n },\n \"parentResourcePath\": \"\",\n \"parentResourceTypePath\": \"\",\n \"resourceTypePath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": false\n },\n {\n \"@type\": \"\",\n \"key_0\": 9062\n }\n ]\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" + ] } - ], - "body": "{\n \"executionId\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - } - ] - }, - { - "name": "catalogs", - "description": "", - "item": [ - { - "id": "4d331102-ac6f-4f05-a64d-31b1b988ce83", - "name": "List", - "request": { - "name": "List", - "description": { - "content": "Get a list of request catalogs.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "catalogs" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "51850c93-f804-4618-a68a-f67888faa897", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "catalogs" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" + ] } - ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 9961,\n \"key_1\": \"string\",\n \"key_2\": 8834,\n \"key_3\": 9960.037790529723\n },\n {\n \"@type\": \"\",\n \"key_0\": true\n }\n ],\n \"list\": [\n {\n \"accessEntitlementsPath\": \"\",\n \"createdByUserPath\": \"\",\n \"memberCount\": \"\",\n \"requestCatalog\": {\n \"accessEntitlements\": [\n {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 8288,\n \"key_2\": true,\n \"key_3\": 3873\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": 6279\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 5510,\n \"key_1\": 1003.2953241412379\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": 56.26285109908258\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n }\n ],\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enrollmentBehavior\": \"REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_BYPASS_ENTITLEMENT_REQUEST_POLICY\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"published\": \"\",\n \"requestBundle\": \"\",\n \"unenrollmentBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_LEAVE_ACCESS_AS_IS\",\n \"unenrollmentEntitlementBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_ENFORCE\",\n \"updatedAt\": \"\",\n \"visibleToEveryone\": \"\"\n }\n },\n {\n \"accessEntitlementsPath\": \"\",\n \"createdByUserPath\": \"\",\n \"memberCount\": \"\",\n \"requestCatalog\": {\n \"accessEntitlements\": [\n {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 5997\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 1148,\n \"key_1\": 4979.261643468593\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 6900.720131523277,\n \"key_1\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 8335\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n }\n ],\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enrollmentBehavior\": \"REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_UNSPECIFIED\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"published\": \"\",\n \"requestBundle\": \"\",\n \"unenrollmentBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_REVOKE_UNJUSTIFIED\",\n \"unenrollmentEntitlementBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"visibleToEveryone\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "a068afb0-6106-48d0-8163-0edc4434aa99", - "name": "Create", - "request": { - "name": "Create", - "description": { - "content": "Creates a new request catalog.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "catalogs" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"description\": \"\",\n \"enrollmentBehavior\": \"REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_ENFORCE_ENTITLEMENT_REQUEST_POLICY\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"grantPolicyId\": \"\",\n \"published\": \"\",\n \"requestBundle\": \"\",\n \"unenrollmentBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_LEAVE_ACCESS_AS_IS\",\n \"unenrollmentEntitlementBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_ENFORCE\",\n \"visibleToEveryone\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "7aad0de9-086e-4801-9306-9d83063ddfe0", - "name": "The request catalog management service get response returns a request catalog view with the expanded items in the expanded array indicated by the expand mask in the request.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "catalogs" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] + ] }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"description\": \"\",\n \"enrollmentBehavior\": \"REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_ENFORCE_ENTITLEMENT_REQUEST_POLICY\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"grantPolicyId\": \"\",\n \"published\": \"\",\n \"requestBundle\": \"\",\n \"unenrollmentBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_LEAVE_ACCESS_AS_IS\",\n \"unenrollmentEntitlementBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_ENFORCE\",\n \"visibleToEveryone\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 5239\n },\n {\n \"@type\": \"\",\n \"key_0\": true\n }\n ],\n \"requestCatalogView\": {\n \"accessEntitlementsPath\": \"\",\n \"createdByUserPath\": \"\",\n \"memberCount\": \"\",\n \"requestCatalog\": {\n \"accessEntitlements\": [\n {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 5341,\n \"key_1\": 4602.491407845803,\n \"key_2\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 3968.8682649593375,\n \"key_1\": true,\n \"key_2\": 9726,\n \"key_3\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n }\n ],\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enrollmentBehavior\": \"REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_BYPASS_ENTITLEMENT_REQUEST_POLICY\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"published\": \"\",\n \"requestBundle\": \"\",\n \"unenrollmentBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_LEAVE_ACCESS_AS_IS\",\n \"unenrollmentEntitlementBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_ENFORCE\",\n \"updatedAt\": \"\",\n \"visibleToEveryone\": \"\"\n }\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{catalog_id}", - "description": "", - "item": [ - { - "name": "requestable_entitlementIDs", - "description": "", - "item": [ { - "id": "9948f50e-de2a-430d-a6aa-73b87198c864", - "name": "List All Entitlement Ids Per App", - "request": { - "name": "List All Entitlement Ids Per App", - "description": { - "content": "List all requestable entitlement IDs in a catalog without pagination.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":catalog_id", - "requestable_entitlementIDs" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "catalog_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + "name": "{id}", + "description": "", + "item": [ { - "id": "5084264e-d697-4750-9b11-79a8d7610607", - "name": "The response message containing all requestable entitlement references in the catalog.", - "originalRequest": { + "id": "436d9c6b-6a21-492d-9240-71350985c7b6", + "name": "Delete Manually Managed Resource Type", + "request": { + "name": "Delete Manually Managed Resource Type", + "description": { + "content": "Delete a manually managed resource type and all its associated resources from an app.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "catalogs", - ":catalog_id", - "requestable_entitlementIDs" + "apps", + ":app_id", + "resource_types", + ":id" ], "host": [ "{{baseUrl}}" @@ -20916,167 +20104,181 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, + } + }, + { "type": "any", "value": "", - "key": "catalog_id" - } - ] - }, - "header": [ - { - "key": "Accept", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", "value": "application/json" }, { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " + "key": "Accept", + "value": "application/json" } ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"refs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "requestable_entitlements", - "description": "", - "item": [ - { - "id": "c16f6ec2-8048-47cd-9555-e7d8d7deb914", - "name": "List Entitlements Per Catalog", - "request": { - "name": "List Entitlements Per Catalog", - "description": { - "content": "List entitlements in a catalog that are requestable.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":catalog_id", - "requestable_entitlements" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } }, + "auth": null + }, + "response": [ { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" + "id": "ccbad3c8-6403-4a4d-bd8d-cc02302f5e3d", + "name": "The empty response message for deleting a manually managed resource type.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, - "key": "page_token", - "value": "" + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "variable": [ - { - "type": "any", - "value": "", - "key": "catalog_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + }, { - "id": "0b44d8dd-bd73-44a5-83f8-fdf5ddc636a9", - "name": "The RequestCatalogManagementServiceListEntitlementsPerCatalogResponse message contains a list of results and a nextPageToken if applicable.", - "originalRequest": { + "id": "aa4ee144-4c26-4d53-9514-903daee24590", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get an app resource type.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "catalogs", - ":catalog_id", - "requestable_entitlements" + "apps", + ":app_id", + "resource_types", + ":id" ], "host": [ "{{baseUrl}}" ], - "query": [ + "query": [], + "variable": [ { + "type": "any", + "value": "", + "key": "app_id", "disabled": false, "description": { - "content": "", + "content": "(Required) ", "type": "text/plain" - }, - "key": "page_size", - "value": "" + } }, { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ - { + "type": "any", + "value": "", + "key": "id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "catalog_id" + } } ] }, @@ -21084,58 +20286,105 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], "method": "GET", - "body": {} + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "2c5b1566-46d8-49a2-a47b-2c4220e90954", + "name": "The AppResourceTypeServiceGetResponse contains an expanded array containing the expanded values indicated by the expand mask\n in the request and an app resource type view containing the resource type and JSONPATHs indicating which objects are where in the expand mask.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appResourceTypeView\": {\n \"appPath\": \"\",\n \"appResourceType\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"traitIds\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n }\n },\n \"expanded\": null\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 2694,\n \"key_1\": \"string\",\n \"key_2\": 788\n },\n {\n \"@type\": \"\",\n \"key_0\": 4506\n }\n ],\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": true,\n \"key_2\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n }\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 221,\n \"key_1\": \"string\",\n \"key_2\": true,\n \"key_3\": 9036.677058950892\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 5521\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "update", - "description": "", - "item": [ + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, { - "id": "8ea71a6a-ee72-45c5-9c37-65bc19cdcccb", - "name": "Update App Entitlements", + "id": "7eca5d7e-865f-42d7-85e2-78ba307fd4a4", + "name": "Update Manually Managed Resource Type", "request": { - "name": "Update App Entitlements", + "name": "Update Manually Managed Resource Type", "description": { - "content": "Replace the full set of requestable entitlements in a catalog with the provided list.", + "content": "Update a manually managed resource type's fields. Only the fields specified in the update mask are modified.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "catalogs", - ":catalog_id", - "requestable_entitlements", - "update" + "apps", + ":app_id", + "resource_types", + ":id" ], "host": [ "{{baseUrl}}" @@ -21145,7 +20394,17 @@ { "type": "any", "value": "", - "key": "catalog_id", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", "disabled": false, "description": { "content": "(Required) ", @@ -21167,7 +20426,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appEntitlements\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n}", + "raw": "{\n \"appResourceType\": {\n \"displayName\": \"\",\n \"traitIds\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -21179,17 +20438,17 @@ }, "response": [ { - "id": "2db4d405-17ce-4d1a-beff-e4911b23229f", - "name": "The RequestCatalogManagementServiceUpdateAppEntitlementsResponse object is is the response from UpdateAppEntitlements endpoint.", + "id": "c3ca9993-f8d6-4750-afc2-4da0dbf63aaa", + "name": "The response message for updating a manually managed resource type.", "originalRequest": { "url": { "path": [ "api", "v1", - "catalogs", - ":catalog_id", - "requestable_entitlements", - "update" + "apps", + ":app_id", + "resource_types", + ":id" ], "host": [ "{{baseUrl}}" @@ -21204,7 +20463,17 @@ }, "type": "any", "value": "", - "key": "catalog_id" + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" } ] }, @@ -21229,7 +20498,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appEntitlements\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n}", + "raw": "{\n \"appResourceType\": {\n \"displayName\": \"\",\n \"traitIds\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -21246,7 +20515,7 @@ "value": "application/json" } ], - "body": "{}", + "body": "{\n \"appResourceType\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"traitIds\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n },\n \"expanded\": null\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -21257,325 +20526,58 @@ } } ] - } - ] - }, - { - "name": "requestable_entries", - "description": "", - "item": [ + }, { - "id": "c16d54ff-7082-4217-bee9-7c58b50fff5d", - "name": "Remove App Entitlements", - "request": { - "name": "Remove App Entitlements", - "description": { - "content": "Remove requestable entitlements from a catalog.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":catalog_id", - "requestable_entries" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "catalog_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{\n \"appEntitlements\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "name": "{resource_type_id}", + "description": "", + "item": [ { - "id": "4b0a5990-37df-43f0-b870-2db367c1c725", - "name": "Empty response with a status code indicating success", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":catalog_id", - "requestable_entries" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "catalog_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + "name": "managed_state_bindings", + "description": "", + "item": [ + { + "id": "58a53004-f958-4f2b-b16c-883ce6cf0761", + "name": "List", + "request": { + "name": "List", "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{\n \"appEntitlements\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "76bf4723-2954-4291-aec1-62778d4ef7bd", - "name": "Add App Entitlements", - "request": { - "name": "Add App Entitlements", - "description": { - "content": "Add requestable entitlements to a catalog.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":catalog_id", - "requestable_entries" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "catalog_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appEntitlements\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"createRequests\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "b731fb7b-08ed-480e-a30e-08887ab0cfb1", - "name": "Empty response with a status code indicating success.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":catalog_id", - "requestable_entries" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "catalog_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appEntitlements\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"createRequests\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{app_id}", - "description": "", - "item": [ - { - "name": "{entitlement_id}", - "description": "", - "item": [ - { - "id": "2e00c958-a222-4e38-b130-877cd45352ec", - "name": "Delete Requestable Entry", - "request": { - "name": "Delete Requestable Entry", - "description": { - "content": "Delete a single requestable entry", + "content": "List the managed states of applications discovered by a connector.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "catalogs", - ":catalog_id", - "requestable_entries", + "apps", ":app_id", - ":entitlement_id" + "resource_types", + ":resource_type_id", + "managed_state_bindings" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [ + "query": [ { - "type": "any", - "value": "", - "key": "catalog_id", "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" - } + }, + "key": "page_size", + "value": "" }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ { "type": "any", "value": "", @@ -21589,7 +20591,7 @@ { "type": "any", "value": "", - "key": "entitlement_id", + "key": "resource_type_id", "disabled": false, "description": { "content": "(Required) ", @@ -21599,58 +20601,54 @@ ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "d95ab514-7fb1-4363-8aaf-fb01603db3d9", - "name": "Empty response for delete operation", + "id": "0efe2cbd-e02b-44e8-bd80-f2e6292be600", + "name": "ListAppManagedStateBindingsResponse contains one page of discovered application managed states.", "originalRequest": { "url": { "path": [ "api", "v1", - "catalogs", - ":catalog_id", - "requestable_entries", + "apps", ":app_id", - ":entitlement_id" + "resource_types", + ":resource_type_id", + "managed_state_bindings" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [ + "query": [ { "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" }, - "type": "any", - "value": "", - "key": "catalog_id" + "key": "page_size", + "value": "" }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ { "disabled": false, "description": { @@ -21669,15 +20667,11 @@ }, "type": "any", "value": "", - "key": "entitlement_id" + "key": "resource_type_id" } ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -21691,17 +20685,8 @@ "value": "Bearer " } ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -21711,7 +20696,7 @@ "value": "application/json" } ], - "body": "{}", + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": false\n },\n {\n \"@type\": \"\"\n }\n ],\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -21722,85 +20707,28 @@ } }, { - "id": "5296292a-2dd7-4f9b-85aa-7a9089b48349", - "name": "Get Requestable Entry", - "request": { - "name": "Get Requestable Entry", - "description": { - "content": "Get a single requestable entry", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":catalog_id", - "requestable_entries", - ":app_id", - ":entitlement_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "catalog_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + "name": "{resource_id}", + "description": "", + "item": [ { - "id": "6f86d8ca-2a7f-498c-ae25-5b5209f6508f", - "name": "Response containing the requested entry", - "originalRequest": { + "id": "048f0a7b-a851-4cbd-a75f-5631e494d4f0", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get the managed state of a discovered application.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "catalogs", - ":catalog_id", - "requestable_entries", + "apps", ":app_id", - ":entitlement_id" + "resource_types", + ":resource_type_id", + "managed_state_bindings", + ":resource_id" ], "host": [ "{{baseUrl}}" @@ -21808,34 +20736,34 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "catalog_id" + } }, { + "type": "any", + "value": "", + "key": "resource_type_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" + } }, { + "type": "any", + "value": "", + "key": "resource_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "entitlement_id" + } } ] }, @@ -21843,615 +20771,27811 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], "method": "GET", - "body": {} + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "ea373cee-c30f-46a7-9cda-c471fdbd0dad", + "name": "GetAppManagedStateBindingResponse contains the managed state of a discovered application.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "managed_state_bindings", + ":resource_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appManagementState\": {\n \"appManagementStateBinding\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"resourceId\": \"\",\n \"resourceTypeId\": \"\",\n \"state\": {\n \"managed\": {\n \"appId\": \"\"\n },\n \"unmanaged\": {}\n },\n \"updatedAt\": \"\"\n },\n \"appPath\": \"\",\n \"resourcePath\": \"\"\n },\n \"expanded\": null\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"requestableEntry\": {\n \"appId\": \"\",\n \"catalogId\": \"\",\n \"entitlementId\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "494416de-eb73-4a96-9aa9-00763b8349fb", - "name": "Create Requestable Entry", - "request": { - "name": "Create Requestable Entry", - "description": { - "content": "Create a single requestable entry", - "type": "text/plain" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":catalog_id", - "requestable_entries", - ":app_id", - ":entitlement_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ + { + "name": "promote", + "description": "", + "item": [ { - "type": "any", - "value": "", - "key": "catalog_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "PUT", - "body": { - "mode": "raw", - "raw": "{\n \"createRequests\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "583187ce-9b9c-4117-b0f4-c6726df399c8", - "name": "Response containing the created requestable entry", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":catalog_id", - "requestable_entries", - ":app_id", - ":entitlement_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "catalog_id" + "id": "06720a93-2ba8-4d70-aa73-0240ac86b11f", + "name": "Promote", + "request": { + "name": "Promote", + "description": { + "content": "Promote an unmanaged application into a managed application.\n Returns AlreadyExists when the application is already managed. The new application inherits source owners when user_ids is omitted.\n Concurrent promotion requests are not supported.", + "type": "text/plain" }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "managed_state_bindings", + ":resource_id", + "promote" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" }, - "type": "any", - "value": "", - "key": "app_id" + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementOwnerRefs\": null,\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } }, + "auth": null + }, + "response": [ { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "id": "b038f9ae-4ece-4cb6-a3dd-9ff5c5801f0b", + "name": "GetAppManagedStateBindingResponse contains the managed state of a discovered application.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "managed_state_bindings", + ":resource_id", + "promote" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementOwnerRefs\": null,\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, - "type": "any", - "value": "", - "key": "entitlement_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "PUT", - "body": { - "mode": "raw", - "raw": "{\n \"createRequests\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appManagementState\": {\n \"appManagementStateBinding\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"resourceId\": \"\",\n \"resourceTypeId\": \"\",\n \"state\": {\n \"managed\": {\n \"appId\": \"\"\n },\n \"unmanaged\": {}\n },\n \"updatedAt\": \"\"\n },\n \"appPath\": \"\",\n \"resourcePath\": \"\"\n },\n \"expanded\": null\n}", + "cookie": [], + "_postman_previewlanguage": "json" } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"requestableEntry\": {\n \"appId\": \"\",\n \"catalogId\": \"\",\n \"entitlementId\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - } - ] - }, - { - "name": "visibility_bindings", - "description": "", - "item": [ - { - "id": "1461f98a-a9bb-4d33-84a3-dba43686f115", - "name": "Remove Access Entitlements", - "request": { - "name": "Remove Access Entitlements", - "description": { - "content": "Remove visibility bindings (access entitlements) from a catalog.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":catalog_id", - "visibility_bindings" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "catalog_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{\n \"accessEntitlements\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "0042032c-aaab-4266-8cc3-9939fae44434", - "name": "Empty response with a status code indicating success.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":catalog_id", - "visibility_bindings" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "catalog_id" + ] } ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{\n \"accessEntitlements\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "cb3069ea-2526-4132-8c14-d817f05557bf", - "name": "Add Access Entitlements", - "request": { - "name": "Add Access Entitlements", - "description": { - "content": "Add visibility bindings (access entitlements) to a catalog.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":catalog_id", - "visibility_bindings" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "catalog_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } } ] }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"accessEntitlements\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ { - "id": "ec29c3af-00a2-4b97-aa37-f1b3acbf7a7e", - "name": "Empty response with a status code indicating success.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":catalog_id", - "visibility_bindings" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "catalog_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"accessEntitlements\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "visibility_entitlements", - "description": "", - "item": [ - { - "id": "9a709675-c415-4eb6-afe4-cbff348c68e6", - "name": "List Entitlements For Access", - "request": { - "name": "List Entitlements For Access", - "description": { - "content": "List visibility bindings (access entitlements) for a catalog.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":catalog_id", - "visibility_entitlements" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ + "name": "resource", + "description": "", + "item": [ { - "type": "any", - "value": "", - "key": "catalog_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "f99f51cf-c694-47c7-9d66-8f3356db0479", - "name": "The RequestCatalogManagementServiceListEntitlementsForAccessResponse message contains a list of results and a nextPageToken if applicable.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":catalog_id", - "visibility_entitlements" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ + "name": "{resource_id}", + "description": "", + "item": [ { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" + "name": "ownerids", + "description": "", + "item": [ + { + "id": "e48a15ec-0be0-4e05-a785-be7b905082a0", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete deletes the owners from a given app resource.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resource", + ":resource_id", + "ownerids" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "3a640348-8567-498b-be36-b326b9a6d3ad", + "name": "the empty response message for deleting app resource owners.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resource", + ":resource_id", + "ownerids" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "8146f131-621c-4115-be2f-0800191a7054", + "name": "List Owner I Ds", + "request": { + "name": "List Owner I Ds", + "description": { + "content": "ListOwnerIDs lists owner IDs for a given app resource.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resource", + ":resource_id", + "ownerids" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "1c0bd693-b06a-4d96-87a7-2340457c4007", + "name": "The response message for listing app resource owners IDs.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resource", + ":resource_id", + "ownerids" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] }, { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "catalog_id" + "name": "owners", + "description": "", + "item": [ + { + "id": "96ef3133-a82a-4f01-be89-d61eeb408da1", + "name": "Remove", + "request": { + "name": "Remove", + "description": { + "content": "Remove a user from the owners of an app resource.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resource", + ":resource_id", + "owners" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"userId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "0663bd90-dd0f-4bdb-9daf-5564e539aadc", + "name": "The empty response message for removing an owner from an app resource.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resource", + ":resource_id", + "owners" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"userId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "ecb820a0-5feb-49ac-abf5-7da49f4f4982", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List all owners of an app resource.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resource", + ":resource_id", + "owners" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "8a088346-cba4-4318-b24c-6c6bfd13279c", + "name": "The ListAppResourceOwnersResponse message contains a list of results and a nextPageToken if applicable", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resource", + ":resource_id", + "owners" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"immutableUserIds\": null,\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "fc0acfbb-a6f6-4bd9-a86d-2084868adac1", + "name": "Add", + "request": { + "name": "Add", + "description": { + "content": "Add a user as an owner of an app resource.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resource", + ":resource_id", + "owners" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"userId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "e6e94f29-b752-471e-bc77-2235ad4df274", + "name": "The empty response message for adding an owner to an app resource.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resource", + ":resource_id", + "owners" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"userId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "8b348b20-588b-4ff0-a058-6335ac6696cc", + "name": "Set", + "request": { + "name": "Set", + "description": { + "content": "Sets the owners for a given app resource to the specified list of users.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resource", + ":resource_id", + "owners" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"userIds\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "a0dd7fd2-90fc-4318-a25f-3da656652d52", + "name": "The empty response message for setting the app resource owners.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resource", + ":resource_id", + "owners" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"userIds\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + } + ] + } + ] + }, + { + "name": "sso", + "description": "", + "item": [ + { + "name": "applications", + "description": "", + "item": [ + { + "id": "82a67627-0615-4f82-a84d-466eb9f7e3f3", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List returns the SSO applications configured for an application, one page\n at a time.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "6f6e6ab6-b865-43f5-ba8b-df868b98e1ed", + "name": "SSOApplicationServiceListResponse returns a page of SSO applications.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "d8049f8a-4cb9-432c-817b-bc7c30282bfa", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create an SSO application for an application in your catalog. The\n entitlement that governs sign-in is created alongside it. OIDC creation\n also server-mints the required initial client and returns its secret once\n when the client is confidential. SAML creation has no OAuth-client step.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"assertionLifetime\": \"\",\n \"description\": \"\",\n \"initialClient\": {\n \"displayName\": \"\",\n \"authentication\": {\n \"clientSecretBasic\": {},\n \"clientSecretPost\": {},\n \"none\": {},\n \"privateKeyJwt\": {\n \"publicJwks\": \"\"\n }\n },\n \"pkcePolicy\": \"SSO_APPLICATION_OIDC_PKCE_POLICY_UNSPECIFIED\",\n \"redirectUris\": null\n },\n \"oidc\": {\n \"claimMappings\": [\n {\n \"userAttributeMappingId\": \"\",\n \"claimName\": \"\",\n \"destination\": \"OIDC_CLAIM_DESTINATION_UNSPECIFIED\"\n },\n {\n \"userAttributeMappingId\": \"\",\n \"claimName\": \"\",\n \"destination\": \"OIDC_CLAIM_DESTINATION_UNSPECIFIED\"\n }\n ],\n \"idTokenSignedResponseAlg\": \"OIDC_SIGNING_ALGORITHM_EDDSA\"\n },\n \"saml\": {\n \"spEntityId\": \"\",\n \"acsUrls\": [\n \"\",\n \"\"\n ],\n \"attributeMappings\": null,\n \"encryptAssertions\": \"\",\n \"encryptionAlgorithm\": \"SAML_ENCRYPTION_ALGORITHM_AES256_GCM\",\n \"nameIdFormat\": \"SAML_NAME_ID_FORMAT_TRANSIENT\",\n \"requireSignedAuthnRequests\": \"\",\n \"signAssertions\": \"\",\n \"signResponses\": \"\",\n \"spEncryptionCertificate\": \"\",\n \"spSigningCertificates\": [\n \"\",\n \"\"\n ]\n },\n \"sectorId\": \"\",\n \"subjectCompatibility\": {\n \"userAttributeMappingId\": \"\"\n },\n \"subjectType\": \"SSO_SUBJECT_TYPE_UNSPECIFIED\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "84f9e45e-dff7-43f7-8e87-ee7242f695a3", + "name": "SSOApplicationServiceCreateResponse returns the created SSO application.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"assertionLifetime\": \"\",\n \"description\": \"\",\n \"initialClient\": {\n \"displayName\": \"\",\n \"authentication\": {\n \"clientSecretBasic\": {},\n \"clientSecretPost\": {},\n \"none\": {},\n \"privateKeyJwt\": {\n \"publicJwks\": \"\"\n }\n },\n \"pkcePolicy\": \"SSO_APPLICATION_OIDC_PKCE_POLICY_UNSPECIFIED\",\n \"redirectUris\": null\n },\n \"oidc\": {\n \"claimMappings\": [\n {\n \"userAttributeMappingId\": \"\",\n \"claimName\": \"\",\n \"destination\": \"OIDC_CLAIM_DESTINATION_UNSPECIFIED\"\n },\n {\n \"userAttributeMappingId\": \"\",\n \"claimName\": \"\",\n \"destination\": \"OIDC_CLAIM_DESTINATION_UNSPECIFIED\"\n }\n ],\n \"idTokenSignedResponseAlg\": \"OIDC_SIGNING_ALGORITHM_EDDSA\"\n },\n \"saml\": {\n \"spEntityId\": \"\",\n \"acsUrls\": [\n \"\",\n \"\"\n ],\n \"attributeMappings\": null,\n \"encryptAssertions\": \"\",\n \"encryptionAlgorithm\": \"SAML_ENCRYPTION_ALGORITHM_AES256_GCM\",\n \"nameIdFormat\": \"SAML_NAME_ID_FORMAT_TRANSIENT\",\n \"requireSignedAuthnRequests\": \"\",\n \"signAssertions\": \"\",\n \"signResponses\": \"\",\n \"spEncryptionCertificate\": \"\",\n \"spSigningCertificates\": [\n \"\",\n \"\"\n ]\n },\n \"sectorId\": \"\",\n \"subjectCompatibility\": {\n \"userAttributeMappingId\": \"\"\n },\n \"subjectType\": \"SSO_SUBJECT_TYPE_UNSPECIFIED\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"application\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"assertionLifetime\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"oidc\": {\n \"claimMappings\": null,\n \"idTokenSignedResponseAlg\": \"OIDC_SIGNING_ALGORITHM_RS256\"\n },\n \"saml\": {\n \"spEntityId\": \"\",\n \"acsUrls\": null,\n \"attributeMappings\": [\n {\n \"userAttributeMappingId\": \"\",\n \"name\": \"\",\n \"friendlyName\": \"\",\n \"nameFormat\": \"SAML_ATTRIBUTE_NAME_FORMAT_BASIC\"\n },\n {\n \"userAttributeMappingId\": \"\",\n \"name\": \"\",\n \"friendlyName\": \"\",\n \"nameFormat\": \"SAML_ATTRIBUTE_NAME_FORMAT_URI\"\n }\n ],\n \"encryptAssertions\": \"\",\n \"encryptionAlgorithm\": \"SAML_ENCRYPTION_ALGORITHM_AES128_GCM\",\n \"nameIdFormat\": \"SAML_NAME_ID_FORMAT_PERSISTENT\",\n \"requireSignedAuthnRequests\": \"\",\n \"signAssertions\": \"\",\n \"signResponses\": \"\",\n \"spEncryptionCertificate\": \"\",\n \"spSigningCertificates\": [\n \"\",\n \"\"\n ]\n },\n \"sectorId\": \"\",\n \"subjectCompatibility\": {\n \"userAttributeMappingId\": \"\"\n },\n \"subjectType\": \"SSO_SUBJECT_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\"\n },\n \"client\": {\n \"appId\": \"\",\n \"authentication\": {\n \"clientSecretBasic\": {},\n \"clientSecretPost\": {},\n \"none\": {},\n \"privateKeyJwt\": {\n \"publicJwks\": \"\"\n }\n },\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"pkcePolicy\": \"SSO_APPLICATION_OIDC_PKCE_POLICY_REQUIRED_S256\",\n \"redirectUris\": [\n \"\",\n \"\"\n ],\n \"ssoApplicationId\": \"\",\n \"updatedAt\": \"\"\n },\n \"clientSecret\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "905a91af-27a9-43c5-a5f3-722b9218f6a6", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete retires an SSO application and its sign-in entitlement, stopping\n OIDC and SAML sign-in through it. OAuth clients and locator bindings remain\n so administrators can list and delete retained clients; the bindings are\n inert while their parent application is deleted.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "afebfa07-1d3d-4819-99c5-5d906a62ee9e", + "name": "SSOApplicationServiceDeleteResponse confirms deletion.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "664dd6b7-a3ce-4e68-81e6-5845802bd86c", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get returns a single SSO application by app_id + id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "2bbb224a-8a1e-4a31-b665-c2a9f00a8741", + "name": "SSOApplicationServiceGetResponse returns a single SSO application.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"application\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"assertionLifetime\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"oidc\": {\n \"claimMappings\": [\n {\n \"userAttributeMappingId\": \"\",\n \"claimName\": \"\",\n \"destination\": \"OIDC_CLAIM_DESTINATION_ID_TOKEN_ONLY\"\n },\n {\n \"userAttributeMappingId\": \"\",\n \"claimName\": \"\",\n \"destination\": \"OIDC_CLAIM_DESTINATION_UNSPECIFIED\"\n }\n ],\n \"idTokenSignedResponseAlg\": \"OIDC_SIGNING_ALGORITHM_ES256\"\n },\n \"saml\": {\n \"spEntityId\": \"\",\n \"acsUrls\": [\n \"\",\n \"\"\n ],\n \"attributeMappings\": [\n {\n \"userAttributeMappingId\": \"\",\n \"name\": \"\",\n \"friendlyName\": \"\",\n \"nameFormat\": \"SAML_ATTRIBUTE_NAME_FORMAT_URI\"\n },\n {\n \"userAttributeMappingId\": \"\",\n \"name\": \"\",\n \"friendlyName\": \"\",\n \"nameFormat\": \"SAML_ATTRIBUTE_NAME_FORMAT_URI\"\n }\n ],\n \"encryptAssertions\": \"\",\n \"encryptionAlgorithm\": \"SAML_ENCRYPTION_ALGORITHM_AES256_CBC\",\n \"nameIdFormat\": \"SAML_NAME_ID_FORMAT_PERSISTENT\",\n \"requireSignedAuthnRequests\": \"\",\n \"signAssertions\": \"\",\n \"signResponses\": \"\",\n \"spEncryptionCertificate\": \"\",\n \"spSigningCertificates\": [\n \"\",\n \"\"\n ]\n },\n \"sectorId\": \"\",\n \"subjectCompatibility\": {\n \"userAttributeMappingId\": \"\"\n },\n \"subjectType\": \"SSO_SUBJECT_TYPE_COMPATIBILITY\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "38d46f81-f80b-45ab-8d67-05d614c4889e", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update changes an SSO application's mutable display, lifetime, enablement,\n OIDC claim/signing settings, or SAML endpoint/signing/encryption settings.\n Protocol, subject type, sector, SAML entity ID, and NameID format remain\n immutable; requests that would change them are rejected.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"application\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"assertionLifetime\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"oidc\": {\n \"claimMappings\": null,\n \"idTokenSignedResponseAlg\": \"OIDC_SIGNING_ALGORITHM_ES256\"\n },\n \"saml\": {\n \"spEntityId\": \"\",\n \"acsUrls\": null,\n \"attributeMappings\": null,\n \"encryptAssertions\": \"\",\n \"encryptionAlgorithm\": \"SAML_ENCRYPTION_ALGORITHM_AES128_GCM\",\n \"nameIdFormat\": \"SAML_NAME_ID_FORMAT_TRANSIENT\",\n \"requireSignedAuthnRequests\": \"\",\n \"signAssertions\": \"\",\n \"signResponses\": \"\",\n \"spEncryptionCertificate\": \"\",\n \"spSigningCertificates\": [\n \"\",\n \"\"\n ]\n },\n \"sectorId\": \"\",\n \"subjectCompatibility\": {\n \"userAttributeMappingId\": \"\"\n },\n \"subjectType\": \"SSO_SUBJECT_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "833d3abc-17ab-43ca-81f3-a0f47b2fab02", + "name": "SSOApplicationServiceUpdateResponse returns the updated SSO application.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"application\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"assertionLifetime\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"oidc\": {\n \"claimMappings\": null,\n \"idTokenSignedResponseAlg\": \"OIDC_SIGNING_ALGORITHM_ES256\"\n },\n \"saml\": {\n \"spEntityId\": \"\",\n \"acsUrls\": null,\n \"attributeMappings\": null,\n \"encryptAssertions\": \"\",\n \"encryptionAlgorithm\": \"SAML_ENCRYPTION_ALGORITHM_AES128_GCM\",\n \"nameIdFormat\": \"SAML_NAME_ID_FORMAT_TRANSIENT\",\n \"requireSignedAuthnRequests\": \"\",\n \"signAssertions\": \"\",\n \"signResponses\": \"\",\n \"spEncryptionCertificate\": \"\",\n \"spSigningCertificates\": [\n \"\",\n \"\"\n ]\n },\n \"sectorId\": \"\",\n \"subjectCompatibility\": {\n \"userAttributeMappingId\": \"\"\n },\n \"subjectType\": \"SSO_SUBJECT_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"application\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"assertionLifetime\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"oidc\": {\n \"claimMappings\": [\n {\n \"userAttributeMappingId\": \"\",\n \"claimName\": \"\",\n \"destination\": \"OIDC_CLAIM_DESTINATION_USERINFO_ONLY\"\n },\n {\n \"userAttributeMappingId\": \"\",\n \"claimName\": \"\",\n \"destination\": \"OIDC_CLAIM_DESTINATION_UNSPECIFIED\"\n }\n ],\n \"idTokenSignedResponseAlg\": \"OIDC_SIGNING_ALGORITHM_EDDSA\"\n },\n \"saml\": {\n \"spEntityId\": \"\",\n \"acsUrls\": [\n \"\",\n \"\"\n ],\n \"attributeMappings\": null,\n \"encryptAssertions\": \"\",\n \"encryptionAlgorithm\": \"SAML_ENCRYPTION_ALGORITHM_AES256_CBC\",\n \"nameIdFormat\": \"SAML_NAME_ID_FORMAT_UNSPECIFIED_URN\",\n \"requireSignedAuthnRequests\": \"\",\n \"signAssertions\": \"\",\n \"signResponses\": \"\",\n \"spEncryptionCertificate\": \"\",\n \"spSigningCertificates\": null\n },\n \"sectorId\": \"\",\n \"subjectCompatibility\": {\n \"userAttributeMappingId\": \"\"\n },\n \"subjectType\": \"SSO_SUBJECT_TYPE_PAIRWISE\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "clients", + "description": "", + "item": [ + { + "id": "965a016f-4c22-457a-93c1-517fe745bfe7", + "name": "List Clients", + "request": { + "name": "List Clients", + "description": { + "content": "ListClients returns the App-owned OAuth clients minted for an OIDC\n application, one page at a time. Results hydrate from the PostgreSQL\n projection, so a newly created client may appear after a brief delay.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id", + "clients" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "b68ae22c-ecd0-4d13-930a-8b7a506489c1", + "name": "SSOApplicationServiceListClientsResponse contains a page of App-owned OAuth\n clients.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id", + "clients" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "4a43332f-8113-4d64-bbd8-45f9fdc421ff", + "name": "Create Client", + "request": { + "name": "Create Client", + "description": { + "content": "CreateClient mints an additional App-owned OAuth client for an OIDC\n application. C1 generates the client ID and any confidential-client secret.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id", + "clients" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"client\": {\n \"displayName\": \"\",\n \"authentication\": {\n \"clientSecretBasic\": {},\n \"clientSecretPost\": {},\n \"none\": {},\n \"privateKeyJwt\": {\n \"publicJwks\": \"\"\n }\n },\n \"pkcePolicy\": \"SSO_APPLICATION_OIDC_PKCE_POLICY_ALLOW_MISSING_FOR_LEGACY\",\n \"redirectUris\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "5c8b7cff-354a-451d-ba93-9b47153eaa9d", + "name": "SSOApplicationServiceCreateClientResponse contains the generated client and\n its one-time secret, when applicable.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id", + "clients" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"client\": {\n \"displayName\": \"\",\n \"authentication\": {\n \"clientSecretBasic\": {},\n \"clientSecretPost\": {},\n \"none\": {},\n \"privateKeyJwt\": {\n \"publicJwks\": \"\"\n }\n },\n \"pkcePolicy\": \"SSO_APPLICATION_OIDC_PKCE_POLICY_ALLOW_MISSING_FOR_LEGACY\",\n \"redirectUris\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"client\": {\n \"appId\": \"\",\n \"authentication\": {\n \"clientSecretBasic\": {},\n \"clientSecretPost\": {},\n \"none\": {},\n \"privateKeyJwt\": {\n \"publicJwks\": \"\"\n }\n },\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"pkcePolicy\": \"SSO_APPLICATION_OIDC_PKCE_POLICY_UNSPECIFIED\",\n \"redirectUris\": null,\n \"ssoApplicationId\": \"\",\n \"updatedAt\": \"\"\n },\n \"clientSecret\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "delete", + "description": "", + "item": [ + { + "id": "7e39b875-f5eb-437f-8473-f4801b440421", + "name": "Delete Client", + "request": { + "name": "Delete Client", + "description": { + "content": "DeleteClient deletes one App-owned OAuth client and its sign-in binding.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id", + "clients", + "delete" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"clientId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "a0cfe95c-4336-45cd-9415-c779a4ea363c", + "name": "SSOApplicationServiceDeleteClientResponse confirms deletion.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id", + "clients", + "delete" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"clientId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "rotate-secret", + "description": "", + "item": [ + { + "id": "e27ddcaa-f2bd-4bb5-9b82-8fa7671b51d1", + "name": "Rotate Client Secret", + "request": { + "name": "Rotate Client Secret", + "description": { + "content": "RotateClientSecret replaces a confidential App-owned client's secret and\n returns the new value once. The old secret stops working immediately; for\n an overlap window, create a second client, migrate, then delete the first.\n Public clients have no secret to rotate.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id", + "clients", + "rotate-secret" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"clientId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "1f7deb78-7e81-46fe-9bbf-ced071f787c7", + "name": "SSOApplicationServiceRotateClientSecretResponse contains the replacement\n secret. The value cannot be retrieved again.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id", + "clients", + "rotate-secret" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"clientId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"clientSecret\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "update", + "description": "", + "item": [ + { + "id": "e44a59d9-f89c-495f-a20f-7a980fb6eb28", + "name": "Update Client", + "request": { + "name": "Update Client", + "description": { + "content": "UpdateClient replaces mutable client configuration. The authentication\n method and generated ID are immutable; private-key JWKS may rotate and a\n legacy PKCE policy may tighten to required.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id", + "clients", + "update" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"clientId\": \"\",\n \"client\": {\n \"displayName\": \"\",\n \"authentication\": {\n \"clientSecretBasic\": {},\n \"clientSecretPost\": {},\n \"none\": {},\n \"privateKeyJwt\": {\n \"publicJwks\": \"\"\n }\n },\n \"pkcePolicy\": \"SSO_APPLICATION_OIDC_PKCE_POLICY_REQUIRED_S256\",\n \"redirectUris\": [\n \"\",\n \"\"\n ]\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "300a597d-a8f0-4661-8810-d15deffc0af9", + "name": "SSOApplicationServiceUpdateClientResponse contains the updated client.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id", + "clients", + "update" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"clientId\": \"\",\n \"client\": {\n \"displayName\": \"\",\n \"authentication\": {\n \"clientSecretBasic\": {},\n \"clientSecretPost\": {},\n \"none\": {},\n \"privateKeyJwt\": {\n \"publicJwks\": \"\"\n }\n },\n \"pkcePolicy\": \"SSO_APPLICATION_OIDC_PKCE_POLICY_REQUIRED_S256\",\n \"redirectUris\": [\n \"\",\n \"\"\n ]\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"client\": {\n \"appId\": \"\",\n \"authentication\": {\n \"clientSecretBasic\": {},\n \"clientSecretPost\": {},\n \"none\": {},\n \"privateKeyJwt\": {\n \"publicJwks\": \"\"\n }\n },\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"pkcePolicy\": \"SSO_APPLICATION_OIDC_PKCE_POLICY_ALLOW_MISSING_FOR_LEGACY\",\n \"redirectUris\": null,\n \"ssoApplicationId\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "history", + "description": "", + "item": [ + { + "id": "a3304467-8fa4-4ad8-8f64-1b574c87c8ad", + "name": "List History", + "request": { + "name": "List History", + "description": { + "content": "ListHistory returns the change history (newest first) for a single SSO\n application — each entry is a snapshot plus who/when metadata.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id", + "history" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "67ba527d-889e-4f99-a30f-1fac4f1ea9b7", + "name": "SSOApplicationServiceListHistoryResponse returns SSO application history\n entries.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id", + "history" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"metadata\": {\n \"actor\": {\n \"kind\": \"ACTOR_KIND_SUPPORT\",\n \"userId\": \"\"\n },\n \"annotations\": null,\n \"changeKind\": \"CHANGE_KIND_HARD_DELETE\",\n \"createdAt\": \"\",\n \"id\": \"\",\n \"syslogEventId\": \"\",\n \"traceId\": \"\"\n },\n \"snapshot\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"assertionLifetime\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"oidc\": {\n \"claimMappings\": [\n {\n \"userAttributeMappingId\": \"\",\n \"claimName\": \"\",\n \"destination\": \"OIDC_CLAIM_DESTINATION_ID_TOKEN_ONLY\"\n },\n {\n \"userAttributeMappingId\": \"\",\n \"claimName\": \"\",\n \"destination\": \"OIDC_CLAIM_DESTINATION_UNSPECIFIED\"\n }\n ],\n \"idTokenSignedResponseAlg\": \"OIDC_SIGNING_ALGORITHM_RS256\"\n },\n \"saml\": {\n \"spEntityId\": \"\",\n \"acsUrls\": null,\n \"attributeMappings\": null,\n \"encryptAssertions\": \"\",\n \"encryptionAlgorithm\": \"SAML_ENCRYPTION_ALGORITHM_AES256_GCM\",\n \"nameIdFormat\": \"SAML_NAME_ID_FORMAT_TRANSIENT\",\n \"requireSignedAuthnRequests\": \"\",\n \"signAssertions\": \"\",\n \"signResponses\": \"\",\n \"spEncryptionCertificate\": \"\",\n \"spSigningCertificates\": null\n },\n \"sectorId\": \"\",\n \"subjectCompatibility\": {\n \"userAttributeMappingId\": \"\"\n },\n \"subjectType\": \"SSO_SUBJECT_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\"\n }\n },\n {\n \"metadata\": {\n \"actor\": {\n \"kind\": \"ACTOR_KIND_SLACK\",\n \"userId\": \"\"\n },\n \"annotations\": [\n {\n \"displayLabel\": \"\",\n \"displayUrl\": \"\",\n \"displayValue\": \"\",\n \"key\": \"\",\n \"kind\": \"ANNOTATION_KIND_WORKFLOW\",\n \"rawValue\": \"\"\n },\n {\n \"displayLabel\": \"\",\n \"displayUrl\": \"\",\n \"displayValue\": \"\",\n \"key\": \"\",\n \"kind\": \"ANNOTATION_KIND_AUTOMATION\",\n \"rawValue\": \"\"\n }\n ],\n \"changeKind\": \"CHANGE_KIND_CREATE\",\n \"createdAt\": \"\",\n \"id\": \"\",\n \"syslogEventId\": \"\",\n \"traceId\": \"\"\n },\n \"snapshot\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"assertionLifetime\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"oidc\": {\n \"claimMappings\": null,\n \"idTokenSignedResponseAlg\": \"OIDC_SIGNING_ALGORITHM_UNSPECIFIED\"\n },\n \"saml\": {\n \"spEntityId\": \"\",\n \"acsUrls\": [\n \"\",\n \"\"\n ],\n \"attributeMappings\": null,\n \"encryptAssertions\": \"\",\n \"encryptionAlgorithm\": \"SAML_ENCRYPTION_ALGORITHM_UNSPECIFIED\",\n \"nameIdFormat\": \"SAML_NAME_ID_FORMAT_TRANSIENT\",\n \"requireSignedAuthnRequests\": \"\",\n \"signAssertions\": \"\",\n \"signResponses\": \"\",\n \"spEncryptionCertificate\": \"\",\n \"spSigningCertificates\": null\n },\n \"sectorId\": \"\",\n \"subjectCompatibility\": {\n \"userAttributeMappingId\": \"\"\n },\n \"subjectType\": \"SSO_SUBJECT_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "subjects", + "description": "", + "item": [ + { + "name": "delete", + "description": "", + "item": [ + { + "id": "86838ceb-8f38-4783-a43b-6e7ce7391658", + "name": "Batch Delete Subject Compatibility", + "request": { + "name": "Batch Delete Subject Compatibility", + "description": { + "content": "Deletes one bounded batch of compatibility bindings. Imported and\n user-attribute-derived bindings are recoverable so corrected source data\n can be applied on the next import or sign-in. Correct attribute source data\n before deleting its binding so a concurrent sign-in cannot recreate the\n stale value.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id", + "subjects", + "delete" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"userIds\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "0f80a097-28f6-407a-95ef-12d3b72fcb7f", + "name": "SSOApplicationServiceBatchDeleteSubjectCompatibilityResponse reports bounded\n recovery progress.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id", + "subjects", + "delete" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"userIds\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"deletedRows\": \"\",\n \"issues\": [\n {\n \"reason\": \"\",\n \"userId\": \"\"\n },\n {\n \"reason\": \"\",\n \"userId\": \"\"\n }\n ]\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "import", + "description": "", + "item": [ + { + "id": "c62032c6-170b-48b7-8362-98becd141aa9", + "name": "Batch Import Subject Compatibility", + "request": { + "name": "Batch Import Subject Compatibility", + "description": { + "content": "Validates or imports one bounded batch of compatibility-subject bindings.\n Clients parse source files and submit at most 50 rows per request so they\n can expose progress and retry from a known boundary.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id", + "subjects", + "import" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"apply\": \"\",\n \"entries\": null,\n \"importId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "8706f02f-1697-486d-9781-a465b16068d5", + "name": "SSOApplicationServiceBatchImportSubjectCompatibilityResponse summarizes one\n bounded validation or apply batch.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "sso", + "applications", + ":id", + "subjects", + "import" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"apply\": \"\",\n \"entries\": null,\n \"importId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"blockingUserIds\": [\n \"\",\n \"\"\n ],\n \"importedRows\": \"\",\n \"importedUserIds\": [\n \"\",\n \"\"\n ],\n \"issues\": null,\n \"recoverableUserIds\": [\n \"\",\n \"\"\n ],\n \"totalRows\": \"\",\n \"validRows\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + } + ] + } + ] + }, + { + "name": "usage_controls", + "description": "", + "item": [ + { + "id": "42afede5-62db-4b38-bd45-c8efa59a0dd8", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get usage controls, as an AppUsageControls object which describes some peripheral configuration, for an app.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "usage_controls" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "3e19bc6a-f300-4025-bc51-ca38804d5361", + "name": "The GetAppUsageControlsResponse message contains the retrieved AppUsageControls object.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "usage_controls" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appUsageControls\": {\n \"appId\": \"\",\n \"notify\": \"\",\n \"notifyAfterDays\": \"\",\n \"revoke\": \"\",\n \"revokeAfterDays\": \"\"\n },\n \"hasUsageData\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "e309f943-c838-4d03-bb8e-ee937d312963", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update usage controls for an app.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "usage_controls" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appUsageControls\": {\n \"appId\": \"\",\n \"notify\": \"\",\n \"notifyAfterDays\": \"\",\n \"revoke\": \"\",\n \"revokeAfterDays\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "cffef3d4-67ea-4122-833a-c2e3edfe3db4", + "name": "The UpdateAppUsageControlsResponse message contains the updated AppUsageControls object.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "usage_controls" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appUsageControls\": {\n \"appId\": \"\",\n \"notify\": \"\",\n \"notifyAfterDays\": \"\",\n \"revoke\": \"\",\n \"revokeAfterDays\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appUsageControls\": {\n \"appId\": \"\",\n \"notify\": \"\",\n \"notifyAfterDays\": \"\",\n \"revoke\": \"\",\n \"revokeAfterDays\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "users", + "description": "", + "item": [ + { + "name": "{user_id}", + "description": "", + "item": [ + { + "name": "app_users", + "description": "", + "item": [ + { + "id": "0ff3312e-bc37-4e86-baa0-d753d4d88f4a", + "name": "List App Users For User", + "request": { + "name": "List App Users For User", + "description": { + "content": "List app user accounts within a specific app that are correlated to a given C1 user.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "users", + ":user_id", + "app_users" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "user_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "89575da2-6666-4d6e-bc63-f69ec34ee171", + "name": "The response message for listing app users correlated to a specific C1 user.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "users", + ":user_id", + "app_users" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "user_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": 368.4004442746036,\n \"key_2\": false,\n \"key_3\": true\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n }\n ],\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + }, + { + "name": "xaa", + "description": "", + "item": [ + { + "name": "access_profiles", + "description": "", + "item": [ + { + "id": "b36f4bdb-efa9-4b41-8523-c7295a45cafc", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List the access profiles defined for an application, one page at a time.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "e00ad46a-3f95-4fac-91ba-57ff74385c5b", + "name": "XAAAccessProfileServiceListResponse returns a page of access profiles.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"accessProfiles\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "5cdf4cf6-07b4-4e30-99f0-3219053d08b2", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create an access profile under a resource server. The backend also\n provisions a backing AppEntitlement that users request to be granted the\n profile's scopes.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"description\": \"\",\n \"displayName\": \"\",\n \"xaaResourceServerId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "657ca83c-341b-4ada-a200-5d90a6dc0ebf", + "name": "XAAAccessProfileServiceCreateResponse returns the created access profile.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"description\": \"\",\n \"displayName\": \"\",\n \"xaaResourceServerId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"accessProfile\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"scopeCount\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{access_profile_id}", + "description": "", + "item": [ + { + "name": "scope_bindings", + "description": "", + "item": [ + { + "id": "7fd2aaf1-91b6-42bd-8c19-020fb424dede", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List the scopes bound to an access profile, one page at a time.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles", + ":access_profile_id", + "scope_bindings" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "access_profile_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "0220417e-1460-4a85-bab5-4cb57397d704", + "name": "XAAAccessProfileScopeBindingServiceListResponse returns scope bindings.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles", + ":access_profile_id", + "scope_bindings" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "access_profile_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"bindings\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "9d04a2fc-0476-4c5c-8ae9-720800cfad8c", + "name": "Create Bindings", + "request": { + "name": "Create Bindings", + "description": { + "content": "CreateBindings binds one or more scopes (xaa_scope_ids) to an access\n profile. Every scope must belong to the profile's resource server.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles", + ":access_profile_id", + "scope_bindings" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "access_profile_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"xaaScopeIds\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "72b81ed9-30ae-425d-8265-c8b7c91e0980", + "name": "XAAAccessProfileScopeBindingServiceCreateResponse returns created bindings.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles", + ":access_profile_id", + "scope_bindings" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "access_profile_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"xaaScopeIds\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"bindings\": [\n {\n \"accessProfileId\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\",\n \"xaaScopeId\": \"\"\n },\n {\n \"accessProfileId\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\",\n \"xaaScopeId\": \"\"\n }\n ]\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "delete", + "description": "", + "item": [ + { + "id": "78bdfd0a-de2c-4d75-babc-02adeefa0c6b", + "name": "Delete Bindings", + "request": { + "name": "Delete Bindings", + "description": { + "content": "DeleteBindings unbinds one or more scopes (xaa_scope_ids) from an access\n profile. Uses a POST .../delete action route because the scope IDs travel\n in the request body, which HTTP DELETE does not reliably support.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles", + ":access_profile_id", + "scope_bindings", + "delete" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "access_profile_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"xaaScopeIds\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "29a627d9-7e6b-4d43-9c07-92c4aa96e743", + "name": "XAAAccessProfileScopeBindingServiceDeleteResponse confirms deletion.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles", + ":access_profile_id", + "scope_bindings", + "delete" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "access_profile_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"xaaScopeIds\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "dd480d94-3009-4c7a-ae17-a8747b70bd45", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete an access profile (soft delete). Cascades to its scope bindings and\n backing entitlement; outstanding grants end with the entitlement.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "29d5bc2d-2fe8-463d-8efe-a77e222b236f", + "name": "XAAAccessProfileServiceDeleteResponse confirms deletion.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "a7350e8c-9e02-4600-862a-41d8c2567e96", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get an access profile by app_id + id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "5289d1cf-e844-48a3-a1e2-1bfaf27a504a", + "name": "XAAAccessProfileServiceGetResponse returns a single access profile.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"accessProfile\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"scopeCount\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "d5a3dc40-2345-4f08-9452-12f0b0b98c11", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update an access profile's editable fields via update_mask. Editable\n paths: display_name, description. The profile must include id and app_id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"accessProfile\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"scopeCount\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "01c09fdd-077e-4b1c-a29f-7a17cd2757bc", + "name": "XAAAccessProfileServiceUpdateResponse returns the updated access profile.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"accessProfile\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"scopeCount\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"accessProfile\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"scopeCount\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "history", + "description": "", + "item": [ + { + "id": "d5c5e8d2-9e89-411c-9904-c9b9b80cc46b", + "name": "List History", + "request": { + "name": "List History", + "description": { + "content": "ListHistory returns the change history (newest first) for a single access\n profile — each entry is a snapshot plus who/when metadata.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles", + ":id", + "history" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "8778a593-6c1c-44a3-bcb2-dda9d6993fbc", + "name": "XAAAccessProfileServiceListHistoryResponse returns access profile history\n entries.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles", + ":id", + "history" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"metadata\": {\n \"actor\": {\n \"kind\": \"ACTOR_KIND_JIRA_CLOUD\",\n \"userId\": \"\"\n },\n \"annotations\": null,\n \"changeKind\": \"CHANGE_KIND_HARD_DELETE\",\n \"createdAt\": \"\",\n \"id\": \"\",\n \"syslogEventId\": \"\",\n \"traceId\": \"\"\n },\n \"snapshot\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"scopeCount\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n }\n },\n {\n \"metadata\": {\n \"actor\": {\n \"kind\": \"ACTOR_KIND_INTERNAL\",\n \"userId\": \"\"\n },\n \"annotations\": null,\n \"changeKind\": \"CHANGE_KIND_UNSPECIFIED\",\n \"createdAt\": \"\",\n \"id\": \"\",\n \"syslogEventId\": \"\",\n \"traceId\": \"\"\n },\n \"snapshot\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"scopeCount\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "by_app_entitlement_id", + "description": "", + "item": [ + { + "name": "{app_entitlement_id}", + "description": "", + "item": [ + { + "id": "cce48d4c-b465-4560-933e-04b9bb893837", + "name": "Get By App Entitlement Id", + "request": { + "name": "Get By App Entitlement Id", + "description": { + "content": "GetByAppEntitlementId looks up the access profile linked to an\n entitlement, by app_id + app_entitlement_id. Used by the request catalog.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles", + "by_app_entitlement_id", + ":app_entitlement_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "65f601f2-ddb6-4adb-9dde-557dc700b292", + "name": "XAAAccessProfileServiceGetByAppEntitlementIdResponse returns the matched\n profile.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "access_profiles", + "by_app_entitlement_id", + ":app_entitlement_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"accessProfile\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"scopeCount\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + }, + { + "name": "resource_servers", + "description": "", + "item": [ + { + "id": "736a6efa-3a4d-4164-a792-56cba17fa41e", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List the resource servers registered for an application, one page at a time.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "resource_servers" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "7017bbc2-0e5b-428e-8e07-c538f3bba6c2", + "name": "XAAResourceServerServiceListResponse returns a page of resource servers.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "resource_servers" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"nextPageToken\": \"\",\n \"resourceServers\": null\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "03643ad0-34ce-445f-b309-5dbb19f11a85", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Register a resource server (a third-party authorization server) as a\n permitted cross-app-access audience for an application. The audience must\n be unique within the application and must not equal your own tenant's\n issuer — C1 cannot be both the granting IdP and the resource server in the\n same flow.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "resource_servers" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"maxGrantLifetime\": \"\",\n \"modifyClaimsHook\": {\n \"commitId\": \"\",\n \"disabled\": \"\",\n \"functionId\": \"\"\n },\n \"normalizedAudience\": \"\",\n \"requireProofOfPossession\": \"\",\n \"resourceUris\": null,\n \"signingAlgorithm\": \"XAA_SIGNING_ALGORITHM_UNSPECIFIED\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "361f9631-bb76-4e99-b4b6-896e93591993", + "name": "XAAResourceServerServiceCreateResponse returns the registered resource server.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "resource_servers" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"maxGrantLifetime\": \"\",\n \"modifyClaimsHook\": {\n \"commitId\": \"\",\n \"disabled\": \"\",\n \"functionId\": \"\"\n },\n \"normalizedAudience\": \"\",\n \"requireProofOfPossession\": \"\",\n \"resourceUris\": null,\n \"signingAlgorithm\": \"XAA_SIGNING_ALGORITHM_UNSPECIFIED\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"resourceServer\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"maxGrantLifetime\": \"\",\n \"modifyClaimsHook\": {\n \"commitId\": \"\",\n \"disabled\": \"\",\n \"functionId\": \"\"\n },\n \"normalizedAudience\": \"\",\n \"requireProofOfPossession\": \"\",\n \"resourceUris\": [\n \"\",\n \"\"\n ],\n \"sectorId\": \"\",\n \"signingAlgorithm\": \"XAA_SIGNING_ALGORITHM_ES256\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "4cf3eba4-eeb3-4708-9ad4-0f26aa059571", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete a resource server (soft delete). Cascades to its scopes, access\n profiles, and client audience mappings.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "resource_servers", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "a6a6112e-5e6f-454c-8dd8-67248374b236", + "name": "XAAResourceServerServiceDeleteResponse confirms deletion.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "resource_servers", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "171461a4-5f64-4bde-a9b4-79f964dc4bf7", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get a registered resource server by app_id + id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "resource_servers", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "20b4507a-0c59-424b-9de8-fc07e68fde5f", + "name": "XAAResourceServerServiceGetResponse returns a single resource server.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "resource_servers", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"resourceServer\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"maxGrantLifetime\": \"\",\n \"modifyClaimsHook\": {\n \"commitId\": \"\",\n \"disabled\": \"\",\n \"functionId\": \"\"\n },\n \"normalizedAudience\": \"\",\n \"requireProofOfPossession\": \"\",\n \"resourceUris\": null,\n \"sectorId\": \"\",\n \"signingAlgorithm\": \"XAA_SIGNING_ALGORITHM_ES256\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "18a02137-7526-4c9e-a508-4645a6bb741f", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update a resource server's editable fields via update_mask. The audience\n is immutable (delete and recreate to change it); supplying a different\n audience is rejected. Editable paths: display_name, description,\n resource_uris, max_grant_lifetime, signing_algorithm,\n require_proof_of_possession, modify_claims_hook, disabled. sector_id is\n immutable once set (delete and recreate to change it).", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "resource_servers", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"resourceServer\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"maxGrantLifetime\": \"\",\n \"modifyClaimsHook\": {\n \"commitId\": \"\",\n \"disabled\": \"\",\n \"functionId\": \"\"\n },\n \"normalizedAudience\": \"\",\n \"requireProofOfPossession\": \"\",\n \"resourceUris\": null,\n \"sectorId\": \"\",\n \"signingAlgorithm\": \"XAA_SIGNING_ALGORITHM_RS256\",\n \"updatedAt\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "a844048b-7de0-4002-b7c7-b13e302ec5f8", + "name": "XAAResourceServerServiceUpdateResponse returns the updated resource server.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "resource_servers", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"resourceServer\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"maxGrantLifetime\": \"\",\n \"modifyClaimsHook\": {\n \"commitId\": \"\",\n \"disabled\": \"\",\n \"functionId\": \"\"\n },\n \"normalizedAudience\": \"\",\n \"requireProofOfPossession\": \"\",\n \"resourceUris\": null,\n \"sectorId\": \"\",\n \"signingAlgorithm\": \"XAA_SIGNING_ALGORITHM_RS256\",\n \"updatedAt\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"resourceServer\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"maxGrantLifetime\": \"\",\n \"modifyClaimsHook\": {\n \"commitId\": \"\",\n \"disabled\": \"\",\n \"functionId\": \"\"\n },\n \"normalizedAudience\": \"\",\n \"requireProofOfPossession\": \"\",\n \"resourceUris\": [\n \"\",\n \"\"\n ],\n \"sectorId\": \"\",\n \"signingAlgorithm\": \"XAA_SIGNING_ALGORITHM_RS256\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "history", + "description": "", + "item": [ + { + "id": "ed454b60-d3c7-42ee-9773-471b77367f81", + "name": "List History", + "request": { + "name": "List History", + "description": { + "content": "ListHistory returns the change history (newest first) for a single\n resource server — each entry is a snapshot plus who/when metadata.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "resource_servers", + ":id", + "history" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "be5520eb-c32e-4436-97a0-28edde1812ae", + "name": "XAAResourceServerServiceListHistoryResponse returns resource server history\n entries.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "resource_servers", + ":id", + "history" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"metadata\": {\n \"actor\": {\n \"kind\": \"ACTOR_KIND_INTERNAL\",\n \"userId\": \"\"\n },\n \"annotations\": [\n {\n \"displayLabel\": \"\",\n \"displayUrl\": \"\",\n \"displayValue\": \"\",\n \"key\": \"\",\n \"kind\": \"ANNOTATION_KIND_UNSPECIFIED\",\n \"rawValue\": \"\"\n },\n {\n \"displayLabel\": \"\",\n \"displayUrl\": \"\",\n \"displayValue\": \"\",\n \"key\": \"\",\n \"kind\": \"ANNOTATION_KIND_CORRELATION\",\n \"rawValue\": \"\"\n }\n ],\n \"changeKind\": \"CHANGE_KIND_PUT\",\n \"createdAt\": \"\",\n \"id\": \"\",\n \"syslogEventId\": \"\",\n \"traceId\": \"\"\n },\n \"snapshot\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"maxGrantLifetime\": \"\",\n \"modifyClaimsHook\": {\n \"commitId\": \"\",\n \"disabled\": \"\",\n \"functionId\": \"\"\n },\n \"normalizedAudience\": \"\",\n \"requireProofOfPossession\": \"\",\n \"resourceUris\": [\n \"\",\n \"\"\n ],\n \"sectorId\": \"\",\n \"signingAlgorithm\": \"XAA_SIGNING_ALGORITHM_ES256\",\n \"updatedAt\": \"\"\n }\n },\n {\n \"metadata\": {\n \"actor\": {\n \"kind\": \"ACTOR_KIND_SUPPORT\",\n \"userId\": \"\"\n },\n \"annotations\": null,\n \"changeKind\": \"CHANGE_KIND_UNSPECIFIED\",\n \"createdAt\": \"\",\n \"id\": \"\",\n \"syslogEventId\": \"\",\n \"traceId\": \"\"\n },\n \"snapshot\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"maxGrantLifetime\": \"\",\n \"modifyClaimsHook\": {\n \"commitId\": \"\",\n \"disabled\": \"\",\n \"functionId\": \"\"\n },\n \"normalizedAudience\": \"\",\n \"requireProofOfPossession\": \"\",\n \"resourceUris\": null,\n \"sectorId\": \"\",\n \"signingAlgorithm\": \"XAA_SIGNING_ALGORITHM_UNSPECIFIED\",\n \"updatedAt\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + }, + { + "name": "scopes", + "description": "", + "item": [ + { + "id": "63cc289e-c80d-4eaf-a99c-6b72d2f13208", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List the scopes defined for an application, one page at a time. To filter\n by resource server, state, or classification, use Search.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "scopes" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "8d7d9cfa-b8e3-439f-9036-11d3bc0f9b3f", + "name": "XAAScopeServiceListResponse returns a page of scopes.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "scopes" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"nextPageToken\": \"\",\n \"scopes\": null\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "42df7d9e-286a-41c0-82c8-d2a2364f6bc5", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Declare a scope under a resource server. The scope value is the literal\n OAuth scope string and is immutable after creation.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "scopes" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"classification\": \"XAA_SCOPE_CLASSIFICATION_WRITE\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"scopeValue\": \"\",\n \"state\": \"XAA_SCOPE_STATE_DISABLED\",\n \"xaaResourceServerId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "0054f643-ffa2-4f9f-ac30-39ed8413f32f", + "name": "XAAScopeServiceCreateResponse returns the created scope.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "scopes" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"classification\": \"XAA_SCOPE_CLASSIFICATION_WRITE\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"scopeValue\": \"\",\n \"state\": \"XAA_SCOPE_STATE_DISABLED\",\n \"xaaResourceServerId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"classification\": \"XAA_SCOPE_CLASSIFICATION_DANGEROUS\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"lastDiscoveredAt\": \"\",\n \"scopeValue\": \"\",\n \"source\": \"XAA_SCOPE_SOURCE_DISCOVERED\",\n \"state\": \"XAA_SCOPE_STATE_PENDING_REVIEW\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "cd37848e-71ab-4352-8eb9-f69c8d37d286", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete a scope (soft delete). Cascades to its backing entitlement and to\n any access-profile bindings that reference it.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "scopes", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "f5ee7c82-6599-4ae3-bdbd-89cba567b644", + "name": "XAAScopeServiceDeleteResponse confirms deletion.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "scopes", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "8390d6fb-2841-4485-b542-1fff5484dabe", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get a scope by app_id + id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "scopes", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "30c5b211-d0a7-476f-8165-ac02c62b0fbe", + "name": "XAAScopeServiceGetResponse returns a single scope.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "scopes", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"classification\": \"XAA_SCOPE_CLASSIFICATION_SENSITIVE\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"lastDiscoveredAt\": \"\",\n \"scopeValue\": \"\",\n \"source\": \"XAA_SCOPE_SOURCE_ADMIN_DECLARED\",\n \"state\": \"XAA_SCOPE_STATE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "4f896acb-b054-45b2-858b-aa0c10352fb1", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update a scope's editable fields via update_mask. This is how a scope is\n approved: set state to ENABLED to make it mintable, or DISABLED to block\n it. The scope value is immutable. Editable paths: display_name,\n description, state, classification.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "scopes", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"classification\": \"XAA_SCOPE_CLASSIFICATION_UNSPECIFIED\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"lastDiscoveredAt\": \"\",\n \"scopeValue\": \"\",\n \"source\": \"XAA_SCOPE_SOURCE_DISCOVERED\",\n \"state\": \"XAA_SCOPE_STATE_REMOVED\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "5394b7b9-0270-4618-a9af-8e9f938c336d", + "name": "XAAScopeServiceUpdateResponse returns the updated scope.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "scopes", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"classification\": \"XAA_SCOPE_CLASSIFICATION_UNSPECIFIED\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"lastDiscoveredAt\": \"\",\n \"scopeValue\": \"\",\n \"source\": \"XAA_SCOPE_SOURCE_DISCOVERED\",\n \"state\": \"XAA_SCOPE_STATE_REMOVED\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"classification\": \"XAA_SCOPE_CLASSIFICATION_DESTRUCTIVE\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"lastDiscoveredAt\": \"\",\n \"scopeValue\": \"\",\n \"source\": \"XAA_SCOPE_SOURCE_ADMIN_DECLARED\",\n \"state\": \"XAA_SCOPE_STATE_ENABLED\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "history", + "description": "", + "item": [ + { + "id": "fb190f0f-f810-4032-a6ec-678be16cf2e0", + "name": "List History", + "request": { + "name": "List History", + "description": { + "content": "ListHistory returns the change history (newest first) for a single scope —\n each entry is a snapshot plus who/when metadata.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "scopes", + ":id", + "history" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "8ee1d709-c4ca-496c-b2ac-083495b62dd3", + "name": "XAAScopeServiceListHistoryResponse returns scope history entries.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_id", + "xaa", + "scopes", + ":id", + "history" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + } + ] + } + ] + }, + { + "name": "{app_user_app_id}", + "description": "", + "item": [ + { + "name": "app_users", + "description": "", + "item": [ + { + "name": "{app_user_id}", + "description": "", + "item": [ + { + "id": "76a3dd77-30e3-4955-9d1e-39a61eb52f8d", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update an app user by ID. Only the fields specified in the update mask are updated.\n Currently, only the appUserType, and identityUserId fields can be updated.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_user_app_id", + "app_users", + ":app_user_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_user_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_user_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appUser\": {\n \"appUserType\": \"APP_USER_TYPE_USER\",\n \"status\": {}\n },\n \"expandMask\": {\n \"paths\": null\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "6e4db8d8-e56d-44e6-bb6c-0f0ca515cf8d", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":app_user_app_id", + "app_users", + ":app_user_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_user_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_user_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appUser\": {\n \"appUserType\": \"APP_USER_TYPE_USER\",\n \"status\": {}\n },\n \"expandMask\": {\n \"paths\": null\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appUserView\": {\n \"appPath\": \"\",\n \"appUser\": {\n \"agentStatus\": \"APP_USER_AGENT_STATUS_DELETED\",\n \"appId\": \"\",\n \"appUserType\": \"APP_USER_TYPE_UNSPECIFIED\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"emails\": null,\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"identityUserId\": \"\",\n \"isExternal\": \"\",\n \"nhiDetail\": \"\",\n \"nhiType\": \"APP_USER_NHI_TYPE_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": false,\n \"key_1\": false,\n \"key_2\": 3354\n },\n \"status\": {\n \"details\": \"\",\n \"status\": \"STATUS_UNSPECIFIED\"\n },\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernames\": null\n },\n \"identityUserPath\": \"\",\n \"lastUsagePath\": \"\"\n },\n \"expanded\": null\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + }, + { + "name": "{connector_app_id}", + "description": "", + "item": [ + { + "name": "connectors", + "description": "", + "item": [ + { + "name": "{connector_id}", + "description": "", + "item": [ + { + "name": "delegated", + "description": "", + "item": [ + { + "id": "eb8d4a7d-58b8-4ff7-bd21-8f3e3d4d8080", + "name": "Update Delegated", + "request": { + "name": "Update Delegated", + "description": { + "content": "Update a delegated connector.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":connector_app_id", + "connectors", + ":connector_id", + "delegated" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "connector_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": null,\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {},\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": null,\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_DONE\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": null\n },\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "e41cceef-ca66-4ff0-ad41-206ccae14bb2", + "name": "ConnectorServiceUpdateResponse is the response returned by the update method.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":connector_app_id", + "connectors", + ":connector_id", + "delegated" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": null,\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {},\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": null,\n \"profileIgnoreList\": [\n \"\",\n \"\"\n ],\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_DONE\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": null\n },\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"connectorView\": {\n \"appPath\": \"\",\n \"capabilitiesPath\": \"\",\n \"connector\": {\n \"appId\": \"\",\n \"canResumeSync\": \"\",\n \"catalogId\": \"\",\n \"config\": null,\n \"configUpdatedAt\": \"\",\n \"connectorApiVersion\": \"\",\n \"connectorSyncCronSchedule\": {\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disableCheckBadSync\": \"\",\n \"displayName\": \"\",\n \"downloadUrl\": \"\",\n \"id\": \"\",\n \"oauthAuthorizedAs\": {\n \"authEmail\": \"\",\n \"authorizedAt\": \"\"\n },\n \"parallelSyncWorkerCount\": \"\",\n \"profileAllowList\": null,\n \"profileIgnoreList\": null,\n \"status\": {\n \"completedAt\": \"\",\n \"lastError\": \"\",\n \"startedAt\": \"\",\n \"status\": \"SYNC_STATUS_RUNNING\",\n \"updatedAt\": \"\"\n },\n \"syncConfig\": {\n \"syncResourceTypeIds\": [\n \"\",\n \"\"\n ]\n },\n \"syncDisabledAt\": \"\",\n \"syncDisabledCategory\": \"\",\n \"syncDisabledReason\": \"\",\n \"updatedAt\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"usersPath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": true\n },\n {\n \"@type\": \"\"\n }\n ]\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + } + ] + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "25b71d6c-5765-4899-b7a4-c93ca24b13b0", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete an app.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "6e322155-51b3-4005-ba8f-4e8392166c18", + "name": "Empty response body. Status code indicates success.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "df452958-9323-4e28-bb49-a6515a67905b", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get an app by ID.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "5e012314-3048-4415-8d88-b9dc27acf292", + "name": "The GetAppResponse message contains the details of the requested app in the app field.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"app\": {\n \"accessModel\": \"APP_ACCESS_MODEL_CLASSIC\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appAccountId\": \"\",\n \"appAccountName\": \"\",\n \"appOwners\": [\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": null,\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": null,\n \"employeeIdSources\": null,\n \"employeeIds\": null,\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": null,\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": null,\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_HUMAN\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": null,\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": null,\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": null,\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": null,\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": {\n \"key_0\": \"string\"\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_HUMAN\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": null\n }\n ],\n \"appUserMapper\": {\n \"appId\": \"\",\n \"mappingCases\": [\n {\n \"appId\": \"\",\n \"appUserKeyCel\": \"\",\n \"caseIndex\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserKeyCel\": \"\",\n \"caseIndex\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n },\n \"certifyPolicyId\": \"\",\n \"connectorVersion\": \"\",\n \"createdAt\": \"\",\n \"defaultRequestCatalogId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enableConnectorSourcedOwnership\": \"\",\n \"fieldMask\": \"\",\n \"grantPolicyId\": \"\",\n \"iconUrl\": \"\",\n \"id\": \"\",\n \"identityMatching\": \"APP_USER_IDENTITY_MATCHING_UNSPECIFIED\",\n \"instructions\": \"\",\n \"isDirectory\": \"\",\n \"isManuallyManaged\": \"\",\n \"logoUri\": \"\",\n \"matchBatonRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalId\": \"\"\n },\n \"monthlyCostUsd\": \"\",\n \"parentAppId\": \"\",\n \"revokeGrantSources\": \"\",\n \"revokePolicyId\": \"\",\n \"strictAccessEntitlementProvisioning\": \"\",\n \"updatedAt\": \"\",\n \"userCount\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "3cf01bf0-4c22-4131-927f-4356e0252b52", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update an existing app.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"app\": {\n \"accessModel\": \"APP_ACCESS_MODEL_UNSPECIFIED\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"appUserMapper\": {\n \"mappingCases\": null\n },\n \"certifyPolicyId\": \"\",\n \"connectorVersion\": \"\",\n \"defaultRequestCatalogId\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enableConnectorSourcedOwnership\": \"\",\n \"grantPolicyId\": \"\",\n \"iconUrl\": \"\",\n \"identityMatching\": \"APP_USER_IDENTITY_MATCHING_CUSTOM\",\n \"instructions\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalId\": \"\"\n },\n \"monthlyCostUsd\": \"\",\n \"revokeGrantSources\": \"\",\n \"revokePolicyId\": \"\",\n \"strictAccessEntitlementProvisioning\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "c53c8d8c-5167-4322-9396-3cfe02799393", + "name": "Returns the updated app's new values.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"app\": {\n \"accessModel\": \"APP_ACCESS_MODEL_UNSPECIFIED\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"appUserMapper\": {\n \"mappingCases\": null\n },\n \"certifyPolicyId\": \"\",\n \"connectorVersion\": \"\",\n \"defaultRequestCatalogId\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enableConnectorSourcedOwnership\": \"\",\n \"grantPolicyId\": \"\",\n \"iconUrl\": \"\",\n \"identityMatching\": \"APP_USER_IDENTITY_MATCHING_CUSTOM\",\n \"instructions\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalId\": \"\"\n },\n \"monthlyCostUsd\": \"\",\n \"revokeGrantSources\": \"\",\n \"revokePolicyId\": \"\",\n \"strictAccessEntitlementProvisioning\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"app\": {\n \"accessModel\": \"APP_ACCESS_MODEL_SPARSE\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"appAccountId\": \"\",\n \"appAccountName\": \"\",\n \"appOwners\": null,\n \"appUserMapper\": {\n \"appId\": \"\",\n \"mappingCases\": null\n },\n \"certifyPolicyId\": \"\",\n \"connectorVersion\": \"\",\n \"createdAt\": \"\",\n \"defaultRequestCatalogId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enableConnectorSourcedOwnership\": \"\",\n \"fieldMask\": \"\",\n \"grantPolicyId\": \"\",\n \"iconUrl\": \"\",\n \"id\": \"\",\n \"identityMatching\": \"APP_USER_IDENTITY_MATCHING_CUSTOM\",\n \"instructions\": \"\",\n \"isDirectory\": \"\",\n \"isManuallyManaged\": \"\",\n \"logoUri\": \"\",\n \"matchBatonRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalId\": \"\"\n },\n \"monthlyCostUsd\": \"\",\n \"parentAppId\": \"\",\n \"revokeGrantSources\": \"\",\n \"revokePolicyId\": \"\",\n \"strictAccessEntitlementProvisioning\": \"\",\n \"updatedAt\": \"\",\n \"userCount\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "{src_app_id}", + "description": "", + "item": [ + { + "name": "{src_app_entitlement_id}", + "description": "", + "item": [ + { + "name": "bindings", + "description": "", + "item": [ + { + "name": "{dst_app_id}", + "description": "", + "item": [ + { + "name": "{dst_app_entitlement_id}", + "description": "", + "item": [ + { + "id": "16c4a590-1fc4-494a-9bcb-cd91424b4830", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete a proxy binding between a source and destination entitlement.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":src_app_id", + ":src_app_entitlement_id", + "bindings", + ":dst_app_id", + ":dst_app_entitlement_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "src_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "src_app_entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "dst_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "dst_app_entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "a68dfd73-d483-4606-a611-032181317a36", + "name": "The empty response message for deleting an entitlement proxy binding.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":src_app_id", + ":src_app_entitlement_id", + "bindings", + ":dst_app_id", + ":dst_app_entitlement_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "src_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "src_app_entitlement_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "dst_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "dst_app_entitlement_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "7c8e3b58-3e37-4e71-9e53-52b383e57982", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Retrieve a specific proxy binding between a source and destination entitlement.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":src_app_id", + ":src_app_entitlement_id", + "bindings", + ":dst_app_id", + ":dst_app_entitlement_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "src_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "src_app_entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "dst_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "dst_app_entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "9ea074ba-e992-4d3b-bad9-29d288275931", + "name": "The response message for getting a specific entitlement proxy binding.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":src_app_id", + ":src_app_entitlement_id", + "bindings", + ":dst_app_id", + ":dst_app_entitlement_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "src_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "src_app_entitlement_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "dst_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "dst_app_entitlement_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appProxyEntitlementView\": {\n \"appProxyEntitlement\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disabledAt\": \"\",\n \"dstAppEntitlementId\": \"\",\n \"dstAppId\": \"\",\n \"implicit\": \"\",\n \"srcAppEntitlementId\": \"\",\n \"srcAppId\": \"\",\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n },\n \"dstAppEntitlementPath\": \"\",\n \"dstAppPath\": \"\",\n \"srcAppEntitlementPath\": \"\",\n \"srcAppPath\": \"\"\n },\n \"expanded\": null\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "f81f78d7-4fe3-4e17-b2a9-c31db9eeffb6", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create a proxy binding between a source and destination entitlement, establishing a hierarchical relationship.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + ":src_app_id", + ":src_app_entitlement_id", + "bindings", + ":dst_app_id", + ":dst_app_entitlement_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "src_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "src_app_entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "dst_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "dst_app_entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"expandMask\": {\n \"paths\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "017797cc-4906-4d66-95fe-503d51f45bc0", + "name": "The response message for creating an entitlement proxy binding.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + ":src_app_id", + ":src_app_entitlement_id", + "bindings", + ":dst_app_id", + ":dst_app_entitlement_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "src_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "src_app_entitlement_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "dst_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "dst_app_entitlement_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"expandMask\": {\n \"paths\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appProxyEntitlementView\": {\n \"appProxyEntitlement\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disabledAt\": \"\",\n \"dstAppEntitlementId\": \"\",\n \"dstAppId\": \"\",\n \"implicit\": \"\",\n \"srcAppEntitlementId\": \"\",\n \"srcAppId\": \"\",\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n },\n \"dstAppEntitlementPath\": \"\",\n \"dstAppPath\": \"\",\n \"srcAppEntitlementPath\": \"\",\n \"srcAppPath\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": true\n },\n {\n \"@type\": \"\",\n \"key_0\": true,\n \"key_1\": \"string\"\n }\n ]\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + } + ] + } + ] + }, + { + "name": "connectors", + "description": "", + "item": [ + { + "name": "credentials", + "description": "", + "item": [ + { + "id": "b8926eab-1ecd-49bf-afb5-f075d2f34010", + "name": "Rotate Credential", + "request": { + "name": "Rotate Credential", + "description": { + "content": "Rotate credentials for a connector.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + "connectors", + "credentials" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appId\": \"\",\n \"connectorId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "d3df7c3b-c92e-4ab3-8131-b28fc4738db4", + "name": "ConnectorServiceRotateCredentialResponse is the response returned by the rotate method.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + "connectors", + "credentials" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appId\": \"\",\n \"connectorId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"credential\": {\n \"appId\": \"\",\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "validate_config", + "description": "", + "item": [ + { + "name": "http", + "description": "", + "item": [ + { + "id": "4c1b034a-a609-47bc-a014-532a5453360b", + "name": "Validate Http Connector Config", + "request": { + "name": "Validate Http Connector Config", + "description": { + "content": "Validate an HTTP connector configuration and return any diagnostics or errors found.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "apps", + "connectors", + "validate_config", + "http" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"text\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "bca7ccc8-9463-4517-9ff3-9313921fdd17", + "name": "The EditorValidateResponse message contains validation results.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "apps", + "connectors", + "validate_config", + "http" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"text\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"markers\": null\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + } + ] + }, + { + "name": "attribute", + "description": "", + "item": [ + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "99040812-7697-4527-b6d0-dd36b2dd6719", + "name": "Delete Attribute Value", + "request": { + "name": "Delete Attribute Value", + "description": { + "content": "Delete an attribute value by id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "attribute", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "048d62ec-4456-4542-98b8-2391d940217c", + "name": "DeleteAttributeValueResponse is the empty response for deleting an attribute value.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "attribute", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "attributes", + "description": "", + "item": [ + { + "id": "a21c0613-c34d-4042-8c6c-f774767c5ebb", + "name": "Create Attribute Value", + "request": { + "name": "Create Attribute Value", + "description": { + "content": "Create a new attribute value.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "attributes" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"attributeTypeId\": \"\",\n \"value\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "acff04e5-87bd-4205-a37b-066d7e2b415a", + "name": "CreateAttributeValueResponse is the response for creating an attribute value.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "attributes" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"attributeTypeId\": \"\",\n \"value\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"value\": {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "00e2856a-9a09-42a2-b03b-1ca756800fee", + "name": "Get Attribute Value", + "request": { + "name": "Get Attribute Value", + "description": { + "content": "Get an attribute value by id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "attributes", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "711eb334-6a4e-4c23-83b4-6d95491ec37b", + "name": "GetAttributeValueResponse is the response for getting an attribute value by id.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "attributes", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"value\": {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "compliance_frameworks", + "description": "", + "item": [ + { + "id": "02a19f4e-a58f-4c5c-adf2-f3c6b10713a2", + "name": "List Compliance Frameworks", + "request": { + "name": "List Compliance Frameworks", + "description": { + "content": "List all compliance framework attribute values (e.g., SOC 2, HIPAA) with pagination.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "attributes", + "compliance_frameworks" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "acb844f2-78cb-4924-ba4f-e6e112c2e348", + "name": "ListComplianceFrameworksResponse is the response for listing compliance framework attribute values.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "attributes", + "compliance_frameworks" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n },\n {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "7693a078-75a4-43b1-969e-87b09f74e621", + "name": "Create Compliance Framework Attribute Value", + "request": { + "name": "Create Compliance Framework Attribute Value", + "description": { + "content": "Create a compliance framework value.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "attributes", + "compliance_frameworks" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"value\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "afd61612-e154-454e-bfe9-59a647cf2387", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "attributes", + "compliance_frameworks" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"value\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"value\": {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "9d356d83-50e1-43e9-a3be-224ec1b3414b", + "name": "Delete Compliance Framework Attribute Value", + "request": { + "name": "Delete Compliance Framework Attribute Value", + "description": { + "content": "Delete an attribute value by id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "attributes", + "compliance_frameworks", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "f9ea15eb-0d5f-4678-90c7-ad73eb5be804", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "attributes", + "compliance_frameworks", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "0d8a6d56-a7f1-4d06-a50c-5d4cf278d05b", + "name": "Get Compliance Framework Attribute Value", + "request": { + "name": "Get Compliance Framework Attribute Value", + "description": { + "content": "Get an attribute value by id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "attributes", + "compliance_frameworks", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "56ed64c7-16fa-477d-87df-ad0c0645389f", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "attributes", + "compliance_frameworks", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"value\": {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "risk_levels", + "description": "", + "item": [ + { + "id": "dec784a6-c56c-4a56-882f-0d8a566cabb2", + "name": "List Risk Levels", + "request": { + "name": "List Risk Levels", + "description": { + "content": "List all risk level attribute values with pagination.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "attributes", + "risk_levels" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "871b907a-abd9-481c-ace8-3bc9e680e507", + "name": "ListRiskLevelsResponse is the response for listing risk level attribute values.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "attributes", + "risk_levels" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "6f7e60ad-42e0-48a6-ba5c-5299756dd6d7", + "name": "Create Risk Level Attribute Value", + "request": { + "name": "Create Risk Level Attribute Value", + "description": { + "content": "Create a risk level attribute.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "attributes", + "risk_levels" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"value\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "6ed1a7bc-74ec-48fd-85dc-f363642b3673", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "attributes", + "risk_levels" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"value\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"value\": {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "3410ccea-2dac-4971-a539-0212c4aa2a4b", + "name": "Delete Risk Level Attribute Value", + "request": { + "name": "Delete Risk Level Attribute Value", + "description": { + "content": "Delete a risk level attribute value by id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "attributes", + "risk_levels", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "fab8353b-2b52-4674-bdb7-3466065d2388", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "attributes", + "risk_levels", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "0d480fd1-bfaa-475d-a5d2-1904c70f4376", + "name": "Get Risk Level Attribute Value", + "request": { + "name": "Get Risk Level Attribute Value", + "description": { + "content": "Get a risk level attribute value by id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "attributes", + "risk_levels", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "36ad0c09-b3bd-4086-b251-a1c377cb3451", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "attributes", + "risk_levels", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"value\": {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "types", + "description": "", + "item": [ + { + "id": "f8e54033-552b-4bac-a537-7686e2f6de88", + "name": "List Attribute Types", + "request": { + "name": "List Attribute Types", + "description": { + "content": "List all attribute types.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "attributes", + "types" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "c28fcf1e-d5ee-4699-af52-9ca6ff1ab160", + "name": "ListAttributeTypesResponse is the response for listing attribute types.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "attributes", + "types" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"id\": \"\",\n \"name\": \"\"\n },\n {\n \"id\": \"\",\n \"name\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{attribute_type_id}", + "description": "", + "item": [ + { + "name": "values", + "description": "", + "item": [ + { + "id": "c5440f29-70eb-49a5-8448-645a81a40424", + "name": "List Attribute Values", + "request": { + "name": "List Attribute Values", + "description": { + "content": "List all attribute values for a given attribute type.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "attributes", + "types", + ":attribute_type_id", + "values" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "attribute_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "7e004d30-d767-4c5f-b782-68f70d4e9fe5", + "name": "ListAttributeValuesResponse is the response for listing attribute values for a given AttributeType.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "attributes", + "types", + ":attribute_type_id", + "values" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "attribute_type_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + } + ] + }, + { + "name": "auth-configs", + "description": "", + "item": [ + { + "id": "e354fff9-b5c1-41c6-a99a-bd180fb60375", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List returns all authentication provider configurations for the tenant.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "auth-configs" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "680471da-a8cd-4b28-8d0e-66478b578fa1", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "auth-configs" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"bootstrapDomains\": [\n \"\",\n \"\"\n ],\n \"c1Local\": {\n \"delegatedVerifiers\": null\n },\n \"createdAt\": \"\",\n \"deprecationDeadline\": \"\",\n \"deprecationMessage\": \"\",\n \"displayName\": \"\",\n \"google\": {\n \"additionalHostedDomains\": null,\n \"hostedDomains\": [\n \"\",\n \"\"\n ]\n },\n \"id\": \"\",\n \"isDefaultBootstrap\": \"\",\n \"jumpcloud\": {\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"microsoft\": {\n \"tenantIds\": null\n },\n \"oidc\": {\n \"exactMatchClaims\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"issuerId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\",\n \"scopes\": null\n },\n \"okta\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"onelogin\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"pingone\": {\n \"environmentId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"providerType\": \"AUTH_CONFIG_PROVIDER_TYPE_C1_LOCAL\",\n \"status\": \"AUTH_CONFIG_STATUS_DISABLED\",\n \"updatedAt\": \"\"\n },\n {\n \"bootstrapDomains\": null,\n \"c1Local\": {\n \"delegatedVerifiers\": null\n },\n \"createdAt\": \"\",\n \"deprecationDeadline\": \"\",\n \"deprecationMessage\": \"\",\n \"displayName\": \"\",\n \"google\": {\n \"additionalHostedDomains\": null,\n \"hostedDomains\": [\n \"\",\n \"\"\n ]\n },\n \"id\": \"\",\n \"isDefaultBootstrap\": \"\",\n \"jumpcloud\": {\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"microsoft\": {\n \"tenantIds\": [\n \"\",\n \"\"\n ]\n },\n \"oidc\": {\n \"exactMatchClaims\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"issuerId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\",\n \"scopes\": null\n },\n \"okta\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"onelogin\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"pingone\": {\n \"environmentId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"providerType\": \"AUTH_CONFIG_PROVIDER_TYPE_JUMPCLOUD\",\n \"status\": \"AUTH_CONFIG_STATUS_DISABLED\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "e08ef7e5-e168-471e-8d4f-af46e1f3b13d", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create registers a new authentication provider configuration for the tenant.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "auth-configs" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"bootstrapDomains\": [\n \"\",\n \"\"\n ],\n \"c1Local\": {\n \"delegatedVerifiers\": [\n \"DELEGATED_VERIFIER_TYPE_UNSPECIFIED\",\n \"DELEGATED_VERIFIER_TYPE_GITHUB\"\n ]\n },\n \"deprecationDeadline\": \"\",\n \"deprecationMessage\": \"\",\n \"google\": {\n \"hostedDomains\": [\n \"\",\n \"\"\n ]\n },\n \"isDefaultBootstrap\": \"\",\n \"jumpcloud\": {\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"microsoft\": {\n \"tenantIds\": null\n },\n \"oidc\": {\n \"exactMatchClaims\": {\n \"key_0\": \"\"\n },\n \"issuerId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ]\n },\n \"okta\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"onelogin\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"pingone\": {\n \"environmentId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"status\": \"AUTH_CONFIG_STATUS_DEPRECATED\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "fca5d828-ca7c-489a-9f1b-bc72545f57c5", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "auth-configs" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"bootstrapDomains\": [\n \"\",\n \"\"\n ],\n \"c1Local\": {\n \"delegatedVerifiers\": [\n \"DELEGATED_VERIFIER_TYPE_UNSPECIFIED\",\n \"DELEGATED_VERIFIER_TYPE_GITHUB\"\n ]\n },\n \"deprecationDeadline\": \"\",\n \"deprecationMessage\": \"\",\n \"google\": {\n \"hostedDomains\": [\n \"\",\n \"\"\n ]\n },\n \"isDefaultBootstrap\": \"\",\n \"jumpcloud\": {\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"microsoft\": {\n \"tenantIds\": null\n },\n \"oidc\": {\n \"exactMatchClaims\": {\n \"key_0\": \"\"\n },\n \"issuerId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ]\n },\n \"okta\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"onelogin\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"pingone\": {\n \"environmentId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"status\": \"AUTH_CONFIG_STATUS_DEPRECATED\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"authConfig\": {\n \"bootstrapDomains\": null,\n \"c1Local\": {\n \"delegatedVerifiers\": null\n },\n \"createdAt\": \"\",\n \"deprecationDeadline\": \"\",\n \"deprecationMessage\": \"\",\n \"displayName\": \"\",\n \"google\": {\n \"additionalHostedDomains\": null,\n \"hostedDomains\": [\n \"\",\n \"\"\n ]\n },\n \"id\": \"\",\n \"isDefaultBootstrap\": \"\",\n \"jumpcloud\": {\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"microsoft\": {\n \"tenantIds\": [\n \"\",\n \"\"\n ]\n },\n \"oidc\": {\n \"exactMatchClaims\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"issuerId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ]\n },\n \"okta\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"onelogin\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"pingone\": {\n \"environmentId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"providerType\": \"AUTH_CONFIG_PROVIDER_TYPE_C1_LOCAL\",\n \"status\": \"AUTH_CONFIG_STATUS_DEPRECATED\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "e619ca01-f96a-4e27-af47-6768a039b717", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete removes an authentication provider configuration from the tenant.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "auth-configs", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "6b4ae14c-32e3-400b-85f6-e53762a50a97", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "auth-configs", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "ab0ab958-470f-46ab-acf3-6bf005e4fc9d", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get retrieves a single authentication provider configuration by its ID.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "auth-configs", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "a4a981e3-9b54-4443-8e22-c19dc61365b7", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "auth-configs", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"authConfig\": {\n \"bootstrapDomains\": null,\n \"c1Local\": {\n \"delegatedVerifiers\": [\n \"DELEGATED_VERIFIER_TYPE_MICROSOFT\",\n \"DELEGATED_VERIFIER_TYPE_UNSPECIFIED\"\n ]\n },\n \"createdAt\": \"\",\n \"deprecationDeadline\": \"\",\n \"deprecationMessage\": \"\",\n \"displayName\": \"\",\n \"google\": {\n \"additionalHostedDomains\": null,\n \"hostedDomains\": null\n },\n \"id\": \"\",\n \"isDefaultBootstrap\": \"\",\n \"jumpcloud\": {\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"microsoft\": {\n \"tenantIds\": null\n },\n \"oidc\": {\n \"exactMatchClaims\": {\n \"key_0\": \"\"\n },\n \"issuerId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\",\n \"scopes\": null\n },\n \"okta\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"onelogin\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"pingone\": {\n \"environmentId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"providerType\": \"AUTH_CONFIG_PROVIDER_TYPE_GOOGLE\",\n \"status\": \"AUTH_CONFIG_STATUS_UNSPECIFIED\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "6d7f4905-946a-495e-b70a-cda1301a0dea", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update modifies an existing authentication provider configuration. Use the update mask to specify which fields to change.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "auth-configs", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"authConfig\": {\n \"bootstrapDomains\": null,\n \"c1Local\": {\n \"delegatedVerifiers\": null\n },\n \"deprecationDeadline\": \"\",\n \"deprecationMessage\": \"\",\n \"displayName\": \"\",\n \"google\": {\n \"hostedDomains\": [\n \"\",\n \"\"\n ]\n },\n \"id\": \"\",\n \"isDefaultBootstrap\": \"\",\n \"jumpcloud\": {\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"microsoft\": {\n \"tenantIds\": [\n \"\",\n \"\"\n ]\n },\n \"oidc\": {\n \"exactMatchClaims\": {\n \"key_0\": \"\"\n },\n \"issuerId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ]\n },\n \"okta\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"onelogin\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"pingone\": {\n \"environmentId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"status\": \"AUTH_CONFIG_STATUS_DEPRECATED\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "9309c9f7-27d0-43bc-9279-9978ef2ef2bb", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "auth-configs", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"authConfig\": {\n \"bootstrapDomains\": null,\n \"c1Local\": {\n \"delegatedVerifiers\": null\n },\n \"deprecationDeadline\": \"\",\n \"deprecationMessage\": \"\",\n \"displayName\": \"\",\n \"google\": {\n \"hostedDomains\": [\n \"\",\n \"\"\n ]\n },\n \"id\": \"\",\n \"isDefaultBootstrap\": \"\",\n \"jumpcloud\": {\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"microsoft\": {\n \"tenantIds\": [\n \"\",\n \"\"\n ]\n },\n \"oidc\": {\n \"exactMatchClaims\": {\n \"key_0\": \"\"\n },\n \"issuerId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ]\n },\n \"okta\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"onelogin\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"pingone\": {\n \"environmentId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"status\": \"AUTH_CONFIG_STATUS_DEPRECATED\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"authConfig\": {\n \"bootstrapDomains\": [\n \"\",\n \"\"\n ],\n \"c1Local\": {\n \"delegatedVerifiers\": null\n },\n \"createdAt\": \"\",\n \"deprecationDeadline\": \"\",\n \"deprecationMessage\": \"\",\n \"displayName\": \"\",\n \"google\": {\n \"additionalHostedDomains\": [\n \"\",\n \"\"\n ],\n \"hostedDomains\": [\n \"\",\n \"\"\n ]\n },\n \"id\": \"\",\n \"isDefaultBootstrap\": \"\",\n \"jumpcloud\": {\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"microsoft\": {\n \"tenantIds\": null\n },\n \"oidc\": {\n \"exactMatchClaims\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"issuerId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\",\n \"scopes\": null\n },\n \"okta\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"onelogin\": {\n \"domain\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"pingone\": {\n \"environmentId\": \"\",\n \"oidcClientId\": \"\",\n \"oidcClientSecret\": \"\"\n },\n \"providerType\": \"AUTH_CONFIG_PROVIDER_TYPE_MICROSOFT\",\n \"status\": \"AUTH_CONFIG_STATUS_DISABLED\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "auth", + "description": "", + "item": [ + { + "name": "introspect", + "description": "", + "item": [ + { + "id": "9f6aa272-50eb-4171-b0ab-c6b97f1d93c7", + "name": "Introspect", + "request": { + "name": "Introspect", + "description": { + "content": "Introspect returns the current user's principle_id, user_id and a list of roles, permissions, and enabled features.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "auth", + "introspect" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "8808812d-661e-41c3-ab79-2aa1e3cfd81d", + "name": "IntrospectResponse contains information about the current user who is authenticated.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "auth", + "introspect" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"deviceClientId\": \"\",\n \"disabledModules\": [\n \"MODULE_ID_SECRET_SHARING\",\n \"MODULE_ID_UNSPECIFIED\"\n ],\n \"features\": null,\n \"permissions\": [\n \"\",\n \"\"\n ],\n \"principleId\": \"\",\n \"roles\": null,\n \"tenantId\": \"\",\n \"userId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "automation_executions", + "description": "", + "item": [ + { + "id": "9c966cf4-db2e-4fad-83aa-4c0445ec874e", + "name": "List Automation Executions", + "request": { + "name": "List Automation Executions", + "description": { + "content": "List all automation executions in the tenant with pagination support.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "automation_executions" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "2e97aeac-e72f-4901-8201-3c7ff6c50267", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "automation_executions" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"automationExecutions\": [\n {\n \"automationTemplateId\": \"\",\n \"completedAt\": \"\",\n \"context\": {\n \"context\": null\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"deletedAt\": \"\",\n \"duration\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"state\": \"AUTOMATION_EXECUTION_STATE_WAITING\",\n \"updatedAt\": \"\"\n },\n {\n \"automationTemplateId\": \"\",\n \"completedAt\": \"\",\n \"context\": {\n \"context\": null\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"deletedAt\": \"\",\n \"duration\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"state\": \"AUTOMATION_EXECUTION_STATE_GET_STEP\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "22283920-c704-4ae4-a9a4-cced32f76766", + "name": "Get Automation Execution", + "request": { + "name": "Get Automation Execution", + "description": { + "content": "Retrieve a single automation execution by its unique identifier, with optional expanded related objects.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "automation_executions", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "51f48220-3a52-4433-940a-8b4e797d723c", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "automation_executions", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"automationExecution\": {\n \"automationTemplateId\": \"\",\n \"completedAt\": \"\",\n \"context\": {\n \"context\": null\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"deletedAt\": \"\",\n \"duration\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"state\": \"AUTOMATION_EXECUTION_STATE_CREATING\",\n \"updatedAt\": \"\"\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": 2825.7702059879744\n },\n {\n \"@type\": \"\",\n \"key_0\": 2697.870869637851\n }\n ],\n \"view\": {\n \"automationExecution\": {\n \"automationTemplateId\": \"\",\n \"completedAt\": \"\",\n \"context\": {\n \"context\": {\n \"key_0\": \"string\"\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"deletedAt\": \"\",\n \"duration\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"state\": \"AUTOMATION_EXECUTION_STATE_WAITING\",\n \"updatedAt\": \"\"\n },\n \"automationExecutionTriggerPath\": \"\",\n \"automationPath\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "actions", + "description": "", + "item": [ + { + "name": "terminate", + "description": "", + "item": [ + { + "id": "0ea8a5f3-154a-48e9-84f8-aa882698cb98", + "name": "Terminate Automation", + "request": { + "name": "Terminate Automation", + "description": { + "content": "Terminate a running automation execution asynchronously, stopping it and marking it as terminated.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "automation_executions", + ":id", + "actions", + "terminate" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "f5c5b4a1-bb9b-4b20-9cc0-03201e4f63df", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "automation_executions", + ":id", + "actions", + "terminate" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + } + ] + }, + { + "name": "automations", + "description": "", + "item": [ + { + "id": "8b435d98-d992-4861-aa66-e4a3f1f74975", + "name": "List Automations", + "request": { + "name": "List Automations", + "description": { + "content": "List all automations in the tenant with pagination support.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "automations" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "821151a3-f8da-4718-bb1d-dbc2699ebf2a", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "automations" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"automationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": \"string\"\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": null\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": null,\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": null,\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": null,\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": null\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": null\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\",\n \"inclusionAccessOnly\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": null,\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": null\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": null,\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": null\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": null\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": null\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelIsId\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_SSO_INTERNAL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_PAPER_VAULT\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_UNSPECIFIED\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_UNSPECIFIED\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": null,\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": null\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DELETED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": null,\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"circuitBreaker\": {\n \"observedCount\": \"\",\n \"period\": \"CIRCUIT_BREAKER_PERIOD_UNSPECIFIED\",\n \"threshold\": \"\",\n \"trippedAt\": \"\"\n },\n \"circuitBreakerMax\": \"\",\n \"circuitBreakerPeriod\": \"CIRCUIT_BREAKER_PERIOD_WEEK\",\n \"context\": {\n \"context\": null\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"draftAutomationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": null,\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": null\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": null,\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": null,\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": null,\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": null\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": null\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\",\n \"inclusionAccessOnly\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": null,\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": null,\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": null\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": 1255\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelIsId\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_UNSPECIFIED\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_APP_VAULT\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_UNSPECIFIED\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_SUBJECT\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": null,\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"UNKNOWN\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": null,\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"draftTriggers\": null,\n \"enabled\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"lastExecutedAt\": \"\",\n \"primaryTriggerType\": \"TRIGGER_TYPE_SCHEDULE_APP_USER\",\n \"triggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_DIRECT\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": null,\n \"resourceTypeIds\": null,\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": null\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": null,\n \"riskLevelIds\": null\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": null\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"targetedEntitlementRefs\": null,\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ]\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "43878790-b998-4d37-9f23-15d31aca1dc9", + "name": "Create Automation", + "request": { + "name": "Create Automation", + "description": { + "content": "Create a new automation with the specified steps, triggers, and\n configuration. See get_authoring_guide for the AutomationStep contract\n (step kinds and their required fields, CEL identifier scope).\n\n At create time, draft_automation_steps and draft_triggers default to\n their published counterparts when omitted — callers writing a single\n working version don't need to populate both. The draft/publish\n distinction matters only on subsequent edits.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "automations" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"automationSteps\": null,\n \"circuitBreakerMax\": \"\",\n \"circuitBreakerPeriod\": \"CIRCUIT_BREAKER_PERIOD_HOUR\",\n \"context\": {\n \"context\": null\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"draftAutomationSteps\": null,\n \"draftTriggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_UNSPECIFIED\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_DIRECT\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": null,\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_UNSPECIFIED\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": null,\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": null\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": null,\n \"excludedUserRefs\": null,\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": null,\n \"targetedEntitlementRefs\": null,\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ],\n \"enabled\": \"\",\n \"isDraft\": \"\",\n \"triggers\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "e80f414d-7470-4b36-b93c-02a234215f8d", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "automations" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"automationSteps\": null,\n \"circuitBreakerMax\": \"\",\n \"circuitBreakerPeriod\": \"CIRCUIT_BREAKER_PERIOD_HOUR\",\n \"context\": {\n \"context\": null\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"draftAutomationSteps\": null,\n \"draftTriggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_UNSPECIFIED\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_DIRECT\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": null,\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_UNSPECIFIED\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": null,\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": null\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": null,\n \"excludedUserRefs\": null,\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": null,\n \"targetedEntitlementRefs\": null,\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ],\n \"enabled\": \"\",\n \"isDraft\": \"\",\n \"triggers\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"automation\": {\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"automationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": null,\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": null,\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": null,\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": null,\n \"excludedComplianceFrameworkIds\": null,\n \"excludedResourceTypeIds\": null,\n \"excludedRiskLevelIds\": null\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": null\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"inclusionAccessOnly\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": null,\n \"resourceTypeIds\": null,\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": null,\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": null\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": null,\n \"riskLevelIds\": null\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": null\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": \"string\"\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": null\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelIsId\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": null\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_UNSPECIFIED\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_PAPER_VAULT\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_REVOKE\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_SUBJECT\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": null,\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DISABLED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": null,\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"circuitBreaker\": {\n \"observedCount\": \"\",\n \"period\": \"CIRCUIT_BREAKER_PERIOD_DAY\",\n \"threshold\": \"\",\n \"trippedAt\": \"\"\n },\n \"circuitBreakerMax\": \"\",\n \"circuitBreakerPeriod\": \"CIRCUIT_BREAKER_PERIOD_HOUR\",\n \"context\": {\n \"context\": {\n \"key_0\": 6482.034978380721,\n \"key_1\": true\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"draftAutomationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": null,\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": null,\n \"excludedComplianceFrameworkIds\": null,\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": null\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\",\n \"inclusionAccessOnly\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": null,\n \"riskLevelIds\": null\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": null\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": null\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": null,\n \"excludedComplianceFrameworkIds\": null,\n \"excludedRiskLevelIds\": null\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": null\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": true,\n \"key_1\": 4315.362258427342,\n \"key_2\": false\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": null\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelIsId\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": null\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_SSO_INTERNAL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_UNSPECIFIED\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": null,\n \"taskUserRelation\": \"TASK_USER_RELATION_ASSIGNEE\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": null,\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": null\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"UNKNOWN\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": null,\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"draftTriggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": null\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": null,\n \"resourceTypeIds\": null,\n \"riskLevelIds\": null\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_USER\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_UNSPECIFIED\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": null,\n \"resourceTypeIds\": null,\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": null,\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": null,\n \"targetedEntitlementRefs\": null,\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ],\n \"enabled\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"lastExecutedAt\": \"\",\n \"primaryTriggerType\": \"TRIGGER_TYPE_UNSPECIFIED\",\n \"triggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_UNSPECIFIED\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_CONDUCTOR_ONE\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": null,\n \"riskLevelIds\": null\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_UNSPECIFIED\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": null,\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": null,\n \"targetedEntitlementRefs\": null,\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ]\n },\n \"webhookCapabilityUrl\": \"\",\n \"webhookHmacSecret\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "96b3cd6e-b1e9-46e9-b819-20283f1c91dc", + "name": "Delete Automation", + "request": { + "name": "Delete Automation", + "description": { + "content": "Delete an automation by its unique identifier, removing it and its associated triggers.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "automations", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "a9e26784-4db6-4a18-9698-929eefdaec09", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "automations", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "c7a8797f-7d44-4d94-b092-69db5b8db511", + "name": "Get Automation", + "request": { + "name": "Get Automation", + "description": { + "content": "Retrieve a single automation by its unique identifier.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "automations", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "a229674f-603f-4455-b563-f8cc94691efb", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "automations", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"automation\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"appId\": \"\",\n \"automationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": null,\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": null\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": null,\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": null,\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": null\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"inclusionAccessOnly\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": null\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": null,\n \"excludedRiskLevelIds\": null\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": null\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": null,\n \"riskLevelIds\": null\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": null\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": 6759.015249812223,\n \"key_1\": true\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelIsId\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": null\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_UNSPECIFIED\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_APP_VAULT\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_REVOKE\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_SUBJECT\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": null,\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": null\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DISABLED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": null,\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"circuitBreaker\": {\n \"observedCount\": \"\",\n \"period\": \"CIRCUIT_BREAKER_PERIOD_UNSPECIFIED\",\n \"threshold\": \"\",\n \"trippedAt\": \"\"\n },\n \"circuitBreakerMax\": \"\",\n \"circuitBreakerPeriod\": \"CIRCUIT_BREAKER_PERIOD_HOUR\",\n \"context\": {\n \"context\": {\n \"key_0\": \"string\"\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"draftAutomationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": \"string\"\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": null\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": null,\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": null,\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": null\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\",\n \"inclusionAccessOnly\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": null,\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": null\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": null\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": null,\n \"excludedRiskLevelIds\": null\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": null,\n \"riskLevelIds\": null\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": null\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": 413,\n \"key_1\": 2088.8557217746716,\n \"key_2\": \"string\",\n \"key_3\": 4253,\n \"key_4\": \"string\"\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelIsId\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_SSO_INTERNAL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_UNSPECIFIED\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": null,\n \"taskUserRelation\": \"TASK_USER_RELATION_SUBJECT\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": null,\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DELETED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": null,\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"draftTriggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_UNSPECIFIED\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": null,\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_USER\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_UNSPECIFIED\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_CONDUCTOR_ONE\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": null,\n \"resourceTypeIds\": null,\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": null,\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": null,\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ],\n \"enabled\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"lastExecutedAt\": \"\",\n \"primaryTriggerType\": \"TRIGGER_TYPE_APP_USER_CREATE\",\n \"triggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": null\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_UNSPECIFIED\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": null,\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": null,\n \"resourceTypeIds\": null,\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_USER\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ]\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "c4df59b8-8fd3-4c17-b973-13b45502a71a", + "name": "Update Automation", + "request": { + "name": "Update Automation", + "description": { + "content": "Update an existing automation's properties, steps, or triggers using a field mask.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "automations", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"automation\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"automationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": null,\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": null,\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": null,\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": null,\n \"excludedComplianceFrameworkIds\": null,\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"inclusionAccessOnly\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": null,\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": null\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": null,\n \"excludedRiskLevelIds\": null\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": null\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": null,\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": false,\n \"key_1\": false\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelIsId\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": null\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_UNSPECIFIED\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_PAPER_VAULT\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": null,\n \"taskUserRelation\": \"TASK_USER_RELATION_ASSIGNEE\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": null,\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": null\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"UNKNOWN\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": null,\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"circuitBreaker\": {\n \"observedCount\": \"\",\n \"period\": \"CIRCUIT_BREAKER_PERIOD_WEEK\",\n \"threshold\": \"\",\n \"trippedAt\": \"\"\n },\n \"circuitBreakerMax\": \"\",\n \"circuitBreakerPeriod\": \"CIRCUIT_BREAKER_PERIOD_MONTH\",\n \"context\": {\n \"context\": {\n \"key_0\": false,\n \"key_1\": 4418.530541811936\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"draftAutomationSteps\": null,\n \"draftTriggers\": null,\n \"enabled\": \"\",\n \"isDraft\": \"\",\n \"lastExecutedAt\": \"\",\n \"primaryTriggerType\": \"TRIGGER_TYPE_SCHEDULE_APP_USER\",\n \"triggers\": null\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "70592cc0-be1f-4261-b761-bec25b907896", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "automations", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"automation\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"automationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": null,\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": null,\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": null,\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": null,\n \"excludedComplianceFrameworkIds\": null,\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\",\n \"inclusionAccessOnly\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": null,\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": null\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": null,\n \"excludedRiskLevelIds\": null\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": null\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": null,\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": false,\n \"key_1\": false\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelIsId\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": null\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_UNSPECIFIED\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_PAPER_VAULT\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": null,\n \"taskUserRelation\": \"TASK_USER_RELATION_ASSIGNEE\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": null,\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": null\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"UNKNOWN\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": null,\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"circuitBreaker\": {\n \"observedCount\": \"\",\n \"period\": \"CIRCUIT_BREAKER_PERIOD_WEEK\",\n \"threshold\": \"\",\n \"trippedAt\": \"\"\n },\n \"circuitBreakerMax\": \"\",\n \"circuitBreakerPeriod\": \"CIRCUIT_BREAKER_PERIOD_MONTH\",\n \"context\": {\n \"context\": {\n \"key_0\": false,\n \"key_1\": 4418.530541811936\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"draftAutomationSteps\": null,\n \"draftTriggers\": null,\n \"enabled\": \"\",\n \"isDraft\": \"\",\n \"lastExecutedAt\": \"\",\n \"primaryTriggerType\": \"TRIGGER_TYPE_SCHEDULE_APP_USER\",\n \"triggers\": null\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"automation\": {\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"automationSteps\": null,\n \"circuitBreaker\": {\n \"observedCount\": \"\",\n \"period\": \"CIRCUIT_BREAKER_PERIOD_UNSPECIFIED\",\n \"threshold\": \"\",\n \"trippedAt\": \"\"\n },\n \"circuitBreakerMax\": \"\",\n \"circuitBreakerPeriod\": \"CIRCUIT_BREAKER_PERIOD_MONTH\",\n \"context\": {\n \"context\": {\n \"key_0\": true,\n \"key_1\": 1765,\n \"key_2\": \"string\",\n \"key_3\": false\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"draftAutomationSteps\": null,\n \"draftTriggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": null,\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": null\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_CONDUCTOR_ONE\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": null\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": null,\n \"excludedUserRefs\": null,\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"targetedEntitlementRefs\": null,\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ],\n \"enabled\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"lastExecutedAt\": \"\",\n \"primaryTriggerType\": \"TRIGGER_TYPE_GRANT_DELETED\",\n \"triggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": null\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_USER\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_CONDUCTOR_ONE\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": null,\n \"riskLevelIds\": null\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": null\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_CONDUCTOR_ONE\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": null,\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": null\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": null,\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ]\n },\n \"webhookCapabilityUrl\": \"\",\n \"webhookHmacSecret\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "circuit_breaker", + "description": "", + "item": [ + { + "name": "clear", + "description": "", + "item": [ + { + "id": "78462a39-1918-4bcc-8ea4-e3a5ebe7b213", + "name": "Clear Automation Circuit Breaker", + "request": { + "name": "Clear Automation Circuit Breaker", + "description": { + "content": "Clear the circuit breaker on an automation that was auto-disabled by the\n rate cap. Future events flow normally; existing paused executions are not\n affected (use ResolvePausedAutomationExecutions to run or cancel them).", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "automations", + ":id", + "circuit_breaker", + "clear" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"decision\": \"PAUSED_EXECUTION_DECISION_UNSPECIFIED\",\n \"reason\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "ed1b7b2b-7e7b-4090-8bb6-e41d1abca4a7", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "automations", + ":id", + "circuit_breaker", + "clear" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"decision\": \"PAUSED_EXECUTION_DECISION_UNSPECIFIED\",\n \"reason\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"bulkActionId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "resolve_paused", + "description": "", + "item": [ + { + "id": "be664913-aaf8-41ae-b9c5-676d615be284", + "name": "Resolve Paused Automation Executions", + "request": { + "name": "Resolve Paused Automation Executions", + "description": { + "content": "Decide what to do with the executions that were paused while the\n automation's circuit breaker was tripped. Idempotent.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "automations", + ":id", + "circuit_breaker", + "resolve_paused" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"decision\": \"PAUSED_EXECUTION_DECISION_RUN\",\n \"reason\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "43b11d31-143a-4ef2-bd09-efcba77e9818", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "automations", + ":id", + "circuit_breaker", + "resolve_paused" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"decision\": \"PAUSED_EXECUTION_DECISION_RUN\",\n \"reason\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"bulkActionId\": \"\",\n \"erroredCount\": \"\",\n \"pausedCount\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "execute", + "description": "", + "item": [ + { + "id": "8366045f-41ab-44ed-9fcc-15d4cdcd9551", + "name": "Execute Automation", + "request": { + "name": "Execute Automation", + "description": { + "content": "Trigger an on-demand execution of an automation, returning the new execution's identifier.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "automations", + ":id", + "execute" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"context\": {\n \"context\": {\n \"key_0\": false,\n \"key_1\": \"string\"\n }\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "2089311c-138c-4c4f-afae-cc45e1330956", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "automations", + ":id", + "execute" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"context\": {\n \"context\": {\n \"key_0\": false,\n \"key_1\": \"string\"\n }\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"executionId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + }, + { + "name": "catalogs", + "description": "", + "item": [ + { + "id": "dbf0fa40-a7f3-443b-beaf-c31b5ddc3949", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "Get a list of request catalogs.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "da967889-970b-4832-9b51-f314399d5efc", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\"\n },\n {\n \"@type\": \"\",\n \"key_0\": 8585,\n \"key_1\": false\n }\n ],\n \"list\": [\n {\n \"accessEntitlementsPath\": \"\",\n \"createdByUserPath\": \"\",\n \"memberCount\": \"\",\n \"requestCatalog\": {\n \"accessEntitlements\": [\n {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": null,\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 8249.326790598267\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 5842,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": 3535,\n \"key_2\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n }\n ],\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enrollmentBehavior\": \"REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_BYPASS_ENTITLEMENT_REQUEST_POLICY\",\n \"id\": \"\",\n \"published\": \"\",\n \"requestBundle\": \"\",\n \"type\": \"REQUEST_CATALOG_TYPE_CATALOG_AND_BUNDLE\",\n \"unenrollmentBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_REVOKE_ALL\",\n \"unenrollmentEntitlementBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_ENFORCE\",\n \"updatedAt\": \"\",\n \"visibleToEveryone\": \"\"\n }\n },\n {\n \"accessEntitlementsPath\": \"\",\n \"createdByUserPath\": \"\",\n \"memberCount\": \"\",\n \"requestCatalog\": {\n \"accessEntitlements\": [\n {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": null,\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 408,\n \"key_1\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": null,\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n }\n ],\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enrollmentBehavior\": \"REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_UNSPECIFIED\",\n \"id\": \"\",\n \"published\": \"\",\n \"requestBundle\": \"\",\n \"type\": \"REQUEST_CATALOG_TYPE_CATALOG\",\n \"unenrollmentBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_REVOKE_UNJUSTIFIED\",\n \"unenrollmentEntitlementBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_BYPASS\",\n \"updatedAt\": \"\",\n \"visibleToEveryone\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "6d12cd94-1e03-4091-8f7d-111b84bb4416", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Creates a new request catalog.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"description\": \"\",\n \"enrollmentBehavior\": \"REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_BYPASS_ENTITLEMENT_REQUEST_POLICY\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"published\": \"\",\n \"requestBundle\": \"\",\n \"type\": \"REQUEST_CATALOG_TYPE_CATALOG\",\n \"unenrollmentBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_LEAVE_ACCESS_AS_IS\",\n \"unenrollmentEntitlementBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_UNSPECIFIED\",\n \"visibleToEveryone\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "abaae1d9-aaea-441f-b4b1-5dec21f80224", + "name": "The request catalog management service get response returns a request catalog view with the expanded items in the expanded array indicated by the expand mask in the request.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"description\": \"\",\n \"enrollmentBehavior\": \"REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_BYPASS_ENTITLEMENT_REQUEST_POLICY\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"published\": \"\",\n \"requestBundle\": \"\",\n \"type\": \"REQUEST_CATALOG_TYPE_CATALOG\",\n \"unenrollmentBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_LEAVE_ACCESS_AS_IS\",\n \"unenrollmentEntitlementBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_UNSPECIFIED\",\n \"visibleToEveryone\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 7190,\n \"key_1\": 159\n },\n {\n \"@type\": \"\"\n }\n ],\n \"requestCatalogView\": {\n \"accessEntitlementsPath\": \"\",\n \"createdByUserPath\": \"\",\n \"memberCount\": \"\",\n \"requestCatalog\": {\n \"accessEntitlements\": [\n {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n }\n ],\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enrollmentBehavior\": \"REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_UNSPECIFIED\",\n \"id\": \"\",\n \"published\": \"\",\n \"requestBundle\": \"\",\n \"type\": \"REQUEST_CATALOG_TYPE_BUNDLE\",\n \"unenrollmentBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_REVOKE_ALL\",\n \"unenrollmentEntitlementBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_ENFORCE\",\n \"updatedAt\": \"\",\n \"visibleToEveryone\": \"\"\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{catalog_id}", + "description": "", + "item": [ + { + "name": "requestable_entitlementIDs", + "description": "", + "item": [ + { + "id": "401e5879-749c-4c2c-8f5b-21697d41abee", + "name": "List All Entitlement Ids Per App", + "request": { + "name": "List All Entitlement Ids Per App", + "description": { + "content": "List all requestable entitlement IDs in a catalog without pagination.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "requestable_entitlementIDs" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "catalog_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "9400f4cc-63b4-4b1e-87ee-4347803e9b66", + "name": "The response message containing all requestable entitlement references in the catalog.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "requestable_entitlementIDs" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "catalog_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"refs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "requestable_entitlements", + "description": "", + "item": [ + { + "id": "6a082e5a-6a17-4c50-9252-f42c99d6ee0e", + "name": "List Entitlements Per Catalog", + "request": { + "name": "List Entitlements Per Catalog", + "description": { + "content": "List entitlements in a catalog that are requestable.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "requestable_entitlements" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "catalog_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "ab8f05a7-ab03-4d75-af2f-ccaf7a582aa6", + "name": "The RequestCatalogManagementServiceListEntitlementsPerCatalogResponse message contains a list of results and a nextPageToken if applicable.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "requestable_entitlements" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "catalog_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": \"string\",\n \"key_2\": \"string\"\n },\n {\n \"@type\": \"\",\n \"key_0\": 4437.321977535565\n }\n ],\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 7372.512279989545,\n \"key_1\": 3543,\n \"key_2\": false,\n \"key_3\": 4798.7464960083835\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"read\": \"\"\n }\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "update", + "description": "", + "item": [ + { + "id": "53cfd34e-eb1c-4560-85a5-b7cefa592a7d", + "name": "Update App Entitlements", + "request": { + "name": "Update App Entitlements", + "description": { + "content": "Replace the full set of requestable entitlements in a catalog with the provided list.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "requestable_entitlements", + "update" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "catalog_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlements\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "a11b5462-ac06-4f8a-bcd4-2b7dadf7dd0b", + "name": "The RequestCatalogManagementServiceUpdateAppEntitlementsResponse object is is the response from UpdateAppEntitlements endpoint.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "requestable_entitlements", + "update" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "catalog_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlements\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "requestable_entries", + "description": "", + "item": [ + { + "id": "6c504477-5148-47b8-8406-170b0707dc2a", + "name": "Remove App Entitlements", + "request": { + "name": "Remove App Entitlements", + "description": { + "content": "Remove requestable entitlements from a catalog.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "requestable_entries" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "catalog_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlements\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "407c15ed-a3fe-409e-82b2-94655a0bfe5d", + "name": "Empty response with a status code indicating success", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "requestable_entries" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "catalog_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlements\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "f03941f9-81d4-47a5-971e-85f0a41836e1", + "name": "Add App Entitlements", + "request": { + "name": "Add App Entitlements", + "description": { + "content": "Add requestable entitlements to a catalog.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "requestable_entries" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "catalog_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlements\": null,\n \"createRequests\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "b59e7704-40e2-4afb-b935-708169c068f0", + "name": "Empty response with a status code indicating success.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "requestable_entries" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "catalog_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlements\": null,\n \"createRequests\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{app_id}", + "description": "", + "item": [ + { + "name": "{entitlement_id}", + "description": "", + "item": [ + { + "id": "0a6cf409-3ae5-40de-a540-40c2a287d0bf", + "name": "Delete Requestable Entry", + "request": { + "name": "Delete Requestable Entry", + "description": { + "content": "Delete a single requestable entry", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "requestable_entries", + ":app_id", + ":entitlement_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "catalog_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "7d1f3c75-aa87-428e-b109-588c4e972ad3", + "name": "Empty response for delete operation", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "requestable_entries", + ":app_id", + ":entitlement_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "catalog_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "entitlement_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "0d59c197-779a-4c99-a993-589818cf50b3", + "name": "Get Requestable Entry", + "request": { + "name": "Get Requestable Entry", + "description": { + "content": "Get a single requestable entry", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "requestable_entries", + ":app_id", + ":entitlement_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "catalog_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "54c40745-0148-42cd-a0af-bd1ab6f45d5e", + "name": "Response containing the requested entry", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "requestable_entries", + ":app_id", + ":entitlement_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "catalog_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "entitlement_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"requestableEntry\": {\n \"appId\": \"\",\n \"catalogId\": \"\",\n \"entitlementId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "7d7e0068-98c2-403b-8791-7aa5c900f550", + "name": "Create Requestable Entry", + "request": { + "name": "Create Requestable Entry", + "description": { + "content": "Create a single requestable entry", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "requestable_entries", + ":app_id", + ":entitlement_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "catalog_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"createRequests\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "47dd1fff-f2c5-4dee-a8bb-06e6467668b7", + "name": "Response containing the created requestable entry", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "requestable_entries", + ":app_id", + ":entitlement_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "catalog_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "entitlement_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"createRequests\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"requestableEntry\": {\n \"appId\": \"\",\n \"catalogId\": \"\",\n \"entitlementId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + }, + { + "name": "visibility_bindings", + "description": "", + "item": [ + { + "id": "730ff902-0d70-4d6e-9c91-b5135ba3f407", + "name": "Remove Access Entitlements", + "request": { + "name": "Remove Access Entitlements", + "description": { + "content": "Remove visibility bindings (access entitlements) from a catalog.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "visibility_bindings" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "catalog_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"accessEntitlements\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "426c2e73-65de-418a-bcb0-ef677830b693", + "name": "Empty response with a status code indicating success.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "visibility_bindings" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "catalog_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"accessEntitlements\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "4e046f74-3b9d-4730-a696-27de3e98c43a", + "name": "Add Access Entitlements", + "request": { + "name": "Add Access Entitlements", + "description": { + "content": "Add visibility bindings (access entitlements) to a catalog.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "visibility_bindings" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "catalog_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"accessEntitlements\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "f11eb7eb-1255-4ca8-9c69-51061fdcac1d", + "name": "Empty response with a status code indicating success.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "visibility_bindings" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "catalog_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"accessEntitlements\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "visibility_entitlements", + "description": "", + "item": [ + { + "id": "188b3180-fbd5-461f-80bc-c709fcd7fc2e", + "name": "List Entitlements For Access", + "request": { + "name": "List Entitlements For Access", + "description": { + "content": "List visibility bindings (access entitlements) for a catalog.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "visibility_entitlements" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "catalog_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "89ee9961-bdc2-4528-9f20-647f05abd5a5", + "name": "The RequestCatalogManagementServiceListEntitlementsForAccessResponse message contains a list of results and a nextPageToken if applicable.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":catalog_id", + "visibility_entitlements" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "catalog_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\"\n },\n {\n \"@type\": \"\"\n }\n ],\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": null,\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 9487.323970200907,\n \"key_1\": 6602.610581418442\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n }\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "8cc68335-54a6-4a66-9b24-1774ddfed97b", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete a catalog.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "d651b890-785a-458d-9ccf-25c0e413bd81", + "name": "Empty response with a status code indicating success.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "0ee2b57b-de23-405c-b7dd-55616fb79810", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get a catalog.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "a3c01c03-778d-467e-94e2-a42da81d4d47", + "name": "The request catalog management service get response returns a request catalog view with the expanded items in the expanded array indicated by the expand mask in the request.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 7190,\n \"key_1\": 159\n },\n {\n \"@type\": \"\"\n }\n ],\n \"requestCatalogView\": {\n \"accessEntitlementsPath\": \"\",\n \"createdByUserPath\": \"\",\n \"memberCount\": \"\",\n \"requestCatalog\": {\n \"accessEntitlements\": [\n {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n }\n ],\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enrollmentBehavior\": \"REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_UNSPECIFIED\",\n \"id\": \"\",\n \"published\": \"\",\n \"requestBundle\": \"\",\n \"type\": \"REQUEST_CATALOG_TYPE_BUNDLE\",\n \"unenrollmentBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_REVOKE_ALL\",\n \"unenrollmentEntitlementBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_ENFORCE\",\n \"updatedAt\": \"\",\n \"visibleToEveryone\": \"\"\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "6c2b4257-a249-4508-a70c-7693b41a1826", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update a catalog.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"catalog\": {\n \"accessEntitlements\": null,\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"createdByUserId\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enrollmentBehavior\": \"REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_ENFORCE_ENTITLEMENT_REQUEST_POLICY\",\n \"id\": \"\",\n \"published\": \"\",\n \"requestBundle\": \"\",\n \"unenrollmentBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_REVOKE_UNJUSTIFIED\",\n \"unenrollmentEntitlementBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_ENFORCE\",\n \"visibleToEveryone\": \"\"\n },\n \"expandMask\": {\n \"paths\": null\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "2d2cc45e-33cb-4bff-b6cd-90977afa2005", + "name": "The request catalog management service get response returns a request catalog view with the expanded items in the expanded array indicated by the expand mask in the request.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"catalog\": {\n \"accessEntitlements\": null,\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"createdByUserId\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enrollmentBehavior\": \"REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_ENFORCE_ENTITLEMENT_REQUEST_POLICY\",\n \"id\": \"\",\n \"published\": \"\",\n \"requestBundle\": \"\",\n \"unenrollmentBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_REVOKE_UNJUSTIFIED\",\n \"unenrollmentEntitlementBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_ENFORCE\",\n \"visibleToEveryone\": \"\"\n },\n \"expandMask\": {\n \"paths\": null\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 7190,\n \"key_1\": 159\n },\n {\n \"@type\": \"\"\n }\n ],\n \"requestCatalogView\": {\n \"accessEntitlementsPath\": \"\",\n \"createdByUserPath\": \"\",\n \"memberCount\": \"\",\n \"requestCatalog\": {\n \"accessEntitlements\": [\n {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n }\n ],\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enrollmentBehavior\": \"REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_UNSPECIFIED\",\n \"id\": \"\",\n \"published\": \"\",\n \"requestBundle\": \"\",\n \"type\": \"REQUEST_CATALOG_TYPE_BUNDLE\",\n \"unenrollmentBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_REVOKE_ALL\",\n \"unenrollmentEntitlementBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_ENFORCE\",\n \"updatedAt\": \"\",\n \"visibleToEveryone\": \"\"\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "{request_catalog_id}", + "description": "", + "item": [ + { + "name": "bundle_automation", + "description": "", + "item": [ + { + "id": "28dec566-4ef6-40f1-8f48-e95d04c85eb8", + "name": "Delete Bundle Automation", + "request": { + "name": "Delete Bundle Automation", + "description": { + "content": "Delete the bundle automation rule for a catalog, stopping automatic membership syncing.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":request_catalog_id", + "bundle_automation" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "request_catalog_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "32c4610f-bdf1-426f-bb02-6743c9c993c3", + "name": "The response message for deleting a bundle automation.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":request_catalog_id", + "bundle_automation" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "request_catalog_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "155ee8eb-af54-4448-a9b7-332933d9af3c", + "name": "Get Bundle Automation", + "request": { + "name": "Get Bundle Automation", + "description": { + "content": "Get bundle automation", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":request_catalog_id", + "bundle_automation" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "request_catalog_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "91f4014f-fc3a-46a8-b55d-2cdbf1666386", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":request_catalog_id", + "bundle_automation" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "request_catalog_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"cel\": {\n \"expression\": \"\"\n },\n \"circuitBreaker\": {\n \"removedMembersThresholdPercentage\": \"\",\n \"state\": \"CIRCUIT_BREAKER_STATE_SUPPORT_DISABLED\",\n \"updatedAt\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createTasks\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disableCircuitBreaker\": \"\",\n \"enabled\": \"\",\n \"enforceOnSmallProfiles\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"removedMembersThresholdPercent\": \"\",\n \"requestCatalogId\": \"\",\n \"state\": {\n \"celEvaluation\": {\n \"errorMessage\": \"\",\n \"lastEvaluatedAt\": \"\",\n \"matchedUsers\": \"\",\n \"status\": \"BUNDLE_AUTOMATION_RUN_STATUS_FAILURE\"\n },\n \"errorMessage\": \"\",\n \"lastRunAt\": \"\",\n \"status\": \"BUNDLE_AUTOMATION_RUN_STATUS_SUCCESS\"\n },\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "98befc81-b3d0-4e66-9c4b-068164893106", + "name": "Set Bundle Automation", + "request": { + "name": "Set Bundle Automation", + "description": { + "content": "Create or update the bundle automation rule for a catalog that automatically syncs catalog membership.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":request_catalog_id", + "bundle_automation" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "request_catalog_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"cel\": {\n \"expression\": \"\"\n },\n \"createTasks\": \"\",\n \"disableCircuitBreaker\": \"\",\n \"enabled\": \"\",\n \"enforceOnSmallProfiles\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"removedMembersThresholdPercent\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "594b7fd9-c013-4438-b7af-34a085e55011", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":request_catalog_id", + "bundle_automation" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "request_catalog_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"cel\": {\n \"expression\": \"\"\n },\n \"createTasks\": \"\",\n \"disableCircuitBreaker\": \"\",\n \"enabled\": \"\",\n \"enforceOnSmallProfiles\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"removedMembersThresholdPercent\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"cel\": {\n \"expression\": \"\"\n },\n \"circuitBreaker\": {\n \"removedMembersThresholdPercentage\": \"\",\n \"state\": \"CIRCUIT_BREAKER_STATE_SUPPORT_DISABLED\",\n \"updatedAt\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createTasks\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disableCircuitBreaker\": \"\",\n \"enabled\": \"\",\n \"enforceOnSmallProfiles\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"removedMembersThresholdPercent\": \"\",\n \"requestCatalogId\": \"\",\n \"state\": {\n \"celEvaluation\": {\n \"errorMessage\": \"\",\n \"lastEvaluatedAt\": \"\",\n \"matchedUsers\": \"\",\n \"status\": \"BUNDLE_AUTOMATION_RUN_STATUS_FAILURE\"\n },\n \"errorMessage\": \"\",\n \"lastRunAt\": \"\",\n \"status\": \"BUNDLE_AUTOMATION_RUN_STATUS_SUCCESS\"\n },\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "create", + "description": "", + "item": [ + { + "id": "a6c0ff36-50a6-45c9-a63f-89073615662a", + "name": "Create Bundle Automation", + "request": { + "name": "Create Bundle Automation", + "description": { + "content": "Create a new bundle automation rule for a catalog that automatically syncs catalog membership from a query.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":request_catalog_id", + "bundle_automation", + "create" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "request_catalog_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"cel\": {\n \"expression\": \"\"\n },\n \"createTasks\": \"\",\n \"disableCircuitBreaker\": \"\",\n \"enabled\": \"\",\n \"enforceOnSmallProfiles\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": null\n },\n \"removedMembersThresholdPercent\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "a3d2fd0c-c6a0-4d42-96e4-e515422c04e7", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":request_catalog_id", + "bundle_automation", + "create" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "request_catalog_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"cel\": {\n \"expression\": \"\"\n },\n \"createTasks\": \"\",\n \"disableCircuitBreaker\": \"\",\n \"enabled\": \"\",\n \"enforceOnSmallProfiles\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": null\n },\n \"removedMembersThresholdPercent\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"cel\": {\n \"expression\": \"\"\n },\n \"circuitBreaker\": {\n \"removedMembersThresholdPercentage\": \"\",\n \"state\": \"CIRCUIT_BREAKER_STATE_SUPPORT_DISABLED\",\n \"updatedAt\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createTasks\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disableCircuitBreaker\": \"\",\n \"enabled\": \"\",\n \"enforceOnSmallProfiles\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"removedMembersThresholdPercent\": \"\",\n \"requestCatalogId\": \"\",\n \"state\": {\n \"celEvaluation\": {\n \"errorMessage\": \"\",\n \"lastEvaluatedAt\": \"\",\n \"matchedUsers\": \"\",\n \"status\": \"BUNDLE_AUTOMATION_RUN_STATUS_FAILURE\"\n },\n \"errorMessage\": \"\",\n \"lastRunAt\": \"\",\n \"status\": \"BUNDLE_AUTOMATION_RUN_STATUS_SUCCESS\"\n },\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "resume", + "description": "", + "item": [ + { + "id": "c50a31fa-435e-4679-bfa5-59ba704df153", + "name": "Resume Paused Bundle Automation", + "request": { + "name": "Resume Paused Bundle Automation", + "description": { + "content": "Resume a bundle automation that was paused by the circuit breaker after detecting excessive membership changes.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":request_catalog_id", + "bundle_automation", + "resume" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "request_catalog_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "fb21bee3-e96d-4985-a3dd-62b240b3095d", + "name": "The response message for resuming a paused bundle automation.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":request_catalog_id", + "bundle_automation", + "resume" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "request_catalog_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "run", + "description": "", + "item": [ + { + "id": "1b2b1b86-be7a-46d2-a743-d07ff0f00010", + "name": "Force Run Bundle Automation", + "request": { + "name": "Force Run Bundle Automation", + "description": { + "content": "Trigger an immediate execution of a catalog's bundle automation, bypassing the normal schedule.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":request_catalog_id", + "bundle_automation", + "run" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "request_catalog_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"refs\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "2da1df50-680f-4f1d-bc8f-6329f94520a2", + "name": "The response message for triggering a bundle automation run.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "catalogs", + ":request_catalog_id", + "bundle_automation", + "run" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "request_catalog_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"refs\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + } + ] + }, + { + "name": "connector-authoring", + "description": "", + "item": [ + { + "name": "activations", + "description": "", + "item": [ + { + "id": "81408034-7379-4d9f-b44b-28385afbd931", + "name": "Activate Revision", + "request": { + "name": "Activate Revision", + "description": { + "content": "ActivateRevision redeems a one-time approval token to activate a built\n connector revision onto its instance connector. It is OWNER-only.\n Double-activate protection is the single-use approval token itself: redeeming\n it is a compare-and-swap that rejects a second redemption of the same token.\n idempotency_key is optional and reserved for a future replay-result cache.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "connector-authoring", + "activations" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"approvalTokenId\": \"\",\n \"catalogId\": \"\",\n \"idempotencyKey\": \"\",\n \"instanceAppId\": \"\",\n \"instanceConnectorId\": \"\",\n \"revisionId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "e028fe3c-4e69-4bdd-9c5d-36ccec2f4b5c", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "connector-authoring", + "activations" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"approvalTokenId\": \"\",\n \"catalogId\": \"\",\n \"idempotencyKey\": \"\",\n \"instanceAppId\": \"\",\n \"instanceConnectorId\": \"\",\n \"revisionId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"activationEpoch\": \"\",\n \"revisionId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "rollbacks", + "description": "", + "item": [ + { + "id": "0acd728e-7cbf-4e93-8e60-03507cfa2417", + "name": "Rollback Revision", + "request": { + "name": "Rollback Revision", + "description": { + "content": "RollbackRevision redeems a one-time approval token (bound to the rollback\n target's integrity root) to re-point the published + instance pointers at a\n previously activated, still-servable revision under a strictly greater\n activation epoch. It is OWNER-only. The rolled-back-FROM revision's serve\n state is untouched — the pointer move alone stops it serving; permanently\n ending a revision's serve eligibility is a platform kill-switch operation,\n not a tenant API verb.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "connector-authoring", + "rollbacks" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"approvalTokenId\": \"\",\n \"catalogId\": \"\",\n \"instanceAppId\": \"\",\n \"instanceConnectorId\": \"\",\n \"reason\": \"\",\n \"targetRevisionId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "d385ea2f-b591-4f8e-b5cb-7285a4d3e1b0", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "connector-authoring", + "rollbacks" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"approvalTokenId\": \"\",\n \"catalogId\": \"\",\n \"instanceAppId\": \"\",\n \"instanceConnectorId\": \"\",\n \"reason\": \"\",\n \"targetRevisionId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"activationEpoch\": \"\",\n \"revisionId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "connectorcatalog", + "description": "", + "item": [ + { + "id": "ba55e0f8-6bf4-448a-b195-0fb96e3a6536", + "name": "Configuration Schema", + "request": { + "name": "Configuration Schema", + "description": { + "content": "Return the configuration schema describing the fields required to set up a connector of the specified type.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "connectorcatalog" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appId\": \"\",\n \"catalogId\": \"\",\n \"connectorId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "ba3b9ed3-237b-4525-847b-99314ed9627d", + "name": "ConnectorCatalogServiceConfigurationSchemaResponse is the response containing the connector's configuration schema.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "connectorcatalog" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appId\": \"\",\n \"catalogId\": \"\",\n \"connectorId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"formSchema\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n },\n \"schema\": {\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fields\": [\n {\n \"additionalPlaceholder\": \"\",\n \"checkbox\": {\n \"checked\": \"\"\n },\n \"dependsOnFields\": null,\n \"displayName\": \"\",\n \"helpUrl\": \"\",\n \"import\": {\n \"allowedExtensions\": null,\n \"secret\": \"\",\n \"valueValidator\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n }\n },\n \"keyValue\": {\n \"secret\": \"\",\n \"supportsFileUpload\": \"\"\n },\n \"name\": \"\",\n \"oauth2\": {},\n \"options\": {},\n \"placeholder\": \"\",\n \"postCreate\": \"\",\n \"random\": {\n \"length\": \"\"\n },\n \"readOnly\": {},\n \"secret\": {},\n \"select\": {\n \"items\": [\n {\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ]\n },\n \"str\": {\n \"secret\": \"\",\n \"valueValidator\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n }\n },\n \"strList\": {\n \"valueValidator\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n }\n },\n \"stringMap\": {\n \"optional\": \"\"\n },\n \"text\": {\n \"secret\": \"\",\n \"valueValidator\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n }\n }\n }\n ],\n \"helpUrl\": \"\",\n \"iconUrl\": \"\",\n \"isOauth2\": \"\",\n \"requiresExternalConnector\": \"\",\n \"supportsExternalResources\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "conversations", + "description": "", + "item": [ + { + "name": "onboarding:ensure", + "description": "", + "item": [ + { + "id": "08489301-15cb-48eb-8ae5-fca2eec89d87", + "name": "Ensure Onboarding Session", + "request": { + "name": "Ensure Onboarding Session", + "description": { + "content": "EnsureOnboardingSession returns the tenant's active onboarding conversation,\n or creates and starts it once. Retries converge on the stored conversation.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "conversations", + "onboarding:ensure" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "918d5659-faab-4cb2-93f0-ccc2712c7571", + "name": "Returns the active onboarding conversation and whether this call created it.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "conversations", + "onboarding:ensure" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"conversationId\": \"\",\n \"created\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "credential-inventory-policies", + "description": "", + "item": [ + { + "id": "d1ff919c-d1da-461a-8ce4-459ca2530744", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List all credential inventory policies in your tenant, one page at a time.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "credential-inventory-policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "52bb2802-6b20-4547-a9db-301635cdbbb7", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "credential-inventory-policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"delegated\": {\n \"googleEnabled\": \"\",\n \"googleHostedDomains\": null,\n \"microsoftEnabled\": \"\",\n \"microsoftTenantIds\": null\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"emailOtp\": {\n \"codeLength\": \"\",\n \"maxAttempts\": \"\",\n \"ttlSeconds\": \"\"\n },\n \"enabledTypes\": [\n \"CREDENTIAL_TYPE_TOTP\",\n \"CREDENTIAL_TYPE_DELEGATED_MICROSOFT\"\n ],\n \"id\": \"\",\n \"isBuiltin\": \"\",\n \"passkey\": {\n \"allowedAaguids\": null,\n \"attestation\": \"ATTESTATION_REQUIREMENT_UNSPECIFIED\",\n \"requireUserVerification\": \"\"\n },\n \"password\": {\n \"checkBreached\": \"\",\n \"historyDepth\": \"\",\n \"minLength\": \"\",\n \"requireMixedCase\": \"\",\n \"requireNumber\": \"\",\n \"requireSymbol\": \"\"\n },\n \"priority\": \"\",\n \"totp\": {\n \"codeLength\": \"\",\n \"periodSeconds\": \"\",\n \"skewTolerance\": \"\"\n },\n \"updatedAt\": \"\"\n },\n {\n \"createdAt\": \"\",\n \"delegated\": {\n \"googleEnabled\": \"\",\n \"googleHostedDomains\": [\n \"\",\n \"\"\n ],\n \"microsoftEnabled\": \"\",\n \"microsoftTenantIds\": [\n \"\",\n \"\"\n ]\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"emailOtp\": {\n \"codeLength\": \"\",\n \"maxAttempts\": \"\",\n \"ttlSeconds\": \"\"\n },\n \"enabledTypes\": null,\n \"id\": \"\",\n \"isBuiltin\": \"\",\n \"passkey\": {\n \"allowedAaguids\": [\n \"\",\n \"\"\n ],\n \"attestation\": \"ATTESTATION_REQUIREMENT_ENTERPRISE\",\n \"requireUserVerification\": \"\"\n },\n \"password\": {\n \"checkBreached\": \"\",\n \"historyDepth\": \"\",\n \"minLength\": \"\",\n \"requireMixedCase\": \"\",\n \"requireNumber\": \"\",\n \"requireSymbol\": \"\"\n },\n \"priority\": \"\",\n \"totp\": {\n \"codeLength\": \"\",\n \"periodSeconds\": \"\",\n \"skewTolerance\": \"\"\n },\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "3e53a636-83af-45b4-9d20-6dc0b89f0a8b", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create a credential inventory policy.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "credential-inventory-policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"delegated\": {\n \"googleEnabled\": \"\",\n \"googleHostedDomains\": [\n \"\",\n \"\"\n ],\n \"microsoftEnabled\": \"\",\n \"microsoftTenantIds\": null\n },\n \"emailOtp\": {\n \"codeLength\": \"\",\n \"maxAttempts\": \"\",\n \"ttlSeconds\": \"\"\n },\n \"enabledTypes\": [\n \"CREDENTIAL_TYPE_PASSWORD\",\n \"CREDENTIAL_TYPE_UNSPECIFIED\"\n ],\n \"passkey\": {\n \"allowedAaguids\": [\n \"\",\n \"\"\n ],\n \"attestation\": \"ATTESTATION_REQUIREMENT_DIRECT\",\n \"requireUserVerification\": \"\"\n },\n \"password\": {\n \"checkBreached\": \"\",\n \"historyDepth\": \"\",\n \"minLength\": \"\",\n \"requireMixedCase\": \"\",\n \"requireNumber\": \"\",\n \"requireSymbol\": \"\"\n },\n \"priority\": \"\",\n \"totp\": {\n \"codeLength\": \"\",\n \"periodSeconds\": \"\",\n \"skewTolerance\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "f7b14611-0092-4199-be2c-f7e83d51a159", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "credential-inventory-policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"delegated\": {\n \"googleEnabled\": \"\",\n \"googleHostedDomains\": [\n \"\",\n \"\"\n ],\n \"microsoftEnabled\": \"\",\n \"microsoftTenantIds\": null\n },\n \"emailOtp\": {\n \"codeLength\": \"\",\n \"maxAttempts\": \"\",\n \"ttlSeconds\": \"\"\n },\n \"enabledTypes\": [\n \"CREDENTIAL_TYPE_PASSWORD\",\n \"CREDENTIAL_TYPE_UNSPECIFIED\"\n ],\n \"passkey\": {\n \"allowedAaguids\": [\n \"\",\n \"\"\n ],\n \"attestation\": \"ATTESTATION_REQUIREMENT_DIRECT\",\n \"requireUserVerification\": \"\"\n },\n \"password\": {\n \"checkBreached\": \"\",\n \"historyDepth\": \"\",\n \"minLength\": \"\",\n \"requireMixedCase\": \"\",\n \"requireNumber\": \"\",\n \"requireSymbol\": \"\"\n },\n \"priority\": \"\",\n \"totp\": {\n \"codeLength\": \"\",\n \"periodSeconds\": \"\",\n \"skewTolerance\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"credentialInventoryPolicy\": {\n \"createdAt\": \"\",\n \"delegated\": {\n \"googleEnabled\": \"\",\n \"googleHostedDomains\": null,\n \"microsoftEnabled\": \"\",\n \"microsoftTenantIds\": [\n \"\",\n \"\"\n ]\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"emailOtp\": {\n \"codeLength\": \"\",\n \"maxAttempts\": \"\",\n \"ttlSeconds\": \"\"\n },\n \"enabledTypes\": null,\n \"id\": \"\",\n \"isBuiltin\": \"\",\n \"passkey\": {\n \"allowedAaguids\": null,\n \"attestation\": \"ATTESTATION_REQUIREMENT_NONE\",\n \"requireUserVerification\": \"\"\n },\n \"password\": {\n \"checkBreached\": \"\",\n \"historyDepth\": \"\",\n \"minLength\": \"\",\n \"requireMixedCase\": \"\",\n \"requireNumber\": \"\",\n \"requireSymbol\": \"\"\n },\n \"priority\": \"\",\n \"totp\": {\n \"codeLength\": \"\",\n \"periodSeconds\": \"\",\n \"skewTolerance\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "6cea7bb6-57be-4ce8-b5d5-5441a34a5519", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete a credential inventory policy by ID.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "credential-inventory-policies", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "3aff9e1d-994d-4e34-a9df-f51153c04ccf", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "credential-inventory-policies", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "66d1b59d-6399-4fcb-a384-1015fb32bde7", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get a credential inventory policy by ID.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "credential-inventory-policies", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "fa96d3cb-ebff-49bf-98e5-34c882f8d59c", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "credential-inventory-policies", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"credentialInventoryPolicy\": {\n \"createdAt\": \"\",\n \"delegated\": {\n \"googleEnabled\": \"\",\n \"googleHostedDomains\": null,\n \"microsoftEnabled\": \"\",\n \"microsoftTenantIds\": [\n \"\",\n \"\"\n ]\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"emailOtp\": {\n \"codeLength\": \"\",\n \"maxAttempts\": \"\",\n \"ttlSeconds\": \"\"\n },\n \"enabledTypes\": null,\n \"id\": \"\",\n \"isBuiltin\": \"\",\n \"passkey\": {\n \"allowedAaguids\": [\n \"\",\n \"\"\n ],\n \"attestation\": \"ATTESTATION_REQUIREMENT_NONE\",\n \"requireUserVerification\": \"\"\n },\n \"password\": {\n \"checkBreached\": \"\",\n \"historyDepth\": \"\",\n \"minLength\": \"\",\n \"requireMixedCase\": \"\",\n \"requireNumber\": \"\",\n \"requireSymbol\": \"\"\n },\n \"priority\": \"\",\n \"totp\": {\n \"codeLength\": \"\",\n \"periodSeconds\": \"\",\n \"skewTolerance\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "32b02323-40fd-4b53-8265-9f3212dc8823", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update a credential inventory policy. Supply the policy object and an\n update mask listing the fields to change; omitted fields are left as-is.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "credential-inventory-policies", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"credentialInventoryPolicy\": {\n \"delegated\": {\n \"googleEnabled\": \"\",\n \"googleHostedDomains\": null,\n \"microsoftEnabled\": \"\",\n \"microsoftTenantIds\": [\n \"\",\n \"\"\n ]\n },\n \"displayName\": \"\",\n \"emailOtp\": {\n \"codeLength\": \"\",\n \"maxAttempts\": \"\",\n \"ttlSeconds\": \"\"\n },\n \"enabledTypes\": null,\n \"passkey\": {\n \"allowedAaguids\": [\n \"\",\n \"\"\n ],\n \"attestation\": \"ATTESTATION_REQUIREMENT_UNSPECIFIED\",\n \"requireUserVerification\": \"\"\n },\n \"password\": {\n \"checkBreached\": \"\",\n \"historyDepth\": \"\",\n \"minLength\": \"\",\n \"requireMixedCase\": \"\",\n \"requireNumber\": \"\",\n \"requireSymbol\": \"\"\n },\n \"priority\": \"\",\n \"totp\": {\n \"codeLength\": \"\",\n \"periodSeconds\": \"\",\n \"skewTolerance\": \"\"\n }\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "ec5cd1a8-8ef2-4bff-af7f-d8f95f183a58", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "credential-inventory-policies", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"credentialInventoryPolicy\": {\n \"delegated\": {\n \"googleEnabled\": \"\",\n \"googleHostedDomains\": null,\n \"microsoftEnabled\": \"\",\n \"microsoftTenantIds\": [\n \"\",\n \"\"\n ]\n },\n \"displayName\": \"\",\n \"emailOtp\": {\n \"codeLength\": \"\",\n \"maxAttempts\": \"\",\n \"ttlSeconds\": \"\"\n },\n \"enabledTypes\": null,\n \"passkey\": {\n \"allowedAaguids\": [\n \"\",\n \"\"\n ],\n \"attestation\": \"ATTESTATION_REQUIREMENT_UNSPECIFIED\",\n \"requireUserVerification\": \"\"\n },\n \"password\": {\n \"checkBreached\": \"\",\n \"historyDepth\": \"\",\n \"minLength\": \"\",\n \"requireMixedCase\": \"\",\n \"requireNumber\": \"\",\n \"requireSymbol\": \"\"\n },\n \"priority\": \"\",\n \"totp\": {\n \"codeLength\": \"\",\n \"periodSeconds\": \"\",\n \"skewTolerance\": \"\"\n }\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"credentialInventoryPolicy\": {\n \"createdAt\": \"\",\n \"delegated\": {\n \"googleEnabled\": \"\",\n \"googleHostedDomains\": null,\n \"microsoftEnabled\": \"\",\n \"microsoftTenantIds\": null\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"emailOtp\": {\n \"codeLength\": \"\",\n \"maxAttempts\": \"\",\n \"ttlSeconds\": \"\"\n },\n \"enabledTypes\": null,\n \"id\": \"\",\n \"isBuiltin\": \"\",\n \"passkey\": {\n \"allowedAaguids\": [\n \"\",\n \"\"\n ],\n \"attestation\": \"ATTESTATION_REQUIREMENT_ENTERPRISE\",\n \"requireUserVerification\": \"\"\n },\n \"password\": {\n \"checkBreached\": \"\",\n \"historyDepth\": \"\",\n \"minLength\": \"\",\n \"requireMixedCase\": \"\",\n \"requireNumber\": \"\",\n \"requireSymbol\": \"\"\n },\n \"priority\": \"\",\n \"totp\": {\n \"codeLength\": \"\",\n \"periodSeconds\": \"\",\n \"skewTolerance\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "decoys", + "description": "", + "item": [ + { + "id": "a7ddbacd-5ff6-4155-8bf0-93c60105366d", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List returns decoys for the tenant, paginated.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "decoys" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "dc747294-c462-4621-bc14-08b2a7ddfba9", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "decoys" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"kind\": \"DECOY_KIND_UNSPECIFIED\",\n \"lastUsedAt\": \"\",\n \"materialFingerprintSha256\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"kind\": \"DECOY_KIND_USER_CLIENT_CREDENTIAL\",\n \"lastUsedAt\": \"\",\n \"materialFingerprintSha256\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "ad232b1c-78a7-414e-a8f1-b6a386a7dc81", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create mints a decoy credential and returns the one-time vending\n material exactly once. The Decoy id is server-set; the credential's\n secret cannot be retrieved again after this response.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "decoys" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"accessToken\": {\n \"expiresIn\": \"\",\n \"subjectUserId\": \"\"\n },\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"connectorClient\": {},\n \"description\": \"\",\n \"displayName\": \"\",\n \"userClientCredential\": {\n \"userId\": \"\"\n },\n \"workloadFed\": {\n \"conditionExpression\": \"\",\n \"providerId\": \"\",\n \"servicePrincipalUserId\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "43533eee-bdf4-4fb5-b05a-8530a584d60d", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "decoys" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"accessToken\": {\n \"expiresIn\": \"\",\n \"subjectUserId\": \"\"\n },\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"connectorClient\": {},\n \"description\": \"\",\n \"displayName\": \"\",\n \"userClientCredential\": {\n \"userId\": \"\"\n },\n \"workloadFed\": {\n \"conditionExpression\": \"\",\n \"providerId\": \"\",\n \"servicePrincipalUserId\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"decoy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"kind\": \"DECOY_KIND_USER_CLIENT_CREDENTIAL\",\n \"lastUsedAt\": \"\",\n \"materialFingerprintSha256\": \"\",\n \"updatedAt\": \"\"\n },\n \"material\": {\n \"accessToken\": {\n \"accessToken\": \"\"\n },\n \"clientCredential\": {\n \"clientId\": \"\",\n \"clientSecret\": \"\"\n },\n \"workloadFederation\": {\n \"workloadFederationTrustId\": \"\"\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "3c84f3fa-14d4-41d2-826f-1c81d1deeb61", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete soft-deletes a decoy and disables the paired credential row.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "decoys", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "071e08e1-0e1e-4664-8aa0-c98476df73af", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "decoys", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "b4b791b0-db69-4fe8-a70a-0a1130ed1893", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get returns a decoy by id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "decoys", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "650f1e52-621a-40c6-ba7b-0e7d34af884e", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "decoys", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"decoy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\",\n \"key_4\": \"\"\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"kind\": \"DECOY_KIND_WORKLOAD_FEDERATION\",\n \"lastUsedAt\": \"\",\n \"materialFingerprintSha256\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "9dce5141-6d58-435d-9b70-36620ce8056d", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update modifies mutable metadata on a decoy. The decoy variant is\n fixed at Create -- rotate the secret with Rotate instead.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "decoys", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "PATCH", + "body": { + "mode": "raw", + "raw": "{\n \"decoy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "5dec1cf5-a363-4217-8430-10c192fc29dd", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "decoys", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "PATCH", + "body": { + "mode": "raw", + "raw": "{\n \"decoy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"decoy\": {\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"kind\": \"DECOY_KIND_UNSPECIFIED\",\n \"lastUsedAt\": \"\",\n \"materialFingerprintSha256\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "rotate", + "description": "", + "item": [ + { + "id": "6fb82493-b673-4668-9663-ab46c74e12cd", + "name": "Rotate", + "request": { + "name": "Rotate", + "description": { + "content": "Rotate re-mints the paired credential's secret material, preserves\n the decoy_id binding, and returns the new one-time vending material.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "decoys", + ":id", + "rotate" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "53f05771-3e40-4bdf-a3b5-8d9e77b688bd", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "decoys", + ":id", + "rotate" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"decoy\": {\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"kind\": \"DECOY_KIND_WORKLOAD_FEDERATION\",\n \"lastUsedAt\": \"\",\n \"materialFingerprintSha256\": \"\",\n \"updatedAt\": \"\"\n },\n \"material\": {\n \"accessToken\": {\n \"accessToken\": \"\"\n },\n \"clientCredential\": {\n \"clientId\": \"\",\n \"clientSecret\": \"\"\n },\n \"workloadFederation\": {\n \"workloadFederationTrustId\": \"\"\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "search", + "description": "", + "item": [ + { + "id": "e0506209-c03b-4621-8503-a79b291b5935", + "name": "Search", + "request": { + "name": "Search", + "description": { + "content": "Search decoys with free-text query and filters for kind, status,\n and annotation key.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "decoys", + "search" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"annotationKeys\": [\n \"\",\n \"\"\n ],\n \"hasBeenUsed\": \"\",\n \"kinds\": [\n \"DECOY_KIND_ACCESS_TOKEN\",\n \"DECOY_KIND_USER_CLIENT_CREDENTIAL\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"statuses\": [\n \"DECOY_STATUS_FILTER_ACTIVE\",\n \"DECOY_STATUS_FILTER_DISABLED\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "41eec44d-d98e-4407-9b34-748b1fba2b5d", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "decoys", + "search" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"annotationKeys\": [\n \"\",\n \"\"\n ],\n \"hasBeenUsed\": \"\",\n \"kinds\": [\n \"DECOY_KIND_ACCESS_TOKEN\",\n \"DECOY_KIND_USER_CLIENT_CREDENTIAL\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"statuses\": [\n \"DECOY_STATUS_FILTER_ACTIVE\",\n \"DECOY_STATUS_FILTER_DISABLED\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"kind\": \"DECOY_KIND_UNSPECIFIED\",\n \"lastUsedAt\": \"\",\n \"materialFingerprintSha256\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"kind\": \"DECOY_KIND_ACCESS_TOKEN\",\n \"lastUsedAt\": \"\",\n \"materialFingerprintSha256\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "directories", + "description": "", + "item": [ + { + "id": "77db7b44-e704-4f8f-894f-0e3ecfb3fae2", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List directories.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "directories" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "2aa16a98-e866-445d-81db-d16cdd23494c", + "name": "The DirectoryServiceListResponse message contains a list of results and a nextPageToken if applicable.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "directories" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 6235,\n \"key_1\": false,\n \"key_2\": 1749\n },\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": \"string\"\n }\n ],\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "65197ea1-ea69-4515-9372-c016742426f2", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create a directory.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "directories" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"all\": {},\n \"appId\": \"\",\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"mergeConfig\": {\n \"matchCases\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "c195683c-a21f-493c-bc64-ce09a9a789a5", + "name": "The DirectoryServiceCreateResponse message.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "directories" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"all\": {},\n \"appId\": \"\",\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"mergeConfig\": {\n \"matchCases\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"directoryView\": {\n \"appPath\": \"\",\n \"directory\": {\n \"all\": {},\n \"appId\": \"\",\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"mergeConfig\": {\n \"matchCases\": null\n },\n \"updatedAt\": \"\"\n }\n },\n \"expanded\": null\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{app_id}", + "description": "", + "item": [ + { + "id": "dbcee0cf-0655-4068-be07-71cfcc30ecc4", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete a directory by app_id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "directories", + ":app_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "7ff1e7ae-2639-4f84-8d41-f3af2a7efe8b", + "name": "Empty response with a status code indicating success.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "directories", + ":app_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "e2d347a8-fb11-47c8-bcb2-d4fd385de1eb", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get a directory by app_id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "directories", + ":app_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "1a0340ad-07da-4b3e-857c-a40887548645", + "name": "The Directory Service Get Response returns a directory view with a directory and JSONPATHs indicating the\n location in the expanded array that items are expanded as indicated by the expand mask in the request.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "directories", + ":app_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"directoryView\": {\n \"appPath\": \"\",\n \"directory\": {\n \"all\": {},\n \"appId\": \"\",\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"mergeConfig\": {\n \"matchCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n },\n \"updatedAt\": \"\"\n }\n },\n \"expanded\": null\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "a3f4ca7a-88fa-46da-92ec-3406d87796e2", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update a directory by app_id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "directories", + ":app_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"all\": {},\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"expandMask\": {\n \"paths\": null\n },\n \"mergeConfig\": {\n \"matchCases\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "e098d1e2-20dd-405d-962d-40836cc45c3a", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "directories", + ":app_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"all\": {},\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"expandMask\": {\n \"paths\": null\n },\n \"mergeConfig\": {\n \"matchCases\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"directoryView\": {\n \"appPath\": \"\",\n \"directory\": {\n \"all\": {},\n \"appId\": \"\",\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"mergeConfig\": {\n \"matchCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n },\n \"updatedAt\": \"\"\n }\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 9613.511709958786\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": \"string\"\n }\n ]\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "findings", + "description": "", + "item": [ + { + "id": "3ef78056-8325-4e25-b145-914f0742b3ba", + "name": "Create Finding", + "request": { + "name": "Create Finding", + "description": { + "content": "Create a user-authored custom finding.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\",\n \"key_4\": \"\"\n },\n \"appResourceTarget\": {\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\"\n },\n \"appUserTarget\": {\n \"appId\": \"\",\n \"appUserId\": \"\"\n },\n \"connectorTarget\": {\n \"appId\": \"\",\n \"connectorId\": \"\"\n },\n \"customSubType\": \"\",\n \"decoyTarget\": {\n \"decoyId\": \"\"\n },\n \"dedupKeyParts\": [\n \"\",\n \"\"\n ],\n \"description\": \"\",\n \"identityUserTarget\": {\n \"identityUserId\": \"\"\n },\n \"remediationDescription\": \"\",\n \"severity\": \"FINDING_SEVERITY_HIGH\",\n \"tenantTarget\": {}\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "5624e156-efb1-4559-99fa-92cc7e019ca0", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\",\n \"key_4\": \"\"\n },\n \"appResourceTarget\": {\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\"\n },\n \"appUserTarget\": {\n \"appId\": \"\",\n \"appUserId\": \"\"\n },\n \"connectorTarget\": {\n \"appId\": \"\",\n \"connectorId\": \"\"\n },\n \"customSubType\": \"\",\n \"decoyTarget\": {\n \"decoyId\": \"\"\n },\n \"dedupKeyParts\": [\n \"\",\n \"\"\n ],\n \"description\": \"\",\n \"identityUserTarget\": {\n \"identityUserId\": \"\"\n },\n \"remediationDescription\": \"\",\n \"severity\": \"FINDING_SEVERITY_HIGH\",\n \"tenantTarget\": {}\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"finding\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceTarget\": {\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\"\n },\n \"appUserTarget\": {\n \"appId\": \"\",\n \"appUserId\": \"\"\n },\n \"assignedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"computedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"connectorAnomalyDetectionDisabled\": {},\n \"connectorSyncFailing\": {},\n \"connectorSyncFailingEvidence\": {\n \"consecutiveFailureCount\": \"\",\n \"lastFailedAt\": \"\",\n \"lastSyncLifecycleId\": \"\",\n \"streakStartedAt\": \"\"\n },\n \"connectorTarget\": {\n \"appId\": \"\",\n \"connectorId\": \"\"\n },\n \"createdAt\": \"\",\n \"credentialExpiring\": {\n \"credentialDisplayName\": \"\",\n \"userClientId\": \"\"\n },\n \"credentialExpiringEvidence\": {\n \"expired\": \"\",\n \"expiresAt\": \"\"\n },\n \"credentialPubliclyExposed\": {\n \"connectorClientId\": \"\",\n \"connectorManagedCredentialId\": \"\",\n \"credentialDisplayName\": \"\",\n \"functionClientId\": \"\",\n \"userClientId\": \"\"\n },\n \"credentialPubliclyExposedEvidence\": {\n \"credentialRevoked\": \"\",\n \"fingerprintPrefix\": \"\",\n \"firstObservedAt\": \"\",\n \"firstScannerId\": \"\",\n \"reportingScanners\": null,\n \"revokedAt\": \"\",\n \"sourceKind\": \"\",\n \"sourceUrl\": \"\"\n },\n \"custom\": {},\n \"customSubType\": \"\",\n \"customTags\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"deactivatedOwner\": {\n \"source\": \"DEACTIVATED_OWNER_SOURCE_IDENTITY_CORRELATION\"\n },\n \"deactivatedOwnerEvidence\": {\n \"deactivatedOwners\": null\n },\n \"decoyCredentialUsed\": {\n \"decoyId\": \"\",\n \"kind\": \"DECOY_CREDENTIAL_KIND_WORKLOAD_FEDERATION\"\n },\n \"decoyPubliclyExposed\": {\n \"decoyDisplayName\": \"\",\n \"decoyId\": \"\"\n },\n \"decoyPubliclyExposedEvidence\": {\n \"credentialRevoked\": \"\",\n \"fingerprintPrefix\": \"\",\n \"firstObservedAt\": \"\",\n \"firstScannerId\": \"\",\n \"reportingScanners\": null,\n \"revokedAt\": \"\",\n \"sourceKind\": \"\",\n \"sourceUrl\": \"\"\n },\n \"decoyTarget\": {\n \"decoyId\": \"\"\n },\n \"dedupKeyParts\": [\n \"\",\n \"\"\n ],\n \"description\": \"\",\n \"fingerprint\": \"\",\n \"firstObservedAt\": \"\",\n \"id\": \"\",\n \"identityUserTarget\": {\n \"identityUserId\": \"\"\n },\n \"lastAppearedAt\": \"\",\n \"lastObservedAt\": \"\",\n \"nhiUnowned\": {},\n \"recurrenceCount\": \"\",\n \"remediationDescription\": \"\",\n \"resolvedAt\": \"\",\n \"riskAcceptanceExpiresAt\": \"\",\n \"riskAcceptanceJustification\": \"\",\n \"riskScore\": {\n \"originalScore\": \"\",\n \"overrideByUserId\": \"\",\n \"overrideScore\": \"\",\n \"riskFactors\": null,\n \"score\": \"\",\n \"systemScore\": \"\"\n },\n \"serviceAccountMisclassification\": {\n \"currentAccountType\": \"APP_USER_TYPE_UNSPECIFIED\",\n \"detectedAccountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"serviceAccountMisclassificationEvidence\": {\n \"detectionReason\": \"\"\n },\n \"serviceAccountUnowned\": {},\n \"severity\": \"FINDING_SEVERITY_LOW\",\n \"similarUsernameMatch\": {\n \"proposedIdentityUserId\": \"\"\n },\n \"similarUsernameMatchEvidence\": {\n \"appUsername\": \"\",\n \"identityUsername\": \"\",\n \"similarityScore\": \"\"\n },\n \"snoozeReason\": \"\",\n \"snoozeUntil\": \"\",\n \"sourceDetectorId\": \"\",\n \"sourceKind\": \"FINDING_SOURCE_KIND_EXTERNAL\",\n \"state\": \"FINDING_STATE_OPEN\",\n \"stateUpdatedById\": \"\",\n \"suppressReason\": \"\",\n \"taskId\": \"\",\n \"tenantTarget\": {},\n \"unusedSecret\": {},\n \"unusedSecretEvidence\": {\n \"lastUsedAt\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{finding_id}", + "description": "", + "item": [ + { + "name": "state", + "description": "", + "item": [ + { + "id": "8c5b0b30-6379-43ad-949a-61e7562a7f42", + "name": "Update Finding State", + "request": { + "name": "Update Finding State", + "description": { + "content": "Update finding workflow state (snooze, accept risk, suppress, reopen, resolve).", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings", + ":finding_id", + "state" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "finding_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"acceptRisk\": {\n \"expiresAt\": \"\",\n \"justification\": \"\"\n },\n \"reopen\": {},\n \"resolve\": {\n \"reason\": \"\"\n },\n \"snooze\": {\n \"reason\": \"\",\n \"snoozeUntil\": \"\"\n },\n \"suppress\": {\n \"reason\": \"\"\n },\n \"unsuppress\": {}\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "54bc18fa-4410-487c-8894-0e40d0f7ac82", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings", + ":finding_id", + "state" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "finding_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"acceptRisk\": {\n \"expiresAt\": \"\",\n \"justification\": \"\"\n },\n \"reopen\": {},\n \"resolve\": {\n \"reason\": \"\"\n },\n \"snooze\": {\n \"reason\": \"\",\n \"snoozeUntil\": \"\"\n },\n \"suppress\": {\n \"reason\": \"\"\n },\n \"unsuppress\": {}\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"finding\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceTarget\": {\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\"\n },\n \"appUserTarget\": {\n \"appId\": \"\",\n \"appUserId\": \"\"\n },\n \"assignedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"computedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"connectorAnomalyDetectionDisabled\": {},\n \"connectorSyncFailing\": {},\n \"connectorSyncFailingEvidence\": {\n \"consecutiveFailureCount\": \"\",\n \"lastFailedAt\": \"\",\n \"lastSyncLifecycleId\": \"\",\n \"streakStartedAt\": \"\"\n },\n \"connectorTarget\": {\n \"appId\": \"\",\n \"connectorId\": \"\"\n },\n \"createdAt\": \"\",\n \"credentialExpiring\": {\n \"credentialDisplayName\": \"\",\n \"userClientId\": \"\"\n },\n \"credentialExpiringEvidence\": {\n \"expired\": \"\",\n \"expiresAt\": \"\"\n },\n \"credentialPubliclyExposed\": {\n \"connectorClientId\": \"\",\n \"connectorManagedCredentialId\": \"\",\n \"credentialDisplayName\": \"\",\n \"functionClientId\": \"\",\n \"userClientId\": \"\"\n },\n \"credentialPubliclyExposedEvidence\": {\n \"credentialRevoked\": \"\",\n \"fingerprintPrefix\": \"\",\n \"firstObservedAt\": \"\",\n \"firstScannerId\": \"\",\n \"reportingScanners\": null,\n \"revokedAt\": \"\",\n \"sourceKind\": \"\",\n \"sourceUrl\": \"\"\n },\n \"custom\": {},\n \"customSubType\": \"\",\n \"customTags\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"deactivatedOwner\": {\n \"source\": \"DEACTIVATED_OWNER_SOURCE_SECRET_RUN_AS_IDENTITY\"\n },\n \"deactivatedOwnerEvidence\": {\n \"deactivatedOwners\": [\n {\n \"reason\": \"DEACTIVATED_OWNER_REASON_EMPLOYMENT_INACTIVE\",\n \"userId\": \"\"\n },\n {\n \"reason\": \"DEACTIVATED_OWNER_REASON_USER_DELETED\",\n \"userId\": \"\"\n }\n ]\n },\n \"decoyCredentialUsed\": {\n \"decoyId\": \"\",\n \"kind\": \"DECOY_CREDENTIAL_KIND_ACCESS_TOKEN\"\n },\n \"decoyPubliclyExposed\": {\n \"decoyDisplayName\": \"\",\n \"decoyId\": \"\"\n },\n \"decoyPubliclyExposedEvidence\": {\n \"credentialRevoked\": \"\",\n \"fingerprintPrefix\": \"\",\n \"firstObservedAt\": \"\",\n \"firstScannerId\": \"\",\n \"reportingScanners\": [\n \"\",\n \"\"\n ],\n \"revokedAt\": \"\",\n \"sourceKind\": \"\",\n \"sourceUrl\": \"\"\n },\n \"decoyTarget\": {\n \"decoyId\": \"\"\n },\n \"dedupKeyParts\": null,\n \"description\": \"\",\n \"fingerprint\": \"\",\n \"firstObservedAt\": \"\",\n \"id\": \"\",\n \"identityUserTarget\": {\n \"identityUserId\": \"\"\n },\n \"lastAppearedAt\": \"\",\n \"lastObservedAt\": \"\",\n \"nhiUnowned\": {},\n \"recurrenceCount\": \"\",\n \"remediationDescription\": \"\",\n \"resolvedAt\": \"\",\n \"riskAcceptanceExpiresAt\": \"\",\n \"riskAcceptanceJustification\": \"\",\n \"riskScore\": {\n \"originalScore\": \"\",\n \"overrideByUserId\": \"\",\n \"overrideScore\": \"\",\n \"riskFactors\": [\n {\n \"description\": \"\",\n \"name\": \"\",\n \"severity\": \"FINDING_SEVERITY_UNSPECIFIED\",\n \"weight\": \"\"\n },\n {\n \"description\": \"\",\n \"name\": \"\",\n \"severity\": \"FINDING_SEVERITY_INFO\",\n \"weight\": \"\"\n }\n ],\n \"score\": \"\",\n \"systemScore\": \"\"\n },\n \"serviceAccountMisclassification\": {\n \"currentAccountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"detectedAccountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"serviceAccountMisclassificationEvidence\": {\n \"detectionReason\": \"\"\n },\n \"serviceAccountUnowned\": {},\n \"severity\": \"FINDING_SEVERITY_HIGH\",\n \"similarUsernameMatch\": {\n \"proposedIdentityUserId\": \"\"\n },\n \"similarUsernameMatchEvidence\": {\n \"appUsername\": \"\",\n \"identityUsername\": \"\",\n \"similarityScore\": \"\"\n },\n \"snoozeReason\": \"\",\n \"snoozeUntil\": \"\",\n \"sourceDetectorId\": \"\",\n \"sourceKind\": \"FINDING_SOURCE_KIND_DETECTOR\",\n \"state\": \"FINDING_STATE_IN_PROGRESS\",\n \"stateUpdatedById\": \"\",\n \"suppressReason\": \"\",\n \"taskId\": \"\",\n \"tenantTarget\": {},\n \"unusedSecret\": {},\n \"unusedSecretEvidence\": {\n \"lastUsedAt\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "task", + "description": "", + "item": [ + { + "id": "74b75b8a-e442-4d74-9348-125d16e72129", + "name": "Create Finding Task", + "request": { + "name": "Create Finding Task", + "description": { + "content": "Create a task for a finding.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings", + ":finding_id", + "task" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "finding_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"policyId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "550738df-2765-45f1-978c-f15bbbe1aae4", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings", + ":finding_id", + "task" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "finding_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"policyId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"finding\": {\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceTarget\": {\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\"\n },\n \"appUserTarget\": {\n \"appId\": \"\",\n \"appUserId\": \"\"\n },\n \"assignedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"computedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"connectorAnomalyDetectionDisabled\": {},\n \"connectorSyncFailing\": {},\n \"connectorSyncFailingEvidence\": {\n \"consecutiveFailureCount\": \"\",\n \"lastFailedAt\": \"\",\n \"lastSyncLifecycleId\": \"\",\n \"streakStartedAt\": \"\"\n },\n \"connectorTarget\": {\n \"appId\": \"\",\n \"connectorId\": \"\"\n },\n \"createdAt\": \"\",\n \"credentialExpiring\": {\n \"credentialDisplayName\": \"\",\n \"userClientId\": \"\"\n },\n \"credentialExpiringEvidence\": {\n \"expired\": \"\",\n \"expiresAt\": \"\"\n },\n \"credentialPubliclyExposed\": {\n \"connectorClientId\": \"\",\n \"connectorManagedCredentialId\": \"\",\n \"credentialDisplayName\": \"\",\n \"functionClientId\": \"\",\n \"userClientId\": \"\"\n },\n \"credentialPubliclyExposedEvidence\": {\n \"credentialRevoked\": \"\",\n \"fingerprintPrefix\": \"\",\n \"firstObservedAt\": \"\",\n \"firstScannerId\": \"\",\n \"reportingScanners\": [\n \"\",\n \"\"\n ],\n \"revokedAt\": \"\",\n \"sourceKind\": \"\",\n \"sourceUrl\": \"\"\n },\n \"custom\": {},\n \"customSubType\": \"\",\n \"customTags\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"deactivatedOwner\": {\n \"source\": \"DEACTIVATED_OWNER_SOURCE_OWNERSHIP_ASSIGNED\"\n },\n \"deactivatedOwnerEvidence\": {\n \"deactivatedOwners\": [\n {\n \"reason\": \"DEACTIVATED_OWNER_REASON_EMPLOYMENT_INACTIVE\",\n \"userId\": \"\"\n },\n {\n \"reason\": \"DEACTIVATED_OWNER_REASON_UNSPECIFIED\",\n \"userId\": \"\"\n }\n ]\n },\n \"decoyCredentialUsed\": {\n \"decoyId\": \"\",\n \"kind\": \"DECOY_CREDENTIAL_KIND_UNSPECIFIED\"\n },\n \"decoyPubliclyExposed\": {\n \"decoyDisplayName\": \"\",\n \"decoyId\": \"\"\n },\n \"decoyPubliclyExposedEvidence\": {\n \"credentialRevoked\": \"\",\n \"fingerprintPrefix\": \"\",\n \"firstObservedAt\": \"\",\n \"firstScannerId\": \"\",\n \"reportingScanners\": null,\n \"revokedAt\": \"\",\n \"sourceKind\": \"\",\n \"sourceUrl\": \"\"\n },\n \"decoyTarget\": {\n \"decoyId\": \"\"\n },\n \"dedupKeyParts\": [\n \"\",\n \"\"\n ],\n \"description\": \"\",\n \"fingerprint\": \"\",\n \"firstObservedAt\": \"\",\n \"id\": \"\",\n \"identityUserTarget\": {\n \"identityUserId\": \"\"\n },\n \"lastAppearedAt\": \"\",\n \"lastObservedAt\": \"\",\n \"nhiUnowned\": {},\n \"recurrenceCount\": \"\",\n \"remediationDescription\": \"\",\n \"resolvedAt\": \"\",\n \"riskAcceptanceExpiresAt\": \"\",\n \"riskAcceptanceJustification\": \"\",\n \"riskScore\": {\n \"originalScore\": \"\",\n \"overrideByUserId\": \"\",\n \"overrideScore\": \"\",\n \"riskFactors\": [\n {\n \"description\": \"\",\n \"name\": \"\",\n \"severity\": \"FINDING_SEVERITY_HIGH\",\n \"weight\": \"\"\n },\n {\n \"description\": \"\",\n \"name\": \"\",\n \"severity\": \"FINDING_SEVERITY_INFO\",\n \"weight\": \"\"\n }\n ],\n \"score\": \"\",\n \"systemScore\": \"\"\n },\n \"serviceAccountMisclassification\": {\n \"currentAccountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"detectedAccountType\": \"APP_USER_TYPE_USER\"\n },\n \"serviceAccountMisclassificationEvidence\": {\n \"detectionReason\": \"\"\n },\n \"serviceAccountUnowned\": {},\n \"severity\": \"FINDING_SEVERITY_INFO\",\n \"similarUsernameMatch\": {\n \"proposedIdentityUserId\": \"\"\n },\n \"similarUsernameMatchEvidence\": {\n \"appUsername\": \"\",\n \"identityUsername\": \"\",\n \"similarityScore\": \"\"\n },\n \"snoozeReason\": \"\",\n \"snoozeUntil\": \"\",\n \"sourceDetectorId\": \"\",\n \"sourceKind\": \"FINDING_SOURCE_KIND_DETECTOR\",\n \"state\": \"FINDING_STATE_OPEN\",\n \"stateUpdatedById\": \"\",\n \"suppressReason\": \"\",\n \"taskId\": \"\",\n \"tenantTarget\": {},\n \"unusedSecret\": {},\n \"unusedSecretEvidence\": {\n \"lastUsedAt\": \"\"\n },\n \"updatedAt\": \"\"\n },\n \"taskId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "0fee87a6-1094-4449-b0c9-a01e5431562f", + "name": "Get Finding", + "request": { + "name": "Get Finding", + "description": { + "content": "Get a single finding by ID.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "905b06ca-320f-4f11-bb0a-09fe6860de64", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 3118.5186432357705,\n \"key_1\": 3660.3866134117015,\n \"key_2\": false\n },\n {\n \"@type\": \"\"\n }\n ],\n \"finding\": {\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceTarget\": {\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\"\n },\n \"appUserTarget\": {\n \"appId\": \"\",\n \"appUserId\": \"\"\n },\n \"assignedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"computedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"connectorAnomalyDetectionDisabled\": {},\n \"connectorSyncFailing\": {},\n \"connectorSyncFailingEvidence\": {\n \"consecutiveFailureCount\": \"\",\n \"lastFailedAt\": \"\",\n \"lastSyncLifecycleId\": \"\",\n \"streakStartedAt\": \"\"\n },\n \"connectorTarget\": {\n \"appId\": \"\",\n \"connectorId\": \"\"\n },\n \"createdAt\": \"\",\n \"credentialExpiring\": {\n \"credentialDisplayName\": \"\",\n \"userClientId\": \"\"\n },\n \"credentialExpiringEvidence\": {\n \"expired\": \"\",\n \"expiresAt\": \"\"\n },\n \"credentialPubliclyExposed\": {\n \"connectorClientId\": \"\",\n \"connectorManagedCredentialId\": \"\",\n \"credentialDisplayName\": \"\",\n \"functionClientId\": \"\",\n \"userClientId\": \"\"\n },\n \"credentialPubliclyExposedEvidence\": {\n \"credentialRevoked\": \"\",\n \"fingerprintPrefix\": \"\",\n \"firstObservedAt\": \"\",\n \"firstScannerId\": \"\",\n \"reportingScanners\": null,\n \"revokedAt\": \"\",\n \"sourceKind\": \"\",\n \"sourceUrl\": \"\"\n },\n \"custom\": {},\n \"customSubType\": \"\",\n \"customTags\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"deactivatedOwner\": {\n \"source\": \"DEACTIVATED_OWNER_SOURCE_UNSPECIFIED\"\n },\n \"deactivatedOwnerEvidence\": {\n \"deactivatedOwners\": null\n },\n \"decoyCredentialUsed\": {\n \"decoyId\": \"\",\n \"kind\": \"DECOY_CREDENTIAL_KIND_CONNECTOR_CLIENT\"\n },\n \"decoyPubliclyExposed\": {\n \"decoyDisplayName\": \"\",\n \"decoyId\": \"\"\n },\n \"decoyPubliclyExposedEvidence\": {\n \"credentialRevoked\": \"\",\n \"fingerprintPrefix\": \"\",\n \"firstObservedAt\": \"\",\n \"firstScannerId\": \"\",\n \"reportingScanners\": [\n \"\",\n \"\"\n ],\n \"revokedAt\": \"\",\n \"sourceKind\": \"\",\n \"sourceUrl\": \"\"\n },\n \"decoyTarget\": {\n \"decoyId\": \"\"\n },\n \"dedupKeyParts\": null,\n \"description\": \"\",\n \"fingerprint\": \"\",\n \"firstObservedAt\": \"\",\n \"id\": \"\",\n \"identityUserTarget\": {\n \"identityUserId\": \"\"\n },\n \"lastAppearedAt\": \"\",\n \"lastObservedAt\": \"\",\n \"nhiUnowned\": {},\n \"recurrenceCount\": \"\",\n \"remediationDescription\": \"\",\n \"resolvedAt\": \"\",\n \"riskAcceptanceExpiresAt\": \"\",\n \"riskAcceptanceJustification\": \"\",\n \"riskScore\": {\n \"originalScore\": \"\",\n \"overrideByUserId\": \"\",\n \"overrideScore\": \"\",\n \"riskFactors\": null,\n \"score\": \"\",\n \"systemScore\": \"\"\n },\n \"serviceAccountMisclassification\": {\n \"currentAccountType\": \"APP_USER_TYPE_USER\",\n \"detectedAccountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n },\n \"serviceAccountMisclassificationEvidence\": {\n \"detectionReason\": \"\"\n },\n \"serviceAccountUnowned\": {},\n \"severity\": \"FINDING_SEVERITY_LOW\",\n \"similarUsernameMatch\": {\n \"proposedIdentityUserId\": \"\"\n },\n \"similarUsernameMatchEvidence\": {\n \"appUsername\": \"\",\n \"identityUsername\": \"\",\n \"similarityScore\": \"\"\n },\n \"snoozeReason\": \"\",\n \"snoozeUntil\": \"\",\n \"sourceDetectorId\": \"\",\n \"sourceKind\": \"FINDING_SOURCE_KIND_UNSPECIFIED\",\n \"state\": \"FINDING_STATE_SUPPRESSED\",\n \"stateUpdatedById\": \"\",\n \"suppressReason\": \"\",\n \"taskId\": \"\",\n \"tenantTarget\": {},\n \"unusedSecret\": {},\n \"unusedSecretEvidence\": {\n \"lastUsedAt\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "bulk", + "description": "", + "item": [ + { + "name": "state", + "description": "", + "item": [ + { + "id": "bdee33ca-6c6c-43d5-ad51-c61ea3aae2cc", + "name": "Bulk Update Finding State", + "request": { + "name": "Bulk Update Finding State", + "description": { + "content": "Bulk update finding states.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings", + "bulk", + "state" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"acceptRisk\": {\n \"expiresAt\": \"\",\n \"justification\": \"\"\n },\n \"assignOwner\": {\n \"owner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n }\n },\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"reopen\": {},\n \"reprocess\": {\n \"overrideHumanEdits\": \"\",\n \"runDispatchers\": \"\"\n },\n \"searchRequest\": {\n \"appIds\": null,\n \"appResourceIds\": [\n \"\",\n \"\"\n ],\n \"appResourceTraitIds\": null,\n \"appResourceTypeIds\": null,\n \"appUserIds\": null,\n \"appUserTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"connectorIds\": [\n \"\",\n \"\"\n ],\n \"customSubTypes\": [\n \"\",\n \"\"\n ],\n \"decoyIds\": null,\n \"findingTypes\": [\n \"FINDING_TYPE_CONNECTOR_SYNC_FAILING\",\n \"FINDING_TYPE_SERVICE_ACCOUNT_MISCLASSIFICATION\"\n ],\n \"includeUnassigned\": \"\",\n \"nhiTypes\": [\n \"NHI_TYPE_APP_REGISTRATION\",\n \"NHI_TYPE_UNSPECIFIED\"\n ],\n \"ownerIdentityUserIds\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"scopeToAppOwner\": \"\",\n \"severities\": [\n \"FINDING_SEVERITY_LOW\",\n \"FINDING_SEVERITY_LOW\"\n ],\n \"sourceKinds\": null,\n \"states\": [\n \"FINDING_STATE_UNSPECIFIED\",\n \"FINDING_STATE_SNOOZED\"\n ]\n },\n \"snooze\": {\n \"reason\": \"\",\n \"snoozeUntil\": \"\"\n },\n \"suppress\": {\n \"reason\": \"\"\n },\n \"unsuppress\": {}\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "32867757-afaa-4dc7-a7b5-fef2ca1c211a", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings", + "bulk", + "state" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"acceptRisk\": {\n \"expiresAt\": \"\",\n \"justification\": \"\"\n },\n \"assignOwner\": {\n \"owner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n }\n },\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"reopen\": {},\n \"reprocess\": {\n \"overrideHumanEdits\": \"\",\n \"runDispatchers\": \"\"\n },\n \"searchRequest\": {\n \"appIds\": null,\n \"appResourceIds\": [\n \"\",\n \"\"\n ],\n \"appResourceTraitIds\": null,\n \"appResourceTypeIds\": null,\n \"appUserIds\": null,\n \"appUserTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"connectorIds\": [\n \"\",\n \"\"\n ],\n \"customSubTypes\": [\n \"\",\n \"\"\n ],\n \"decoyIds\": null,\n \"findingTypes\": [\n \"FINDING_TYPE_CONNECTOR_SYNC_FAILING\",\n \"FINDING_TYPE_SERVICE_ACCOUNT_MISCLASSIFICATION\"\n ],\n \"includeUnassigned\": \"\",\n \"nhiTypes\": [\n \"NHI_TYPE_APP_REGISTRATION\",\n \"NHI_TYPE_UNSPECIFIED\"\n ],\n \"ownerIdentityUserIds\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"scopeToAppOwner\": \"\",\n \"severities\": [\n \"FINDING_SEVERITY_LOW\",\n \"FINDING_SEVERITY_LOW\"\n ],\n \"sourceKinds\": null,\n \"states\": [\n \"FINDING_STATE_UNSPECIFIED\",\n \"FINDING_STATE_SNOOZED\"\n ]\n },\n \"snooze\": {\n \"reason\": \"\",\n \"snoozeUntil\": \"\"\n },\n \"suppress\": {\n \"reason\": \"\"\n },\n \"unsuppress\": {}\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"bulkActionId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "tasks", + "description": "", + "item": [ + { + "id": "d596fd89-6bfe-4daa-a326-3d403ba922f0", + "name": "Bulk Create Finding Tasks", + "request": { + "name": "Bulk Create Finding Tasks", + "description": { + "content": "Bulk create tasks for findings.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings", + "bulk", + "tasks" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"policyId\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"searchRequest\": {\n \"appIds\": null,\n \"appResourceIds\": [\n \"\",\n \"\"\n ],\n \"appResourceTraitIds\": [\n \"\",\n \"\"\n ],\n \"appResourceTypeIds\": null,\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"appUserTypes\": null,\n \"connectorIds\": null,\n \"customSubTypes\": [\n \"\",\n \"\"\n ],\n \"decoyIds\": [\n \"\",\n \"\"\n ],\n \"findingTypes\": null,\n \"includeUnassigned\": \"\",\n \"nhiTypes\": null,\n \"ownerIdentityUserIds\": [\n \"\",\n \"\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": null,\n \"scopeToAppOwner\": \"\",\n \"severities\": [\n \"FINDING_SEVERITY_MEDIUM\",\n \"FINDING_SEVERITY_INFO\"\n ],\n \"sourceKinds\": [\n \"FINDING_SOURCE_KIND_EXTERNAL\",\n \"FINDING_SOURCE_KIND_EXTERNAL\"\n ],\n \"states\": [\n \"FINDING_STATE_OPEN\",\n \"FINDING_STATE_SNOOZED\"\n ]\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "57ec8e37-a3c6-4467-ae45-5cbb773a69a3", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings", + "bulk", + "tasks" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"policyId\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"searchRequest\": {\n \"appIds\": null,\n \"appResourceIds\": [\n \"\",\n \"\"\n ],\n \"appResourceTraitIds\": [\n \"\",\n \"\"\n ],\n \"appResourceTypeIds\": null,\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"appUserTypes\": null,\n \"connectorIds\": null,\n \"customSubTypes\": [\n \"\",\n \"\"\n ],\n \"decoyIds\": [\n \"\",\n \"\"\n ],\n \"findingTypes\": null,\n \"includeUnassigned\": \"\",\n \"nhiTypes\": null,\n \"ownerIdentityUserIds\": [\n \"\",\n \"\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": null,\n \"scopeToAppOwner\": \"\",\n \"severities\": [\n \"FINDING_SEVERITY_MEDIUM\",\n \"FINDING_SEVERITY_INFO\"\n ],\n \"sourceKinds\": [\n \"FINDING_SOURCE_KIND_EXTERNAL\",\n \"FINDING_SOURCE_KIND_EXTERNAL\"\n ],\n \"states\": [\n \"FINDING_STATE_OPEN\",\n \"FINDING_STATE_SNOOZED\"\n ]\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"bulkActionId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "routing-rules", + "description": "", + "item": [ + { + "id": "1482aaad-112c-49ed-802e-7984f73a6743", + "name": "List Finding Routing Rules", + "request": { + "name": "List Finding Routing Rules", + "description": { + "content": "List finding routing rules, optionally filtered to a specific app.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings", + "routing-rules" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "379a6312-10ca-4539-9549-d5c34bd323c2", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings", + "routing-rules" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "31628332-714c-4479-b1be-ce7afeafe48b", + "name": "Create Finding Routing Rule", + "request": { + "name": "Create Finding Routing Rule", + "description": { + "content": "Create a new finding routing rule that defines which policy to use for auto-routing matching findings.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings", + "routing-rules" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"routingRule\": {\n \"action\": {\n \"acceptRisk\": {\n \"duration\": \"\",\n \"reason\": \"\"\n },\n \"createTask\": {\n \"policyId\": \"\"\n },\n \"snooze\": {\n \"duration\": \"\",\n \"reason\": \"\"\n },\n \"suppress\": {\n \"reason\": \"\"\n }\n },\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"dispatchers\": [\n {\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"invokeFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"functionCommitId\": \"\",\n \"functionId\": \"\"\n },\n \"key\": \"\",\n \"notify\": {\n \"audience\": {\n \"users\": {\n \"userIds\": null\n }\n },\n \"batchWindowSeconds\": \"\",\n \"detailLevel\": \"FINDING_NOTIFY_DETAIL_LEVEL_UNSPECIFIED\",\n \"slackChannel\": {\n \"channelId\": \"\",\n \"channelName\": \"\"\n }\n },\n \"notifyOnOutcome\": {\n \"onDone\": \"\",\n \"onError\": \"\",\n \"recipients\": null\n },\n \"tierOverride\": \"FINDING_DISPATCH_TIER_AUTO\",\n \"triggerAutomation\": {\n \"automationId\": \"\",\n \"inputMapping\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n }\n },\n \"webhook\": {\n \"payloadTemplate\": \"\",\n \"webhookId\": \"\"\n }\n },\n {\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"invokeFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\",\n \"key_4\": \"\"\n },\n \"functionCommitId\": \"\",\n \"functionId\": \"\"\n },\n \"key\": \"\",\n \"notify\": {\n \"audience\": {\n \"users\": {\n \"userIds\": null\n }\n },\n \"batchWindowSeconds\": \"\",\n \"detailLevel\": \"FINDING_NOTIFY_DETAIL_LEVEL_SUMMARY\",\n \"slackChannel\": {\n \"channelId\": \"\",\n \"channelName\": \"\"\n }\n },\n \"notifyOnOutcome\": {\n \"onDone\": \"\",\n \"onError\": \"\",\n \"recipients\": null\n },\n \"tierOverride\": \"FINDING_DISPATCH_TIER_UNSPECIFIED\",\n \"triggerAutomation\": {\n \"automationId\": \"\",\n \"inputMapping\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n }\n },\n \"webhook\": {\n \"payloadTemplate\": \"\",\n \"webhookId\": \"\"\n }\n }\n ],\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"findingType\": \"FINDING_TYPE_CUSTOM\",\n \"id\": \"\",\n \"priority\": \"\",\n \"templateId\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "0654fc07-f8af-404e-92e7-20ee555e8038", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings", + "routing-rules" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"routingRule\": {\n \"action\": {\n \"acceptRisk\": {\n \"duration\": \"\",\n \"reason\": \"\"\n },\n \"createTask\": {\n \"policyId\": \"\"\n },\n \"snooze\": {\n \"duration\": \"\",\n \"reason\": \"\"\n },\n \"suppress\": {\n \"reason\": \"\"\n }\n },\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"dispatchers\": [\n {\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"invokeFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"functionCommitId\": \"\",\n \"functionId\": \"\"\n },\n \"key\": \"\",\n \"notify\": {\n \"audience\": {\n \"users\": {\n \"userIds\": null\n }\n },\n \"batchWindowSeconds\": \"\",\n \"detailLevel\": \"FINDING_NOTIFY_DETAIL_LEVEL_UNSPECIFIED\",\n \"slackChannel\": {\n \"channelId\": \"\",\n \"channelName\": \"\"\n }\n },\n \"notifyOnOutcome\": {\n \"onDone\": \"\",\n \"onError\": \"\",\n \"recipients\": null\n },\n \"tierOverride\": \"FINDING_DISPATCH_TIER_AUTO\",\n \"triggerAutomation\": {\n \"automationId\": \"\",\n \"inputMapping\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n }\n },\n \"webhook\": {\n \"payloadTemplate\": \"\",\n \"webhookId\": \"\"\n }\n },\n {\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"invokeFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\",\n \"key_4\": \"\"\n },\n \"functionCommitId\": \"\",\n \"functionId\": \"\"\n },\n \"key\": \"\",\n \"notify\": {\n \"audience\": {\n \"users\": {\n \"userIds\": null\n }\n },\n \"batchWindowSeconds\": \"\",\n \"detailLevel\": \"FINDING_NOTIFY_DETAIL_LEVEL_SUMMARY\",\n \"slackChannel\": {\n \"channelId\": \"\",\n \"channelName\": \"\"\n }\n },\n \"notifyOnOutcome\": {\n \"onDone\": \"\",\n \"onError\": \"\",\n \"recipients\": null\n },\n \"tierOverride\": \"FINDING_DISPATCH_TIER_UNSPECIFIED\",\n \"triggerAutomation\": {\n \"automationId\": \"\",\n \"inputMapping\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n }\n },\n \"webhook\": {\n \"payloadTemplate\": \"\",\n \"webhookId\": \"\"\n }\n }\n ],\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"findingType\": \"FINDING_TYPE_CUSTOM\",\n \"id\": \"\",\n \"priority\": \"\",\n \"templateId\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"routingRule\": {\n \"action\": {\n \"acceptRisk\": {\n \"duration\": \"\",\n \"reason\": \"\"\n },\n \"createTask\": {\n \"policyId\": \"\"\n },\n \"snooze\": {\n \"duration\": \"\",\n \"reason\": \"\"\n },\n \"suppress\": {\n \"reason\": \"\"\n }\n },\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"dispatchers\": [\n {\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"invokeFunction\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"functionCommitId\": \"\",\n \"functionId\": \"\"\n },\n \"key\": \"\",\n \"notify\": {\n \"audience\": {\n \"users\": {\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"batchWindowSeconds\": \"\",\n \"detailLevel\": \"FINDING_NOTIFY_DETAIL_LEVEL_SUMMARY\",\n \"slackChannel\": {\n \"channelId\": \"\",\n \"channelName\": \"\"\n }\n },\n \"notifyOnOutcome\": {\n \"onDone\": \"\",\n \"onError\": \"\",\n \"recipients\": null\n },\n \"tierOverride\": \"FINDING_DISPATCH_TIER_REQUIRES_APPROVAL\",\n \"triggerAutomation\": {\n \"automationId\": \"\",\n \"inputMapping\": {\n \"key_0\": \"\"\n }\n },\n \"webhook\": {\n \"payloadTemplate\": \"\",\n \"webhookId\": \"\"\n }\n },\n {\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"invokeFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"functionCommitId\": \"\",\n \"functionId\": \"\"\n },\n \"key\": \"\",\n \"notify\": {\n \"audience\": {\n \"users\": {\n \"userIds\": null\n }\n },\n \"batchWindowSeconds\": \"\",\n \"detailLevel\": \"FINDING_NOTIFY_DETAIL_LEVEL_SUMMARY\",\n \"slackChannel\": {\n \"channelId\": \"\",\n \"channelName\": \"\"\n }\n },\n \"notifyOnOutcome\": {\n \"onDone\": \"\",\n \"onError\": \"\",\n \"recipients\": [\n \"\",\n \"\"\n ]\n },\n \"tierOverride\": \"FINDING_DISPATCH_TIER_UNSPECIFIED\",\n \"triggerAutomation\": {\n \"automationId\": \"\",\n \"inputMapping\": {\n \"key_0\": \"\"\n }\n },\n \"webhook\": {\n \"payloadTemplate\": \"\",\n \"webhookId\": \"\"\n }\n }\n ],\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"findingType\": \"FINDING_TYPE_UNUSED_SECRET\",\n \"id\": \"\",\n \"priority\": \"\",\n \"templateId\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "ff860b10-3799-4825-b01d-c958496a13e5", + "name": "Delete Finding Routing Rule", + "request": { + "name": "Delete Finding Routing Rule", + "description": { + "content": "Delete a finding routing rule. Findings already routed by this rule are not affected.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings", + "routing-rules", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "4dd5569c-0700-41b7-8014-991169ac6424", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings", + "routing-rules", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "fc893a61-4d15-4cf8-a44e-022d531e5002", + "name": "Get Finding Routing Rule", + "request": { + "name": "Get Finding Routing Rule", + "description": { + "content": "Retrieve a single finding routing rule by ID.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings", + "routing-rules", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "01565881-3ae5-4861-86bd-553a7066222c", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings", + "routing-rules", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"routingRule\": {\n \"action\": {\n \"acceptRisk\": {\n \"duration\": \"\",\n \"reason\": \"\"\n },\n \"createTask\": {\n \"policyId\": \"\"\n },\n \"snooze\": {\n \"duration\": \"\",\n \"reason\": \"\"\n },\n \"suppress\": {\n \"reason\": \"\"\n }\n },\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"dispatchers\": null,\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"findingType\": \"FINDING_TYPE_CONNECTOR_SYNC_FAILING\",\n \"id\": \"\",\n \"priority\": \"\",\n \"templateId\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "{routing_rule_id}", + "description": "", + "item": [ + { + "name": "update", + "description": "", + "item": [ + { + "id": "29a017cc-e9c8-48fe-b947-7b628f1163dc", + "name": "Update Finding Routing Rule", + "request": { + "name": "Update Finding Routing Rule", + "description": { + "content": "Update an existing finding routing rule's match criteria or target policy.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings", + "routing-rules", + ":routing_rule_id", + "update" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "routing_rule_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"routingRule\": {\n \"action\": {\n \"acceptRisk\": {\n \"duration\": \"\",\n \"reason\": \"\"\n },\n \"createTask\": {\n \"policyId\": \"\"\n },\n \"snooze\": {\n \"duration\": \"\",\n \"reason\": \"\"\n },\n \"suppress\": {\n \"reason\": \"\"\n }\n },\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"dispatchers\": null,\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"findingType\": \"FINDING_TYPE_SIMILAR_USERNAME_MATCH\",\n \"id\": \"\",\n \"priority\": \"\",\n \"templateId\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "3cb09ca2-1a29-45a6-a911-18298861737e", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings", + "routing-rules", + ":routing_rule_id", + "update" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "routing_rule_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"routingRule\": {\n \"action\": {\n \"acceptRisk\": {\n \"duration\": \"\",\n \"reason\": \"\"\n },\n \"createTask\": {\n \"policyId\": \"\"\n },\n \"snooze\": {\n \"duration\": \"\",\n \"reason\": \"\"\n },\n \"suppress\": {\n \"reason\": \"\"\n }\n },\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"dispatchers\": null,\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"findingType\": \"FINDING_TYPE_SIMILAR_USERNAME_MATCH\",\n \"id\": \"\",\n \"priority\": \"\",\n \"templateId\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"routingRule\": {\n \"action\": {\n \"acceptRisk\": {\n \"duration\": \"\",\n \"reason\": \"\"\n },\n \"createTask\": {\n \"policyId\": \"\"\n },\n \"snooze\": {\n \"duration\": \"\",\n \"reason\": \"\"\n },\n \"suppress\": {\n \"reason\": \"\"\n }\n },\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"dispatchers\": null,\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"findingType\": \"FINDING_TYPE_NHI_UNOWNED\",\n \"id\": \"\",\n \"priority\": \"\",\n \"templateId\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + }, + { + "name": "search", + "description": "", + "item": [ + { + "id": "f1314427-3b86-4322-91a4-5fc1fd0ac053", + "name": "Search", + "request": { + "name": "Search", + "description": { + "content": "Search findings using full-text query and filters for severity, state, type, and app.\n Each Finding row is large (risk factors, evidence, target, tags) — request a small page_size (≤10) to keep responses small.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings", + "search" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appResourceIds\": null,\n \"appResourceTraitIds\": null,\n \"appResourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"connectorIds\": null,\n \"customSubTypes\": null,\n \"decoyIds\": null,\n \"findingTypes\": [\n \"FINDING_TYPE_NHI_UNOWNED\",\n \"FINDING_TYPE_SERVICE_ACCOUNT_UNOWNED\"\n ],\n \"includeUnassigned\": \"\",\n \"nhiTypes\": [\n \"NHI_TYPE_ASSUMABLE_ROLE\",\n \"NHI_TYPE_ASSUMABLE_ROLE\"\n ],\n \"ownerIdentityUserIds\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"scopeToAppOwner\": \"\",\n \"severities\": null,\n \"sourceKinds\": [\n \"FINDING_SOURCE_KIND_UNSPECIFIED\",\n \"FINDING_SOURCE_KIND_UNSPECIFIED\"\n ],\n \"states\": [\n \"FINDING_STATE_RISK_ACCEPTED\",\n \"FINDING_STATE_SNOOZED\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "3a881ee2-68db-4644-8199-6da7658c4d7d", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings", + "search" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appResourceIds\": null,\n \"appResourceTraitIds\": null,\n \"appResourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"connectorIds\": null,\n \"customSubTypes\": null,\n \"decoyIds\": null,\n \"findingTypes\": [\n \"FINDING_TYPE_NHI_UNOWNED\",\n \"FINDING_TYPE_SERVICE_ACCOUNT_UNOWNED\"\n ],\n \"includeUnassigned\": \"\",\n \"nhiTypes\": [\n \"NHI_TYPE_ASSUMABLE_ROLE\",\n \"NHI_TYPE_ASSUMABLE_ROLE\"\n ],\n \"ownerIdentityUserIds\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"scopeToAppOwner\": \"\",\n \"severities\": null,\n \"sourceKinds\": [\n \"FINDING_SOURCE_KIND_UNSPECIFIED\",\n \"FINDING_SOURCE_KIND_UNSPECIFIED\"\n ],\n \"states\": [\n \"FINDING_STATE_RISK_ACCEPTED\",\n \"FINDING_STATE_SNOOZED\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceTarget\": {\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\"\n },\n \"appUserTarget\": {\n \"appId\": \"\",\n \"appUserId\": \"\"\n },\n \"assignedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"computedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"connectorAnomalyDetectionDisabled\": {},\n \"connectorSyncFailing\": {},\n \"connectorSyncFailingEvidence\": {\n \"consecutiveFailureCount\": \"\",\n \"lastFailedAt\": \"\",\n \"lastSyncLifecycleId\": \"\",\n \"streakStartedAt\": \"\"\n },\n \"connectorTarget\": {\n \"appId\": \"\",\n \"connectorId\": \"\"\n },\n \"createdAt\": \"\",\n \"credentialExpiring\": {\n \"credentialDisplayName\": \"\",\n \"userClientId\": \"\"\n },\n \"credentialExpiringEvidence\": {\n \"expired\": \"\",\n \"expiresAt\": \"\"\n },\n \"credentialPubliclyExposed\": {\n \"connectorClientId\": \"\",\n \"connectorManagedCredentialId\": \"\",\n \"credentialDisplayName\": \"\",\n \"functionClientId\": \"\",\n \"userClientId\": \"\"\n },\n \"credentialPubliclyExposedEvidence\": {\n \"credentialRevoked\": \"\",\n \"fingerprintPrefix\": \"\",\n \"firstObservedAt\": \"\",\n \"firstScannerId\": \"\",\n \"reportingScanners\": null,\n \"revokedAt\": \"\",\n \"sourceKind\": \"\",\n \"sourceUrl\": \"\"\n },\n \"custom\": {},\n \"customSubType\": \"\",\n \"customTags\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"deactivatedOwner\": {\n \"source\": \"DEACTIVATED_OWNER_SOURCE_SECRET_RUN_AS_IDENTITY\"\n },\n \"deactivatedOwnerEvidence\": {\n \"deactivatedOwners\": null\n },\n \"decoyCredentialUsed\": {\n \"decoyId\": \"\",\n \"kind\": \"DECOY_CREDENTIAL_KIND_USER_CLIENT_CREDENTIAL\"\n },\n \"decoyPubliclyExposed\": {\n \"decoyDisplayName\": \"\",\n \"decoyId\": \"\"\n },\n \"decoyPubliclyExposedEvidence\": {\n \"credentialRevoked\": \"\",\n \"fingerprintPrefix\": \"\",\n \"firstObservedAt\": \"\",\n \"firstScannerId\": \"\",\n \"reportingScanners\": null,\n \"revokedAt\": \"\",\n \"sourceKind\": \"\",\n \"sourceUrl\": \"\"\n },\n \"decoyTarget\": {\n \"decoyId\": \"\"\n },\n \"dedupKeyParts\": [\n \"\",\n \"\"\n ],\n \"description\": \"\",\n \"fingerprint\": \"\",\n \"firstObservedAt\": \"\",\n \"id\": \"\",\n \"identityUserTarget\": {\n \"identityUserId\": \"\"\n },\n \"lastAppearedAt\": \"\",\n \"lastObservedAt\": \"\",\n \"nhiUnowned\": {},\n \"recurrenceCount\": \"\",\n \"remediationDescription\": \"\",\n \"resolvedAt\": \"\",\n \"riskAcceptanceExpiresAt\": \"\",\n \"riskAcceptanceJustification\": \"\",\n \"riskScore\": {\n \"originalScore\": \"\",\n \"overrideByUserId\": \"\",\n \"overrideScore\": \"\",\n \"riskFactors\": [\n {\n \"description\": \"\",\n \"name\": \"\",\n \"severity\": \"FINDING_SEVERITY_LOW\",\n \"weight\": \"\"\n },\n {\n \"description\": \"\",\n \"name\": \"\",\n \"severity\": \"FINDING_SEVERITY_MEDIUM\",\n \"weight\": \"\"\n }\n ],\n \"score\": \"\",\n \"systemScore\": \"\"\n },\n \"serviceAccountMisclassification\": {\n \"currentAccountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"detectedAccountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"serviceAccountMisclassificationEvidence\": {\n \"detectionReason\": \"\"\n },\n \"serviceAccountUnowned\": {},\n \"severity\": \"FINDING_SEVERITY_LOW\",\n \"similarUsernameMatch\": {\n \"proposedIdentityUserId\": \"\"\n },\n \"similarUsernameMatchEvidence\": {\n \"appUsername\": \"\",\n \"identityUsername\": \"\",\n \"similarityScore\": \"\"\n },\n \"snoozeReason\": \"\",\n \"snoozeUntil\": \"\",\n \"sourceDetectorId\": \"\",\n \"sourceKind\": \"FINDING_SOURCE_KIND_UNSPECIFIED\",\n \"state\": \"FINDING_STATE_SUPPRESSED\",\n \"stateUpdatedById\": \"\",\n \"suppressReason\": \"\",\n \"taskId\": \"\",\n \"tenantTarget\": {},\n \"unusedSecret\": {},\n \"unusedSecretEvidence\": {\n \"lastUsedAt\": \"\"\n },\n \"updatedAt\": \"\"\n },\n {\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceTarget\": {\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\"\n },\n \"appUserTarget\": {\n \"appId\": \"\",\n \"appUserId\": \"\"\n },\n \"assignedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"computedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"connectorAnomalyDetectionDisabled\": {},\n \"connectorSyncFailing\": {},\n \"connectorSyncFailingEvidence\": {\n \"consecutiveFailureCount\": \"\",\n \"lastFailedAt\": \"\",\n \"lastSyncLifecycleId\": \"\",\n \"streakStartedAt\": \"\"\n },\n \"connectorTarget\": {\n \"appId\": \"\",\n \"connectorId\": \"\"\n },\n \"createdAt\": \"\",\n \"credentialExpiring\": {\n \"credentialDisplayName\": \"\",\n \"userClientId\": \"\"\n },\n \"credentialExpiringEvidence\": {\n \"expired\": \"\",\n \"expiresAt\": \"\"\n },\n \"credentialPubliclyExposed\": {\n \"connectorClientId\": \"\",\n \"connectorManagedCredentialId\": \"\",\n \"credentialDisplayName\": \"\",\n \"functionClientId\": \"\",\n \"userClientId\": \"\"\n },\n \"credentialPubliclyExposedEvidence\": {\n \"credentialRevoked\": \"\",\n \"fingerprintPrefix\": \"\",\n \"firstObservedAt\": \"\",\n \"firstScannerId\": \"\",\n \"reportingScanners\": null,\n \"revokedAt\": \"\",\n \"sourceKind\": \"\",\n \"sourceUrl\": \"\"\n },\n \"custom\": {},\n \"customSubType\": \"\",\n \"customTags\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"deactivatedOwner\": {\n \"source\": \"DEACTIVATED_OWNER_SOURCE_UNSPECIFIED\"\n },\n \"deactivatedOwnerEvidence\": {\n \"deactivatedOwners\": [\n {\n \"reason\": \"DEACTIVATED_OWNER_REASON_UNSPECIFIED\",\n \"userId\": \"\"\n },\n {\n \"reason\": \"DEACTIVATED_OWNER_REASON_USER_DISABLED\",\n \"userId\": \"\"\n }\n ]\n },\n \"decoyCredentialUsed\": {\n \"decoyId\": \"\",\n \"kind\": \"DECOY_CREDENTIAL_KIND_CONNECTOR_CLIENT\"\n },\n \"decoyPubliclyExposed\": {\n \"decoyDisplayName\": \"\",\n \"decoyId\": \"\"\n },\n \"decoyPubliclyExposedEvidence\": {\n \"credentialRevoked\": \"\",\n \"fingerprintPrefix\": \"\",\n \"firstObservedAt\": \"\",\n \"firstScannerId\": \"\",\n \"reportingScanners\": null,\n \"revokedAt\": \"\",\n \"sourceKind\": \"\",\n \"sourceUrl\": \"\"\n },\n \"decoyTarget\": {\n \"decoyId\": \"\"\n },\n \"dedupKeyParts\": null,\n \"description\": \"\",\n \"fingerprint\": \"\",\n \"firstObservedAt\": \"\",\n \"id\": \"\",\n \"identityUserTarget\": {\n \"identityUserId\": \"\"\n },\n \"lastAppearedAt\": \"\",\n \"lastObservedAt\": \"\",\n \"nhiUnowned\": {},\n \"recurrenceCount\": \"\",\n \"remediationDescription\": \"\",\n \"resolvedAt\": \"\",\n \"riskAcceptanceExpiresAt\": \"\",\n \"riskAcceptanceJustification\": \"\",\n \"riskScore\": {\n \"originalScore\": \"\",\n \"overrideByUserId\": \"\",\n \"overrideScore\": \"\",\n \"riskFactors\": null,\n \"score\": \"\",\n \"systemScore\": \"\"\n },\n \"serviceAccountMisclassification\": {\n \"currentAccountType\": \"APP_USER_TYPE_USER\",\n \"detectedAccountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"serviceAccountMisclassificationEvidence\": {\n \"detectionReason\": \"\"\n },\n \"serviceAccountUnowned\": {},\n \"severity\": \"FINDING_SEVERITY_HIGH\",\n \"similarUsernameMatch\": {\n \"proposedIdentityUserId\": \"\"\n },\n \"similarUsernameMatchEvidence\": {\n \"appUsername\": \"\",\n \"identityUsername\": \"\",\n \"similarityScore\": \"\"\n },\n \"snoozeReason\": \"\",\n \"snoozeUntil\": \"\",\n \"sourceDetectorId\": \"\",\n \"sourceKind\": \"FINDING_SOURCE_KIND_EXTERNAL\",\n \"state\": \"FINDING_STATE_UNSPECIFIED\",\n \"stateUpdatedById\": \"\",\n \"suppressReason\": \"\",\n \"taskId\": \"\",\n \"tenantTarget\": {},\n \"unusedSecret\": {},\n \"unusedSecretEvidence\": {\n \"lastUsedAt\": \"\"\n },\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "settings", + "description": "", + "item": [ + { + "id": "f6fd180c-f7c9-4713-8345-7124f407fdf6", + "name": "List Finding Settings", + "request": { + "name": "List Finding Settings", + "description": { + "content": "List every configurable finding type and whether detection is enabled.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings", + "settings" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "b80bdb23-bfec-4f59-ad33-3343d6bf9b4e", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings", + "settings" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"configured\": \"\",\n \"list\": [\n {\n \"enabled\": \"\",\n \"findingType\": \"FINDING_TYPE_CREDENTIAL_EXPIRING\"\n },\n {\n \"enabled\": \"\",\n \"findingType\": \"FINDING_TYPE_DECOY_CREDENTIAL_USED\"\n }\n ]\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "update", + "description": "", + "item": [ + { + "id": "c6136186-75db-46a6-ad66-0cc85cd4322b", + "name": "Update Finding Settings", + "request": { + "name": "Update Finding Settings", + "description": { + "content": "Enable or disable detection for one or more finding types in a single\n write. Enabling a type whose detector is a scheduled job also queues an\n immediate run.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings", + "settings", + "update" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"settings\": [\n {\n \"enabled\": \"\",\n \"findingType\": \"FINDING_TYPE_CUSTOM\"\n },\n {\n \"enabled\": \"\",\n \"findingType\": \"FINDING_TYPE_CONNECTOR_SYNC_FAILING\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "9d5aba06-7d0e-42b6-b117-5b3d663eaa7d", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings", + "settings", + "update" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"settings\": [\n {\n \"enabled\": \"\",\n \"findingType\": \"FINDING_TYPE_CUSTOM\"\n },\n {\n \"enabled\": \"\",\n \"findingType\": \"FINDING_TYPE_CONNECTOR_SYNC_FAILING\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"enabled\": \"\",\n \"findingType\": \"FINDING_TYPE_CREDENTIAL_EXPIRING\"\n },\n {\n \"enabled\": \"\",\n \"findingType\": \"FINDING_TYPE_CREDENTIAL_EXPIRING\"\n }\n ]\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "transformation-rules", + "description": "", + "item": [ + { + "id": "b438688c-dda2-4684-b995-ae1088bc9d0c", + "name": "List Finding Transformation Rules", + "request": { + "name": "List Finding Transformation Rules", + "description": { + "content": "List finding transformation rules, optionally filtered to a specific app.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings", + "transformation-rules" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "49e31d4e-23ca-40f3-a38e-b760bce951f5", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings", + "transformation-rules" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "5627a66d-8bf2-4d27-8ad2-a5435597123c", + "name": "Create Finding Transformation Rule", + "request": { + "name": "Create Finding Transformation Rule", + "description": { + "content": "Create a new finding transformation rule.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings", + "transformation-rules" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"transformationRule\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"evaluationOrder\": \"\",\n \"findingType\": \"FINDING_TYPE_DEACTIVATED_OWNER\",\n \"id\": \"\",\n \"templateId\": \"\",\n \"transforms\": null,\n \"updatedAt\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "dd0c5725-397e-4ba1-8a84-fe7d6034a607", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings", + "transformation-rules" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"transformationRule\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"evaluationOrder\": \"\",\n \"findingType\": \"FINDING_TYPE_DEACTIVATED_OWNER\",\n \"id\": \"\",\n \"templateId\": \"\",\n \"transforms\": null,\n \"updatedAt\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"transformationRule\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"evaluationOrder\": \"\",\n \"findingType\": \"FINDING_TYPE_NHI_UNOWNED\",\n \"id\": \"\",\n \"templateId\": \"\",\n \"transforms\": [\n {\n \"removeTags\": {\n \"keys\": [\n \"\",\n \"\"\n ]\n },\n \"setSeverity\": {\n \"severity\": \"FINDING_SEVERITY_CRITICAL\"\n },\n \"setTags\": {\n \"tags\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n }\n }\n },\n {\n \"removeTags\": {\n \"keys\": [\n \"\",\n \"\"\n ]\n },\n \"setSeverity\": {\n \"severity\": \"FINDING_SEVERITY_CRITICAL\"\n },\n \"setTags\": {\n \"tags\": {\n \"key_0\": \"\"\n }\n }\n }\n ],\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "3f153957-547c-4d69-848d-0017eb8f5000", + "name": "Delete Finding Transformation Rule", + "request": { + "name": "Delete Finding Transformation Rule", + "description": { + "content": "Delete a finding transformation rule. Findings already transformed by this rule are not affected.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings", + "transformation-rules", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "3795cc0c-bb29-4173-ac6b-a3aa10389265", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings", + "transformation-rules", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "e7dcca4a-9331-4243-ac68-491ab1bd3751", + "name": "Get Finding Transformation Rule", + "request": { + "name": "Get Finding Transformation Rule", + "description": { + "content": "Retrieve a single finding transformation rule by ID.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings", + "transformation-rules", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "15d5215b-0885-4d3f-95d8-c53e351d048d", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings", + "transformation-rules", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"transformationRule\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"evaluationOrder\": \"\",\n \"findingType\": \"FINDING_TYPE_UNUSED_SECRET\",\n \"id\": \"\",\n \"templateId\": \"\",\n \"transforms\": null,\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "{transformation_rule_id}", + "description": "", + "item": [ + { + "name": "update", + "description": "", + "item": [ + { + "id": "bb48adad-eeb3-4770-8188-eb5446d97f44", + "name": "Update Finding Transformation Rule", + "request": { + "name": "Update Finding Transformation Rule", + "description": { + "content": "Update an existing finding transformation rule's match criteria or transforms.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "findings", + "transformation-rules", + ":transformation_rule_id", + "update" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "transformation_rule_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"transformationRule\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"evaluationOrder\": \"\",\n \"findingType\": \"FINDING_TYPE_DECOY_PUBLICLY_EXPOSED\",\n \"id\": \"\",\n \"templateId\": \"\",\n \"transforms\": null,\n \"updatedAt\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "fc933be5-6a42-4087-84b4-5fefebc6187e", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "findings", + "transformation-rules", + ":transformation_rule_id", + "update" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "transformation_rule_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"transformationRule\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"evaluationOrder\": \"\",\n \"findingType\": \"FINDING_TYPE_DECOY_PUBLICLY_EXPOSED\",\n \"id\": \"\",\n \"templateId\": \"\",\n \"transforms\": null,\n \"updatedAt\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"transformationRule\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"evaluationOrder\": \"\",\n \"findingType\": \"FINDING_TYPE_DEACTIVATED_OWNER\",\n \"id\": \"\",\n \"templateId\": \"\",\n \"transforms\": [\n {\n \"removeTags\": {\n \"keys\": [\n \"\",\n \"\"\n ]\n },\n \"setSeverity\": {\n \"severity\": \"FINDING_SEVERITY_UNSPECIFIED\"\n },\n \"setTags\": {\n \"tags\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n }\n }\n },\n {\n \"removeTags\": {\n \"keys\": null\n },\n \"setSeverity\": {\n \"severity\": \"FINDING_SEVERITY_HIGH\"\n },\n \"setTags\": {\n \"tags\": {\n \"key_0\": \"\"\n }\n }\n }\n ],\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + } + ] + }, + { + "name": "functions", + "description": "", + "item": [ + { + "id": "ed846604-9078-4327-bb56-d1e09b34a70a", + "name": "List Functions", + "request": { + "name": "List Functions", + "description": { + "content": "List retrieves all functions with pagination", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "functions" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "1908407d-9db3-411c-af12-2f20a94837bb", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "functions" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_UNSPECIFIED\",\n \"head\": \"\",\n \"hookRefs\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"isDraft\": \"\",\n \"outboundNetworkAllowlist\": [\n \"\",\n \"\"\n ],\n \"provisionedConcurrency\": \"\",\n \"publishedCommitId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"secret\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"updatedAt\": \"\",\n \"useSpn\": \"\",\n \"workflowTemplateRefs\": [\n \"\",\n \"\"\n ]\n },\n {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_CODE_MODE\",\n \"head\": \"\",\n \"hookRefs\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"isDraft\": \"\",\n \"outboundNetworkAllowlist\": [\n \"\",\n \"\"\n ],\n \"provisionedConcurrency\": \"\",\n \"publishedCommitId\": \"\",\n \"scopedRoleIds\": null,\n \"secret\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"updatedAt\": \"\",\n \"useSpn\": \"\",\n \"workflowTemplateRefs\": null\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "6ced6e17-af46-48b9-bf62-46a3c95f4b26", + "name": "Create Function", + "request": { + "name": "Create Function", + "description": { + "content": "CreateFunction registers a new serverless function and creates its\n initial code commit. Functions run as TypeScript modules in a sandboxed\n runtime; see initial_content for the entry-file signature and SDK import.\n\n The new function is unpublished. To make the commit the default\n runnable version (and have the function appear as runnable in the\n Functions UI), call UpdateFunction with function.published_commit_id\n set and update_mask=[\"published_commit_id\"].", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "functions" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"commitMessage\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_CODE_MODE\",\n \"initialContent\": {\n \"key_0\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "b72e2ce7-ba17-4791-891e-1ae7ef2559a7", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "functions" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"commitMessage\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_CODE_MODE\",\n \"initialContent\": {\n \"key_0\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"commit\": {\n \"author\": \"\",\n \"createdAt\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"message\": \"\"\n },\n \"function\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_CODE_MODE\",\n \"head\": \"\",\n \"hookRefs\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"isDraft\": \"\",\n \"outboundNetworkAllowlist\": [\n \"\",\n \"\"\n ],\n \"provisionedConcurrency\": \"\",\n \"publishedCommitId\": \"\",\n \"scopedRoleIds\": null,\n \"secret\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"updatedAt\": \"\",\n \"useSpn\": \"\",\n \"workflowTemplateRefs\": null\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{function_id}", + "description": "", + "item": [ + { + "name": "commits", + "description": "", + "item": [ + { + "id": "6169c55d-a40b-4290-a97f-88d0d297b4c0", + "name": "List Commits", + "request": { + "name": "List Commits", + "description": { + "content": "ListCommits retrieves the commit history", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "commits" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "function_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "807af88c-9320-4ddf-8873-cc68a20ad609", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "commits" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "function_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "bba85b12-a2cd-4943-bd33-373c74cb2f8b", + "name": "Create Initial Commit", + "request": { + "name": "Create Initial Commit", + "description": { + "content": "CreateInitialCommit starts a new commit and returns upload URLs for files", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "commits" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "function_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"commitMessage\": \"\",\n \"filenames\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "9a58e8a5-e432-447b-b35b-a33bf9e1c765", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "commits" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "function_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"commitMessage\": \"\",\n \"filenames\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"commitId\": \"\",\n \"uploadUrls\": {\n \"key_0\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{commit_id}", + "description": "", + "item": [ + { + "name": "finalize", + "description": "", + "item": [ + { + "id": "f2cf17dd-07e9-4e8d-af12-3146604057c2", + "name": "Create Final Commit", + "request": { + "name": "Create Final Commit", + "description": { + "content": "CreateFinalCommit completes a commit after files are uploaded", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "commits", + ":commit_id", + "finalize" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "function_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "commit_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "b83750e2-4254-48e5-b7fa-a8edbfced99a", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "commits", + ":commit_id", + "finalize" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "function_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "commit_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"commit\": {\n \"author\": \"\",\n \"createdAt\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"message\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "lockfile", + "description": "", + "item": [ + { + "id": "97a782b3-a944-483c-9e83-4ab31f956900", + "name": "Get Lock File", + "request": { + "name": "Get Lock File", + "description": { + "content": "GetLockFile retrieves the deno lock file for a specific commit, if it exists.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "commits", + ":commit_id", + "lockfile" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "function_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "commit_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "1710fd5e-07c2-40fd-bda2-3a968253a00e", + "name": "FunctionsServiceGetLockFileResponse returns the deno lock file content for a commit.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "commits", + ":commit_id", + "lockfile" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "function_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "commit_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"content\": \"\",\n \"exists\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "97521147-4068-4abd-aafe-8bc30ecc35b2", + "name": "Get Commit Content", + "request": { + "name": "Get Commit Content", + "description": { + "content": "GetCommitContent retrieves a commit and all its file contents in a single unary response.\n This is a non-streaming alternative to GetCommit for REST API consumers.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "commits", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "function_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "a72d24fd-53fd-44a1-9a53-c6d8bc5cb177", + "name": "FunctionsServiceGetCommitContentResponse contains a commit and all its file contents.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "commits", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "function_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"commit\": {\n \"author\": \"\",\n \"createdAt\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"message\": \"\"\n },\n \"files\": {\n \"key_0\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "invocations", + "description": "", + "item": [ + { + "id": "9451a8a5-d947-4fd4-869f-05547b647350", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List retrieves the invocation history for a function", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "invocations" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "function_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "cdf35f2c-be60-420c-8429-a9386e203421", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "invocations" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "function_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"commitId\": \"\",\n \"createdAt\": \"\",\n \"error\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"input\": {\n \"key_0\": true,\n \"key_1\": \"string\",\n \"key_2\": 9730\n },\n \"output\": {\n \"key_0\": 9553\n },\n \"status\": \"FUNCTION_INVOCATION_STATUS_RUNNING\",\n \"updatedAt\": \"\"\n },\n {\n \"commitId\": \"\",\n \"createdAt\": \"\",\n \"error\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"input\": null,\n \"output\": {\n \"key_0\": \"string\",\n \"key_1\": false\n },\n \"status\": \"FUNCTION_INVOCATION_STATUS_UNSPECIFIED\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "ad0f748c-11c9-422f-a051-a5e3b59aa92e", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get retrieves a specific invocation by ID", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "invocations", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "function_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "b1944b4a-971d-4064-ac7d-fbd4ea5242ad", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "invocations", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "function_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"invocation\": {\n \"commitId\": \"\",\n \"createdAt\": \"\",\n \"error\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"input\": {\n \"key_0\": false\n },\n \"output\": {\n \"key_0\": true,\n \"key_1\": 5600,\n \"key_2\": true,\n \"key_3\": \"string\"\n },\n \"status\": \"FUNCTION_INVOCATION_STATUS_PENDING\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "search", + "description": "", + "item": [ + { + "id": "7a1f8d2a-f865-4239-9cba-3de46a570b4b", + "name": "Search", + "request": { + "name": "Search", + "description": { + "content": "Search searches for function invocations with filtering and ordering support\n Each invocation carries its input/output payloads, which can be large — request a small page_size (≤10) to keep responses small.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "invocations", + "search" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "function_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "953599c7-1784-496e-b4b3-451cd0543a94", + "name": "FunctionsInvocationSearchResponse is the response for searching function invocations.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "invocations", + "search" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "function_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "invoke", + "description": "", + "item": [ + { + "id": "0a43b4cd-0214-45cb-b9ab-f7ba85705684", + "name": "Invoke", + "request": { + "name": "Invoke", + "description": { + "content": "Invoke executes a function at a specific commit with the provided input data.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "invoke" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "function_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"commitId\": \"\",\n \"json\": \"\",\n \"vfsId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "a5a3915d-ef4b-455a-9a84-6e6f5b508834", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "invoke" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "function_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"commitId\": \"\",\n \"json\": \"\",\n \"vfsId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"invocationId\": \"\",\n \"json\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "tags", + "description": "", + "item": [ + { + "id": "cedfb13d-e5b2-451b-bc7b-aa57364dc906", + "name": "List Tags", + "request": { + "name": "List Tags", + "description": { + "content": "ListTags lists all tags for a function", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "tags" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "function_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "d63fb7f4-3eaf-480a-82cf-03cd74c1e895", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "tags" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "function_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"tags\": {\n \"key_0\": {\n \"author\": \"\",\n \"createdAt\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"message\": \"\"\n },\n \"key_1\": {\n \"author\": \"\",\n \"createdAt\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"message\": \"\"\n },\n \"key_2\": {\n \"author\": \"\",\n \"createdAt\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"message\": \"\"\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "846a20a0-8549-4163-802c-ef05eb568e01", + "name": "Create Tag", + "request": { + "name": "Create Tag", + "description": { + "content": "CreateTag creates a named reference to a specific commit", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "tags" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "function_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"commitId\": \"\",\n \"name\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "2bea8025-7408-44ec-bf8d-e416ebfdd6c1", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "tags" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "function_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"commitId\": \"\",\n \"name\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "test", + "description": "", + "item": [ + { + "id": "0dc65d38-6d44-4603-83d5-3aa7a5e5a1da", + "name": "Test", + "request": { + "name": "Test", + "description": { + "content": "Test runs a function's test suite in a sandboxed environment and returns the results.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "test" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "function_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"commitId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "7cfbd348-c871-4057-ae47-02b567f67c6b", + "name": "FunctionsServiceTestResponse contains test execution results.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "functions", + ":function_id", + "test" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "function_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"commitId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"result\": {\n \"assertions\": [\n {\n \"actual\": \"\",\n \"at\": \"\",\n \"description\": \"\",\n \"expected\": \"\",\n \"operator\": \"\",\n \"pass\": \"\"\n },\n {\n \"actual\": \"\",\n \"at\": \"\",\n \"description\": \"\",\n \"expected\": \"\",\n \"operator\": \"\",\n \"pass\": \"\"\n }\n ],\n \"error\": \"\",\n \"logs\": [\n {\n \"level\": \"\",\n \"log\": \"\",\n \"source\": \"\"\n },\n {\n \"level\": \"\",\n \"log\": \"\",\n \"source\": \"\"\n }\n ],\n \"name\": \"\",\n \"status\": \"FUNCTION_TEST_RESULT_STATUS_OK\"\n },\n \"results\": [\n {\n \"assertions\": [\n {\n \"actual\": \"\",\n \"at\": \"\",\n \"description\": \"\",\n \"expected\": \"\",\n \"operator\": \"\",\n \"pass\": \"\"\n },\n {\n \"actual\": \"\",\n \"at\": \"\",\n \"description\": \"\",\n \"expected\": \"\",\n \"operator\": \"\",\n \"pass\": \"\"\n }\n ],\n \"error\": \"\",\n \"logs\": null,\n \"name\": \"\",\n \"status\": \"FUNCTION_TEST_RESULT_STATUS_SKIPPED\"\n },\n {\n \"assertions\": [\n {\n \"actual\": \"\",\n \"at\": \"\",\n \"description\": \"\",\n \"expected\": \"\",\n \"operator\": \"\",\n \"pass\": \"\"\n },\n {\n \"actual\": \"\",\n \"at\": \"\",\n \"description\": \"\",\n \"expected\": \"\",\n \"operator\": \"\",\n \"pass\": \"\"\n }\n ],\n \"error\": \"\",\n \"logs\": [\n {\n \"level\": \"\",\n \"log\": \"\",\n \"source\": \"\"\n },\n {\n \"level\": \"\",\n \"log\": \"\",\n \"source\": \"\"\n }\n ],\n \"name\": \"\",\n \"status\": \"FUNCTION_TEST_RESULT_STATUS_FAIL\"\n }\n ]\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "ae12c8b7-b095-4309-a907-225ea974111f", + "name": "Delete Function", + "request": { + "name": "Delete Function", + "description": { + "content": "Delete removes a function", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "functions", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "11abff5d-108b-4044-8c2c-64198e3da5ea", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "functions", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "9d4e755f-ed5d-41cb-9879-9d8ac73174b5", + "name": "Get Function", + "request": { + "name": "Get Function", + "description": { + "content": "Get retrieves a specific function by ID", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "functions", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "0ce648d7-e452-47fc-862c-37bce465dfaf", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "functions", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"function\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_ANY\",\n \"head\": \"\",\n \"hookRefs\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"isDraft\": \"\",\n \"outboundNetworkAllowlist\": null,\n \"provisionedConcurrency\": \"\",\n \"publishedCommitId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"secret\": {\n \"key_0\": \"\"\n },\n \"updatedAt\": \"\",\n \"useSpn\": \"\",\n \"workflowTemplateRefs\": [\n \"\",\n \"\"\n ]\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "update", + "description": "", + "item": [ + { + "id": "508114a6-7a0d-4580-87c2-288423ce363b", + "name": "Update Function", + "request": { + "name": "Update Function", + "description": { + "content": "Update an existing function's metadata, code, or both. Also the publish\n path: set function.published_commit_id and include \"published_commit_id\"\n in update_mask to make a commit the default runnable version. To push a\n new code commit, set content (and optionally commit_message); this is\n independent of update_mask, since commits are versioned separately from\n function metadata. A single request cannot publish the commit it just\n created, since published_commit_id is validated against existing commits\n before content is committed: publishing new code takes two calls, push\n then publish with the returned commit.id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "functions", + "update" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"commitMessage\": \"\",\n \"content\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"function\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_UNSPECIFIED\",\n \"head\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"outboundNetworkAllowlist\": [\n \"\",\n \"\"\n ],\n \"provisionedConcurrency\": \"\",\n \"publishedCommitId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"secret\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n }\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "873e7958-68fb-47ae-a93f-017730c2bd6f", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "functions", + "update" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"commitMessage\": \"\",\n \"content\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"function\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_UNSPECIFIED\",\n \"head\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"outboundNetworkAllowlist\": [\n \"\",\n \"\"\n ],\n \"provisionedConcurrency\": \"\",\n \"publishedCommitId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"secret\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n }\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"commit\": {\n \"author\": \"\",\n \"createdAt\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"message\": \"\"\n },\n \"function\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_CODE_MODE\",\n \"head\": \"\",\n \"hookRefs\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"isDraft\": \"\",\n \"outboundNetworkAllowlist\": [\n \"\",\n \"\"\n ],\n \"provisionedConcurrency\": \"\",\n \"publishedCommitId\": \"\",\n \"scopedRoleIds\": null,\n \"secret\": {\n \"key_0\": \"\"\n },\n \"updatedAt\": \"\",\n \"useSpn\": \"\",\n \"workflowTemplateRefs\": null\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "grants", + "description": "", + "item": [ + { + "name": "feed", + "description": "", + "item": [ + { + "id": "ec72611b-0740-4321-a206-dcf46bbb8f97", + "name": "Search Grant Feed", + "request": { + "name": "Search Grant Feed", + "description": { + "content": "Search a chronological feed of grant and revoke events, filtered by app user, entitlement, or time range.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "grants", + "feed" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"after\": \"\",\n \"appEntitlementRefs\": null,\n \"appRefs\": null,\n \"appUserRefs\": null,\n \"before\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "c812d4ee-31d6-4d47-b65d-ed43609ad5e2", + "name": "The SearchGrantFeedResponse message contains a list of grant event results and a nextPageToken if applicable.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "grants", + "feed" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"after\": \"\",\n \"appEntitlementRefs\": null,\n \"appRefs\": null,\n \"appUserRefs\": null,\n \"before\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": null,\n \"list\": [\n {\n \"appPath\": \"\",\n \"appUserPath\": \"\",\n \"entitlementPath\": \"\",\n \"feed\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"date\": \"\",\n \"eventType\": \"GRANT_EVENT_TYPE_ADDED\",\n \"ticketId\": \"\"\n },\n \"ticketPath\": \"\"\n },\n {\n \"appPath\": \"\",\n \"appUserPath\": \"\",\n \"entitlementPath\": \"\",\n \"feed\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"date\": \"\",\n \"eventType\": \"GRANT_EVENT_TYPE_ADDED\",\n \"ticketId\": \"\"\n },\n \"ticketPath\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "hooks", + "description": "", + "item": [ + { + "id": "9796c4f8-e06f-48f5-8f58-0153c893119e", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "Invokes the c1.api.hooks.v1.HooksService.List method.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "hooks" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "5c6ff91a-d087-447d-aee9-8acfcf703b4d", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "hooks" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"builtinPattern\": {\n \"blockOutput\": {\n \"message\": \"\",\n \"surfaces\": null\n },\n \"blockToolCall\": {\n \"message\": \"\"\n },\n \"creditCardBlocking\": {},\n \"encodedContentGuard\": {\n \"flagOnly\": \"\",\n \"minBase64Run\": \"\",\n \"minHexRun\": \"\"\n },\n \"linkFilter\": {\n \"action\": \"LINK_FILTER_ACTION_UNSPECIFIED\",\n \"allowedHosts\": null,\n \"blockImages\": \"\"\n },\n \"piiRedaction\": {\n \"redactFields\": [\n \"\",\n \"\"\n ],\n \"replacement\": \"\"\n },\n \"preToolBlock\": {\n \"message\": \"\"\n },\n \"promptInjectionScan\": {\n \"flagOnly\": \"\",\n \"threshold\": \"PROMPT_INJECTION_THRESHOLD_UNSPECIFIED\"\n },\n \"queryScopeLimit\": {\n \"fields\": [\n \"\",\n \"\"\n ],\n \"maxLimit\": \"\"\n },\n \"secretsMasking\": {\n \"additionalPatterns\": [\n \"\",\n \"\"\n ],\n \"placeholder\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": null,\n \"blockedPatterns\": [\n \"\",\n \"\"\n ]\n },\n \"toolOutputSizeGuard\": {\n \"maxBytes\": \"\"\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": null,\n \"businessHours\": {\n \"days\": [\n \"\",\n \"\"\n ],\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_PRE_TOOL_USE\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"id\": \"\",\n \"jsonPatch\": {\n \"celExpression\": \"\",\n \"staticOverlay\": null\n },\n \"managedByGuardrails\": \"\",\n \"priority\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"builtinPattern\": {\n \"blockOutput\": {\n \"message\": \"\",\n \"surfaces\": [\n \"HOOK_OUTPUT_SURFACE_WEB\",\n \"HOOK_OUTPUT_SURFACE_WEB\"\n ]\n },\n \"blockToolCall\": {\n \"message\": \"\"\n },\n \"creditCardBlocking\": {},\n \"encodedContentGuard\": {\n \"flagOnly\": \"\",\n \"minBase64Run\": \"\",\n \"minHexRun\": \"\"\n },\n \"linkFilter\": {\n \"action\": \"LINK_FILTER_ACTION_UNSPECIFIED\",\n \"allowedHosts\": null,\n \"blockImages\": \"\"\n },\n \"piiRedaction\": {\n \"redactFields\": null,\n \"replacement\": \"\"\n },\n \"preToolBlock\": {\n \"message\": \"\"\n },\n \"promptInjectionScan\": {\n \"flagOnly\": \"\",\n \"threshold\": \"PROMPT_INJECTION_THRESHOLD_MEDIUM\"\n },\n \"queryScopeLimit\": {\n \"fields\": null,\n \"maxLimit\": \"\"\n },\n \"secretsMasking\": {\n \"additionalPatterns\": [\n \"\",\n \"\"\n ],\n \"placeholder\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": [\n \"\",\n \"\"\n ],\n \"blockedPatterns\": [\n \"\",\n \"\"\n ]\n },\n \"toolOutputSizeGuard\": {\n \"maxBytes\": \"\"\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": null,\n \"businessHours\": {\n \"days\": null,\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_UNSPECIFIED\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"id\": \"\",\n \"jsonPatch\": {\n \"celExpression\": \"\",\n \"staticOverlay\": {\n \"key_0\": \"string\"\n }\n },\n \"managedByGuardrails\": \"\",\n \"priority\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "24091d00-ef1c-4bf4-b11b-0a4826ffe1b5", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Invokes the c1.api.hooks.v1.HooksService.Create method.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "hooks" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"builtinPattern\": {\n \"blockOutput\": {\n \"message\": \"\",\n \"surfaces\": [\n \"HOOK_OUTPUT_SURFACE_WEB\",\n \"HOOK_OUTPUT_SURFACE_WEB\"\n ]\n },\n \"blockToolCall\": {\n \"message\": \"\"\n },\n \"creditCardBlocking\": {},\n \"encodedContentGuard\": {\n \"flagOnly\": \"\",\n \"minBase64Run\": \"\",\n \"minHexRun\": \"\"\n },\n \"linkFilter\": {\n \"action\": \"LINK_FILTER_ACTION_UNSPECIFIED\",\n \"allowedHosts\": null,\n \"blockImages\": \"\"\n },\n \"piiRedaction\": {\n \"redactFields\": [\n \"\",\n \"\"\n ],\n \"replacement\": \"\"\n },\n \"preToolBlock\": {\n \"message\": \"\"\n },\n \"promptInjectionScan\": {\n \"flagOnly\": \"\",\n \"threshold\": \"PROMPT_INJECTION_THRESHOLD_UNSPECIFIED\"\n },\n \"queryScopeLimit\": {\n \"fields\": null,\n \"maxLimit\": \"\"\n },\n \"secretsMasking\": {\n \"additionalPatterns\": [\n \"\",\n \"\"\n ],\n \"placeholder\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": null,\n \"blockedPatterns\": [\n \"\",\n \"\"\n ]\n },\n \"toolOutputSizeGuard\": {\n \"maxBytes\": \"\"\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": [\n \"TOOL_CLASSIFICATION_DESTRUCTIVE\",\n \"TOOL_CLASSIFICATION_READ\"\n ],\n \"businessHours\": {\n \"days\": null,\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"description\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_POST_TOOL_USE\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"jsonPatch\": {\n \"celExpression\": \"\",\n \"staticOverlay\": null\n },\n \"managedByGuardrails\": \"\",\n \"priority\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "50cdd028-f579-4345-8a5d-42f44652d2fa", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "hooks" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"builtinPattern\": {\n \"blockOutput\": {\n \"message\": \"\",\n \"surfaces\": [\n \"HOOK_OUTPUT_SURFACE_WEB\",\n \"HOOK_OUTPUT_SURFACE_WEB\"\n ]\n },\n \"blockToolCall\": {\n \"message\": \"\"\n },\n \"creditCardBlocking\": {},\n \"encodedContentGuard\": {\n \"flagOnly\": \"\",\n \"minBase64Run\": \"\",\n \"minHexRun\": \"\"\n },\n \"linkFilter\": {\n \"action\": \"LINK_FILTER_ACTION_UNSPECIFIED\",\n \"allowedHosts\": null,\n \"blockImages\": \"\"\n },\n \"piiRedaction\": {\n \"redactFields\": [\n \"\",\n \"\"\n ],\n \"replacement\": \"\"\n },\n \"preToolBlock\": {\n \"message\": \"\"\n },\n \"promptInjectionScan\": {\n \"flagOnly\": \"\",\n \"threshold\": \"PROMPT_INJECTION_THRESHOLD_UNSPECIFIED\"\n },\n \"queryScopeLimit\": {\n \"fields\": null,\n \"maxLimit\": \"\"\n },\n \"secretsMasking\": {\n \"additionalPatterns\": [\n \"\",\n \"\"\n ],\n \"placeholder\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": null,\n \"blockedPatterns\": [\n \"\",\n \"\"\n ]\n },\n \"toolOutputSizeGuard\": {\n \"maxBytes\": \"\"\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": [\n \"TOOL_CLASSIFICATION_DESTRUCTIVE\",\n \"TOOL_CLASSIFICATION_READ\"\n ],\n \"businessHours\": {\n \"days\": null,\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"description\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_POST_TOOL_USE\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"jsonPatch\": {\n \"celExpression\": \"\",\n \"staticOverlay\": null\n },\n \"managedByGuardrails\": \"\",\n \"priority\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"hook\": {\n \"builtinPattern\": {\n \"blockOutput\": {\n \"message\": \"\",\n \"surfaces\": [\n \"HOOK_OUTPUT_SURFACE_UNSPECIFIED\",\n \"HOOK_OUTPUT_SURFACE_WEB\"\n ]\n },\n \"blockToolCall\": {\n \"message\": \"\"\n },\n \"creditCardBlocking\": {},\n \"encodedContentGuard\": {\n \"flagOnly\": \"\",\n \"minBase64Run\": \"\",\n \"minHexRun\": \"\"\n },\n \"linkFilter\": {\n \"action\": \"LINK_FILTER_ACTION_ANNOTATE\",\n \"allowedHosts\": [\n \"\",\n \"\"\n ],\n \"blockImages\": \"\"\n },\n \"piiRedaction\": {\n \"redactFields\": null,\n \"replacement\": \"\"\n },\n \"preToolBlock\": {\n \"message\": \"\"\n },\n \"promptInjectionScan\": {\n \"flagOnly\": \"\",\n \"threshold\": \"PROMPT_INJECTION_THRESHOLD_LOW\"\n },\n \"queryScopeLimit\": {\n \"fields\": [\n \"\",\n \"\"\n ],\n \"maxLimit\": \"\"\n },\n \"secretsMasking\": {\n \"additionalPatterns\": null,\n \"placeholder\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": [\n \"\",\n \"\"\n ],\n \"blockedPatterns\": [\n \"\",\n \"\"\n ]\n },\n \"toolOutputSizeGuard\": {\n \"maxBytes\": \"\"\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": null,\n \"businessHours\": {\n \"days\": null,\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_UNSPECIFIED\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"id\": \"\",\n \"jsonPatch\": {\n \"celExpression\": \"\",\n \"staticOverlay\": null\n },\n \"managedByGuardrails\": \"\",\n \"priority\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "56631aa8-56b0-4d1d-a651-7a5a99c7e76d", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Invokes the c1.api.hooks.v1.HooksService.Delete method.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "hooks", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "567ab0a6-a391-45c8-b731-d2c4f5a435c9", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "hooks", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "2692fb37-5543-43a3-9b29-560f79ef95e4", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Invokes the c1.api.hooks.v1.HooksService.Get method.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "hooks", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "dfeaa6fa-eb60-4d93-a23b-ca1ee1614c42", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "hooks", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"hook\": {\n \"builtinPattern\": {\n \"blockOutput\": {\n \"message\": \"\",\n \"surfaces\": null\n },\n \"blockToolCall\": {\n \"message\": \"\"\n },\n \"creditCardBlocking\": {},\n \"encodedContentGuard\": {\n \"flagOnly\": \"\",\n \"minBase64Run\": \"\",\n \"minHexRun\": \"\"\n },\n \"linkFilter\": {\n \"action\": \"LINK_FILTER_ACTION_ANNOTATE\",\n \"allowedHosts\": null,\n \"blockImages\": \"\"\n },\n \"piiRedaction\": {\n \"redactFields\": null,\n \"replacement\": \"\"\n },\n \"preToolBlock\": {\n \"message\": \"\"\n },\n \"promptInjectionScan\": {\n \"flagOnly\": \"\",\n \"threshold\": \"PROMPT_INJECTION_THRESHOLD_MEDIUM\"\n },\n \"queryScopeLimit\": {\n \"fields\": null,\n \"maxLimit\": \"\"\n },\n \"secretsMasking\": {\n \"additionalPatterns\": null,\n \"placeholder\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": null,\n \"blockedPatterns\": null\n },\n \"toolOutputSizeGuard\": {\n \"maxBytes\": \"\"\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": null,\n \"businessHours\": {\n \"days\": null,\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_PRE_TOOL_USE\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"id\": \"\",\n \"jsonPatch\": {\n \"celExpression\": \"\",\n \"staticOverlay\": {\n \"key_0\": \"string\"\n }\n },\n \"managedByGuardrails\": \"\",\n \"priority\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "0cac9dd8-990c-4c56-b06f-ef3c7e184188", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Invokes the c1.api.hooks.v1.HooksService.Update method.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "hooks", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"hook\": {\n \"builtinPattern\": {\n \"blockOutput\": {\n \"message\": \"\",\n \"surfaces\": [\n \"HOOK_OUTPUT_SURFACE_SLACK\",\n \"HOOK_OUTPUT_SURFACE_WEB\"\n ]\n },\n \"blockToolCall\": {\n \"message\": \"\"\n },\n \"creditCardBlocking\": {},\n \"encodedContentGuard\": {\n \"flagOnly\": \"\",\n \"minBase64Run\": \"\",\n \"minHexRun\": \"\"\n },\n \"linkFilter\": {\n \"action\": \"LINK_FILTER_ACTION_REDACT\",\n \"allowedHosts\": [\n \"\",\n \"\"\n ],\n \"blockImages\": \"\"\n },\n \"piiRedaction\": {\n \"redactFields\": null,\n \"replacement\": \"\"\n },\n \"preToolBlock\": {\n \"message\": \"\"\n },\n \"promptInjectionScan\": {\n \"flagOnly\": \"\",\n \"threshold\": \"PROMPT_INJECTION_THRESHOLD_UNSPECIFIED\"\n },\n \"queryScopeLimit\": {\n \"fields\": null,\n \"maxLimit\": \"\"\n },\n \"secretsMasking\": {\n \"additionalPatterns\": [\n \"\",\n \"\"\n ],\n \"placeholder\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": null,\n \"blockedPatterns\": [\n \"\",\n \"\"\n ]\n },\n \"toolOutputSizeGuard\": {\n \"maxBytes\": \"\"\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": null,\n \"businessHours\": {\n \"days\": [\n \"\",\n \"\"\n ],\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_UNSPECIFIED\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"id\": \"\",\n \"jsonPatch\": {\n \"celExpression\": \"\",\n \"staticOverlay\": null\n },\n \"managedByGuardrails\": \"\",\n \"priority\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "da0e0f19-c986-46ac-b7d5-ec2d4f6c01ad", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "hooks", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"hook\": {\n \"builtinPattern\": {\n \"blockOutput\": {\n \"message\": \"\",\n \"surfaces\": [\n \"HOOK_OUTPUT_SURFACE_SLACK\",\n \"HOOK_OUTPUT_SURFACE_WEB\"\n ]\n },\n \"blockToolCall\": {\n \"message\": \"\"\n },\n \"creditCardBlocking\": {},\n \"encodedContentGuard\": {\n \"flagOnly\": \"\",\n \"minBase64Run\": \"\",\n \"minHexRun\": \"\"\n },\n \"linkFilter\": {\n \"action\": \"LINK_FILTER_ACTION_REDACT\",\n \"allowedHosts\": [\n \"\",\n \"\"\n ],\n \"blockImages\": \"\"\n },\n \"piiRedaction\": {\n \"redactFields\": null,\n \"replacement\": \"\"\n },\n \"preToolBlock\": {\n \"message\": \"\"\n },\n \"promptInjectionScan\": {\n \"flagOnly\": \"\",\n \"threshold\": \"PROMPT_INJECTION_THRESHOLD_UNSPECIFIED\"\n },\n \"queryScopeLimit\": {\n \"fields\": null,\n \"maxLimit\": \"\"\n },\n \"secretsMasking\": {\n \"additionalPatterns\": [\n \"\",\n \"\"\n ],\n \"placeholder\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": null,\n \"blockedPatterns\": [\n \"\",\n \"\"\n ]\n },\n \"toolOutputSizeGuard\": {\n \"maxBytes\": \"\"\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": null,\n \"businessHours\": {\n \"days\": [\n \"\",\n \"\"\n ],\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_UNSPECIFIED\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"id\": \"\",\n \"jsonPatch\": {\n \"celExpression\": \"\",\n \"staticOverlay\": null\n },\n \"managedByGuardrails\": \"\",\n \"priority\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"hook\": {\n \"builtinPattern\": {\n \"blockOutput\": {\n \"message\": \"\",\n \"surfaces\": [\n \"HOOK_OUTPUT_SURFACE_UNSPECIFIED\",\n \"HOOK_OUTPUT_SURFACE_UNSPECIFIED\"\n ]\n },\n \"blockToolCall\": {\n \"message\": \"\"\n },\n \"creditCardBlocking\": {},\n \"encodedContentGuard\": {\n \"flagOnly\": \"\",\n \"minBase64Run\": \"\",\n \"minHexRun\": \"\"\n },\n \"linkFilter\": {\n \"action\": \"LINK_FILTER_ACTION_ANNOTATE\",\n \"allowedHosts\": [\n \"\",\n \"\"\n ],\n \"blockImages\": \"\"\n },\n \"piiRedaction\": {\n \"redactFields\": null,\n \"replacement\": \"\"\n },\n \"preToolBlock\": {\n \"message\": \"\"\n },\n \"promptInjectionScan\": {\n \"flagOnly\": \"\",\n \"threshold\": \"PROMPT_INJECTION_THRESHOLD_HIGH\"\n },\n \"queryScopeLimit\": {\n \"fields\": null,\n \"maxLimit\": \"\"\n },\n \"secretsMasking\": {\n \"additionalPatterns\": [\n \"\",\n \"\"\n ],\n \"placeholder\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": null,\n \"blockedPatterns\": null\n },\n \"toolOutputSizeGuard\": {\n \"maxBytes\": \"\"\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": null,\n \"businessHours\": {\n \"days\": [\n \"\",\n \"\"\n ],\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_POST_TOOL_USE\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"id\": \"\",\n \"jsonPatch\": {\n \"celExpression\": \"\",\n \"staticOverlay\": {\n \"key_0\": \"string\",\n \"key_1\": 662.5339459330659\n }\n },\n \"managedByGuardrails\": \"\",\n \"priority\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "iam", + "description": "", + "item": [ + { + "name": "personal_clients", + "description": "", + "item": [ + { + "id": "9a8e5d9a-8f4f-4200-85b4-0abe1aab2818", + "name": "NOTE: Only shows personal clients for the current user.", + "request": { + "name": "NOTE: Only shows personal clients for the current user.", + "description": { + "content": "List returns all personal client credentials owned by the calling user.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_clients" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "6e73557a-0488-46e9-9f5a-15d5bd38dc18", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_clients" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"allowSourceCidr\": null,\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"scopedRoles\": null,\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n {\n \"allowSourceCidr\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "e351c36c-dc21-4749-b0ca-a25fb5e93e83", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create creates a new PersonalClient object for the current User.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_clients" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"allowSourceCidr\": null,\n \"displayName\": \"\",\n \"expires\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "62956e40-23ab-42ab-b4cd-606c617deacc", + "name": "The PersonalClientServiceCreateResponse message contains the created personal client and client secret.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_clients" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"allowSourceCidr\": null,\n \"displayName\": \"\",\n \"expires\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"client\": {\n \"allowSourceCidr\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"clientSecret\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "d648c898-3521-4d32-9082-d4addde1b17b", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete a personal client credential, revoking it and preventing further API access.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_clients", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "c1a296bd-d613-4402-8ea4-cd7eea471d2b", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_clients", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "c0b335ae-4276-4519-9541-7b2f1e88f837", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get retrieves a single personal client credential by its ID.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_clients", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "af5646b9-f1ba-4664-8cb8-9eb13e345f99", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_clients", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"client\": {\n \"allowSourceCidr\": null,\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"scopedRoles\": null,\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "3c338563-f803-4d0b-a8a1-17a839e3fb4c", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update modifies an existing personal client credential. Use the update mask to specify which fields to change.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_clients", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"client\": {\n \"allowSourceCidr\": [\n \"\",\n \"\"\n ],\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "bd2ce19a-f7e2-4614-a6c3-a6758b1910aa", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_clients", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"client\": {\n \"allowSourceCidr\": [\n \"\",\n \"\"\n ],\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"client\": {\n \"allowSourceCidr\": null,\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "personal_devices", + "description": "", + "item": [ + { + "name": "{device_id}", + "description": "", + "item": [ + { + "id": "9eb07b99-96a9-435e-b73d-502b7dd65aa9", + "name": "Revoke Device", + "request": { + "name": "Revoke Device", + "description": { + "content": "RevokeDevice revokes a whole device: it revokes the device and removes every\n app client on it, so no app on that machine can mint further tokens.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_devices", + ":device_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "device_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "b123d1a3-fc46-4c61-bcd5-9760a732f4e8", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_devices", + ":device_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "device_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "f15f2731-2661-4b69-af9f-584bffca2854", + "name": "Get Device", + "request": { + "name": "Get Device", + "description": { + "content": "GetDevice retrieves a single device (by device_id) with its child clients.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_devices", + ":device_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "device_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "1232e373-d2e1-4d4f-b54c-3f2b19bccef7", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_devices", + ":device_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "device_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"device\": {\n \"createdAt\": \"\",\n \"deviceId\": \"\",\n \"deviceOs\": \"\",\n \"deviceSurface\": \"\",\n \"displayName\": \"\",\n \"status\": \"PERSONAL_DEVICE_STATUS_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "ae9ec690-34b4-4be0-b470-91b8d62386dc", + "name": "NOTE: Only updates devices owned by the current user.", + "request": { + "name": "NOTE: Only updates devices owned by the current user.", + "description": { + "content": "UpdateDevice renames one of the calling user's devices. Use the update mask\n to specify which fields to change; only the display name is mutable, so\n device identity and keys never change.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_devices", + ":device_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "device_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"device\": {\n \"displayName\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "b166f852-bba7-4b58-800e-967a0bb06654", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_devices", + ":device_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "device_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"device\": {\n \"displayName\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"device\": {\n \"createdAt\": \"\",\n \"deviceId\": \"\",\n \"deviceOs\": \"\",\n \"deviceSurface\": \"\",\n \"displayName\": \"\",\n \"status\": \"PERSONAL_DEVICE_STATUS_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "clients", + "description": "", + "item": [ + { + "id": "a13c5ccc-fff1-43c5-8147-b359e2267d7b", + "name": "List Device Clients", + "request": { + "name": "List Device Clients", + "description": { + "content": "ListDeviceClients returns the app clients registered on a device, one page at\n a time. A device can accrue many app clients over time, so the clients are\n served from this dedicated paginated endpoint rather than inlined on the\n device.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_devices", + ":device_id", + "clients" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "device_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "fdaadfb0-3809-4441-b3bf-a256370d93e0", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_devices", + ":device_id", + "clients" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "device_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"clients\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "1c1e249e-ae48-42ad-b118-12782f356053", + "name": "Revoke Device Client", + "request": { + "name": "Revoke Device Client", + "description": { + "content": "RevokeDeviceClient revokes a single app client on a device: it removes that\n client, leaving the device and its other clients intact.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_devices", + ":device_id", + "clients", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "device_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "fbdf790e-6dfd-4766-8291-06fd2ddb5a5f", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "personal_devices", + ":device_id", + "clients", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "device_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + } + ] + }, + { + "name": "roles", + "description": "", + "item": [ + { + "id": "cf633a5e-bb09-408a-a103-973f8a2bcdb7", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List all roles for the current user.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "roles" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "89904367-69d8-44cc-b222-f89c782e46d0", + "name": "The ListRolesResponse message contains a list of results and a nextPageToken if applicable.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "roles" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"name\": \"\",\n \"permissions\": [\n \"\",\n \"\"\n ],\n \"serviceRoles\": null,\n \"systemApiOnly\": \"\",\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"name\": \"\",\n \"permissions\": [\n \"\",\n \"\"\n ],\n \"serviceRoles\": [\n \"\",\n \"\"\n ],\n \"systemApiOnly\": \"\",\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{role_id}", + "description": "", + "item": [ + { + "id": "955b5e9d-3062-4307-b7d6-207c18f57734", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get a role by id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "roles", + ":role_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "role_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "dcb90668-6ee8-469c-ad7c-16fccc450f7e", + "name": "The GetRolesResponse message contains the retrieved role.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "roles", + ":role_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"role\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"name\": \"\",\n \"permissions\": [\n \"\",\n \"\"\n ],\n \"serviceRoles\": null,\n \"systemApiOnly\": \"\",\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "1aede71e-4720-42d7-99a0-8ddf4b460f47", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update a role by passing a Role object.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "roles", + ":role_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "role_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"role\": {\n \"displayName\": \"\",\n \"permissions\": null,\n \"serviceRoles\": null\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "27fecd02-7245-4bb6-bad9-7a61a832836a", + "name": "UpdateRolesResponse is the response message containing the updated role.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "roles", + ":role_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"role\": {\n \"displayName\": \"\",\n \"permissions\": null,\n \"serviceRoles\": null\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"role\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"name\": \"\",\n \"permissions\": [\n \"\",\n \"\"\n ],\n \"serviceRoles\": [\n \"\",\n \"\"\n ],\n \"systemApiOnly\": \"\",\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "tunnel", + "description": "", + "item": [ + { + "name": "bridges", + "description": "", + "item": [ + { + "id": "fb0f06d5-8c0f-4564-b148-835c8220f0bb", + "name": "List Bridges", + "request": { + "name": "List Bridges", + "description": { + "content": "ListBridges returns the tenant's bridges, paginated, each with live\n appliance status.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "tunnel", + "bridges" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "bb8d3e01-f0bb-4034-9c38-975daaa1082b", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "tunnel", + "bridges" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"appliance\": {\n \"announcedServiceCount\": \"\",\n \"lastSeenAt\": \"\",\n \"links\": null,\n \"status\": \"TUNNEL_APPLIANCE_STATUS_DISCONNECTED\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"appliance\": {\n \"announcedServiceCount\": \"\",\n \"lastSeenAt\": \"\",\n \"links\": null,\n \"status\": \"TUNNEL_APPLIANCE_STATUS_NEVER_CONNECTED\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "da12f128-ba5b-43a5-be08-adcd4064f566", + "name": "Create Bridge", + "request": { + "name": "Create Bridge", + "description": { + "content": "CreateBridge creates a bridge with no credentials. Use\n CreateBridgeCredential to mint the first credential.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "tunnel", + "bridges" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"description\": \"\",\n \"displayName\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "abc277f1-f57a-43d5-8c74-a49e7f4b6882", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "tunnel", + "bridges" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"description\": \"\",\n \"displayName\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"bridge\": {\n \"appliance\": {\n \"announcedServiceCount\": \"\",\n \"lastSeenAt\": \"\",\n \"links\": [\n {\n \"avgRtt\": \"\",\n \"leaseExpiresAt\": \"\",\n \"relayAddress\": \"\",\n \"relayId\": \"\"\n },\n {\n \"avgRtt\": \"\",\n \"leaseExpiresAt\": \"\",\n \"relayAddress\": \"\",\n \"relayId\": \"\"\n }\n ],\n \"status\": \"TUNNEL_APPLIANCE_STATUS_NEVER_CONNECTED\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{bridge_id}", + "description": "", + "item": [ + { + "name": "announced_services", + "description": "", + "item": [ + { + "id": "9a97af82-fc3f-4b9f-aa00-e297085f7bc4", + "name": "List Bridge Announced Services", + "request": { + "name": "List Bridge Announced Services", + "description": { + "content": "ListBridgeAnnouncedServices returns the services the appliance is\n currently announcing for this bridge. Read live from the tunnel store;\n empty when no appliance is connected.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "tunnel", + "bridges", + ":bridge_id", + "announced_services" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "bridge_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "8c870c2d-e935-4b43-96b4-3df3190bd6cc", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "tunnel", + "bridges", + ":bridge_id", + "announced_services" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "bridge_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"name\": \"\",\n \"port\": \"\",\n \"servicePath\": \"\",\n \"serviceType\": \"\",\n \"transportType\": \"\"\n },\n {\n \"name\": \"\",\n \"port\": \"\",\n \"servicePath\": \"\",\n \"serviceType\": \"\",\n \"transportType\": \"\"\n }\n ]\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "credentials", + "description": "", + "item": [ + { + "id": "c9b36c06-6c31-412e-963c-c9950ecf0ff5", + "name": "List Bridge Credentials", + "request": { + "name": "List Bridge Credentials", + "description": { + "content": "ListBridgeCredentials returns every credential (active + revoked) for\n one bridge.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "tunnel", + "bridges", + ":bridge_id", + "credentials" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "bridge_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "255d76b2-9dad-41e9-8622-b5ae4648830a", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "tunnel", + "bridges", + ":bridge_id", + "credentials" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "bridge_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "2cc0986e-71d8-4071-bb7c-c3bf4abcbd6c", + "name": "Create Bridge Credential", + "request": { + "name": "Create Bridge Credential", + "description": { + "content": "CreateBridgeCredential mints a credential for a bridge. If the bridge\n already has an active credential, it is revoked. The plaintext\n client_secret is returned exactly once on the response.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "tunnel", + "bridges", + ":bridge_id", + "credentials" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "bridge_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "5588aa94-2bac-4f4c-81f2-f13d9d1d0805", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "tunnel", + "bridges", + ":bridge_id", + "credentials" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "bridge_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"credential\": {\n \"bridgeId\": \"\",\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"createdAt\": \"\",\n \"credentialStatus\": \"TUNNEL_CREDENTIAL_STATUS_REVOKED\",\n \"deletedAt\": \"\",\n \"expiresTime\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"revokedAt\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "e50abaf3-675d-4c8e-bc8c-6721aa8bb5d2", + "name": "Delete Bridge", + "request": { + "name": "Delete Bridge", + "description": { + "content": "DeleteBridge hard-deletes a bridge and every credential it owns.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "tunnel", + "bridges", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "a144d2ef-3db5-4452-b53e-3c1e0e2bc1e4", + "name": "Empty response body. Status code indicates success.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "tunnel", + "bridges", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "8ce9545f-1819-4f05-b066-c6cf54f27e05", + "name": "Get Bridge", + "request": { + "name": "Get Bridge", + "description": { + "content": "GetBridge returns a bridge by id with live appliance status.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "tunnel", + "bridges", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "ae4bfc66-2a27-4487-8696-ac5b5585fcc6", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "tunnel", + "bridges", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"bridge\": {\n \"appliance\": {\n \"announcedServiceCount\": \"\",\n \"lastSeenAt\": \"\",\n \"links\": null,\n \"status\": \"TUNNEL_APPLIANCE_STATUS_NEVER_CONNECTED\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "d470e7b4-fda1-496b-8b0c-85e34cabdffd", + "name": "Update Bridge", + "request": { + "name": "Update Bridge", + "description": { + "content": "UpdateBridge patches a bridge's editable metadata (display_name,\n description). Credentials are not affected.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "tunnel", + "bridges", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "PATCH", + "body": { + "mode": "raw", + "raw": "{\n \"description\": \"\",\n \"displayName\": \"\",\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "f3bdd18b-834f-4e06-93bc-0d547a5b0be5", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "tunnel", + "bridges", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "PATCH", + "body": { + "mode": "raw", + "raw": "{\n \"description\": \"\",\n \"displayName\": \"\",\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"bridge\": {\n \"appliance\": {\n \"announcedServiceCount\": \"\",\n \"lastSeenAt\": \"\",\n \"links\": null,\n \"status\": \"TUNNEL_APPLIANCE_STATUS_DISCONNECTED\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "credentials", + "description": "", + "item": [ + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "25e7f2c5-3b00-4a5a-92d7-e4c96930e348", + "name": "Revoke Bridge Credential", + "request": { + "name": "Revoke Bridge Credential", + "description": { + "content": "RevokeBridgeCredential soft-revokes one credential by id. The row is\n retained for audit; token mints with this credential are rejected.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "iam", + "tunnel", + "credentials", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "19601ffa-f3d9-43fa-9b46-5deaa055198c", + "name": "Empty response body. Status code indicates success.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "iam", + "tunnel", + "credentials", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + } + ] + }, + { + "name": "llm-gateway", + "description": "", + "item": [ + { + "name": "keys", + "description": "", + "item": [ + { + "id": "ec07b099-dd71-435f-bbb5-45e05a9ed667", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "Invokes the c1.api.llm_gateway.v1.GatewayKeyService.List method.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "llm-gateway", + "keys" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "4cca9fe7-96d5-4a7b-b9fe-2a45f549f53a", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "llm-gateway", + "keys" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "a9d6b170-43b1-4646-bf58-60c732ddb4a2", + "name": "Mint", + "request": { + "name": "Mint", + "description": { + "content": "Invokes the c1.api.llm_gateway.v1.GatewayKeyService.Mint method.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "llm-gateway", + "keys" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "0ac0d543-6f46-4fee-8b2a-d98bbbfa1bba", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "llm-gateway", + "keys" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"gatewayKey\": {\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"keyPrefix\": \"\",\n \"revokedAt\": \"\",\n \"updatedAt\": \"\"\n },\n \"plaintextKey\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "ce123c7d-d21b-45c6-b829-0c246a352b5f", + "name": "Revoke", + "request": { + "name": "Revoke", + "description": { + "content": "Invokes the c1.api.llm_gateway.v1.GatewayKeyService.Revoke method.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "llm-gateway", + "keys", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "66eada40-92e9-498c-97a6-6818a7807b14", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "llm-gateway", + "keys", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"gatewayKey\": {\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"keyPrefix\": \"\",\n \"revokedAt\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "provider-credentials", + "description": "", + "item": [ + { + "name": "{slot_id}", + "description": "", + "item": [ + { + "id": "41150cd7-85fd-44a0-a3cc-f6d173bb8292", + "name": "Clear", + "request": { + "name": "Clear", + "description": { + "content": "Invokes the c1.api.llm_gateway.v1.ProviderCredentialService.Clear method.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "llm-gateway", + "provider-credentials", + ":slot_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "slot_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "d6e130fb-e6d8-41be-88fe-4e877a6dfa92", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "llm-gateway", + "provider-credentials", + ":slot_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "slot_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"credential\": {\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"headerStyle\": \"PROVIDER_CREDENTIAL_HEADER_STYLE_UNSPECIFIED\",\n \"keyPrefix\": \"\",\n \"revokedAt\": \"\",\n \"slotId\": \"\",\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "4ec65fc5-7d40-4cea-98be-528c4d110ce1", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Invokes the c1.api.llm_gateway.v1.ProviderCredentialService.Get method.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "llm-gateway", + "provider-credentials", + ":slot_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "slot_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "9eb8bc7b-458a-42a2-8013-3bd7f0980d6b", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "llm-gateway", + "provider-credentials", + ":slot_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "slot_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"credential\": {\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"headerStyle\": \"PROVIDER_CREDENTIAL_HEADER_STYLE_X_API_KEY\",\n \"keyPrefix\": \"\",\n \"revokedAt\": \"\",\n \"slotId\": \"\",\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "e3b8fbe8-eca9-42fa-bd8a-28008c3fcadc", + "name": "Set", + "request": { + "name": "Set", + "description": { + "content": "Invokes the c1.api.llm_gateway.v1.ProviderCredentialService.Set method.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "llm-gateway", + "provider-credentials", + ":slot_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "slot_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"apiKey\": \"\",\n \"displayName\": \"\",\n \"headerStyle\": \"PROVIDER_CREDENTIAL_HEADER_STYLE_X_API_KEY\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "ad9dd608-127a-4ee1-ba36-df722cca48dc", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "llm-gateway", + "provider-credentials", + ":slot_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "slot_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"apiKey\": \"\",\n \"displayName\": \"\",\n \"headerStyle\": \"PROVIDER_CREDENTIAL_HEADER_STYLE_X_API_KEY\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"credential\": {\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"headerStyle\": \"PROVIDER_CREDENTIAL_HEADER_STYLE_UNSPECIFIED\",\n \"keyPrefix\": \"\",\n \"revokedAt\": \"\",\n \"slotId\": \"\",\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + }, + { + "name": "local-directory-configs", + "description": "", + "item": [ + { + "id": "aac470e9-8359-40f8-abb8-9fb0a22097bd", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List local directory configs for the tenant.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "local-directory-configs" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "1dfb93d6-1f36-4826-a77b-34dc1d338655", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "local-directory-configs" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "5bb98551-7872-433e-8dc4-8f3476d29941", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create a new local directory config backed by an existing App.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "local-directory-configs" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appId\": \"\",\n \"displayName\": \"\",\n \"allowSelfRegistration\": \"\",\n \"defaultProfileTypeId\": \"\",\n \"invitationTtl\": \"\",\n \"isDefault\": \"\",\n \"onboardingFlowId\": \"\",\n \"organizationId\": \"\",\n \"selfRegistrationDomains\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "8b90a588-0747-42dd-8f7b-11e342c9505c", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "local-directory-configs" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appId\": \"\",\n \"displayName\": \"\",\n \"allowSelfRegistration\": \"\",\n \"defaultProfileTypeId\": \"\",\n \"invitationTtl\": \"\",\n \"isDefault\": \"\",\n \"onboardingFlowId\": \"\",\n \"organizationId\": \"\",\n \"selfRegistrationDomains\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"localDirectoryConfig\": {\n \"allowSelfRegistration\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"defaultProfileTypeId\": \"\",\n \"displayName\": \"\",\n \"invitationTtl\": \"\",\n \"isDefault\": \"\",\n \"onboardingFlowId\": \"\",\n \"organizationId\": \"\",\n \"selfRegistrationDomains\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{app_id}", + "description": "", + "item": [ + { + "id": "602d5e14-e446-4ead-bd69-6388edffd2fe", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete a local directory config. Does not delete the underlying App.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "local-directory-configs", + ":app_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "7b5b56c9-ceba-4fca-a970-a57705a7ee00", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "local-directory-configs", + ":app_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "a0b511e1-299b-41f6-b919-3f5d260ea453", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get a local directory config by app_id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "local-directory-configs", + ":app_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "e32e6fb5-6d99-4094-a1ed-df3616abc19b", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "local-directory-configs", + ":app_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"localDirectoryConfig\": {\n \"allowSelfRegistration\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"defaultProfileTypeId\": \"\",\n \"displayName\": \"\",\n \"invitationTtl\": \"\",\n \"isDefault\": \"\",\n \"onboardingFlowId\": \"\",\n \"organizationId\": \"\",\n \"selfRegistrationDomains\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "f7a055aa-0b6e-4ae4-9ced-7221caa00527", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update a local directory config.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "local-directory-configs", + ":app_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"localDirectoryConfig\": {\n \"allowSelfRegistration\": \"\",\n \"defaultProfileTypeId\": \"\",\n \"displayName\": \"\",\n \"invitationTtl\": \"\",\n \"isDefault\": \"\",\n \"onboardingFlowId\": \"\",\n \"organizationId\": \"\",\n \"selfRegistrationDomains\": null\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "0c091d44-9fbd-4cba-aaee-c51ff976d9c4", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "local-directory-configs", + ":app_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"localDirectoryConfig\": {\n \"allowSelfRegistration\": \"\",\n \"defaultProfileTypeId\": \"\",\n \"displayName\": \"\",\n \"invitationTtl\": \"\",\n \"isDefault\": \"\",\n \"onboardingFlowId\": \"\",\n \"organizationId\": \"\",\n \"selfRegistrationDomains\": null\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"localDirectoryConfig\": {\n \"allowSelfRegistration\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"defaultProfileTypeId\": \"\",\n \"displayName\": \"\",\n \"invitationTtl\": \"\",\n \"isDefault\": \"\",\n \"onboardingFlowId\": \"\",\n \"organizationId\": \"\",\n \"selfRegistrationDomains\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "{directory_app_id}", + "description": "", + "item": [ + { + "name": "invitations", + "description": "", + "item": [ + { + "id": "c5f4ef0e-e0ba-4098-96ac-fddaccde7dba", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create (send) a new invitation to a user.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "local-directory-configs", + ":directory_app_id", + "invitations" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "directory_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"email\": \"\",\n \"displayName\": \"\",\n \"initialRoleIds\": [\n \"\",\n \"\"\n ],\n \"jobId\": \"\",\n \"onboardingFlowId\": \"\",\n \"purpose\": \"\",\n \"sponsorUserId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "f5864a70-79e0-4924-b69d-e7af9d659064", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "local-directory-configs", + ":directory_app_id", + "invitations" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "directory_app_id" } ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -22465,50 +48589,506 @@ "value": "Bearer " } ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"email\": \"\",\n \"displayName\": \"\",\n \"initialRoleIds\": [\n \"\",\n \"\"\n ],\n \"jobId\": \"\",\n \"onboardingFlowId\": \"\",\n \"purpose\": \"\",\n \"sponsorUserId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"invitation\": {\n \"acceptedAt\": \"\",\n \"createdAt\": \"\",\n \"createdUserId\": \"\",\n \"directoryAppId\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"initialRoleIds\": null,\n \"invitedByUserId\": \"\",\n \"jobId\": \"\",\n \"onboardingFlowId\": \"\",\n \"purpose\": \"\",\n \"sponsorUserId\": \"\",\n \"status\": \"LOCAL_INVITATION_STATUS_ACCEPTED\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "f2146e46-73df-4af8-9545-18bab0217af9", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get a specific invitation by id.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "local-directory-configs", + ":directory_app_id", + "invitations", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "directory_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], "method": "GET", - "body": {} + "body": {}, + "auth": null + }, + "response": [ + { + "id": "11f74adc-ed60-4057-9712-ebb3f0c6de0a", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "local-directory-configs", + ":directory_app_id", + "invitations", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "directory_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"invitation\": {\n \"acceptedAt\": \"\",\n \"createdAt\": \"\",\n \"createdUserId\": \"\",\n \"directoryAppId\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"initialRoleIds\": null,\n \"invitedByUserId\": \"\",\n \"jobId\": \"\",\n \"onboardingFlowId\": \"\",\n \"purpose\": \"\",\n \"sponsorUserId\": \"\",\n \"status\": \"LOCAL_INVITATION_STATUS_REVOKED\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "revoke", + "description": "", + "item": [ + { + "id": "463a0222-9f8d-4ecb-8b97-eacd251acaf1", + "name": "Revoke", + "request": { + "name": "Revoke", + "description": { + "content": "Revoke a pending invitation.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "local-directory-configs", + ":directory_app_id", + "invitations", + ":id", + "revoke" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "directory_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "bdc276d4-84cb-4546-ad74-ee503df33c29", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "local-directory-configs", + ":directory_app_id", + "invitations", + ":id", + "revoke" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "directory_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"invitation\": {\n \"acceptedAt\": \"\",\n \"createdAt\": \"\",\n \"createdUserId\": \"\",\n \"directoryAppId\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"initialRoleIds\": null,\n \"invitedByUserId\": \"\",\n \"jobId\": \"\",\n \"onboardingFlowId\": \"\",\n \"purpose\": \"\",\n \"sponsorUserId\": \"\",\n \"status\": \"LOCAL_INVITATION_STATUS_REVOKED\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + } + ] + } + ] + }, + { + "name": "mcp_server_catalog", + "description": "", + "item": [ + { + "id": "36890961-cb01-461a-bf30-392b7e3f6d24", + "name": "List Catalog", + "request": { + "name": "List Catalog", + "description": { + "content": "ListCatalog returns all available MCP server catalog entries.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "mcp_server_catalog" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "query", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "db2744b1-709e-4193-9166-adfaf7d5c5b9", + "name": "MCPServerServiceListCatalogResponse returns a paginated list of catalog entries.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "mcp_server_catalog" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\"\n },\n {\n \"@type\": \"\",\n \"key_0\": 9587\n }\n ],\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 402,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 674,\n \"key_2\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n }\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 9134.140520464953\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 3354.336715792803,\n \"key_1\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "query", + "value": "" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" } - ] + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, { - "name": "{id}", + "name": "{catalog_id}", "description": "", "item": [ { - "id": "4c1261c5-ea8e-46c5-b0ed-ef0c18c7bb7f", - "name": "Delete", + "id": "16f58e85-c0bc-4ad5-96c9-944a088a7cac", + "name": "Get Catalog", "request": { - "name": "Delete", + "name": "Get Catalog", "description": { - "content": "Delete a catalog.", + "content": "GetCatalog retrieves a single MCP server catalog entry by ID.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "catalogs", - ":id" + "mcp_server_catalog", + ":catalog_id" ], "host": [ "{{baseUrl}}" @@ -22518,7 +49098,7 @@ { "type": "any", "value": "", - "key": "id", + "key": "catalog_id", "disabled": false, "description": { "content": "(Required) ", @@ -22527,6 +49107,241 @@ } ] }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "d5cc2352-cf34-4eb6-b936-7ceab467ac6b", + "name": "MCPServerServiceGetCatalogResponse returns a single catalog entry.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "mcp_server_catalog", + ":catalog_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "catalog_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"catalogEntry\": {\n \"authModes\": null,\n \"baseUrl\": \"\",\n \"channel\": \"MCP_SERVER_CATALOG_CHANNEL_STABLE\",\n \"configSchema\": {\n \"fields\": null\n },\n \"defaultAuthMethod\": \"MCP_SERVER_AUTH_METHOD_UNSPECIFIED\",\n \"defaultAuthorizeUrl\": \"\",\n \"defaultScopes\": [\n \"\",\n \"\"\n ],\n \"defaultTokenUrl\": \"\",\n \"defaultToolPrefix\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"iconUrl\": \"\",\n \"id\": \"\",\n \"maturity\": \"MCP_SERVER_CATALOG_MATURITY_STUB\",\n \"scope\": \"MCP_SERVER_CATALOG_SCOPE_EXCLUDED\",\n \"serviceName\": \"\",\n \"stable\": \"\",\n \"supportedOauth2Modes\": null\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "mcp_server_connections", + "description": "", + "item": [ + { + "id": "a07b8bb7-1700-4b86-b7ab-6a3bee20644e", + "name": "List Connections", + "request": { + "name": "List Connections", + "description": { + "content": "ListConnections returns per-user MCP servers the calling user can\n connect to, filtered to apps where the user has an account. Covers\n OAuth2 authorization-code passthrough as well as bearer-token /\n custom-header per-user methods. Includes per-user connection status.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "mcp_server_connections" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "9eabb4f7-bbf6-4cd7-a25e-51deb7d08732", + "name": "MCPServerServiceListConnectionsResponse returns a list of passthrough-mode\n MCP servers with per-user connection status.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "mcp_server_connections" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "mcp_servers", + "description": "", + "item": [ + { + "name": "discover_oidc", + "description": "", + "item": [ + { + "id": "a22b48ac-78fe-4843-9407-a87a0c069145", + "name": "Discover Oidc Endpoints", + "request": { + "name": "Discover Oidc Endpoints", + "description": { + "content": "DiscoverOIDCEndpoints fetches the OpenID Connect discovery document for an issuer\n and returns the authorization, token, and supported scopes.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "mcp_servers", + "discover_oidc" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, "header": [ { "key": "Content-Type", @@ -22537,10 +49352,10 @@ "value": "application/json" } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"issuerUrl\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -22552,32 +49367,21 @@ }, "response": [ { - "id": "9560053d-8f7e-49f3-bc7a-c4cf57e49529", - "name": "Empty response with a status code indicating success.", + "id": "f3b38503-067b-46c1-9b93-2842f74ddeb7", + "name": "MCPServerServiceDiscoverOIDCEndpointsResponse returns the discovered OAuth2 endpoints.", "originalRequest": { "url": { "path": [ "api", "v1", - "catalogs", - ":id" + "mcp_servers", + "discover_oidc" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ { @@ -22597,10 +49401,10 @@ "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"issuerUrl\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -22617,7 +49421,7 @@ "value": "application/json" } ], - "body": "{}", + "body": "{\n \"authorizationEndpoint\": \"\",\n \"codeChallengeMethodsSupported\": [\n \"\",\n \"\"\n ],\n \"scopesSupported\": null,\n \"tokenEndpoint\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -22626,39 +49430,185 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "test_connection", + "description": "", + "item": [ { - "id": "b0e1f3a5-f9b7-478e-834e-89e3e3addd23", - "name": "Get", + "id": "74f3fa99-a00a-4615-8f27-c0ccd2dae2e3", + "name": "Test Connection", "request": { - "name": "Get", + "name": "Test Connection", "description": { - "content": "Get a catalog.", + "content": "TestConnection probes an MCP server with the\n supplied URL + transport + plaintext credentials and reports\n whether a real MCP initialize + tools/list succeeded.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "catalogs", - ":id" + "mcp_servers", + "test_connection" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalConfig\": {\n \"basicAuth\": {\n \"password\": \"\",\n \"username\": \"\"\n },\n \"bearerToken\": {\n \"token\": \"\"\n },\n \"customHeader\": {\n \"headerName\": \"\",\n \"headerValue\": \"\"\n },\n \"none\": {},\n \"oauth2\": {\n \"authorizeUrl\": \"\",\n \"clientId\": \"\",\n \"clientIdMode\": \"MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_UNSPECIFIED\",\n \"clientSecret\": \"\",\n \"codeChallengeMethodsSupported\": null,\n \"extraAuthorizeParams\": {\n \"key_0\": \"\"\n },\n \"extraTokenParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"issuerUrl\": \"\",\n \"jwtAudience\": \"\",\n \"jwtIssuer\": \"\",\n \"jwtPrivateKey\": \"\",\n \"jwtSubject\": \"\",\n \"mode\": \"MCP_SERVER_AUTH_OAUTH2_MODE_CLIENT_CREDENTIALS\",\n \"pkce\": \"\",\n \"scopes\": null,\n \"scopesSupported\": [\n \"\",\n \"\"\n ],\n \"tokenEndpointAuthMethod\": \"\",\n \"tokenUrl\": \"\"\n },\n \"requireToolApproval\": \"OPTIONAL_BOOL_TRUE\",\n \"tokenSharing\": \"MCP_SERVER_TOKEN_SHARING_PER_USER\",\n \"transportType\": \"MCP_SERVER_TRANSPORT_TYPE_STREAMABLE_HTTP\",\n \"url\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "089097d4-fe8b-4c25-b689-a57e0dfe4317", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "mcp_servers", + "test_connection" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalConfig\": {\n \"basicAuth\": {\n \"password\": \"\",\n \"username\": \"\"\n },\n \"bearerToken\": {\n \"token\": \"\"\n },\n \"customHeader\": {\n \"headerName\": \"\",\n \"headerValue\": \"\"\n },\n \"none\": {},\n \"oauth2\": {\n \"authorizeUrl\": \"\",\n \"clientId\": \"\",\n \"clientIdMode\": \"MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_UNSPECIFIED\",\n \"clientSecret\": \"\",\n \"codeChallengeMethodsSupported\": null,\n \"extraAuthorizeParams\": {\n \"key_0\": \"\"\n },\n \"extraTokenParams\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"issuerUrl\": \"\",\n \"jwtAudience\": \"\",\n \"jwtIssuer\": \"\",\n \"jwtPrivateKey\": \"\",\n \"jwtSubject\": \"\",\n \"mode\": \"MCP_SERVER_AUTH_OAUTH2_MODE_CLIENT_CREDENTIALS\",\n \"pkce\": \"\",\n \"scopes\": null,\n \"scopesSupported\": [\n \"\",\n \"\"\n ],\n \"tokenEndpointAuthMethod\": \"\",\n \"tokenUrl\": \"\"\n },\n \"requireToolApproval\": \"OPTIONAL_BOOL_TRUE\",\n \"tokenSharing\": \"MCP_SERVER_TOKEN_SHARING_PER_USER\",\n \"transportType\": \"MCP_SERVER_TRANSPORT_TYPE_STREAMABLE_HTTP\",\n \"url\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"failureReason\": \"\",\n \"reachable\": \"\",\n \"toolCount\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "mcp_toolsets", + "description": "", + "item": [ + { + "name": "search", + "description": "", + "item": [ + { + "id": "3a731bf9-5a5f-409e-b368-c6d1f1c0f975", + "name": "Search Access Profiles", + "request": { + "name": "Search Access Profiles", + "description": { + "content": "SearchAccessProfiles returns the tenant's MCP toolsets (access profiles)\n across every (app_id, connector_id), filtered by a case-insensitive search\n over display_name and paginated. Backs the agent-config multi-select that\n binds toolsets to a ClawAgent.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "mcp_toolsets", + "search" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ { - "type": "any", - "value": "", - "key": "id", "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" - } + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "query", + "value": "" } - ] + ], + "variable": [] }, "header": [ { @@ -22672,32 +49622,49 @@ }, "response": [ { - "id": "e08156ff-55ce-4168-ad45-26c9200f28bc", - "name": "The request catalog management service get response returns a request catalog view with the expanded items in the expanded array indicated by the expand mask in the request.", + "id": "ab52f306-33a9-415b-bcaf-e45e80e352cf", + "name": "MCPAccessProfileServiceSearchAccessProfilesResponse returns one page of\n tenant-wide MCP access profiles.", "originalRequest": { "url": { "path": [ "api", "v1", - "catalogs", - ":id" + "mcp_toolsets", + "search" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [ + "query": [ { "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" }, - "type": "any", - "value": "", - "key": "id" + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "query", + "value": "" } - ] + ], + "variable": [] }, "header": [ { @@ -22724,7 +49691,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 5239\n },\n {\n \"@type\": \"\",\n \"key_0\": true\n }\n ],\n \"requestCatalogView\": {\n \"accessEntitlementsPath\": \"\",\n \"createdByUserPath\": \"\",\n \"memberCount\": \"\",\n \"requestCatalog\": {\n \"accessEntitlements\": [\n {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 5341,\n \"key_1\": 4602.491407845803,\n \"key_2\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 3968.8682649593375,\n \"key_1\": true,\n \"key_2\": 9726,\n \"key_3\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n }\n ],\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enrollmentBehavior\": \"REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_BYPASS_ENTITLEMENT_REQUEST_POLICY\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"published\": \"\",\n \"requestBundle\": \"\",\n \"unenrollmentBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_LEAVE_ACCESS_AS_IS\",\n \"unenrollmentEntitlementBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_ENFORCE\",\n \"updatedAt\": \"\",\n \"visibleToEveryone\": \"\"\n }\n }\n}", + "body": "{\n \"nextPageToken\": \"\",\n \"profiles\": null\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -22733,39 +49700,196 @@ "protocolProfileBehavior": { "disableBodyPruning": true } + } + ] + } + ] + }, + { + "name": "policies", + "description": "", + "item": [ + { + "id": "47503d40-5790-4662-898e-d90190ec0649", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List policies.", + "type": "text/plain" }, - { - "id": "3559c86c-786f-4da3-a3b4-2c35562b3fc0", - "name": "Update", - "request": { - "name": "Update", - "description": { - "content": "Update a catalog.", - "type": "text/plain" + "url": { + "path": [ + "api", + "v1", + "policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "f81c7430-929e-4f51-a403-58f3b1415762", + "name": "Successful response", + "originalRequest": { "url": { "path": [ "api", "v1", - "catalogs", - ":id" + "policies" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [ + "query": [ { - "type": "any", - "value": "", - "key": "id", "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" - } + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" } - ] + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_2\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": null\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 4837\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_UNSPECIFIED\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": null,\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_EMERGENCY\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "13ba306a-e01a-4ac2-9b03-5044950d9f40", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create a policy.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"description\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": null\n }\n },\n \"policyType\": \"POLICY_TYPE_CERTIFY\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": null,\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "53e873cd-6eca-4745-9c6b-bb04b7116052", + "name": "The CreatePolicyResponse message contains the created policy object.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] }, "header": [ { @@ -22775,368 +49899,117 @@ { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"catalog\": {\n \"accessEntitlements\": [\n {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"defaultValuesApplied\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 7286\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"grantPolicyId\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 310,\n \"key_1\": true,\n \"key_2\": 304.05106341489187\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"userEditedMask\": \"\"\n },\n {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"defaultValuesApplied\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"grantPolicyId\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 7150\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"userEditedMask\": \"\"\n }\n ],\n \"createdByUserId\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enrollmentBehavior\": \"REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_UNSPECIFIED\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"published\": \"\",\n \"requestBundle\": \"\",\n \"unenrollmentBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_REVOKE_UNJUSTIFIED\",\n \"unenrollmentEntitlementBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_BYPASS\",\n \"visibleToEveryone\": \"\"\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"displayName\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"description\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": null\n }\n },\n \"policyType\": \"POLICY_TYPE_CERTIFY\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": null,\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\"\n }\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - }, - "auth": null + } }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "8620e4d1-2e3f-449e-b935-623e3340529b", - "name": "The request catalog management service get response returns a request catalog view with the expanded items in the expanded array indicated by the expand mask in the request.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"catalog\": {\n \"accessEntitlements\": [\n {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"defaultValuesApplied\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 7286\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"grantPolicyId\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 310,\n \"key_1\": true,\n \"key_2\": 304.05106341489187\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"userEditedMask\": \"\"\n },\n {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"defaultValuesApplied\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"grantPolicyId\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 7150\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"userEditedMask\": \"\"\n }\n ],\n \"createdByUserId\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enrollmentBehavior\": \"REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_UNSPECIFIED\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"published\": \"\",\n \"requestBundle\": \"\",\n \"unenrollmentBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_REVOKE_UNJUSTIFIED\",\n \"unenrollmentEntitlementBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_BYPASS\",\n \"visibleToEveryone\": \"\"\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 5239\n },\n {\n \"@type\": \"\",\n \"key_0\": true\n }\n ],\n \"requestCatalogView\": {\n \"accessEntitlementsPath\": \"\",\n \"createdByUserPath\": \"\",\n \"memberCount\": \"\",\n \"requestCatalog\": {\n \"accessEntitlements\": [\n {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 5341,\n \"key_1\": 4602.491407845803,\n \"key_2\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 3968.8682649593375,\n \"key_1\": true,\n \"key_2\": 9726,\n \"key_3\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n }\n ],\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enrollmentBehavior\": \"REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_BYPASS_ENTITLEMENT_REQUEST_POLICY\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"published\": \"\",\n \"requestBundle\": \"\",\n \"unenrollmentBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_LEAVE_ACCESS_AS_IS\",\n \"unenrollmentEntitlementBehavior\": \"REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_ENFORCE\",\n \"updatedAt\": \"\",\n \"visibleToEveryone\": \"\"\n }\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "body": "{\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_CERTIFY\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyId\": \"\",\n \"policyKey\": \"\",\n \"stepKey\": \"\"\n }\n ],\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_EMERGENCY\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, { - "name": "{request_catalog_id}", + "name": "{id}", "description": "", "item": [ { - "name": "bundle_automation", - "description": "", - "item": [ - { - "id": "aaa68ad6-1876-4945-a695-a176d64e8435", - "name": "Delete Bundle Automation", - "request": { - "name": "Delete Bundle Automation", - "description": { - "content": "Delete the bundle automation rule for a catalog, stopping automatic membership syncing.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":request_catalog_id", - "bundle_automation" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "request_catalog_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "a7edcccd-eaa1-4965-8bb3-b72a9f898477", - "name": "The response message for deleting a bundle automation.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":request_catalog_id", - "bundle_automation" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "request_catalog_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "id": "c0827c42-699f-49fd-922f-fd93a6f5ab07", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete a policy by ID.", + "type": "text/plain" }, - { - "id": "6e305235-10f4-4ada-90cb-95cbe3397e67", - "name": "Get Bundle Automation", - "request": { - "name": "Get Bundle Automation", - "description": { - "content": "Get bundle automation", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":request_catalog_id", - "bundle_automation" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "request_catalog_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" + "url": { + "path": [ + "api", + "v1", + "policies", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" } - ], - "method": "GET", - "body": {}, - "auth": null + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" }, - "response": [ - { - "id": "55073235-4cdb-49f7-9c9e-2f983ec5caed", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":request_catalog_id", - "bundle_automation" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "request_catalog_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"cel\": {\n \"expression\": \"\"\n },\n \"circuitBreaker\": {\n \"removedMembersThresholdPercentage\": \"\",\n \"state\": \"CIRCUIT_BREAKER_STATE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createTasks\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disableCircuitBreaker\": \"\",\n \"enabled\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"requestCatalogId\": \"\",\n \"state\": {\n \"celEvaluation\": {\n \"errorMessage\": \"\",\n \"lastEvaluatedAt\": \"\",\n \"matchedUsers\": \"\",\n \"status\": \"BUNDLE_AUTOMATION_RUN_STATUS_UNSPECIFIED\"\n },\n \"errorMessage\": \"\",\n \"lastRunAt\": \"\",\n \"status\": \"BUNDLE_AUTOMATION_RUN_STATUS_UNSPECIFIED\"\n },\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true } }, + "auth": null + }, + "response": [ { - "id": "8ea3da18-f082-474f-9e43-3ced3afdfa45", - "name": "Set Bundle Automation", - "request": { - "name": "Set Bundle Automation", - "description": { - "content": "Create or update the bundle automation rule for a catalog that automatically syncs catalog membership.", - "type": "text/plain" - }, + "id": "78671629-f48b-4647-b557-c6610dfbd19e", + "name": "Empty response with a status code indicating success.", + "originalRequest": { "url": { "path": [ "api", "v1", - "catalogs", - ":request_catalog_id", - "bundle_automation" + "policies", + ":id" ], "host": [ "{{baseUrl}}" @@ -23144,14 +50017,14 @@ "query": [], "variable": [ { - "type": "any", - "value": "", - "key": "request_catalog_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - } + }, + "type": "any", + "value": "", + "key": "id" } ] }, @@ -23163,592 +50036,307 @@ { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], - "method": "POST", + "method": "DELETE", "body": { "mode": "raw", - "raw": "{\n \"cel\": {\n \"expression\": \"\"\n },\n \"createTasks\": \"\",\n \"disableCircuitBreaker\": \"\",\n \"enabled\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n }\n}", + "raw": "{}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - }, - "auth": null + } }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "a9489f1b-1bfd-4939-9879-64708edd4790", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":request_catalog_id", - "bundle_automation" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "request_catalog_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"cel\": {\n \"expression\": \"\"\n },\n \"createTasks\": \"\",\n \"disableCircuitBreaker\": \"\",\n \"enabled\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"cel\": {\n \"expression\": \"\"\n },\n \"circuitBreaker\": {\n \"removedMembersThresholdPercentage\": \"\",\n \"state\": \"CIRCUIT_BREAKER_STATE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createTasks\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disableCircuitBreaker\": \"\",\n \"enabled\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"requestCatalogId\": \"\",\n \"state\": {\n \"celEvaluation\": {\n \"errorMessage\": \"\",\n \"lastEvaluatedAt\": \"\",\n \"matchedUsers\": \"\",\n \"status\": \"BUNDLE_AUTOMATION_RUN_STATUS_UNSPECIFIED\"\n },\n \"errorMessage\": \"\",\n \"lastRunAt\": \"\",\n \"status\": \"BUNDLE_AUTOMATION_RUN_STATUS_UNSPECIFIED\"\n },\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "create", - "description": "", - "item": [ - { - "id": "e3e686ff-bc9a-4abf-8ab1-085994da590a", - "name": "Create Bundle Automation", - "request": { - "name": "Create Bundle Automation", - "description": { - "content": "Create a new bundle automation rule for a catalog that automatically syncs catalog membership from a query.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":request_catalog_id", - "bundle_automation", - "create" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "request_catalog_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"cel\": {\n \"expression\": \"\"\n },\n \"createTasks\": \"\",\n \"disableCircuitBreaker\": \"\",\n \"enabled\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "bfa388c0-44ef-4252-a15a-6151e349f0de", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":request_catalog_id", - "bundle_automation", - "create" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "request_catalog_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"cel\": {\n \"expression\": \"\"\n },\n \"createTasks\": \"\",\n \"disableCircuitBreaker\": \"\",\n \"enabled\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"cel\": {\n \"expression\": \"\"\n },\n \"circuitBreaker\": {\n \"removedMembersThresholdPercentage\": \"\",\n \"state\": \"CIRCUIT_BREAKER_STATE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createTasks\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disableCircuitBreaker\": \"\",\n \"enabled\": \"\",\n \"entitlements\": {\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"requestCatalogId\": \"\",\n \"state\": {\n \"celEvaluation\": {\n \"errorMessage\": \"\",\n \"lastEvaluatedAt\": \"\",\n \"matchedUsers\": \"\",\n \"status\": \"BUNDLE_AUTOMATION_RUN_STATUS_UNSPECIFIED\"\n },\n \"errorMessage\": \"\",\n \"lastRunAt\": \"\",\n \"status\": \"BUNDLE_AUTOMATION_RUN_STATUS_UNSPECIFIED\"\n },\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "9dd4c09d-e821-49a0-bbe3-348ab14eb144", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get a policy by ID.", + "type": "text/plain" }, - { - "name": "resume", - "description": "", - "item": [ + "url": { + "path": [ + "api", + "v1", + "policies", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ { - "id": "0133819f-5d7d-4104-aaef-e18f76a3b1cc", - "name": "Resume Paused Bundle Automation", - "request": { - "name": "Resume Paused Bundle Automation", - "description": { - "content": "Resume a bundle automation that was paused by the circuit breaker after detecting excessive membership changes.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":request_catalog_id", - "bundle_automation", - "resume" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "request_catalog_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "ef700cd5-347a-4947-a86e-b9500ba31784", - "name": "The response message for resuming a paused bundle automation.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":request_catalog_id", - "bundle_automation", - "resume" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "request_catalog_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" } } ] }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ { - "name": "run", - "description": "", - "item": [ - { - "id": "8b9df9e9-a995-4383-b4b8-52b4b1c891f7", - "name": "Force Run Bundle Automation", - "request": { - "name": "Force Run Bundle Automation", + "id": "dc3a59dd-4571-4027-947a-e72510ffe73b", + "name": "The GetPolicyResponse message contains the policy object.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "policies", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { "description": { - "content": "Trigger an immediate execution of a catalog's bundle automation, bypassing the normal schedule.", + "content": "Added as a part of security scheme: bearer", "type": "text/plain" }, - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":request_catalog_id", - "bundle_automation", - "run" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "request_catalog_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"refs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": null\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 3731,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_2\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": null\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_UNSPECIFIED\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyId\": \"\",\n \"policyKey\": \"\",\n \"stepKey\": \"\"\n }\n ],\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_EMERGENCY\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "2cdd4f64-e50d-4aa3-b73d-3db0d2edafe7", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update a policy by providing a policy object and an update mask.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "policies", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_ACCESS_REQUEST\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyId\": \"\",\n \"policyKey\": \"\",\n \"stepKey\": \"\"\n }\n ],\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_EMERGENCY\"\n }\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "cc0c7598-824b-42d5-9ef6-e5b9a17d658d", + "name": "The UpdatePolicyResponse message contains the updated policy object.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "policies", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ { - "id": "4d6459bc-ee66-4f3f-a56f-5c8ae602098b", - "name": "The response message for triggering a bundle automation run.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "catalogs", - ":request_catalog_id", - "bundle_automation", - "run" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "request_catalog_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"refs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_ACCESS_REQUEST\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyId\": \"\",\n \"policyKey\": \"\",\n \"stepKey\": \"\"\n }\n ],\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_EMERGENCY\"\n }\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true } } - ] + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": null\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_CERTIFY\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyId\": \"\",\n \"policyKey\": \"\",\n \"stepKey\": \"\"\n }\n ],\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } ] - } - ] - }, - { - "name": "connectorcatalog", - "description": "", - "item": [ + }, { - "id": "4ced30b2-3aa1-4469-b655-af2aa8f29e53", - "name": "Configuration Schema", - "request": { - "name": "Configuration Schema", - "description": { - "content": "Return the configuration schema describing the fields required to set up a connector of the specified type.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "connectorcatalog" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appId\": \"\",\n \"catalogId\": \"\",\n \"connectorId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "name": "test-account-provision-policy", + "description": "", + "item": [ { - "id": "00eaa169-4c81-4e73-a72b-605b4f633a28", - "name": "ConnectorCatalogServiceConfigurationSchemaResponse is the response containing the connector's configuration schema.", - "originalRequest": { + "id": "ae758b2a-d6b7-449f-8b17-78d329451ab1", + "name": "Test", + "request": { + "name": "Test", + "description": { + "content": "Test an account provision policy by evaluating a CEL expression and returning the computed result.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "connectorcatalog" + "policies", + "test-account-provision-policy" ], "host": [ "{{baseUrl}}" @@ -23764,66 +50352,234 @@ { "key": "Accept", "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"cel\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "b8581176-0716-4e45-862d-0cb87c540b22", + "name": "TestAccountProvisionPolicyResponse is the response for testing an account provision policy.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "policies", + "test-account-provision-policy" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"cel\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, - { + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"type\": \"\",\n \"value\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "validate", + "description": "", + "item": [ + { + "name": "cel", + "description": "", + "item": [ + { + "id": "ae222ad2-bf7d-41c4-885d-5f4530ec8afa", + "name": "Validate Cel", + "request": { + "name": "Validate Cel", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "Validate policies", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appId\": \"\",\n \"catalogId\": \"\",\n \"connectorId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + "url": { + "path": [ + "api", + "v1", + "policies", + "validate", + "cel" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"text\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "5dbd4f05-1c98-4f56-b472-eb18f56e4992", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "policies", + "validate", + "cel" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"text\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"markers\": [\n {\n \"endColumn\": \"\",\n \"endLineNumber\": \"\",\n \"message\": \"\",\n \"severity\": \"INFO\",\n \"startColumn\": \"\",\n \"startLineNumber\": \"\"\n },\n {\n \"endColumn\": \"\",\n \"endLineNumber\": \"\",\n \"message\": \"\",\n \"severity\": \"INFO\",\n \"startColumn\": \"\",\n \"startLineNumber\": \"\"\n }\n ]\n}", + "cookie": [], + "_postman_previewlanguage": "json" } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"formSchema\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"schema\": {\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fieldNames\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fields\": [\n {\n \"additionalPlaceholder\": \"\",\n \"checkbox\": {\n \"checked\": \"\"\n },\n \"dependsOnFields\": [\n \"\"\n ],\n \"displayName\": \"\",\n \"helpUrl\": \"\",\n \"import\": {\n \"allowedExtensions\": [\n \"\"\n ],\n \"secret\": \"\",\n \"valueValidator\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n }\n },\n \"keyValue\": {\n \"secret\": \"\",\n \"supportsFileUpload\": \"\"\n },\n \"name\": \"\",\n \"oauth2\": {},\n \"options\": {},\n \"placeholder\": \"\",\n \"postCreate\": \"\",\n \"random\": {\n \"length\": \"\"\n },\n \"readOnly\": {},\n \"secret\": {},\n \"select\": {\n \"items\": [\n {\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ]\n },\n \"str\": {\n \"secret\": \"\",\n \"valueValidator\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n }\n },\n \"strList\": {\n \"valueValidator\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n }\n },\n \"stringMap\": {\n \"optional\": \"\"\n },\n \"text\": {\n \"secret\": \"\",\n \"valueValidator\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n }\n }\n }\n ],\n \"helpUrl\": \"\",\n \"iconUrl\": \"\",\n \"isOauth2\": \"\",\n \"requiresExternalConnector\": \"\",\n \"supportsExternalResources\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + ] } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] } ] }, { - "name": "directories", + "name": "recovery-policies", "description": "", "item": [ { - "id": "b59c9428-777d-4f22-860e-345c6f65af00", + "id": "79e346e3-6765-4f15-b1c1-25628ef3d5c0", "name": "List", "request": { "name": "List", "description": { - "content": "List directories.", + "content": "List all recovery policies in your tenant, one page at a time.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "directories" + "recovery-policies" ], "host": [ "{{baseUrl}}" @@ -23862,14 +50618,14 @@ }, "response": [ { - "id": "453e8d29-b52c-4392-83e8-ec9425286fd9", - "name": "The DirectoryServiceListResponse message contains a list of results and a nextPageToken if applicable.", + "id": "923191cd-c3dc-4be1-b002-3651161127b5", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "directories" + "recovery-policies" ], "host": [ "{{baseUrl}}" @@ -23921,7 +50677,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": true\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": \"string\"\n }\n ],\n \"list\": [\n {\n \"appPath\": \"\",\n \"directory\": {\n \"all\": {},\n \"appId\": \"\",\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"mergeConfig\": {\n \"matchCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n },\n \"updatedAt\": \"\"\n }\n },\n {\n \"appPath\": \"\",\n \"directory\": {\n \"all\": {},\n \"appId\": \"\",\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"mergeConfig\": {\n \"matchCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n },\n \"updatedAt\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -23932,19 +50688,19 @@ } }, { - "id": "0ab98ca7-9629-4f76-bcf9-8699616ca287", + "id": "4c6be58f-4b15-4cd4-9d86-df1cc75a6fd7", "name": "Create", "request": { "name": "Create", "description": { - "content": "Create a directory.", + "content": "Create a recovery policy.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "directories" + "recovery-policies" ], "host": [ "{{baseUrl}}" @@ -23965,7 +50721,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"all\": {},\n \"appId\": \"\",\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"mergeConfig\": {\n \"matchCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n }\n}", + "raw": "{\n \"displayName\": \"\",\n \"allowedRecoveryTypes\": [\n \"CREDENTIAL_TYPE_TOTP\",\n \"CREDENTIAL_TYPE_TOTP\"\n ],\n \"minRecoveryAuthLevel\": \"AUTH_LEVEL_UNSPECIFIED\",\n \"priority\": \"\",\n \"revokeOnRecovery\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -23977,14 +50733,14 @@ }, "response": [ { - "id": "b4cad643-8c27-416c-bdf7-48223f238efc", - "name": "The DirectoryServiceCreateResponse message.", + "id": "5011043b-9dea-4fd2-997f-d3570816e3ba", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "directories" + "recovery-policies" ], "host": [ "{{baseUrl}}" @@ -24013,7 +50769,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"all\": {},\n \"appId\": \"\",\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"mergeConfig\": {\n \"matchCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n }\n}", + "raw": "{\n \"displayName\": \"\",\n \"allowedRecoveryTypes\": [\n \"CREDENTIAL_TYPE_TOTP\",\n \"CREDENTIAL_TYPE_TOTP\"\n ],\n \"minRecoveryAuthLevel\": \"AUTH_LEVEL_UNSPECIFIED\",\n \"priority\": \"\",\n \"revokeOnRecovery\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -24030,7 +50786,7 @@ "value": "application/json" } ], - "body": "{\n \"directoryView\": {\n \"appPath\": \"\",\n \"directory\": {\n \"all\": {},\n \"appId\": \"\",\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"mergeConfig\": {\n \"matchCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n },\n \"updatedAt\": \"\"\n }\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": \"string\"\n },\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": \"string\"\n }\n ]\n}", + "body": "{\n \"recoveryPolicy\": {\n \"allowedRecoveryTypes\": [\n \"CREDENTIAL_TYPE_UPSTREAM_IDP\",\n \"CREDENTIAL_TYPE_RECOVERY_CODE\"\n ],\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"isBuiltin\": \"\",\n \"minRecoveryAuthLevel\": \"AUTH_LEVEL_PHR\",\n \"priority\": \"\",\n \"revokeOnRecovery\": \"\",\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -24041,24 +50797,24 @@ } }, { - "name": "{app_id}", + "name": "{id}", "description": "", "item": [ { - "id": "46c96aff-12ad-4006-8372-5033ccd4c7f2", + "id": "e54a0898-0633-41b0-b530-8ec21ed4147e", "name": "Delete", "request": { "name": "Delete", "description": { - "content": "Delete a directory by app_id.", + "content": "Delete a recovery policy by ID.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "directories", - ":app_id" + "recovery-policies", + ":id" ], "host": [ "{{baseUrl}}" @@ -24068,7 +50824,7 @@ { "type": "any", "value": "", - "key": "app_id", + "key": "id", "disabled": false, "description": { "content": "(Required) ", @@ -24102,15 +50858,15 @@ }, "response": [ { - "id": "a1ef01ac-6d5a-456f-9cfc-26ca0c4bb4bd", - "name": "Empty response with a status code indicating success.", + "id": "d3560123-9a78-4bdc-b40b-73c94f6d057c", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "directories", - ":app_id" + "recovery-policies", + ":id" ], "host": [ "{{baseUrl}}" @@ -24125,7 +50881,7 @@ }, "type": "any", "value": "", - "key": "app_id" + "key": "id" } ] }, @@ -24178,20 +50934,20 @@ } }, { - "id": "f7684654-5bd1-44c4-ae81-eee21af99690", + "id": "d329cff9-fef3-41f2-9e40-d1f7e8d5f5d9", "name": "Get", "request": { "name": "Get", "description": { - "content": "Get a directory by app_id.", + "content": "Get a recovery policy by ID.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "directories", - ":app_id" + "recovery-policies", + ":id" ], "host": [ "{{baseUrl}}" @@ -24201,7 +50957,7 @@ { "type": "any", "value": "", - "key": "app_id", + "key": "id", "disabled": false, "description": { "content": "(Required) ", @@ -24222,15 +50978,15 @@ }, "response": [ { - "id": "ee2fe9e1-e884-4756-9470-9e98605522bb", - "name": "The Directory Service Get Response returns a directory view with a directory and JSONPATHs indicating the\n location in the expanded array that items are expanded as indicated by the expand mask in the request.", + "id": "82dbb2d3-2999-4a46-95db-c3dece1314bc", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "directories", - ":app_id" + "recovery-policies", + ":id" ], "host": [ "{{baseUrl}}" @@ -24245,7 +51001,7 @@ }, "type": "any", "value": "", - "key": "app_id" + "key": "id" } ] }, @@ -24274,7 +51030,7 @@ "value": "application/json" } ], - "body": "{\n \"directoryView\": {\n \"appPath\": \"\",\n \"directory\": {\n \"all\": {},\n \"appId\": \"\",\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"mergeConfig\": {\n \"matchCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n },\n \"updatedAt\": \"\"\n }\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": \"string\"\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": 426\n }\n ]\n}", + "body": "{\n \"recoveryPolicy\": {\n \"allowedRecoveryTypes\": [\n \"CREDENTIAL_TYPE_DELEGATED_GOOGLE\",\n \"CREDENTIAL_TYPE_TOTP\"\n ],\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"isBuiltin\": \"\",\n \"minRecoveryAuthLevel\": \"AUTH_LEVEL_PHRH\",\n \"priority\": \"\",\n \"revokeOnRecovery\": \"\",\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -24285,20 +51041,20 @@ } }, { - "id": "7615aa8c-36dd-4c5c-a18e-e8165cf9637f", + "id": "33ca432e-836a-4b54-8b62-8a22af152d95", "name": "Update", "request": { "name": "Update", "description": { - "content": "Update a directory by app_id.", + "content": "Update a recovery policy. Supply the policy object and an update mask\n listing the fields to change; omitted fields are left as-is.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "directories", - ":app_id" + "recovery-policies", + ":id" ], "host": [ "{{baseUrl}}" @@ -24308,7 +51064,7 @@ { "type": "any", "value": "", - "key": "app_id", + "key": "id", "disabled": false, "description": { "content": "(Required) ", @@ -24327,10 +51083,10 @@ "value": "application/json" } ], - "method": "PUT", + "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"all\": {},\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"mergeConfig\": {\n \"matchCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n }\n}", + "raw": "{\n \"recoveryPolicy\": {\n \"allowedRecoveryTypes\": null,\n \"displayName\": \"\",\n \"minRecoveryAuthLevel\": \"AUTH_LEVEL_NONE\",\n \"priority\": \"\",\n \"revokeOnRecovery\": \"\"\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -24342,15 +51098,15 @@ }, "response": [ { - "id": "23c10580-7f3d-4b40-a77e-088561eff43d", + "id": "5344d84c-03b3-44b0-8d0d-09eebf21e30b", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "directories", - ":app_id" + "recovery-policies", + ":id" ], "host": [ "{{baseUrl}}" @@ -24365,7 +51121,7 @@ }, "type": "any", "value": "", - "key": "app_id" + "key": "id" } ] }, @@ -24387,10 +51143,256 @@ "value": "Bearer " } ], - "method": "PUT", + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"recoveryPolicy\": {\n \"allowedRecoveryTypes\": null,\n \"displayName\": \"\",\n \"minRecoveryAuthLevel\": \"AUTH_LEVEL_NONE\",\n \"priority\": \"\",\n \"revokeOnRecovery\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"recoveryPolicy\": {\n \"allowedRecoveryTypes\": [\n \"CREDENTIAL_TYPE_UNSPECIFIED\",\n \"CREDENTIAL_TYPE_RECOVERY_CODE\"\n ],\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"isBuiltin\": \"\",\n \"minRecoveryAuthLevel\": \"AUTH_LEVEL_PHRH\",\n \"priority\": \"\",\n \"revokeOnRecovery\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "reporting", + "description": "", + "item": [ + { + "name": "reports", + "description": "", + "item": [ + { + "id": "eb16efe5-1f5c-4bd3-af94-ca13b8520c1c", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List returns reports created by the caller, newest first.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "reporting", + "reports" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "93b10641-b46a-49a0-9ae2-82ae356d6fd2", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "reporting", + "reports" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"latestRunId\": \"\",\n \"latestSuccessfulRunId\": \"\",\n \"parameterSchema\": {\n \"key_0\": true,\n \"key_1\": 9967,\n \"key_2\": 8474\n },\n \"parameterValues\": null,\n \"program\": {\n \"commitId\": \"\",\n \"functionId\": \"\",\n \"plannedFromPrompt\": \"\"\n },\n \"prompt\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"latestRunId\": \"\",\n \"latestSuccessfulRunId\": \"\",\n \"parameterSchema\": {\n \"key_0\": false,\n \"key_1\": false\n },\n \"parameterValues\": null,\n \"program\": {\n \"commitId\": \"\",\n \"functionId\": \"\",\n \"plannedFromPrompt\": \"\"\n },\n \"prompt\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "7e79958e-0593-4315-86bb-c0fc0e8daf37", + "name": "Save", + "request": { + "name": "Save", + "description": { + "content": "Save promotes the program behind an already-rendered reporting surface into\n a report. The caller identifies the surface; the server resolves which\n program produced it. There is no create-from-prompt: the prompt has already\n been answered by the time a report is worth keeping.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "reporting", + "reports" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"conversationId\": \"\",\n \"displayName\": \"\",\n \"prompt\": \"\",\n \"surfaceId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "1c3936b5-5b34-4ff1-b004-8a8fbfb4c59a", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "reporting", + "reports" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"all\": {},\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"mergeConfig\": {\n \"matchCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n }\n}", + "raw": "{\n \"conversationId\": \"\",\n \"displayName\": \"\",\n \"prompt\": \"\",\n \"surfaceId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -24407,48 +51409,171 @@ "value": "application/json" } ], - "body": "{\n \"directoryView\": {\n \"appPath\": \"\",\n \"directory\": {\n \"all\": {},\n \"appId\": \"\",\n \"celExpression\": {\n \"expression\": \"\"\n },\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"mergeConfig\": {\n \"matchCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n },\n \"updatedAt\": \"\"\n }\n },\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 2161,\n \"key_1\": false\n },\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": \"string\"\n }\n ]\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - }, - { - "name": "findings", - "description": "", - "item": [ - { - "name": "{finding_id}", - "description": "", - "item": [ - { - "name": "state", - "description": "", - "item": [ + "body": "{\n \"report\": {\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"latestRunId\": \"\",\n \"latestSuccessfulRunId\": \"\",\n \"parameterSchema\": {\n \"key_0\": 4828,\n \"key_1\": 8915,\n \"key_2\": \"string\"\n },\n \"parameterValues\": {\n \"key_0\": true\n },\n \"program\": {\n \"commitId\": \"\",\n \"functionId\": \"\",\n \"plannedFromPrompt\": \"\"\n },\n \"prompt\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "cdc8e2dc-67af-4666-aa87-d9885eaf624c", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Invokes the c1.api.reporting.v1.ReportingService.Delete method.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "reporting", + "reports", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "3f6606b4-7e68-46a0-a45c-fbe341580c82", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "reporting", + "reports", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, { - "id": "9cc778d4-2b61-42a5-bdb4-ec8174d24304", - "name": "Update Finding State", + "id": "be5d34d4-55e9-4d3f-b11d-a65cea9bd9f0", + "name": "Get", "request": { - "name": "Update Finding State", + "name": "Get", "description": { - "content": "Update finding workflow state (snooze, accept risk, suppress, reopen, resolve).", + "content": "Invokes the c1.api.reporting.v1.ReportingService.Get method.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "findings", - ":finding_id", - "state" + "reporting", + "reports", + ":id" ], "host": [ "{{baseUrl}}" @@ -24458,7 +51583,7 @@ { "type": "any", "value": "", - "key": "finding_id", + "key": "id", "disabled": false, "description": { "content": "(Required) ", @@ -24468,40 +51593,27 @@ ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"acceptRisk\": {\n \"expiresAt\": \"\",\n \"justification\": \"\"\n },\n \"reopen\": {},\n \"resolve\": {\n \"reason\": \"\"\n },\n \"snooze\": {\n \"reason\": \"\",\n \"snoozeUntil\": \"\"\n },\n \"suppress\": {\n \"reason\": \"\"\n },\n \"unsuppress\": {}\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "d3c78722-7bf4-43ba-8af8-f491d8c8edaa", + "id": "a0cd3277-23f8-4b59-b350-75b59dc38948", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "findings", - ":finding_id", - "state" + "reporting", + "reports", + ":id" ], "host": [ "{{baseUrl}}" @@ -24516,15 +51628,11 @@ }, "type": "any", "value": "", - "key": "finding_id" + "key": "id" } ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -24538,17 +51646,8 @@ "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"acceptRisk\": {\n \"expiresAt\": \"\",\n \"justification\": \"\"\n },\n \"reopen\": {},\n \"resolve\": {\n \"reason\": \"\"\n },\n \"snooze\": {\n \"reason\": \"\",\n \"snoozeUntil\": \"\"\n },\n \"suppress\": {\n \"reason\": \"\"\n },\n \"unsuppress\": {}\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -24558,7 +51657,7 @@ "value": "application/json" } ], - "body": "{\n \"finding\": {\n \"appId\": \"\",\n \"appUserTarget\": {\n \"appId\": \"\",\n \"appUserId\": \"\"\n },\n \"assignedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"computedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"createdAt\": \"\",\n \"customTags\": {\n \"key_0\": \"\"\n },\n \"fingerprint\": \"\",\n \"firstObservedAt\": \"\",\n \"id\": \"\",\n \"identityUserTarget\": {\n \"identityUserId\": \"\"\n },\n \"lastObservedAt\": \"\",\n \"recurrenceCount\": \"\",\n \"remediationDescription\": \"\",\n \"resolvedAt\": \"\",\n \"riskAcceptanceExpiresAt\": \"\",\n \"riskAcceptanceJustification\": \"\",\n \"riskScore\": {\n \"originalScore\": \"\",\n \"overrideByUserId\": \"\",\n \"overrideScore\": \"\",\n \"riskFactors\": [\n {\n \"description\": \"\",\n \"name\": \"\",\n \"severity\": \"FINDING_SEVERITY_UNSPECIFIED\",\n \"weight\": \"\"\n },\n {\n \"description\": \"\",\n \"name\": \"\",\n \"severity\": \"FINDING_SEVERITY_UNSPECIFIED\",\n \"weight\": \"\"\n }\n ],\n \"score\": \"\",\n \"systemScore\": \"\"\n },\n \"serviceAccountMisclassification\": {\n \"currentAccountType\": \"APP_USER_TYPE_USER\",\n \"detectedAccountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"serviceAccountMisclassificationEvidence\": {\n \"detectionReason\": \"\"\n },\n \"severity\": \"FINDING_SEVERITY_INFO\",\n \"similarUsernameMatch\": {\n \"proposedIdentityUserId\": \"\"\n },\n \"similarUsernameMatchEvidence\": {\n \"appUsername\": \"\",\n \"identityUsername\": \"\",\n \"similarityScore\": \"\"\n },\n \"snoozeReason\": \"\",\n \"snoozeUntil\": \"\",\n \"sourceDetectorId\": \"\",\n \"state\": \"FINDING_STATE_UNSPECIFIED\",\n \"stateUpdatedById\": \"\",\n \"suppressReason\": \"\",\n \"taskId\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"latestRun\": {\n \"artifactUrl\": \"\",\n \"conversationId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"error\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"invocationId\": \"\",\n \"lineage\": null,\n \"parameterValues\": {\n \"key_0\": 6385,\n \"key_1\": 5654\n },\n \"program\": {\n \"commitId\": \"\",\n \"functionId\": \"\",\n \"plannedFromPrompt\": \"\"\n },\n \"reportId\": \"\",\n \"runByUserId\": \"\",\n \"sources\": [\n {\n \"count\": \"\",\n \"kind\": \"\",\n \"label\": \"\",\n \"ref\": \"\"\n }\n ],\n \"status\": \"REPORT_RUN_STATUS_UNSPECIFIED\",\n \"surfaceId\": \"\",\n \"surfaceSnapshot\": {\n \"catalogId\": \"\",\n \"components\": null,\n \"conversationId\": \"\",\n \"createdAt\": \"\",\n \"dataModelJson\": \"\",\n \"deletedAt\": \"\",\n \"role\": \"SURFACE_ROLE_PROMPT\",\n \"schemaVersion\": \"\",\n \"sendDataModel\": \"\",\n \"state\": \"SURFACE_LIFECYCLE_STATE_ACTIVE\",\n \"surfaceId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"tenantId\": \"\",\n \"updatedAt\": \"\",\n \"vfsId\": \"\"\n },\n \"latestSuccessfulRun\": {\n \"artifactUrl\": \"\",\n \"conversationId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"error\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"invocationId\": \"\",\n \"lineage\": {\n \"key_0\": false,\n \"key_1\": 5306,\n \"key_2\": 3969.9938301344105\n },\n \"parameterValues\": {\n \"key_0\": 3955.4997750028087,\n \"key_1\": 6528.188962877013\n },\n \"program\": {\n \"commitId\": \"\",\n \"functionId\": \"\",\n \"plannedFromPrompt\": \"\"\n },\n \"reportId\": \"\",\n \"runByUserId\": \"\",\n \"sources\": null,\n \"status\": \"REPORT_RUN_STATUS_UNSPECIFIED\",\n \"surfaceId\": \"\",\n \"surfaceSnapshot\": {\n \"catalogId\": \"\",\n \"components\": [\n {\n \"button\": {\n \"action\": {\n \"event\": {\n \"context\": {\n \"key_0\": \"\"\n },\n \"name\": \"\"\n },\n \"functionCall\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\",\n \"key_4\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n }\n },\n \"checks\": null,\n \"disabled\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"variant\": \"BUTTON_VARIANT_TEXT\"\n },\n \"c1Chart\": {\n \"artifactUrl\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"categorical\": {\n \"slices\": null,\n \"style\": \"C1_CHART_CATEGORICAL_STYLE_PIE\"\n },\n \"sources\": null,\n \"timeSeries\": {\n \"range\": {\n \"end\": \"\",\n \"label\": \"\",\n \"start\": \"\"\n },\n \"series\": [\n {\n \"displayName\": \"\",\n \"key\": \"\",\n \"points\": null\n }\n ],\n \"style\": \"C1_CHART_TIME_SERIES_STYLE_STACKED_BAR\"\n },\n \"title\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1CodeBlock\": {\n \"code\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"copyable\": \"\",\n \"language\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"title\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1ConnectorConfigForm\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"skipActionName\": \"\",\n \"submitActionName\": \"\"\n },\n \"c1ConnectorSyncDetail\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"title\": \"\"\n },\n \"c1ConnectorSyncProgress\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"title\": \"\"\n },\n \"c1DurationPicker\": {\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"maxDurationSeconds\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1MetricCards\": {\n \"cards\": null,\n \"sources\": [\n {\n \"count\": \"\",\n \"kind\": \"\",\n \"label\": \"\",\n \"ref\": \"\"\n }\n ],\n \"title\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1MsTeamsNotifications\": {},\n \"c1OnboardingPlan\": {\n \"categories\": null\n },\n \"c1OnboardingWelcome\": {\n \"recommendedCatalogId\": \"\",\n \"recommendedDisplayName\": \"\"\n },\n \"c1ResourcePicker\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"mcpToolState\": \"\",\n \"multiSelect\": \"\",\n \"resourceType\": \"\",\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1SlackNotifications\": {},\n \"c1StatusIndicator\": {\n \"message\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"showSpinner\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"status\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"toolName\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1Table\": {\n \"artifactUrl\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"columns\": null,\n \"pageSize\": \"\",\n \"rows\": [\n {\n \"cells\": null\n }\n ],\n \"sources\": null,\n \"title\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"totalRows\": \"\"\n },\n \"c1TodoList\": {\n \"items\": [\n {\n \"description\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"id\": \"\",\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"section\": \"\",\n \"status\": \"\",\n \"trailingAction\": {\n \"context\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"name\": \"\"\n },\n \"trailingActionLabel\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n }\n ],\n \"title\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"card\": {\n \"children\": {\n \"ids\": [\n \"\"\n ]\n }\n },\n \"checkBox\": {\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"choicePicker\": {\n \"choices\": null,\n \"hideLabel\": \"\",\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"multiSelect\": \"\",\n \"required\": \"\",\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"column\": {\n \"alignment\": \"\",\n \"children\": {\n \"ids\": null\n },\n \"distribution\": \"\",\n \"gap\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"dateTimeInput\": {\n \"inputType\": \"DATE_TIME_INPUT_TYPE_DATE_TIME\",\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"max\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"min\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"divider\": {\n \"orientation\": \"\"\n },\n \"id\": \"\",\n \"progressBar\": {\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"max\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"min\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"step\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"row\": {\n \"alignment\": \"\",\n \"children\": {\n \"ids\": null\n },\n \"distribution\": \"\",\n \"gap\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"slider\": {\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"max\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"min\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"step\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"text\": {\n \"markdown\": \"\",\n \"text\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"textField\": {\n \"checks\": [\n {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n }\n ],\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"placeholder\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"variant\": \"TEXT_FIELD_VARIANT_UNSPECIFIED\"\n },\n \"weight\": \"\"\n }\n ],\n \"conversationId\": \"\",\n \"createdAt\": \"\",\n \"dataModelJson\": \"\",\n \"deletedAt\": \"\",\n \"role\": \"SURFACE_ROLE_PROMPT\",\n \"schemaVersion\": \"\",\n \"sendDataModel\": \"\",\n \"state\": \"SURFACE_LIFECYCLE_STATE_COMPLETE\",\n \"surfaceId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"tenantId\": \"\",\n \"updatedAt\": \"\",\n \"vfsId\": \"\"\n },\n \"promptDrifted\": \"\",\n \"report\": {\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"latestRunId\": \"\",\n \"latestSuccessfulRunId\": \"\",\n \"parameterSchema\": null,\n \"parameterValues\": null,\n \"program\": {\n \"commitId\": \"\",\n \"functionId\": \"\",\n \"plannedFromPrompt\": \"\"\n },\n \"prompt\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -24567,29 +51666,23 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "task", - "description": "", - "item": [ + }, { - "id": "2cbf371b-2315-464c-9e8b-18b04ba7c02b", - "name": "Create Finding Task", + "id": "0e7b32d5-7892-4433-bf85-39fd37e02f75", + "name": "Update", "request": { - "name": "Create Finding Task", + "name": "Update", "description": { - "content": "Create a task for a finding.", + "content": "Invokes the c1.api.reporting.v1.ReportingService.Update method.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "findings", - ":finding_id", - "task" + "reporting", + "reports", + ":id" ], "host": [ "{{baseUrl}}" @@ -24599,7 +51692,7 @@ { "type": "any", "value": "", - "key": "finding_id", + "key": "id", "disabled": false, "description": { "content": "(Required) ", @@ -24621,7 +51714,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"policyId\": \"\"\n}", + "raw": "{\n \"displayName\": \"\",\n \"parameterValues\": null,\n \"prompt\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -24633,16 +51726,16 @@ }, "response": [ { - "id": "d5e279d8-a459-4232-850f-13668a339116", + "id": "abae6150-1681-4f2f-894e-4d317bd3144b", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "findings", - ":finding_id", - "task" + "reporting", + "reports", + ":id" ], "host": [ "{{baseUrl}}" @@ -24657,7 +51750,7 @@ }, "type": "any", "value": "", - "key": "finding_id" + "key": "id" } ] }, @@ -24682,7 +51775,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"policyId\": \"\"\n}", + "raw": "{\n \"displayName\": \"\",\n \"parameterValues\": null,\n \"prompt\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -24699,7 +51792,7 @@ "value": "application/json" } ], - "body": "{\n \"finding\": {\n \"appId\": \"\",\n \"appUserTarget\": {\n \"appId\": \"\",\n \"appUserId\": \"\"\n },\n \"assignedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"computedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"createdAt\": \"\",\n \"customTags\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"fingerprint\": \"\",\n \"firstObservedAt\": \"\",\n \"id\": \"\",\n \"identityUserTarget\": {\n \"identityUserId\": \"\"\n },\n \"lastObservedAt\": \"\",\n \"recurrenceCount\": \"\",\n \"remediationDescription\": \"\",\n \"resolvedAt\": \"\",\n \"riskAcceptanceExpiresAt\": \"\",\n \"riskAcceptanceJustification\": \"\",\n \"riskScore\": {\n \"originalScore\": \"\",\n \"overrideByUserId\": \"\",\n \"overrideScore\": \"\",\n \"riskFactors\": [\n {\n \"description\": \"\",\n \"name\": \"\",\n \"severity\": \"FINDING_SEVERITY_LOW\",\n \"weight\": \"\"\n },\n {\n \"description\": \"\",\n \"name\": \"\",\n \"severity\": \"FINDING_SEVERITY_HIGH\",\n \"weight\": \"\"\n }\n ],\n \"score\": \"\",\n \"systemScore\": \"\"\n },\n \"serviceAccountMisclassification\": {\n \"currentAccountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"detectedAccountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"serviceAccountMisclassificationEvidence\": {\n \"detectionReason\": \"\"\n },\n \"severity\": \"FINDING_SEVERITY_UNSPECIFIED\",\n \"similarUsernameMatch\": {\n \"proposedIdentityUserId\": \"\"\n },\n \"similarUsernameMatchEvidence\": {\n \"appUsername\": \"\",\n \"identityUsername\": \"\",\n \"similarityScore\": \"\"\n },\n \"snoozeReason\": \"\",\n \"snoozeUntil\": \"\",\n \"sourceDetectorId\": \"\",\n \"state\": \"FINDING_STATE_UNSPECIFIED\",\n \"stateUpdatedById\": \"\",\n \"suppressReason\": \"\",\n \"taskId\": \"\",\n \"updatedAt\": \"\"\n },\n \"taskId\": \"\"\n}", + "body": "{\n \"report\": {\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"latestRunId\": \"\",\n \"latestSuccessfulRunId\": \"\",\n \"parameterSchema\": {\n \"key_0\": \"string\"\n },\n \"parameterValues\": {\n \"key_0\": \"string\",\n \"key_1\": false\n },\n \"program\": {\n \"commitId\": \"\",\n \"functionId\": \"\",\n \"plannedFromPrompt\": \"\"\n },\n \"prompt\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -24708,387 +51801,700 @@ "protocolProfileBehavior": { "disableBodyPruning": true } + }, + { + "name": "run", + "description": "", + "item": [ + { + "id": "120a0c07-fcca-4c71-a0db-0cf081f3b3ed", + "name": "Run", + "request": { + "name": "Run", + "description": { + "content": "Run re-executes the report's pinned program against today's data. It never\n re-plans: the commit is fixed, so a rerun can only change the numbers, not\n the question. Returns as soon as the invocation starts — see the response.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "reporting", + "reports", + ":id", + "run" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "36e7c9e9-5149-4fd9-ae5c-0de8ca8170a8", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "reporting", + "reports", + ":id", + "run" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"run\": {\n \"artifactUrl\": \"\",\n \"conversationId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"error\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"invocationId\": \"\",\n \"lineage\": {\n \"key_0\": false\n },\n \"parameterValues\": {\n \"key_0\": 1799,\n \"key_1\": 6458,\n \"key_2\": 7366\n },\n \"program\": {\n \"commitId\": \"\",\n \"functionId\": \"\",\n \"plannedFromPrompt\": \"\"\n },\n \"reportId\": \"\",\n \"runByUserId\": \"\",\n \"sources\": [\n {\n \"count\": \"\",\n \"kind\": \"\",\n \"label\": \"\",\n \"ref\": \"\"\n }\n ],\n \"status\": \"REPORT_RUN_STATUS_PENDING\",\n \"surfaceId\": \"\",\n \"surfaceSnapshot\": {\n \"catalogId\": \"\",\n \"components\": [\n {\n \"button\": {\n \"action\": {\n \"event\": {\n \"context\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"name\": \"\"\n },\n \"functionCall\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n }\n },\n \"checks\": [\n {\n \"and\": {\n \"checks\": null\n },\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"or\": {\n \"checks\": [\n {\n \"value\": \"\"\n }\n ]\n }\n }\n ],\n \"disabled\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"variant\": \"BUTTON_VARIANT_PRIMARY\"\n },\n \"c1Chart\": {\n \"artifactUrl\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"categorical\": {\n \"slices\": null,\n \"style\": \"C1_CHART_CATEGORICAL_STYLE_PIE\"\n },\n \"sources\": [\n {\n \"count\": \"\",\n \"kind\": \"\",\n \"label\": \"\",\n \"ref\": \"\"\n }\n ],\n \"timeSeries\": {\n \"range\": {\n \"end\": \"\",\n \"label\": \"\",\n \"start\": \"\"\n },\n \"series\": null,\n \"style\": \"C1_CHART_TIME_SERIES_STYLE_STACKED_AREA\"\n },\n \"title\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1CodeBlock\": {\n \"code\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"copyable\": \"\",\n \"language\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"title\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1ConnectorConfigForm\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"skipActionName\": \"\",\n \"submitActionName\": \"\"\n },\n \"c1ConnectorSyncDetail\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"title\": \"\"\n },\n \"c1ConnectorSyncProgress\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"title\": \"\"\n },\n \"c1DurationPicker\": {\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"maxDurationSeconds\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1MetricCards\": {\n \"cards\": [\n {\n \"delta\": \"\",\n \"deltaSentiment\": \"C1_METRIC_DELTA_SENTIMENT_POSITIVE\",\n \"label\": \"\",\n \"sparkline\": null,\n \"value\": \"\"\n }\n ],\n \"sources\": null,\n \"title\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1MsTeamsNotifications\": {},\n \"c1OnboardingPlan\": {\n \"categories\": null\n },\n \"c1OnboardingWelcome\": {\n \"recommendedCatalogId\": \"\",\n \"recommendedDisplayName\": \"\"\n },\n \"c1ResourcePicker\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"mcpToolState\": \"\",\n \"multiSelect\": \"\",\n \"resourceType\": \"\",\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1SlackNotifications\": {},\n \"c1StatusIndicator\": {\n \"message\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"showSpinner\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"status\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"toolName\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"c1Table\": {\n \"artifactUrl\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"columns\": null,\n \"pageSize\": \"\",\n \"rows\": null,\n \"sources\": null,\n \"title\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"totalRows\": \"\"\n },\n \"c1TodoList\": {\n \"items\": null,\n \"title\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"card\": {\n \"children\": {\n \"ids\": [\n \"\"\n ]\n }\n },\n \"checkBox\": {\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"choicePicker\": {\n \"choices\": null,\n \"hideLabel\": \"\",\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"multiSelect\": \"\",\n \"required\": \"\",\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"column\": {\n \"alignment\": \"\",\n \"children\": {\n \"ids\": null\n },\n \"distribution\": \"\",\n \"gap\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"dateTimeInput\": {\n \"inputType\": \"DATE_TIME_INPUT_TYPE_DATE_TIME\",\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"max\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"min\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"divider\": {\n \"orientation\": \"\"\n },\n \"id\": \"\",\n \"progressBar\": {\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"max\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"min\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"step\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"row\": {\n \"alignment\": \"\",\n \"children\": {\n \"ids\": null\n },\n \"distribution\": \"\",\n \"gap\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"slider\": {\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"max\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"min\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"step\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"text\": {\n \"markdown\": \"\",\n \"text\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n }\n },\n \"textField\": {\n \"checks\": [\n {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n }\n ],\n \"label\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"placeholder\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"value\": {\n \"call\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"call\": \"\",\n \"message\": \"\"\n },\n \"literal\": \"\",\n \"path\": \"\"\n },\n \"variant\": \"TEXT_FIELD_VARIANT_SHORT_TEXT\"\n },\n \"weight\": \"\"\n }\n ],\n \"conversationId\": \"\",\n \"createdAt\": \"\",\n \"dataModelJson\": \"\",\n \"deletedAt\": \"\",\n \"role\": \"SURFACE_ROLE_STATUS\",\n \"schemaVersion\": \"\",\n \"sendDataModel\": \"\",\n \"state\": \"SURFACE_LIFECYCLE_STATE_ACTIVE\",\n \"surfaceId\": \"\",\n \"tenantId\": \"\",\n \"updatedAt\": \"\"\n },\n \"tenantId\": \"\",\n \"updatedAt\": \"\",\n \"vfsId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "runs", + "description": "", + "item": [ + { + "name": "{run_id}", + "description": "", + "item": [ + { + "name": "provenance", + "description": "", + "item": [ + { + "id": "cf1473fc-a14f-465e-ab38-a46e355a5802", + "name": "Get Run Provenance", + "request": { + "name": "Get Run Provenance", + "description": { + "content": "GetRunProvenance explains a run: what it read, what its program looked at,\n and the program itself. A2UIService.GetSurfaceProvenance answers the same\n question for a surface, but needs a live one — and a rerun is headless, so\n a report would become less explainable every time it refreshed.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "reporting", + "reports", + ":id", + "runs", + ":run_id", + "provenance" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "run_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "3eaff3ce-f709-448a-9d5d-04798ce33311", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "reporting", + "reports", + ":id", + "runs", + ":run_id", + "provenance" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "run_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"programCommitId\": \"\",\n \"programFunctionId\": \"\",\n \"programInput\": \"\",\n \"programSource\": \"\",\n \"sources\": null,\n \"steps\": null,\n \"stepsAvailable\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + } + ] + } + ] + } + ] + }, + { + "name": "request_schema_entitlement_binding", + "description": "", + "item": [ + { + "id": "3ea2b3a0-6034-435f-99e1-6adf4f307b8b", + "name": "Remove Entitlement Binding", + "request": { + "name": "Remove Entitlement Binding", + "description": { + "content": "Remove the link between a request schema and a single app entitlement.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "request_schema_entitlement_binding" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"requestSchemaId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "486e2cfc-efde-4d48-bf00-5ec6f34327bc", + "name": "The response message for removing a single entitlement binding.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "request_schema_entitlement_binding" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"requestSchemaId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "b2a8f04b-4eba-4231-806a-e07308eea5c4", + "name": "Create Entitlement Binding", + "request": { + "name": "Create Entitlement Binding", + "description": { + "content": "Link a request schema to a single app entitlement so the form is shown when requesting that entitlement.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "request_schema_entitlement_binding" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"requestSchemaId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" } - ] - } - ] - }, - { - "name": "{id}", - "description": "", - "item": [ + } + }, + "auth": null + }, + "response": [ { - "id": "2bdc12fa-4dc1-4e8f-b4e0-d342bc52d55a", - "name": "Get Finding", - "request": { - "name": "Get Finding", - "description": { - "content": "Get a single finding by ID.", - "type": "text/plain" - }, + "id": "7d77efea-fa3a-44ff-985e-e957b7b52174", + "name": "The response message for creating a single entitlement binding.", + "originalRequest": { "url": { "path": [ "api", "v1", - "findings", - ":id" + "request_schema_entitlement_binding" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], - "method": "GET", - "body": {}, - "auth": null + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"requestSchemaId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "40e6eb8d-ee16-46a8-b5c2-e4f142da5dc3", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "findings", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 1599.6842695923096\n },\n {\n \"@type\": \"\",\n \"key_0\": 2813\n }\n ],\n \"finding\": {\n \"appId\": \"\",\n \"appUserTarget\": {\n \"appId\": \"\",\n \"appUserId\": \"\"\n },\n \"assignedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"computedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"createdAt\": \"\",\n \"customTags\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"fingerprint\": \"\",\n \"firstObservedAt\": \"\",\n \"id\": \"\",\n \"identityUserTarget\": {\n \"identityUserId\": \"\"\n },\n \"lastObservedAt\": \"\",\n \"recurrenceCount\": \"\",\n \"remediationDescription\": \"\",\n \"resolvedAt\": \"\",\n \"riskAcceptanceExpiresAt\": \"\",\n \"riskAcceptanceJustification\": \"\",\n \"riskScore\": {\n \"originalScore\": \"\",\n \"overrideByUserId\": \"\",\n \"overrideScore\": \"\",\n \"riskFactors\": [\n {\n \"description\": \"\",\n \"name\": \"\",\n \"severity\": \"FINDING_SEVERITY_UNSPECIFIED\",\n \"weight\": \"\"\n },\n {\n \"description\": \"\",\n \"name\": \"\",\n \"severity\": \"FINDING_SEVERITY_INFO\",\n \"weight\": \"\"\n }\n ],\n \"score\": \"\",\n \"systemScore\": \"\"\n },\n \"serviceAccountMisclassification\": {\n \"currentAccountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"detectedAccountType\": \"APP_USER_TYPE_USER\"\n },\n \"serviceAccountMisclassificationEvidence\": {\n \"detectionReason\": \"\"\n },\n \"severity\": \"FINDING_SEVERITY_HIGH\",\n \"similarUsernameMatch\": {\n \"proposedIdentityUserId\": \"\"\n },\n \"similarUsernameMatchEvidence\": {\n \"appUsername\": \"\",\n \"identityUsername\": \"\",\n \"similarityScore\": \"\"\n },\n \"snoozeReason\": \"\",\n \"snoozeUntil\": \"\",\n \"sourceDetectorId\": \"\",\n \"state\": \"FINDING_STATE_SUPPRESSED\",\n \"stateUpdatedById\": \"\",\n \"suppressReason\": \"\",\n \"taskId\": \"\",\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "body": "{\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"requestSchemaId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, { - "name": "bulk", - "description": "", - "item": [ - { - "name": "state", - "description": "", - "item": [ - { - "id": "671440b1-fa28-48f5-b74f-bde2ecb8799f", - "name": "Bulk Update Finding State", - "request": { - "name": "Bulk Update Finding State", - "description": { - "content": "Bulk update finding states.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "findings", - "bulk", - "state" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"acceptRisk\": {\n \"expiresAt\": \"\",\n \"justification\": \"\"\n },\n \"assignOwner\": {\n \"owner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n }\n },\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"reopen\": {},\n \"searchRequest\": {\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"findingTypes\": [\n \"\",\n \"\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"severities\": [\n \"FINDING_SEVERITY_INFO\",\n \"FINDING_SEVERITY_INFO\"\n ],\n \"states\": [\n \"FINDING_STATE_RESOLVED\",\n \"FINDING_STATE_IN_PROGRESS\"\n ]\n },\n \"snooze\": {\n \"reason\": \"\",\n \"snoozeUntil\": \"\"\n },\n \"suppress\": {\n \"reason\": \"\"\n },\n \"unsuppress\": {}\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "a3086aba-9ec2-44cc-b830-84e824909b7e", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "findings", - "bulk", - "state" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"acceptRisk\": {\n \"expiresAt\": \"\",\n \"justification\": \"\"\n },\n \"assignOwner\": {\n \"owner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n }\n },\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"reopen\": {},\n \"searchRequest\": {\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"findingTypes\": [\n \"\",\n \"\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"severities\": [\n \"FINDING_SEVERITY_INFO\",\n \"FINDING_SEVERITY_INFO\"\n ],\n \"states\": [\n \"FINDING_STATE_RESOLVED\",\n \"FINDING_STATE_IN_PROGRESS\"\n ]\n },\n \"snooze\": {\n \"reason\": \"\",\n \"snoozeUntil\": \"\"\n },\n \"suppress\": {\n \"reason\": \"\"\n },\n \"unsuppress\": {}\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"bulkActionId\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "id": "148cf688-65e8-4057-91f1-e8efd8becd21", + "name": "Find Binding For App Entitlement", + "request": { + "name": "Find Binding For App Entitlement", + "description": { + "content": "Look up which request schema is bound to a given app entitlement.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "request_schema_entitlement_binding" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" } - ] + } }, + "auth": null + }, + "response": [ { - "name": "tasks", - "description": "", - "item": [ - { - "id": "81025477-f128-471d-9211-85fe0ada7e78", - "name": "Bulk Create Finding Tasks", - "request": { - "name": "Bulk Create Finding Tasks", + "id": "d9f48494-ae9b-446b-bf64-888ca1e82389", + "name": "The response message containing the binding for the specified app entitlement.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "request_schema_entitlement_binding" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { "description": { - "content": "Bulk create tasks for findings.", + "content": "Added as a part of security scheme: bearer", "type": "text/plain" }, - "url": { - "path": [ - "api", - "v1", - "findings", - "bulk", - "tasks" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"policyId\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"searchRequest\": {\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"findingTypes\": [\n \"\",\n \"\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"severities\": [\n \"FINDING_SEVERITY_MEDIUM\",\n \"FINDING_SEVERITY_CRITICAL\"\n ],\n \"states\": [\n \"FINDING_STATE_SNOOZED\",\n \"FINDING_STATE_RESOLVED\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "e691dcfe-be39-425f-89a7-3404dc256a1d", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "findings", - "bulk", - "tasks" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"policyId\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"searchRequest\": {\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"findingTypes\": [\n \"\",\n \"\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"severities\": [\n \"FINDING_SEVERITY_MEDIUM\",\n \"FINDING_SEVERITY_CRITICAL\"\n ],\n \"states\": [\n \"FINDING_STATE_SNOOZED\",\n \"FINDING_STATE_RESOLVED\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"bulkActionId\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true } } - ] - } - ] - }, - { - "name": "routing-rules", - "description": "", - "item": [ + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"requestSchemaId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "request_schemas", + "description": "", + "item": [ + { + "id": "f6c3da31-415a-441d-9d85-dc31fe081aa3", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create a new request schema that defines a form template for access requests.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "request_schemas" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"description\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": null,\n \"justificationVisibility\": \"JUSTIFICATION_VISIBILITY_SHOW\",\n \"name\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ { - "id": "6c07be6a-34d1-43de-aeff-999fc7120482", - "name": "List Finding Routing Rules", - "request": { - "name": "List Finding Routing Rules", - "description": { - "content": "List finding routing rules, optionally filtered to a specific app.", - "type": "text/plain" - }, + "id": "ee3c216b-8dda-49d2-942c-dfa44d3739cb", + "name": "The response message for creating a request schema.", + "originalRequest": { "url": { "path": [ "api", "v1", - "findings", - "routing-rules" + "request_schemas" ], "host": [ "{{baseUrl}}" @@ -25097,89 +52503,89 @@ "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], - "method": "GET", - "body": {}, - "auth": null + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"description\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": null,\n \"justificationVisibility\": \"JUSTIFICATION_VISIBILITY_SHOW\",\n \"name\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "ce0e25ce-fafe-4dc1-858e-fb728271718d", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "findings", - "routing-rules" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"action\": {\n \"createTask\": {\n \"policyId\": \"\"\n },\n \"notify\": {},\n \"suppress\": {\n \"reason\": \"\"\n }\n },\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"priority\": \"\",\n \"templateId\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"action\": {\n \"createTask\": {\n \"policyId\": \"\"\n },\n \"notify\": {},\n \"suppress\": {\n \"reason\": \"\"\n }\n },\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"priority\": \"\",\n \"templateId\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, + "body": "{\n \"requestSchema\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"justificationVisibility\": \"JUSTIFICATION_VISIBILITY_UNSPECIFIED\",\n \"modifiedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{request_schema_id}", + "description": "", + "item": [ { - "id": "73be468c-468a-4401-9df4-4810cd41fee9", - "name": "Create Finding Routing Rule", + "id": "489cf5de-594a-48bd-9fab-f2ffc976b1f2", + "name": "Delete", "request": { - "name": "Create Finding Routing Rule", + "name": "Delete", "description": { - "content": "Create a new finding routing rule that defines which policy to use for auto-routing matching findings.", + "content": "Delete a request schema by ID. Associated entitlement bindings are also deleted.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "findings", - "routing-rules" + "request_schemas", + ":request_schema_id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "request_schema_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -25191,10 +52597,10 @@ "value": "application/json" } ], - "method": "POST", + "method": "DELETE", "body": { "mode": "raw", - "raw": "{\n \"routingRule\": {\n \"action\": {\n \"createTask\": {\n \"policyId\": \"\"\n },\n \"notify\": {},\n \"suppress\": {\n \"reason\": \"\"\n }\n },\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"priority\": \"\",\n \"templateId\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "raw": "{}", "options": { "raw": { "headerFamily": "json", @@ -25206,21 +52612,32 @@ }, "response": [ { - "id": "6ad42210-508a-42bf-8909-a7392f6fdb3d", - "name": "Successful response", + "id": "35a76a39-716e-4de6-9978-7ae22ed20b17", + "name": "The response message for deleting a request schema.", "originalRequest": { "url": { "path": [ "api", "v1", - "findings", - "routing-rules" + "request_schemas", + ":request_schema_id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "request_schema_id" + } + ] }, "header": [ { @@ -25240,10 +52657,10 @@ "value": "Bearer " } ], - "method": "POST", + "method": "DELETE", "body": { "mode": "raw", - "raw": "{\n \"routingRule\": {\n \"action\": {\n \"createTask\": {\n \"policyId\": \"\"\n },\n \"notify\": {},\n \"suppress\": {\n \"reason\": \"\"\n }\n },\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"priority\": \"\",\n \"templateId\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "raw": "{}", "options": { "raw": { "headerFamily": "json", @@ -25260,7 +52677,7 @@ "value": "application/json" } ], - "body": "{\n \"routingRule\": {\n \"action\": {\n \"createTask\": {\n \"policyId\": \"\"\n },\n \"notify\": {},\n \"suppress\": {\n \"reason\": \"\"\n }\n },\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"priority\": \"\",\n \"templateId\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "body": "{}", "cookie": [], "_postman_previewlanguage": "json" } @@ -25271,431 +52688,144 @@ } }, { - "name": "{id}", - "description": "", - "item": [ - { - "id": "f9f27a38-6d11-4b67-8de0-c4327bba4cd5", - "name": "Delete Finding Routing Rule", - "request": { - "name": "Delete Finding Routing Rule", - "description": { - "content": "Delete a finding routing rule. Findings already routed by this rule are not affected.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "findings", - "routing-rules", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "6965e708-8441-4102-9dc9-0757ecd4d5e1", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "findings", - "routing-rules", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "id": "9323feb9-2fac-44c4-a54b-3e7d0082fb76", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Retrieve a single request schema by ID.", + "type": "text/plain" }, - { - "id": "12bbfebe-0a31-4ba2-ad10-ede6ff1b751a", - "name": "Get Finding Routing Rule", - "request": { - "name": "Get Finding Routing Rule", - "description": { - "content": "Retrieve a single finding routing rule by ID.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "findings", - "routing-rules", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + "url": { + "path": [ + "api", + "v1", + "request_schemas", + ":request_schema_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ { - "id": "871b1ce9-adf3-4819-9c09-de0736a89f47", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "findings", - "routing-rules", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"routingRule\": {\n \"action\": {\n \"createTask\": {\n \"policyId\": \"\"\n },\n \"notify\": {},\n \"suppress\": {\n \"reason\": \"\"\n }\n },\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"priority\": \"\",\n \"templateId\": \"\",\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "type": "any", + "value": "", + "key": "request_schema_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" } - } - ] - }, - { - "name": "{routing_rule_id}", - "description": "", - "item": [ + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ { - "name": "update", - "description": "", - "item": [ - { - "id": "24235f04-7711-4382-a7c6-d01c46f3618b", - "name": "Update Finding Routing Rule", - "request": { - "name": "Update Finding Routing Rule", - "description": { - "content": "Update an existing finding routing rule's match criteria or target policy.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "findings", - "routing-rules", - ":routing_rule_id", - "update" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "routing_rule_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"routingRule\": {\n \"action\": {\n \"createTask\": {\n \"policyId\": \"\"\n },\n \"notify\": {},\n \"suppress\": {\n \"reason\": \"\"\n }\n },\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"priority\": \"\",\n \"templateId\": \"\",\n \"updatedAt\": \"\"\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "id": "ad071b34-cb53-44e8-bc04-dadf8dd000b9", + "name": "The response message for retrieving a request schema.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "request_schemas", + ":request_schema_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ { - "id": "69373564-d7d6-4315-a53c-8bfadc5dab78", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "findings", - "routing-rules", - ":routing_rule_id", - "update" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "routing_rule_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"routingRule\": {\n \"action\": {\n \"createTask\": {\n \"policyId\": \"\"\n },\n \"notify\": {},\n \"suppress\": {\n \"reason\": \"\"\n }\n },\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"priority\": \"\",\n \"templateId\": \"\",\n \"updatedAt\": \"\"\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"routingRule\": {\n \"action\": {\n \"createTask\": {\n \"policyId\": \"\"\n },\n \"notify\": {},\n \"suppress\": {\n \"reason\": \"\"\n }\n },\n \"appId\": \"\",\n \"condition\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"priority\": \"\",\n \"templateId\": \"\",\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "type": "any", + "value": "", + "key": "request_schema_id" } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" } - ] + ], + "body": "{\n \"requestSchema\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": null\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"justificationVisibility\": \"JUSTIFICATION_VISIBILITY_UNSPECIFIED\",\n \"modifiedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] - } - ] - }, - { - "name": "search", - "description": "", - "item": [ + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, { - "id": "ee627e0d-0055-45f2-9bfe-f77dfd6535eb", - "name": "Search", + "id": "164daee1-8c16-4114-adf1-90a2c6cadf94", + "name": "Update", "request": { - "name": "Search", + "name": "Update", "description": { - "content": "Search findings using full-text query and filters for severity, state, type, and app.", + "content": "Update an existing request schema's form definition or settings.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "findings", - "search" + "request_schemas", + ":request_schema_id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "request_schema_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -25710,7 +52840,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"findingTypes\": [\n \"\",\n \"\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"severities\": [\n \"FINDING_SEVERITY_INFO\",\n \"FINDING_SEVERITY_INFO\"\n ],\n \"states\": [\n \"FINDING_STATE_RESOLVED\",\n \"FINDING_STATE_SNOOZED\"\n ]\n}", + "raw": "{\n \"requestSchema\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": null\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"justificationVisibility\": \"JUSTIFICATION_VISIBILITY_SHOW\",\n \"modifiedAt\": \"\"\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -25722,21 +52852,32 @@ }, "response": [ { - "id": "02cf99e8-f7f4-44cd-994c-9c4b2f7556b4", - "name": "Successful response", + "id": "32d4fd1a-c671-4227-8c1e-fbfaa16fdcc8", + "name": "The response message for updating a request schema.", "originalRequest": { "url": { "path": [ "api", "v1", - "findings", - "search" + "request_schemas", + ":request_schema_id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "request_schema_id" + } + ] }, "header": [ { @@ -25759,7 +52900,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"findingTypes\": [\n \"\",\n \"\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"severities\": [\n \"FINDING_SEVERITY_INFO\",\n \"FINDING_SEVERITY_INFO\"\n ],\n \"states\": [\n \"FINDING_STATE_RESOLVED\",\n \"FINDING_STATE_SNOOZED\"\n ]\n}", + "raw": "{\n \"requestSchema\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": null\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"justificationVisibility\": \"JUSTIFICATION_VISIBILITY_SHOW\",\n \"modifiedAt\": \"\"\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -25776,7 +52917,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"appId\": \"\",\n \"appUserTarget\": {\n \"appId\": \"\",\n \"appUserId\": \"\"\n },\n \"assignedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"computedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"createdAt\": \"\",\n \"customTags\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"fingerprint\": \"\",\n \"firstObservedAt\": \"\",\n \"id\": \"\",\n \"identityUserTarget\": {\n \"identityUserId\": \"\"\n },\n \"lastObservedAt\": \"\",\n \"recurrenceCount\": \"\",\n \"remediationDescription\": \"\",\n \"resolvedAt\": \"\",\n \"riskAcceptanceExpiresAt\": \"\",\n \"riskAcceptanceJustification\": \"\",\n \"riskScore\": {\n \"originalScore\": \"\",\n \"overrideByUserId\": \"\",\n \"overrideScore\": \"\",\n \"riskFactors\": [\n {\n \"description\": \"\",\n \"name\": \"\",\n \"severity\": \"FINDING_SEVERITY_CRITICAL\",\n \"weight\": \"\"\n },\n {\n \"description\": \"\",\n \"name\": \"\",\n \"severity\": \"FINDING_SEVERITY_INFO\",\n \"weight\": \"\"\n }\n ],\n \"score\": \"\",\n \"systemScore\": \"\"\n },\n \"serviceAccountMisclassification\": {\n \"currentAccountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"detectedAccountType\": \"APP_USER_TYPE_USER\"\n },\n \"serviceAccountMisclassificationEvidence\": {\n \"detectionReason\": \"\"\n },\n \"severity\": \"FINDING_SEVERITY_INFO\",\n \"similarUsernameMatch\": {\n \"proposedIdentityUserId\": \"\"\n },\n \"similarUsernameMatchEvidence\": {\n \"appUsername\": \"\",\n \"identityUsername\": \"\",\n \"similarityScore\": \"\"\n },\n \"snoozeReason\": \"\",\n \"snoozeUntil\": \"\",\n \"sourceDetectorId\": \"\",\n \"state\": \"FINDING_STATE_UNSPECIFIED\",\n \"stateUpdatedById\": \"\",\n \"suppressReason\": \"\",\n \"taskId\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserTarget\": {\n \"appId\": \"\",\n \"appUserId\": \"\"\n },\n \"assignedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"computedOwner\": {\n \"appOwnerAppId\": \"\",\n \"identityUserId\": \"\",\n \"managerOfUserId\": \"\",\n \"userSetId\": \"\"\n },\n \"createdAt\": \"\",\n \"customTags\": {\n \"key_0\": \"\"\n },\n \"fingerprint\": \"\",\n \"firstObservedAt\": \"\",\n \"id\": \"\",\n \"identityUserTarget\": {\n \"identityUserId\": \"\"\n },\n \"lastObservedAt\": \"\",\n \"recurrenceCount\": \"\",\n \"remediationDescription\": \"\",\n \"resolvedAt\": \"\",\n \"riskAcceptanceExpiresAt\": \"\",\n \"riskAcceptanceJustification\": \"\",\n \"riskScore\": {\n \"originalScore\": \"\",\n \"overrideByUserId\": \"\",\n \"overrideScore\": \"\",\n \"riskFactors\": [\n {\n \"description\": \"\",\n \"name\": \"\",\n \"severity\": \"FINDING_SEVERITY_INFO\",\n \"weight\": \"\"\n },\n {\n \"description\": \"\",\n \"name\": \"\",\n \"severity\": \"FINDING_SEVERITY_HIGH\",\n \"weight\": \"\"\n }\n ],\n \"score\": \"\",\n \"systemScore\": \"\"\n },\n \"serviceAccountMisclassification\": {\n \"currentAccountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"detectedAccountType\": \"APP_USER_TYPE_USER\"\n },\n \"serviceAccountMisclassificationEvidence\": {\n \"detectionReason\": \"\"\n },\n \"severity\": \"FINDING_SEVERITY_UNSPECIFIED\",\n \"similarUsernameMatch\": {\n \"proposedIdentityUserId\": \"\"\n },\n \"similarUsernameMatchEvidence\": {\n \"appUsername\": \"\",\n \"identityUsername\": \"\",\n \"similarityScore\": \"\"\n },\n \"snoozeReason\": \"\",\n \"snoozeUntil\": \"\",\n \"sourceDetectorId\": \"\",\n \"state\": \"FINDING_STATE_SNOOZED\",\n \"stateUpdatedById\": \"\",\n \"suppressReason\": \"\",\n \"taskId\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"requestSchema\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"justificationVisibility\": \"JUSTIFICATION_VISIBILITY_SHOW\",\n \"modifiedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -25791,50 +52932,28 @@ ] }, { - "name": "functions", + "name": "role-mining", "description": "", "item": [ { - "id": "08c96a6c-cfa5-4092-908c-adda06d631b5", - "name": "List Functions", - "request": { - "name": "List Functions", - "description": { - "content": "List retrieves all functions with pagination", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "functions" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + "name": "access-profiles", + "description": "", + "item": [ { - "id": "e4408646-a54b-4b21-9a63-4ca7b694dbbf", - "name": "Successful response", - "originalRequest": { + "id": "3d343f23-7927-49fb-a671-ee284ecb7d7b", + "name": "Create Access Profile From Cohort", + "request": { + "name": "Create Access Profile From Cohort", + "description": { + "content": "CreateAccessProfileFromCohort creates an access profile from a cohort definition,\n adds the specified entitlements, and sets up dynamic membership automation using\n a CEL expression derived from the profile filters.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "functions" + "role-mining", + "access-profiles" ], "host": [ "{{baseUrl}}" @@ -25844,93 +52963,114 @@ }, "header": [ { - "key": "Accept", + "key": "Content-Type", "value": "application/json" }, { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " + "key": "Accept", + "value": "application/json" } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"celExpression\": \"\",\n \"createTasks\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enableAutomation\": \"\",\n \"entitlements\": null,\n \"profileFilters\": null,\n \"suggestionId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "f5c2b2be-b1bf-4085-bae0-da7533c401f6", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "role-mining", + "access-profiles" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"celExpression\": \"\",\n \"createTasks\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enableAutomation\": \"\",\n \"entitlements\": null,\n \"profileFilters\": null,\n \"suggestionId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"accessProfileId\": \"\",\n \"celExpression\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_UNSPECIFIED\",\n \"head\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"outboundNetworkAllowlist\": [\n \"\",\n \"\"\n ],\n \"publishedCommitId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"secret\": {\n \"key_0\": \"\"\n },\n \"updatedAt\": \"\",\n \"useSpn\": \"\"\n },\n {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_CODE_MODE\",\n \"head\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"outboundNetworkAllowlist\": [\n \"\",\n \"\"\n ],\n \"publishedCommitId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"secret\": {\n \"key_0\": \"\"\n },\n \"updatedAt\": \"\",\n \"useSpn\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, { - "id": "422f2d5e-b563-4450-8a4b-698087faf33f", - "name": "Create Function", - "request": { - "name": "Create Function", - "description": { - "content": "CreateFunction registers a new serverless function and creates its initial code commit.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "functions" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"commitMessage\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_ANY\",\n \"initialContent\": {\n \"key_0\": \"\"\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "name": "config", + "description": "", + "item": [ { - "id": "0a37b4ca-32d7-4468-ba49-b0ab88a40d6f", - "name": "Successful response", - "originalRequest": { + "id": "bd4e44c2-4446-4996-ba70-781c1dbc6cc9", + "name": "Get Role Mining Config", + "request": { + "name": "Get Role Mining Config", + "description": { + "content": "Retrieve the current role mining configuration, including cohort hints and threshold settings.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "functions" + "role-mining", + "config" ], "host": [ "{{baseUrl}}" @@ -25939,203 +53079,130 @@ "variable": [] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"commitMessage\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_ANY\",\n \"initialContent\": {\n \"key_0\": \"\"\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"commit\": {\n \"author\": \"\",\n \"createdAt\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"message\": \"\"\n },\n \"function\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_CODE_MODE\",\n \"head\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"outboundNetworkAllowlist\": [\n \"\",\n \"\"\n ],\n \"publishedCommitId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"secret\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"updatedAt\": \"\",\n \"useSpn\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{function_id}", - "description": "", - "item": [ - { - "name": "commits", - "description": "", - "item": [ + "response": [ { - "id": "67ba3558-7c41-4b29-b449-f35fbd36a33b", - "name": "List Commits", - "request": { - "name": "List Commits", - "description": { - "content": "ListCommits retrieves the commit history", - "type": "text/plain" - }, + "id": "7545d959-4889-464f-9ff7-777529bfdd2c", + "name": "Successful response", + "originalRequest": { "url": { "path": [ "api", "v1", - "functions", - ":function_id", - "commits" + "role-mining", + "config" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "function_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { "key": "Accept", "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "fc744679-253b-4398-b7ad-6feb5b69c31c", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "functions", - ":function_id", - "commits" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "function_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"author\": \"\",\n \"createdAt\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"message\": \"\"\n },\n {\n \"author\": \"\",\n \"createdAt\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"message\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true + "body": "{\n \"config\": {\n \"cohortHints\": [\n {\n \"attribute\": \"\",\n \"priority\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"priority\": \"\",\n \"values\": null\n }\n ],\n \"maxSuggestions\": \"\",\n \"minCohortSize\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "bdae4036-e5c3-44de-84c7-6af532285c73", + "name": "Update Role Mining Config", + "request": { + "name": "Update Role Mining Config", + "description": { + "content": "Update the role mining configuration, such as cohort hints, max suggestions, and minimum cohort size.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "role-mining", + "config" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"cohortHints\": [\n {\n \"attribute\": \"\",\n \"priority\": \"\",\n \"values\": null\n },\n {\n \"attribute\": \"\",\n \"priority\": \"\",\n \"values\": null\n }\n ],\n \"maxSuggestions\": \"\",\n \"minCohortSize\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } } }, + "auth": null + }, + "response": [ { - "id": "a284c12a-f2a1-4b4c-b8d9-abb348b71ed7", - "name": "Create Initial Commit", - "request": { - "name": "Create Initial Commit", - "description": { - "content": "CreateInitialCommit starts a new commit and returns upload URLs for files", - "type": "text/plain" - }, + "id": "4f14b94f-8a46-4d93-9f50-17fbbcaaba45", + "name": "Successful response", + "originalRequest": { "url": { "path": [ "api", "v1", - "functions", - ":function_id", - "commits" + "role-mining", + "config" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "function_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -26145,430 +53212,162 @@ { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"commitMessage\": \"\",\n \"filenames\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{\n \"cohortHints\": [\n {\n \"attribute\": \"\",\n \"priority\": \"\",\n \"values\": null\n },\n {\n \"attribute\": \"\",\n \"priority\": \"\",\n \"values\": null\n }\n ],\n \"maxSuggestions\": \"\",\n \"minCohortSize\": \"\"\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - }, - "auth": null + } }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "9810554b-455a-44b9-bd11-5f719f28d492", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "functions", - ":function_id", - "commits" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "function_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"commitMessage\": \"\",\n \"filenames\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"commitId\": \"\",\n \"uploadUrls\": {\n \"key_0\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "body": "{\n \"config\": {\n \"cohortHints\": [\n {\n \"attribute\": \"\",\n \"priority\": \"\",\n \"values\": null\n },\n {\n \"attribute\": \"\",\n \"priority\": \"\",\n \"values\": null\n }\n ],\n \"maxSuggestions\": \"\",\n \"minCohortSize\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "custom-analysis", + "description": "", + "item": [ + { + "id": "005a1f07-9096-4652-9185-4175091b9ada", + "name": "List Custom Analysis Results", + "request": { + "name": "List Custom Analysis Results", + "description": { + "content": "List recent custom analysis results in reverse chronological order.", + "type": "text/plain" }, - { - "name": "{commit_id}", - "description": "", - "item": [ - { - "name": "finalize", - "description": "", - "item": [ - { - "id": "04bb6db4-cda4-4812-8403-6f35d18c8308", - "name": "Create Final Commit", - "request": { - "name": "Create Final Commit", - "description": { - "content": "CreateFinalCommit completes a commit after files are uploaded", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "functions", - ":function_id", - "commits", - ":commit_id", - "finalize" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "function_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "commit_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "f35bcd4a-2726-4291-881a-7b42228556a1", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "functions", - ":function_id", - "commits", - ":commit_id", - "finalize" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "function_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "commit_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"commit\": {\n \"author\": \"\",\n \"createdAt\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"message\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "lockfile", - "description": "", - "item": [ - { - "id": "89ed9cf2-7bff-4e01-ab26-760cf0178875", - "name": "Get Lock File", - "request": { - "name": "Get Lock File", - "description": { - "content": "GetLockFile retrieves the deno lock file for a specific commit, if it exists.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "functions", - ":function_id", - "commits", - ":commit_id", - "lockfile" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "function_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "commit_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "1c65cd2e-8dcd-4720-9b5f-d9655f0e0652", - "name": "FunctionsServiceGetLockFileResponse returns the deno lock file content for a commit.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "functions", - ":function_id", - "commits", - ":commit_id", - "lockfile" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "function_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "commit_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"content\": \"\",\n \"exists\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] + "url": { + "path": [ + "api", + "v1", + "role-mining", + "custom-analysis" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ { - "name": "{id}", + "id": "d7d6c2e6-6a9b-4248-851d-423e2517aacc", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "role-mining", + "custom-analysis" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"cohortSize\": \"\",\n \"completedAt\": \"\",\n \"createdAt\": \"\",\n \"errorMessage\": \"\",\n \"id\": \"\",\n \"profileFilters\": null,\n \"status\": \"RUN_STATUS_RUNNING\",\n \"suggestionsGenerated\": \"\"\n },\n {\n \"cohortSize\": \"\",\n \"completedAt\": \"\",\n \"createdAt\": \"\",\n \"errorMessage\": \"\",\n \"id\": \"\",\n \"profileFilters\": [\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"status\": \"RUN_STATUS_RUNNING\",\n \"suggestionsGenerated\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{analysis_id}", + "description": "", + "item": [ + { + "name": "evaluate-entitlement-selection", "description": "", "item": [ { - "id": "b291e62d-783c-4b34-9aeb-051d2214c9e4", - "name": "Get Commit Content", + "id": "67118a32-5b97-49ef-ad05-9cc440864ac3", + "name": "Evaluate Entitlement Selection", "request": { - "name": "Get Commit Content", + "name": "Evaluate Entitlement Selection", "description": { - "content": "GetCommitContent retrieves a commit and all its file contents in a single unary response.\n This is a non-streaming alternative to GetCommit for REST API consumers.", + "content": "Evaluate the exact cohort impact of an entitlement cutoff and manual overrides.\n The analysis determines the eligible entitlements and cohort definition.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "functions", - ":function_id", - "commits", - ":id" + "role-mining", + "custom-analysis", + ":analysis_id", + "evaluate-entitlement-selection" ], "host": [ "{{baseUrl}}" @@ -26578,17 +53377,7 @@ { "type": "any", "value": "", - "key": "function_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "id", + "key": "analysis_id", "disabled": false, "description": { "content": "(Required) ", @@ -26598,28 +53387,41 @@ ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"explicitlyExcluded\": [\n {\n \"appId\": \"\",\n \"entitlementId\": \"\"\n },\n {\n \"appId\": \"\",\n \"entitlementId\": \"\"\n }\n ],\n \"explicitlyIncluded\": null,\n \"includeFacets\": \"\",\n \"minimumCoverageBasisPoints\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "41748d9b-39df-46aa-8b5f-e923b2c44770", - "name": "FunctionsServiceGetCommitContentResponse contains a commit and all its file contents.", + "id": "b4623020-60e7-4e06-8cd1-3bc27aba7cea", + "name": "EvaluateEntitlementSelectionResponse contains the exact impact of the\n resolved entitlement selection.", "originalRequest": { "url": { "path": [ "api", "v1", - "functions", - ":function_id", - "commits", - ":id" + "role-mining", + "custom-analysis", + ":analysis_id", + "evaluate-entitlement-selection" ], "host": [ "{{baseUrl}}" @@ -26634,21 +53436,15 @@ }, "type": "any", "value": "", - "key": "function_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" + "key": "analysis_id" } ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -26662,8 +53458,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"explicitlyExcluded\": [\n {\n \"appId\": \"\",\n \"entitlementId\": \"\"\n },\n {\n \"appId\": \"\",\n \"entitlementId\": \"\"\n }\n ],\n \"explicitlyIncluded\": null,\n \"includeFacets\": \"\",\n \"minimumCoverageBasisPoints\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -26673,40 +53478,549 @@ "value": "application/json" } ], - "body": "{\n \"commit\": {\n \"author\": \"\",\n \"createdAt\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"message\": \"\"\n },\n \"files\": {\n \"key_0\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "body": "{\n \"coreHolderFacets\": [\n {\n \"attribute\": \"\",\n \"displayName\": \"\",\n \"values\": [\n {\n \"displayName\": \"\",\n \"userCount\": \"\",\n \"value\": \"\"\n },\n {\n \"displayName\": \"\",\n \"userCount\": \"\",\n \"value\": \"\"\n }\n ]\n },\n {\n \"attribute\": \"\",\n \"displayName\": \"\",\n \"values\": null\n }\n ],\n \"selectedEntitlementCount\": \"\",\n \"usersWithAllEntitlements\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "1dfb5305-1d15-4c4f-a761-80f973b1ba89", + "name": "Get Custom Analysis Result", + "request": { + "name": "Get Custom Analysis Result", + "description": { + "content": "Invokes the c1.api.role_mining_management.v1.RoleMiningManagementService.GetCustomAnalysisResult method.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "role-mining", + "custom-analysis", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "bb5d0c48-e717-4249-8f08-7cd3b1b96e98", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "role-mining", + "custom-analysis", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appsAnalyzed\": \"\",\n \"clusters\": null,\n \"cohortSize\": \"\",\n \"cutoffImpactPoints\": [\n {\n \"entitlementCount\": \"\",\n \"minimumCoverageBasisPoints\": \"\",\n \"usersWithAllEntitlements\": \"\"\n },\n {\n \"entitlementCount\": \"\",\n \"minimumCoverageBasisPoints\": \"\",\n \"usersWithAllEntitlements\": \"\"\n }\n ],\n \"entitlements\": null,\n \"errorMessage\": \"\",\n \"facetUserCount\": \"\",\n \"facets\": null,\n \"id\": \"\",\n \"status\": \"RUN_STATUS_RUNNING\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "trigger", + "description": "", + "item": [ + { + "id": "feaf9f08-349b-48d9-ab39-b22cbf93d24c", + "name": "Trigger Custom Analysis", + "request": { + "name": "Trigger Custom Analysis", + "description": { + "content": "Invokes the c1.api.role_mining_management.v1.RoleMiningManagementService.TriggerCustomAnalysis method.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "role-mining", + "custom-analysis", + "trigger" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"profileFilters\": [\n {\n \"attribute\": \"\",\n \"values\": null\n },\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "f26985d1-0b9d-41c4-af2d-348f2a6e1668", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "role-mining", + "custom-analysis", + "trigger" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"profileFilters\": [\n {\n \"attribute\": \"\",\n \"values\": null\n },\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"id\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "runs", + "description": "", + "item": [ + { + "id": "be8fa3eb-bb2e-48dc-9bfc-b87991bece06", + "name": "List Runs", + "request": { + "name": "List Runs", + "description": { + "content": "List role mining analysis runs in reverse chronological order.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "role-mining", + "runs" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "e5f30343-7049-479f-a5a2-95246d3fc3fd", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "role-mining", + "runs" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"cohortsAnalyzed\": \"\",\n \"completedAt\": \"\",\n \"createdAt\": \"\",\n \"errorMessage\": \"\",\n \"id\": \"\",\n \"status\": \"RUN_STATUS_FAILED\",\n \"suggestionsGenerated\": \"\",\n \"totalUsers\": \"\",\n \"triggerDetail\": \"\",\n \"triggerType\": \"TRIGGER_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\"\n },\n {\n \"cohortsAnalyzed\": \"\",\n \"completedAt\": \"\",\n \"createdAt\": \"\",\n \"errorMessage\": \"\",\n \"id\": \"\",\n \"status\": \"RUN_STATUS_RUNNING\",\n \"suggestionsGenerated\": \"\",\n \"totalUsers\": \"\",\n \"triggerDetail\": \"\",\n \"triggerType\": \"TRIGGER_TYPE_UPLIFT_COMPLETION\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "latest", + "description": "", + "item": [ + { + "id": "8f7c6960-d4ec-460b-a297-b84a4c368667", + "name": "Get Latest Run", + "request": { + "name": "Get Latest Run", + "description": { + "content": "Retrieve the most recent role mining analysis run, including its status and results summary.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "role-mining", + "runs", + "latest" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "65a39e50-a85f-4ce9-bd32-5595a1f7d850", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "role-mining", + "runs", + "latest" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "body": "{\n \"run\": {\n \"cohortsAnalyzed\": \"\",\n \"completedAt\": \"\",\n \"createdAt\": \"\",\n \"errorMessage\": \"\",\n \"id\": \"\",\n \"status\": \"RUN_STATUS_UNSPECIFIED\",\n \"suggestionsGenerated\": \"\",\n \"totalUsers\": \"\",\n \"triggerDetail\": \"\",\n \"triggerType\": \"TRIGGER_TYPE_MANUAL\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } ] + } + ] + }, + { + "name": "suggestions", + "description": "", + "item": [ + { + "id": "a4f3c6fe-9796-43fe-8faa-ef3483e0fddb", + "name": "List Suggestions", + "request": { + "name": "List Suggestions", + "description": { + "content": "List role suggestions generated by analysis runs, optionally filtered by state.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "role-mining", + "suggestions" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "78ea52a1-3a95-46c8-aa95-acf66cd38702", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "role-mining", + "suggestions" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"avgCoverage\": \"\",\n \"cohortFilters\": [\n {\n \"attribute\": \"\",\n \"values\": null\n },\n {\n \"attribute\": \"\",\n \"values\": null\n }\n ],\n \"cohortSize\": \"\",\n \"confidence\": \"\",\n \"createdAt\": \"\",\n \"createdCatalogId\": \"\",\n \"description\": \"\",\n \"dimensionCount\": \"\",\n \"entitlements\": null,\n \"existingProfileMatches\": [\n {\n \"catalogDisplayName\": \"\",\n \"catalogId\": \"\",\n \"matchType\": \"ACCESS_PROFILE_MATCH_TYPE_SUPERSET\",\n \"missingEntitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\",\n \"riskLevelValueId\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\",\n \"riskLevelValueId\": \"\"\n }\n ],\n \"overlapRatio\": \"\"\n },\n {\n \"catalogDisplayName\": \"\",\n \"catalogId\": \"\",\n \"matchType\": \"ACCESS_PROFILE_MATCH_TYPE_PARTIAL\",\n \"missingEntitlements\": null,\n \"overlapRatio\": \"\"\n }\n ],\n \"id\": \"\",\n \"insights\": null,\n \"lastGeneratedAt\": \"\",\n \"runId\": \"\",\n \"suggestedName\": \"\",\n \"suggestionState\": \"SUGGESTION_STATE_DISMISSED\",\n \"updatedAt\": \"\",\n \"usersWithAll\": \"\"\n },\n {\n \"avgCoverage\": \"\",\n \"cohortFilters\": null,\n \"cohortSize\": \"\",\n \"confidence\": \"\",\n \"createdAt\": \"\",\n \"createdCatalogId\": \"\",\n \"description\": \"\",\n \"dimensionCount\": \"\",\n \"entitlements\": null,\n \"existingProfileMatches\": [\n {\n \"catalogDisplayName\": \"\",\n \"catalogId\": \"\",\n \"matchType\": \"ACCESS_PROFILE_MATCH_TYPE_EXACT\",\n \"missingEntitlements\": null,\n \"overlapRatio\": \"\"\n },\n {\n \"catalogDisplayName\": \"\",\n \"catalogId\": \"\",\n \"matchType\": \"ACCESS_PROFILE_MATCH_TYPE_UNSPECIFIED\",\n \"missingEntitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\",\n \"riskLevelValueId\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\",\n \"riskLevelValueId\": \"\"\n }\n ],\n \"overlapRatio\": \"\"\n }\n ],\n \"id\": \"\",\n \"insights\": null,\n \"lastGeneratedAt\": \"\",\n \"runId\": \"\",\n \"suggestedName\": \"\",\n \"suggestionState\": \"SUGGESTION_STATE_NEW\",\n \"updatedAt\": \"\",\n \"usersWithAll\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, { - "name": "invocations", + "name": "{id}", "description": "", "item": [ { - "id": "76994ddf-6fa2-4f11-a554-5d802beca45b", - "name": "List", + "id": "86a529ba-1646-4835-b35c-47c631d48709", + "name": "Get Suggestion", "request": { - "name": "List", + "name": "Get Suggestion", "description": { - "content": "List retrieves the invocation history for a function", + "content": "Retrieve a single role suggestion by ID, including its cohort filters, entitlements, and confidence score.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "functions", - ":function_id", - "invocations" + "role-mining", + "suggestions", + ":id" ], "host": [ "{{baseUrl}}" @@ -26716,7 +54030,7 @@ { "type": "any", "value": "", - "key": "function_id", + "key": "id", "disabled": false, "description": { "content": "(Required) ", @@ -26737,16 +54051,16 @@ }, "response": [ { - "id": "f8a647e9-2ecd-4c17-a192-e7fa6c7255be", + "id": "b2c04838-2e84-4900-82b2-6d9e38050583", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "functions", - ":function_id", - "invocations" + "role-mining", + "suggestions", + ":id" ], "host": [ "{{baseUrl}}" @@ -26761,7 +54075,7 @@ }, "type": "any", "value": "", - "key": "function_id" + "key": "id" } ] }, @@ -26790,7 +54104,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"commitId\": \"\",\n \"createdAt\": \"\",\n \"error\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"input\": {\n \"key_0\": 6011,\n \"key_1\": true\n },\n \"output\": {\n \"key_0\": \"string\",\n \"key_1\": 8075,\n \"key_2\": 2780\n },\n \"status\": \"FUNCTION_INVOCATION_STATUS_ERROR\",\n \"updatedAt\": \"\"\n },\n {\n \"commitId\": \"\",\n \"createdAt\": \"\",\n \"error\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"input\": {\n \"key_0\": 6864,\n \"key_1\": true\n },\n \"output\": {\n \"key_0\": 5562,\n \"key_1\": 6221,\n \"key_2\": true\n },\n \"status\": \"FUNCTION_INVOCATION_STATUS_PENDING\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"suggestion\": {\n \"avgCoverage\": \"\",\n \"cohortFilters\": [\n {\n \"attribute\": \"\",\n \"values\": null\n },\n {\n \"attribute\": \"\",\n \"values\": null\n }\n ],\n \"cohortSize\": \"\",\n \"confidence\": \"\",\n \"createdAt\": \"\",\n \"createdCatalogId\": \"\",\n \"description\": \"\",\n \"dimensionCount\": \"\",\n \"entitlements\": null,\n \"existingProfileMatches\": null,\n \"id\": \"\",\n \"insights\": null,\n \"lastGeneratedAt\": \"\",\n \"runId\": \"\",\n \"suggestedName\": \"\",\n \"suggestionState\": \"SUGGESTION_STATE_NEW\",\n \"updatedAt\": \"\",\n \"usersWithAll\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -26801,42 +54115,32 @@ } }, { - "name": "{id}", + "name": "state", "description": "", "item": [ { - "id": "4094a911-a359-4360-8abd-efcf52c18ae5", - "name": "Get", + "id": "f3d32046-dd5c-476b-980c-e15ae34937f4", + "name": "Update Suggestion State", "request": { - "name": "Get", + "name": "Update Suggestion State", "description": { - "content": "Get retrieves a specific invocation by ID", + "content": "Transition a role suggestion to a new state, such as accepted, rejected, or dismissed.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "functions", - ":function_id", - "invocations", - ":id" + "role-mining", + "suggestions", + ":id", + "state" ], "host": [ "{{baseUrl}}" ], "query": [], "variable": [ - { - "type": "any", - "value": "", - "key": "function_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, { "type": "any", "value": "", @@ -26850,44 +54154,47 @@ ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"createdCatalogId\": \"\",\n \"state\": \"SUGGESTION_STATE_ACCEPTED\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "9b5ec1d1-7c35-439f-85fd-efdb8cbfd4f9", + "id": "293f2289-a9f8-4e23-b3ae-004784129984", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "functions", - ":function_id", - "invocations", - ":id" + "role-mining", + "suggestions", + ":id", + "state" ], "host": [ "{{baseUrl}}" ], "query": [], "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "function_id" - }, { "disabled": false, "description": { @@ -26901,6 +54208,10 @@ ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -26914,8 +54225,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"createdCatalogId\": \"\",\n \"state\": \"SUGGESTION_STATE_ACCEPTED\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -26925,7 +54245,7 @@ "value": "application/json" } ], - "body": "{\n \"invocation\": {\n \"commitId\": \"\",\n \"createdAt\": \"\",\n \"error\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"input\": {\n \"key_0\": 581\n },\n \"output\": {\n \"key_0\": 2705.7481931224456\n },\n \"status\": \"FUNCTION_INVOCATION_STATUS_SUCCESS\",\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"suggestion\": {\n \"avgCoverage\": \"\",\n \"cohortFilters\": [\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"cohortSize\": \"\",\n \"confidence\": \"\",\n \"createdAt\": \"\",\n \"createdCatalogId\": \"\",\n \"description\": \"\",\n \"dimensionCount\": \"\",\n \"entitlements\": null,\n \"existingProfileMatches\": null,\n \"id\": \"\",\n \"insights\": null,\n \"lastGeneratedAt\": \"\",\n \"runId\": \"\",\n \"suggestedName\": \"\",\n \"suggestionState\": \"SUGGESTION_STATE_NEW\",\n \"updatedAt\": \"\",\n \"usersWithAll\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -26936,28 +54256,34 @@ } } ] - }, + } + ] + }, + { + "name": "{suggestion_id}", + "description": "", + "item": [ { - "name": "search", + "name": "users", "description": "", "item": [ { - "id": "5a2ef375-a95c-483a-a461-18e04c01894e", - "name": "Search", + "id": "0f5ae4b1-8824-4edc-b04f-0376b7d017d9", + "name": "Search Cohort Users", "request": { - "name": "Search", + "name": "Search Cohort Users", "description": { - "content": "Search searches for function invocations with filtering and ordering support", + "content": "Search for users that belong to a suggestion's cohort, with optional additional profile filters.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "functions", - ":function_id", - "invocations", - "search" + "role-mining", + "suggestions", + ":suggestion_id", + "users" ], "host": [ "{{baseUrl}}" @@ -26967,7 +54293,7 @@ { "type": "any", "value": "", - "key": "function_id", + "key": "suggestion_id", "disabled": false, "description": { "content": "(Required) ", @@ -26989,7 +54315,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"profileFilters\": null,\n \"selectedEntitlements\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -27001,17 +54327,17 @@ }, "response": [ { - "id": "a6464622-793f-478a-ab1c-f9a853cc7f1a", - "name": "FunctionsInvocationSearchResponse is the response for searching function invocations.", + "id": "d4c8b31b-0af7-4e49-b2ba-3d8b5b43752a", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "functions", - ":function_id", - "invocations", - "search" + "role-mining", + "suggestions", + ":suggestion_id", + "users" ], "host": [ "{{baseUrl}}" @@ -27026,7 +54352,7 @@ }, "type": "any", "value": "", - "key": "function_id" + "key": "suggestion_id" } ] }, @@ -27051,7 +54377,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"profileFilters\": null,\n \"selectedEntitlements\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -27068,7 +54394,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"commitId\": \"\",\n \"createdAt\": \"\",\n \"error\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"input\": {\n \"key_0\": false,\n \"key_1\": false,\n \"key_2\": 5660\n },\n \"output\": {\n \"key_0\": 3719.693715422445,\n \"key_1\": 5598\n },\n \"status\": \"FUNCTION_INVOCATION_STATUS_PENDING\",\n \"updatedAt\": \"\"\n },\n {\n \"commitId\": \"\",\n \"createdAt\": \"\",\n \"error\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"input\": {\n \"key_0\": 2054.559050041691,\n \"key_1\": 6940,\n \"key_2\": false,\n \"key_3\": true\n },\n \"output\": {\n \"key_0\": \"string\"\n },\n \"status\": \"FUNCTION_INVOCATION_STATUS_SUCCESS\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\",\n \"usersWithCoverage\": [\n {\n \"coveredCount\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": null,\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": null,\n \"employeeIds\": null,\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": null,\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": null,\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_AGENT\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": null,\n \"usernames\": null\n }\n },\n {\n \"coveredCount\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": null,\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": null,\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": null,\n \"employmentType\": \"\",\n \"employmentTypeSources\": null,\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": null,\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_AGENT\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n ]\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -27081,44 +54407,315 @@ ] } ] - }, + } + ] + }, + { + "name": "trigger", + "description": "", + "item": [ + { + "id": "f5991e90-72e4-4d5d-a7e3-d389ef0f5fd2", + "name": "Trigger Analysis", + "request": { + "name": "Trigger Analysis", + "description": { + "content": "Start a new role mining analysis job that scans existing access patterns to generate role suggestions.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "role-mining", + "trigger" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "b2501d7b-7069-46e4-8610-2b88a4bacc79", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "role-mining", + "trigger" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"runId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "search", + "description": "", + "item": [ + { + "name": "all_automation_executions", + "description": "", + "item": [ + { + "id": "e6519024-d310-431f-bb81-4a1d49b0bd1b", + "name": "Search All Automation Executions", + "request": { + "name": "Search All Automation Executions", + "description": { + "content": "Search across all automation executions in the tenant, with filters for state, template, app, and subject user.\n Each AutomationExecutionView row is large — request a small page_size (≤10) and set expand_mask to only the paths you need; broad expansion inlines whole related objects and bloats the response.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "search", + "all_automation_executions" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"automationTemplateIds\": null,\n \"executionStates\": [\n \"AUTOMATION_EXECUTION_STATE_COMPLETE_STEP\",\n \"AUTOMATION_EXECUTION_STATE_PROCESS_STEP\"\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"subjectUserIds\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "ece92ba0-e8e7-492f-a6fa-31a273b87c65", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "search", + "all_automation_executions" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"automationTemplateIds\": null,\n \"executionStates\": [\n \"AUTOMATION_EXECUTION_STATE_COMPLETE_STEP\",\n \"AUTOMATION_EXECUTION_STATE_PROCESS_STEP\"\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"subjectUserIds\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": null,\n \"list\": [\n {\n \"automationExecution\": {\n \"automationTemplateId\": \"\",\n \"completedAt\": \"\",\n \"context\": {\n \"context\": null\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"deletedAt\": \"\",\n \"duration\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"state\": \"AUTOMATION_EXECUTION_STATE_PROCESS_STEP\",\n \"updatedAt\": \"\"\n },\n \"automationExecutionTriggerPath\": \"\",\n \"automationPath\": \"\"\n },\n {\n \"automationExecution\": {\n \"automationTemplateId\": \"\",\n \"completedAt\": \"\",\n \"context\": {\n \"context\": null\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"deletedAt\": \"\",\n \"duration\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"state\": \"AUTOMATION_EXECUTION_STATE_GET_STEP\",\n \"updatedAt\": \"\"\n },\n \"automationExecutionTriggerPath\": \"\",\n \"automationPath\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "app_resource_types", + "description": "", + "item": [ { - "name": "invoke", - "description": "", - "item": [ + "id": "6a3a2825-b572-4847-9de3-0f905c6591f9", + "name": "Search App Resource Types", + "request": { + "name": "Search App Resource Types", + "description": { + "content": "Search app resources based on filters specified in the request body.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "search", + "app_resource_types" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"displayName\": \"\",\n \"excludeResourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"excludeResourceTypeTraitIds\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"resourceTypeIds\": null,\n \"resourceTypeTraitIds\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ { - "id": "c325301f-4c4a-48fb-bcec-5a3224290fa5", - "name": "Invoke", - "request": { - "name": "Invoke", - "description": { - "content": "Invoke executes a function at a specific commit with the provided input data.", - "type": "text/plain" - }, + "id": "55d7685d-2f8d-4b7d-adf0-53abc5f2bd20", + "name": "The SearchAppResourceTypesResponse message contains a list of results and a nextPageToken if applicable.", + "originalRequest": { "url": { "path": [ "api", "v1", - "functions", - ":function_id", - "invoke" + "search", + "app_resource_types" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "function_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -27128,247 +54725,231 @@ { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"commitId\": \"\",\n \"json\": \"\",\n \"vfsId\": \"\"\n}", + "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"displayName\": \"\",\n \"excludeResourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"excludeResourceTypeTraitIds\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"resourceTypeIds\": null,\n \"resourceTypeTraitIds\": null\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - }, - "auth": null + } }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "7d09f3b6-de03-4278-85aa-e08140ba062f", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "functions", - ":function_id", - "invoke" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "function_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"commitId\": \"\",\n \"json\": \"\",\n \"vfsId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"invocationId\": \"\",\n \"json\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] - }, + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "app_resources", + "description": "", + "item": [ { - "name": "tags", - "description": "", - "item": [ + "id": "a5593ff5-615b-486e-94e5-f38bd6d6d60d", + "name": "Search App Resources", + "request": { + "name": "Search App Resources", + "description": { + "content": "Search app resources based on filters specified in the request body.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "search", + "app_resources" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"agentStatuses\": null,\n \"appId\": \"\",\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": null,\n \"credentialTypes\": [\n \"CREDENTIAL_TYPE_UNSPECIFIED\",\n \"CREDENTIAL_TYPE_ASYMMETRIC_KEY\"\n ],\n \"direction\": \"SORT_DIRECTION_ASC\",\n \"excludeDeletedApps\": \"\",\n \"excludeDeletedResourceBindings\": \"\",\n \"excludeResourceIds\": null,\n \"excludeResourceTypeTraitIds\": [\n \"\",\n \"\"\n ],\n \"nhiTypes\": [\n \"NHI_TYPE_ASSUMABLE_ROLE\",\n \"NHI_TYPE_MANAGED_IDENTITY\"\n ],\n \"ownerUserIds\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": null,\n \"resourceIds\": null,\n \"resourceTypeIds\": null,\n \"resourceTypeTraitIds\": [\n \"\",\n \"\"\n ],\n \"secretAging\": {\n \"lastUsedAfter\": \"\",\n \"lastUsedBefore\": \"\",\n \"secretCreatedAfter\": \"\",\n \"secretCreatedBefore\": \"\",\n \"secretExpiresAfter\": \"\",\n \"secretExpiresBefore\": \"\"\n },\n \"sortField\": \"APP_RESOURCE_SORT_FIELD_SECRET_CREATED_AT\",\n \"unownedOnly\": \"\",\n \"withOpenFindings\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ { - "id": "dca7f077-2329-48ca-9759-08ffa4a75fa6", - "name": "List Tags", - "request": { - "name": "List Tags", - "description": { - "content": "ListTags lists all tags for a function", - "type": "text/plain" - }, + "id": "75f5c233-ded6-4d0b-bf6f-99e7b5f2d6c9", + "name": "The SearchAppResourcesResponse message contains a list of results and a nextPageToken if applicable.", + "originalRequest": { "url": { "path": [ "api", "v1", - "functions", - ":function_id", - "tags" + "search", + "app_resources" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "function_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], - "method": "GET", - "body": {}, - "auth": null + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"agentStatuses\": null,\n \"appId\": \"\",\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": null,\n \"credentialTypes\": [\n \"CREDENTIAL_TYPE_UNSPECIFIED\",\n \"CREDENTIAL_TYPE_ASYMMETRIC_KEY\"\n ],\n \"direction\": \"SORT_DIRECTION_ASC\",\n \"excludeDeletedApps\": \"\",\n \"excludeDeletedResourceBindings\": \"\",\n \"excludeResourceIds\": null,\n \"excludeResourceTypeTraitIds\": [\n \"\",\n \"\"\n ],\n \"nhiTypes\": [\n \"NHI_TYPE_ASSUMABLE_ROLE\",\n \"NHI_TYPE_MANAGED_IDENTITY\"\n ],\n \"ownerUserIds\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": null,\n \"resourceIds\": null,\n \"resourceTypeIds\": null,\n \"resourceTypeTraitIds\": [\n \"\",\n \"\"\n ],\n \"secretAging\": {\n \"lastUsedAfter\": \"\",\n \"lastUsedBefore\": \"\",\n \"secretCreatedAfter\": \"\",\n \"secretCreatedBefore\": \"\",\n \"secretExpiresAfter\": \"\",\n \"secretExpiresBefore\": \"\"\n },\n \"sortField\": \"APP_RESOURCE_SORT_FIELD_SECRET_CREATED_AT\",\n \"unownedOnly\": \"\",\n \"withOpenFindings\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "6e3e2f4b-a785-433c-9397-94b68d8f6633", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "functions", - ":function_id", - "tags" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "function_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"tags\": {\n \"key_0\": {\n \"author\": \"\",\n \"createdAt\": \"\",\n \"functionId\": \"\",\n \"id\": \"\",\n \"message\": \"\"\n }\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 3797.7109980535183\n },\n {\n \"@type\": \"\"\n }\n ],\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "app_users", + "description": "", + "item": [ + { + "id": "1fa6ba47-cfeb-4439-973d-19285cbe4cc2", + "name": "Search", + "request": { + "name": "Search", + "description": { + "content": "Search app users based on filters specified in the request body.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "search", + "app_users" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"agentStatuses\": [\n \"APP_USER_AGENT_STATUS_DELETED\",\n \"APP_USER_AGENT_STATUS_DISABLED\"\n ],\n \"appId\": \"\",\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserDomains\": [\n \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"APP_USER_DOMAIN_UNSPECIFIED\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"appUserStatusDetails\": [\n \"\",\n \"\"\n ],\n \"appUserStatuses\": null,\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"excludeAppUserIds\": null,\n \"excludeDeletedApps\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"nhiTypes\": [\n \"APP_USER_NHI_TYPE_APP_REGISTRATION\",\n \"APP_USER_NHI_TYPE_UNSPECIFIED\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"sortBy\": \"APP_USER_SEARCH_SORT_BY_UNSPECIFIED\",\n \"userIds\": null,\n \"withOpenFindings\": \"\",\n \"withoutResponsibleParty\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } } }, + "auth": null + }, + "response": [ { - "id": "feae11e1-ff23-482f-b672-b5e4d70e9d00", - "name": "Create Tag", - "request": { - "name": "Create Tag", - "description": { - "content": "CreateTag creates a named reference to a specific commit", - "type": "text/plain" - }, + "id": "82c11bd6-85af-432b-99b3-ff633d6aae5a", + "name": "Successful response", + "originalRequest": { "url": { "path": [ "api", "v1", - "functions", - ":function_id", - "tags" + "search", + "app_users" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "function_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -27378,138 +54959,114 @@ { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"commitId\": \"\",\n \"name\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "6dfdca65-753b-4b30-8404-fb772729fe25", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "functions", - ":function_id", - "tags" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "function_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"commitId\": \"\",\n \"name\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"agentStatuses\": [\n \"APP_USER_AGENT_STATUS_DELETED\",\n \"APP_USER_AGENT_STATUS_DISABLED\"\n ],\n \"appId\": \"\",\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserDomains\": [\n \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"APP_USER_DOMAIN_UNSPECIFIED\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"appUserStatusDetails\": [\n \"\",\n \"\"\n ],\n \"appUserStatuses\": null,\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n ],\n \"excludeAppUserIds\": null,\n \"excludeDeletedApps\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"nhiTypes\": [\n \"APP_USER_NHI_TYPE_APP_REGISTRATION\",\n \"APP_USER_NHI_TYPE_UNSPECIFIED\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"sortBy\": \"APP_USER_SEARCH_SORT_BY_UNSPECIFIED\",\n \"userIds\": null,\n \"withOpenFindings\": \"\",\n \"withoutResponsibleParty\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "body": "{\n \"expanded\": null,\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] - }, + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "apps", + "description": "", + "item": [ { - "name": "test", - "description": "", - "item": [ + "id": "5ed0deb6-7fa7-4b00-8a84-079ee733cc96", + "name": "Search", + "request": { + "name": "Search", + "description": { + "content": "Search apps based on filters specified in the request body.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "search", + "apps" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appIds\": null,\n \"displayName\": \"\",\n \"excludeAppIds\": [\n \"\",\n \"\"\n ],\n \"onlyDirectories\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"policyRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"query\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ { - "id": "b05b10d5-8901-49bf-955b-318a85e47d69", - "name": "Test", - "request": { - "name": "Test", - "description": { - "content": "Test runs a function's test suite in a sandboxed environment and returns the results.", - "type": "text/plain" - }, + "id": "fa14eca7-8144-4405-8085-5c9b23fd8bc3", + "name": "The SearchAppsResponse message contains a list of results and a nextPageToken if applicable.", + "originalRequest": { "url": { "path": [ "api", "v1", - "functions", - ":function_id", - "test" + "search", + "apps" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "function_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -27519,139 +55076,270 @@ { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"commitId\": \"\"\n}", + "raw": "{\n \"appIds\": null,\n \"displayName\": \"\",\n \"excludeAppIds\": [\n \"\",\n \"\"\n ],\n \"onlyDirectories\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"policyRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"query\": \"\"\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - }, - "auth": null + } }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "7884858c-9465-4372-b537-96f58700a69f", - "name": "FunctionsServiceTestResponse contains test execution results.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "functions", - ":function_id", - "test" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{app_id}", + "description": "", + "item": [ + { + "name": "entitlements", + "description": "", + "item": [ + { + "name": "users", + "description": "", + "item": [ + { + "name": "{app_user_id}", + "description": "", + "item": [ { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "id": "820e48f5-bcce-45be-bc5d-f29d43702901", + "name": "Search App Entitlements For App User", + "request": { + "name": "Search App Entitlements For App User", + "description": { + "content": "Search for app entitlements associated with a specific app user, with optional resource type trait filtering.\n Each AppEntitlementView row is large — request a small page_size (≤10) and set expand_mask to only the paths you need; broad expansion inlines whole related objects and bloats the response.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "search", + "apps", + ":app_id", + "entitlements", + "users", + ":app_user_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_user_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null }, - "type": "any", - "value": "", - "key": "function_id" + "response": [ + { + "id": "4fb9ee71-0c4b-41f3-9b8a-2791a7d0d930", + "name": "The ListAppEntitlementsResponse message contains a list of results and a nextPageToken if applicable.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "search", + "apps", + ":app_id", + "entitlements", + "users", + ":app_user_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_user_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 4349\n },\n {\n \"@type\": \"\",\n \"key_0\": 1444,\n \"key_1\": \"string\",\n \"key_2\": 6481\n }\n ],\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 8310.474717575822,\n \"key_2\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n }\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"commitId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" } - ], - "body": "{\n \"result\": {\n \"assertions\": [\n {\n \"actual\": \"\",\n \"at\": \"\",\n \"description\": \"\",\n \"expected\": \"\",\n \"operator\": \"\",\n \"pass\": \"\"\n },\n {\n \"actual\": \"\",\n \"at\": \"\",\n \"description\": \"\",\n \"expected\": \"\",\n \"operator\": \"\",\n \"pass\": \"\"\n }\n ],\n \"error\": \"\",\n \"logs\": [\n {\n \"level\": \"\",\n \"log\": \"\",\n \"source\": \"\"\n },\n {\n \"level\": \"\",\n \"log\": \"\",\n \"source\": \"\"\n }\n ],\n \"name\": \"\",\n \"status\": \"FUNCTION_TEST_RESULT_STATUS_OK\"\n },\n \"results\": [\n {\n \"assertions\": [\n {\n \"actual\": \"\",\n \"at\": \"\",\n \"description\": \"\",\n \"expected\": \"\",\n \"operator\": \"\",\n \"pass\": \"\"\n },\n {\n \"actual\": \"\",\n \"at\": \"\",\n \"description\": \"\",\n \"expected\": \"\",\n \"operator\": \"\",\n \"pass\": \"\"\n }\n ],\n \"error\": \"\",\n \"logs\": [\n {\n \"level\": \"\",\n \"log\": \"\",\n \"source\": \"\"\n },\n {\n \"level\": \"\",\n \"log\": \"\",\n \"source\": \"\"\n }\n ],\n \"name\": \"\",\n \"status\": \"FUNCTION_TEST_RESULT_STATUS_UNSPECIFIED\"\n },\n {\n \"assertions\": [\n {\n \"actual\": \"\",\n \"at\": \"\",\n \"description\": \"\",\n \"expected\": \"\",\n \"operator\": \"\",\n \"pass\": \"\"\n },\n {\n \"actual\": \"\",\n \"at\": \"\",\n \"description\": \"\",\n \"expected\": \"\",\n \"operator\": \"\",\n \"pass\": \"\"\n }\n ],\n \"error\": \"\",\n \"logs\": [\n {\n \"level\": \"\",\n \"log\": \"\",\n \"source\": \"\"\n },\n {\n \"level\": \"\",\n \"log\": \"\",\n \"source\": \"\"\n }\n ],\n \"name\": \"\",\n \"status\": \"FUNCTION_TEST_RESULT_STATUS_SKIPPED\"\n }\n ]\n}", - "cookie": [], - "_postman_previewlanguage": "json" + ] } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] } ] } ] }, { - "name": "{id}", + "name": "attributes", "description": "", "item": [ { - "id": "30c82df1-66e8-4ecd-9f6f-54a5654912ce", - "name": "Delete Function", + "id": "35c0a0e4-8915-49b9-bcd6-885ac62c33d5", + "name": "Search Attribute Values", "request": { - "name": "Delete Function", + "name": "Search Attribute Values", "description": { - "content": "Delete removes a function", + "content": "Search attributes based on filters specified in the request body.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "functions", - ":id" + "search", + "attributes" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -27663,10 +55351,10 @@ "value": "application/json" } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"attributeTypeIds\": [\n \"\",\n \"\"\n ],\n \"excludeIds\": [\n \"\",\n \"\"\n ],\n \"ids\": [\n \"\",\n \"\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"value\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -27678,32 +55366,21 @@ }, "response": [ { - "id": "f9cff65e-dcf8-4a76-9431-67a27e18034b", - "name": "Successful response", + "id": "7ecfa6e2-e6c2-4197-9b69-136e31ca65c7", + "name": "SearchAttributeValuesResponse is the response for searching AttributeValues.", "originalRequest": { "url": { "path": [ "api", "v1", - "functions", - ":id" + "search", + "attributes" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ { @@ -27723,10 +55400,10 @@ "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"attributeTypeIds\": [\n \"\",\n \"\"\n ],\n \"excludeIds\": [\n \"\",\n \"\"\n ],\n \"ids\": [\n \"\",\n \"\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"value\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -27743,7 +55420,7 @@ "value": "application/json" } ], - "body": "{}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -27752,80 +55429,81 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "automation_executions", + "description": "", + "item": [ { - "id": "93806d92-6651-4824-9665-5807d440afb3", - "name": "Get Function", + "id": "2752aad7-c3ed-4724-90b5-d7adc5f335b3", + "name": "Search Automation Executions", "request": { - "name": "Get Function", + "name": "Search Automation Executions", "description": { - "content": "Get retrieves a specific function by ID", + "content": "Search for automation executions with optional filters for automation_template_id, state, and query.\n Each AutomationExecutionView row is large — request a small page_size (≤10) and set expand_mask to only the paths you need; broad expansion inlines whole related objects and bloats the response.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "functions", - ":id" + "search", + "automation_executions" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"automationTemplateId\": \"\",\n \"executionId\": \"\",\n \"executionStepStates\": [\n \"AUTOMATION_EXECUTION_STATE_PROCESS_STEP\",\n \"AUTOMATION_EXECUTION_STATE_GET_STEP\"\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "a4349acf-5676-4af4-9188-b1f80ebbd994", + "id": "b98993ad-daf9-4fde-bb7c-218931851c68", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", - "v1", - "functions", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "v1", + "search", + "automation_executions" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -27839,8 +55517,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"automationTemplateId\": \"\",\n \"executionId\": \"\",\n \"executionStepStates\": [\n \"AUTOMATION_EXECUTION_STATE_PROCESS_STEP\",\n \"AUTOMATION_EXECUTION_STATE_GET_STEP\"\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -27850,7 +55537,7 @@ "value": "application/json" } ], - "body": "{\n \"function\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_CODE_MODE\",\n \"head\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"outboundNetworkAllowlist\": [\n \"\",\n \"\"\n ],\n \"publishedCommitId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"secret\": {\n \"key_0\": \"\"\n },\n \"updatedAt\": \"\",\n \"useSpn\": \"\"\n }\n}", + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\"\n },\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": 5228.74175853391\n }\n ],\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -27863,24 +55550,24 @@ ] }, { - "name": "update", + "name": "automation_versions", "description": "", "item": [ { - "id": "9f62bb78-f7f2-4866-a13f-7c4c0d255732", - "name": "Update Function", + "id": "fd88a82e-1ef1-4dd3-a37b-6ebc8011bf09", + "name": "Search Automation Template Versions", "request": { - "name": "Update Function", + "name": "Search Automation Template Versions", "description": { - "content": "Update updates an existing function's metadata", + "content": "Search for versioned snapshots of an automation template's steps and triggers.\n Each version carries a full steps-and-triggers snapshot — request a small page_size (≤10) to keep responses small.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "functions", - "update" + "search", + "automation_versions" ], "host": [ "{{baseUrl}}" @@ -27901,7 +55588,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"function\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_ANY\",\n \"head\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"outboundNetworkAllowlist\": [\n \"\",\n \"\"\n ],\n \"publishedCommitId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"secret\": {\n \"key_0\": \"\"\n }\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"automationTemplateId\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -27913,15 +55600,15 @@ }, "response": [ { - "id": "0858c19d-ba7f-472f-924d-7a5264b6be17", + "id": "12f0f9c1-a880-4a80-b5eb-87ff0c3cff62", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "functions", - "update" + "search", + "automation_versions" ], "host": [ "{{baseUrl}}" @@ -27950,7 +55637,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"function\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_ANY\",\n \"head\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"outboundNetworkAllowlist\": [\n \"\",\n \"\"\n ],\n \"publishedCommitId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"secret\": {\n \"key_0\": \"\"\n }\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"automationTemplateId\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -27967,7 +55654,7 @@ "value": "application/json" } ], - "body": "{\n \"function\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_UNSPECIFIED\",\n \"head\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"outboundNetworkAllowlist\": [\n \"\",\n \"\"\n ],\n \"publishedCommitId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"secret\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"updatedAt\": \"\",\n \"useSpn\": \"\"\n }\n}", + "body": "{\n \"list\": [\n {\n \"automationSteps\": null,\n \"automationTemplateId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"triggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_CONDUCTOR_ONE\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": null\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_USER\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": null,\n \"complianceFrameworkIds\": null,\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": null\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": null\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": null,\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": null,\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ],\n \"updatedAt\": \"\",\n \"version\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -27978,32 +55665,26 @@ } } ] - } - ] - }, - { - "name": "grants", - "description": "", - "item": [ + }, { - "name": "feed", + "name": "automations", "description": "", "item": [ { - "id": "d8e5851b-7790-4152-b93e-c378d21d0c4a", - "name": "Search Grant Feed", + "id": "f235c315-8242-42a7-b1a7-297f955313d9", + "name": "Search Automations", "request": { - "name": "Search Grant Feed", + "name": "Search Automations", "description": { - "content": "Search a chronological feed of grant and revoke events, filtered by app user, entitlement, or time range.", + "content": "Search for automations matching the provided filters, including query text, template refs, app, and trigger types.\n Each Automation row is heavy (carries its full triggers and steps) — request a small page_size (≤10) to keep responses small.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "grants", - "feed" + "search", + "automations" ], "host": [ "{{baseUrl}}" @@ -28024,7 +55705,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"after\": \"\",\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"appUserRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"before\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "raw": "{\n \"appId\": \"\",\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"direction\": \"SORT_DIRECTION_ASC\",\n \"isDraft\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"sortField\": \"AUTOMATION_SORT_FIELD_CREATED_AT\",\n \"statuses\": [\n \"AUTOMATION_STATUS_FILTER_OFF\",\n \"AUTOMATION_STATUS_FILTER_ON\"\n ],\n \"triggerTypes\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -28036,15 +55717,15 @@ }, "response": [ { - "id": "a8e68f92-b5f8-4760-a229-07ca9adde34b", - "name": "The SearchGrantFeedResponse message contains a list of grant event results and a nextPageToken if applicable.", + "id": "217f5fe1-fbaa-4fc4-95bd-e9a86ba3e755", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "grants", - "feed" + "search", + "automations" ], "host": [ "{{baseUrl}}" @@ -28073,7 +55754,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"after\": \"\",\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"appUserRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"before\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "raw": "{\n \"appId\": \"\",\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"direction\": \"SORT_DIRECTION_ASC\",\n \"isDraft\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"sortField\": \"AUTOMATION_SORT_FIELD_CREATED_AT\",\n \"statuses\": [\n \"AUTOMATION_STATUS_FILTER_OFF\",\n \"AUTOMATION_STATUS_FILTER_ON\"\n ],\n \"triggerTypes\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -28090,7 +55771,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n },\n {\n \"@type\": \"\",\n \"key_0\": 2398.8087881218466,\n \"key_1\": 8625.725291404318\n }\n ],\n \"list\": [\n {\n \"appPath\": \"\",\n \"appUserPath\": \"\",\n \"entitlementPath\": \"\",\n \"feed\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"date\": \"\",\n \"eventType\": \"GRANT_EVENT_TYPE_UNSPECIFIED\",\n \"ticketId\": \"\"\n },\n \"ticketPath\": \"\"\n },\n {\n \"appPath\": \"\",\n \"appUserPath\": \"\",\n \"entitlementPath\": \"\",\n \"feed\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"date\": \"\",\n \"eventType\": \"GRANT_EVENT_TYPE_UNSPECIFIED\",\n \"ticketId\": \"\"\n },\n \"ticketPath\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -28101,188 +55782,26 @@ } } ] - } - ] - }, - { - "name": "hooks", - "description": "", - "item": [ - { - "id": "177410f3-9ddf-4cfa-8333-e19738e0dbbd", - "name": "List", - "request": { - "name": "List", - "description": { - "content": "Invokes the c1.api.hooks.v1.HooksService.List method.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "hooks" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "bb35c8fe-dd1e-4633-9d6f-8904b38e9232", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "hooks" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"builtinPattern\": {\n \"creditCardBlocking\": {},\n \"piiRedaction\": {\n \"redactFields\": [\n \"\",\n \"\"\n ],\n \"replacement\": \"\"\n },\n \"queryScopeLimit\": {\n \"fields\": [\n \"\",\n \"\"\n ],\n \"maxLimit\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": [\n \"\",\n \"\"\n ],\n \"blockedPatterns\": [\n \"\",\n \"\"\n ]\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": [\n \"TOOL_CLASSIFICATION_DANGEROUS\",\n \"TOOL_CLASSIFICATION_WRITE\"\n ],\n \"businessHours\": {\n \"days\": [\n \"\",\n \"\"\n ],\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_PRE_TOOL_USE\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"id\": \"\",\n \"priority\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"builtinPattern\": {\n \"creditCardBlocking\": {},\n \"piiRedaction\": {\n \"redactFields\": [\n \"\",\n \"\"\n ],\n \"replacement\": \"\"\n },\n \"queryScopeLimit\": {\n \"fields\": [\n \"\",\n \"\"\n ],\n \"maxLimit\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": [\n \"\",\n \"\"\n ],\n \"blockedPatterns\": [\n \"\",\n \"\"\n ]\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": [\n \"TOOL_CLASSIFICATION_DESTRUCTIVE\",\n \"TOOL_CLASSIFICATION_DANGEROUS\"\n ],\n \"businessHours\": {\n \"days\": [\n \"\",\n \"\"\n ],\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_UNSPECIFIED\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"id\": \"\",\n \"priority\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } }, { - "id": "978a0f32-dbed-41ad-afb9-fc1880b22bb2", - "name": "Create", - "request": { - "name": "Create", - "description": { - "content": "Invokes the c1.api.hooks.v1.HooksService.Create method.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "hooks" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"builtinPattern\": {\n \"creditCardBlocking\": {},\n \"piiRedaction\": {\n \"redactFields\": [\n \"\",\n \"\"\n ],\n \"replacement\": \"\"\n },\n \"queryScopeLimit\": {\n \"fields\": [\n \"\",\n \"\"\n ],\n \"maxLimit\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": [\n \"\",\n \"\"\n ],\n \"blockedPatterns\": [\n \"\",\n \"\"\n ]\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": [\n \"TOOL_CLASSIFICATION_SENSITIVE\",\n \"TOOL_CLASSIFICATION_WRITE\"\n ],\n \"businessHours\": {\n \"days\": [\n \"\",\n \"\"\n ],\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"description\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_PRE_TOOL_USE\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"priority\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "name": "credential-inventory-policies", + "description": "", + "item": [ { - "id": "023ed39e-645c-48e6-b457-4c6663d10c52", - "name": "Successful response", - "originalRequest": { + "id": "2b1b1ee7-14c9-45ec-9ea6-8bdf37e55eff", + "name": "Search", + "request": { + "name": "Search", + "description": { + "content": "Search credential inventory policies by name, or fetch a specific set by\n ID. Returns one page of matching policies at a time.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "hooks" + "search", + "credential-inventory-policies" ], "host": [ "{{baseUrl}}" @@ -28298,82 +55817,114 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"builtinPattern\": {\n \"creditCardBlocking\": {},\n \"piiRedaction\": {\n \"redactFields\": [\n \"\",\n \"\"\n ],\n \"replacement\": \"\"\n },\n \"queryScopeLimit\": {\n \"fields\": [\n \"\",\n \"\"\n ],\n \"maxLimit\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": [\n \"\",\n \"\"\n ],\n \"blockedPatterns\": [\n \"\",\n \"\"\n ]\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": [\n \"TOOL_CLASSIFICATION_SENSITIVE\",\n \"TOOL_CLASSIFICATION_WRITE\"\n ],\n \"businessHours\": {\n \"days\": [\n \"\",\n \"\"\n ],\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"description\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_PRE_TOOL_USE\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"priority\": \"\"\n}", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "e641eeee-b1fe-478e-b732-6697854126e4", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "search", + "credential-inventory-policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"hook\": {\n \"builtinPattern\": {\n \"creditCardBlocking\": {},\n \"piiRedaction\": {\n \"redactFields\": [\n \"\",\n \"\"\n ],\n \"replacement\": \"\"\n },\n \"queryScopeLimit\": {\n \"fields\": [\n \"\",\n \"\"\n ],\n \"maxLimit\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": [\n \"\",\n \"\"\n ],\n \"blockedPatterns\": [\n \"\",\n \"\"\n ]\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": [\n \"TOOL_CLASSIFICATION_UNSPECIFIED\",\n \"TOOL_CLASSIFICATION_READ\"\n ],\n \"businessHours\": {\n \"days\": [\n \"\",\n \"\"\n ],\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_POST_TOOL_USE\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"id\": \"\",\n \"priority\": \"\",\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, { - "name": "{id}", + "name": "entitlements", "description": "", "item": [ { - "id": "7d4d4016-c44e-41ce-a5fb-2abf8598f866", - "name": "Delete", + "id": "3c771872-63a5-4cbf-bd8b-44a22132522b", + "name": "Search", "request": { - "name": "Delete", + "name": "Search", "description": { - "content": "Invokes the c1.api.hooks.v1.HooksService.Delete method.", + "content": "Search app entitlements based on filters specified in the request body.\n Each AppEntitlementView row is large — request a small page_size (≤10) and set expand_mask to only the paths you need; broad expansion inlines whole related objects and bloats the response.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "hooks", - ":id" + "search", + "entitlements" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -28385,10 +55936,10 @@ "value": "application/json" } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"accessReviewId\": \"\",\n \"alias\": \"\",\n \"appIds\": null,\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"complianceFrameworkIds\": null,\n \"displayName\": \"\",\n \"excludeAppIds\": null,\n \"excludeAppUserIds\": null,\n \"excludeImmutable\": \"\",\n \"excludeResourceTypeIds\": null,\n \"excludedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"expandMask\": {\n \"paths\": null\n },\n \"includeDeleted\": \"\",\n \"isAutomated\": \"\",\n \"membershipType\": [\n \"APP_ENTITLEMENT_MEMBERSHIP_TYPE_EXCLUSION\",\n \"APP_ENTITLEMENT_MEMBERSHIP_TYPE_OWNER\"\n ],\n \"onlyGetExpiring\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"policyRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"query\": \"\",\n \"refs\": null,\n \"requestSchemaIds\": [\n \"\",\n \"\"\n ],\n \"resourceIds\": [\n \"\",\n \"\"\n ],\n \"resourceTraitIds\": null,\n \"resourceTypeIds\": null,\n \"riskLevelIds\": [\n \"\",\n \"\"\n ],\n \"sourceConnectorId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -28400,32 +55951,21 @@ }, "response": [ { - "id": "0e1603c1-a607-4600-bfaf-ef8a95f02b7b", + "id": "adca0843-ac97-4de2-b3fe-03824771d409", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "hooks", - ":id" + "search", + "entitlements" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ { @@ -28445,10 +55985,10 @@ "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"accessReviewId\": \"\",\n \"alias\": \"\",\n \"appIds\": null,\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"complianceFrameworkIds\": null,\n \"displayName\": \"\",\n \"excludeAppIds\": null,\n \"excludeAppUserIds\": null,\n \"excludeImmutable\": \"\",\n \"excludeResourceTypeIds\": null,\n \"excludedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"expandMask\": {\n \"paths\": null\n },\n \"includeDeleted\": \"\",\n \"isAutomated\": \"\",\n \"membershipType\": [\n \"APP_ENTITLEMENT_MEMBERSHIP_TYPE_EXCLUSION\",\n \"APP_ENTITLEMENT_MEMBERSHIP_TYPE_OWNER\"\n ],\n \"onlyGetExpiring\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"policyRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"query\": \"\",\n \"refs\": null,\n \"requestSchemaIds\": [\n \"\",\n \"\"\n ],\n \"resourceIds\": [\n \"\",\n \"\"\n ],\n \"resourceTraitIds\": null,\n \"resourceTypeIds\": null,\n \"riskLevelIds\": [\n \"\",\n \"\"\n ],\n \"sourceConnectorId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -28465,7 +56005,7 @@ "value": "application/json" } ], - "body": "{}", + "body": "{\n \"expanded\": null,\n \"facets\": {\n \"count\": \"\",\n \"facets\": null\n },\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 7169.92729221086,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n }\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": null,\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 870\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"read\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -28474,80 +56014,81 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "finding_audits", + "description": "", + "item": [ { - "id": "e8b5d387-b254-44e8-af05-fa59462ff998", - "name": "Get", + "id": "60919714-fed6-4697-aedb-08166cc9d408", + "name": "Search", "request": { - "name": "Get", + "name": "Search", "description": { - "content": "Invokes the c1.api.hooks.v1.HooksService.Get method.", + "content": "Search returns audit events filtered by finding, actor, type, or\n app. Authorized as VIEWER -- the same role required to read the\n finding itself.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "hooks", - ":id" + "search", + "finding_audits" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"actorPrincipalId\": \"\",\n \"actorSubject\": \"\",\n \"appId\": \"\",\n \"eventTypes\": null,\n \"findingId\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"since\": \"\",\n \"until\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "e5aee33f-4ed7-4d65-ba40-316247477462", + "id": "fd6f7f77-7e0e-491a-9a1f-a2d95b36d38d", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "hooks", - ":id" + "search", + "finding_audits" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -28561,8 +56102,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"actorPrincipalId\": \"\",\n \"actorSubject\": \"\",\n \"appId\": \"\",\n \"eventTypes\": null,\n \"findingId\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"since\": \"\",\n \"until\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -28572,7 +56122,7 @@ "value": "application/json" } ], - "body": "{\n \"hook\": {\n \"builtinPattern\": {\n \"creditCardBlocking\": {},\n \"piiRedaction\": {\n \"redactFields\": [\n \"\",\n \"\"\n ],\n \"replacement\": \"\"\n },\n \"queryScopeLimit\": {\n \"fields\": [\n \"\",\n \"\"\n ],\n \"maxLimit\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": [\n \"\",\n \"\"\n ],\n \"blockedPatterns\": [\n \"\",\n \"\"\n ]\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": [\n \"TOOL_CLASSIFICATION_SENSITIVE\",\n \"TOOL_CLASSIFICATION_WRITE\"\n ],\n \"businessHours\": {\n \"days\": [\n \"\",\n \"\"\n ],\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_POST_TOOL_USE\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"id\": \"\",\n \"priority\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"list\": [\n {\n \"actorPrincipalId\": \"\",\n \"actorSubject\": \"\",\n \"appId\": \"\",\n \"bulkOperationId\": \"\",\n \"createdAt\": \"\",\n \"eventId\": \"\",\n \"eventType\": \"FINDING_AUDIT_EVENT_TYPE_EVIDENCE_UPDATED\",\n \"findingId\": \"\",\n \"ocsf\": {\n \"key_0\": 2671\n },\n \"severityAtEvent\": \"FINDING_SEVERITY_INFO\",\n \"stateAtEvent\": \"FINDING_STATE_SNOOZED\",\n \"ticketId\": \"\"\n },\n {\n \"actorPrincipalId\": \"\",\n \"actorSubject\": \"\",\n \"appId\": \"\",\n \"bulkOperationId\": \"\",\n \"createdAt\": \"\",\n \"eventId\": \"\",\n \"eventType\": \"FINDING_AUDIT_EVENT_TYPE_REPROCESS_COMPLETED\",\n \"findingId\": \"\",\n \"ocsf\": {\n \"key_0\": true,\n \"key_1\": 9512\n },\n \"severityAtEvent\": \"FINDING_SEVERITY_INFO\",\n \"stateAtEvent\": \"FINDING_STATE_UNSPECIFIED\",\n \"ticketId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -28581,39 +56131,34 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "functions", + "description": "", + "item": [ { - "id": "b111338d-0a19-4bce-9005-4ed4f1b8b314", - "name": "Update", + "id": "4995b0db-70f0-40cb-bd55-06c068db4ac4", + "name": "Search", "request": { - "name": "Update", + "name": "Search", "description": { - "content": "Invokes the c1.api.hooks.v1.HooksService.Update method.", + "content": "Search searches for functions based on criteria", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "hooks", - ":id" + "search", + "functions" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -28628,7 +56173,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"hook\": {\n \"builtinPattern\": {\n \"creditCardBlocking\": {},\n \"piiRedaction\": {\n \"redactFields\": [\n \"\",\n \"\"\n ],\n \"replacement\": \"\"\n },\n \"queryScopeLimit\": {\n \"fields\": [\n \"\",\n \"\"\n ],\n \"maxLimit\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": [\n \"\",\n \"\"\n ],\n \"blockedPatterns\": [\n \"\",\n \"\"\n ]\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": [\n \"TOOL_CLASSIFICATION_UNSPECIFIED\",\n \"TOOL_CLASSIFICATION_WRITE\"\n ],\n \"businessHours\": {\n \"days\": [\n \"\",\n \"\"\n ],\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_POST_TOOL_USE\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"id\": \"\",\n \"priority\": \"\"\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"functionTypes\": [\n \"FUNCTION_TYPE_UNSPECIFIED\",\n \"FUNCTION_TYPE_UNSPECIFIED\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -28640,32 +56185,21 @@ }, "response": [ { - "id": "524c6d2e-436d-443a-b2d3-1178a0718470", + "id": "7250b53a-ab34-4b40-aaf5-c6fa37527862", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "hooks", - ":id" + "search", + "functions" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ { @@ -28688,7 +56222,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"hook\": {\n \"builtinPattern\": {\n \"creditCardBlocking\": {},\n \"piiRedaction\": {\n \"redactFields\": [\n \"\",\n \"\"\n ],\n \"replacement\": \"\"\n },\n \"queryScopeLimit\": {\n \"fields\": [\n \"\",\n \"\"\n ],\n \"maxLimit\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": [\n \"\",\n \"\"\n ],\n \"blockedPatterns\": [\n \"\",\n \"\"\n ]\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": [\n \"TOOL_CLASSIFICATION_UNSPECIFIED\",\n \"TOOL_CLASSIFICATION_WRITE\"\n ],\n \"businessHours\": {\n \"days\": [\n \"\",\n \"\"\n ],\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_POST_TOOL_USE\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"id\": \"\",\n \"priority\": \"\"\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"functionTypes\": [\n \"FUNCTION_TYPE_UNSPECIFIED\",\n \"FUNCTION_TYPE_UNSPECIFIED\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -28705,7 +56239,7 @@ "value": "application/json" } ], - "body": "{\n \"hook\": {\n \"builtinPattern\": {\n \"creditCardBlocking\": {},\n \"piiRedaction\": {\n \"redactFields\": [\n \"\",\n \"\"\n ],\n \"replacement\": \"\"\n },\n \"queryScopeLimit\": {\n \"fields\": [\n \"\",\n \"\"\n ],\n \"maxLimit\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": [\n \"\",\n \"\"\n ],\n \"blockedPatterns\": [\n \"\",\n \"\"\n ]\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": [\n \"TOOL_CLASSIFICATION_DANGEROUS\",\n \"TOOL_CLASSIFICATION_SENSITIVE\"\n ],\n \"businessHours\": {\n \"days\": [\n \"\",\n \"\"\n ],\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_PRE_TOOL_USE\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"id\": \"\",\n \"priority\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_CODE_MODE\",\n \"head\": \"\",\n \"hookRefs\": null,\n \"id\": \"\",\n \"isDraft\": \"\",\n \"outboundNetworkAllowlist\": null,\n \"provisionedConcurrency\": \"\",\n \"publishedCommitId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"secret\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"updatedAt\": \"\",\n \"useSpn\": \"\",\n \"workflowTemplateRefs\": null\n },\n {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_CODE_MODE\",\n \"head\": \"\",\n \"hookRefs\": null,\n \"id\": \"\",\n \"isDraft\": \"\",\n \"outboundNetworkAllowlist\": null,\n \"provisionedConcurrency\": \"\",\n \"publishedCommitId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"secret\": {\n \"key_0\": \"\"\n },\n \"updatedAt\": \"\",\n \"useSpn\": \"\",\n \"workflowTemplateRefs\": null\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -28716,32 +56250,26 @@ } } ] - } - ] - }, - { - "name": "iam", - "description": "", - "item": [ + }, { - "name": "personal_clients", + "name": "grants", "description": "", "item": [ { - "id": "fe820cd7-7dea-41bd-9dea-42c0236adfec", - "name": "NOTE: Only shows personal clients for the current user.", + "id": "9a7bef99-9c98-4899-8f80-bfee6d8c2133", + "name": "Search Grants", "request": { - "name": "NOTE: Only shows personal clients for the current user.", + "name": "Search Grants", "description": { - "content": "List returns all personal client credentials owned by the calling user.", + "content": "Search grants (user-to-entitlement bindings) across apps, with filters for app, user, resource type, and entitlement.\n Rows are heavy (each binding carries a full entitlement + user view) — request a small page_size (≤10) and set expand_mask to only the paths you need; broad expansion inlines whole related objects and bloats the response.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "iam", - "personal_clients" + "search", + "grants" ], "host": [ "{{baseUrl}}" @@ -28750,26 +56278,39 @@ "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"entitlementSlugs\": [\n \"\",\n \"\"\n ],\n \"expandMask\": {\n \"paths\": null\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"purpose\": null,\n \"resourceIds\": [\n \"\",\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"userId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "502f9613-cb03-4aaf-a4b5-ef7fb9b80fbd", + "id": "3037a376-045a-4662-b2d0-b796de754819", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "iam", - "personal_clients" + "search", + "grants" ], "host": [ "{{baseUrl}}" @@ -28778,6 +56319,10 @@ "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -28791,8 +56336,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"entitlementSlugs\": [\n \"\",\n \"\"\n ],\n \"expandMask\": {\n \"paths\": null\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"purpose\": null,\n \"resourceIds\": [\n \"\",\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"userId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -28802,7 +56356,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"allowSourceCidr\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n {\n \"allowSourceCidr\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"expanded\": null,\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -28811,22 +56365,28 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "graph", + "description": "", + "item": [ { - "id": "517ff986-90c4-4bfc-9cdc-0909aa242ee5", - "name": "Create", + "id": "2b445915-ade2-4f0b-8f77-cca7bf88762e", + "name": "Search Graph", "request": { - "name": "Create", + "name": "Search Graph", "description": { - "content": "Create creates a new PersonalClient object for the current User.", + "content": "SearchGraph performs a server-side BFS traversal and returns a bounded, filtered subgraph.\n Exactly one of user_id, app_id, or resource_id must be set.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "iam", - "personal_clients" + "search", + "graph" ], "host": [ "{{baseUrl}}" @@ -28847,7 +56407,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"allowSourceCidr\": [\n \"\",\n \"\"\n ],\n \"displayName\": \"\",\n \"expires\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{\n \"appId\": \"\",\n \"appIds\": null,\n \"entitlementIds\": null,\n \"entitlementNameQuery\": \"\",\n \"maxDepth\": \"\",\n \"maxFanOut\": \"\",\n \"maxNodes\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"resourceId\": \"\",\n \"resourceIds\": null,\n \"resourceNameQuery\": \"\",\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"userId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -28859,15 +56419,15 @@ }, "response": [ { - "id": "84422390-ae0b-43f2-b9b9-de38634a1b98", - "name": "The PersonalClientServiceCreateResponse message contains the created personal client and client secret.", + "id": "4999e382-8798-4ba4-9e26-0aee8db5e7af", + "name": "SearchGraph response. Contains a subgraph of nodes and edges.", "originalRequest": { "url": { "path": [ "api", "v1", - "iam", - "personal_clients" + "search", + "graph" ], "host": [ "{{baseUrl}}" @@ -28896,7 +56456,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"allowSourceCidr\": [\n \"\",\n \"\"\n ],\n \"displayName\": \"\",\n \"expires\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{\n \"appId\": \"\",\n \"appIds\": null,\n \"entitlementIds\": null,\n \"entitlementNameQuery\": \"\",\n \"maxDepth\": \"\",\n \"maxFanOut\": \"\",\n \"maxNodes\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"resourceId\": \"\",\n \"resourceIds\": null,\n \"resourceNameQuery\": \"\",\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"userId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -28913,7 +56473,7 @@ "value": "application/json" } ], - "body": "{\n \"client\": {\n \"allowSourceCidr\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"clientSecret\": \"\"\n}", + "body": "{\n \"edges\": null,\n \"hasMore\": \"\",\n \"nodeCeilingHit\": \"\",\n \"nodes\": null,\n \"pageToken\": \"\",\n \"pathsReturned\": \"\",\n \"truncatedNodeIds\": null\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -28924,42 +56484,31 @@ } }, { - "name": "{id}", + "name": "counts", "description": "", "item": [ { - "id": "b09b89c7-5473-4199-8ef8-6dd4f4029058", - "name": "Delete", + "id": "650dfa88-06df-4f18-b6bb-a8fd60237711", + "name": "Count Grants For User By App", "request": { - "name": "Delete", + "name": "Count Grants For User By App", "description": { - "content": "Delete a personal client credential, revoking it and preventing further API access.", + "content": "CountGrantsForUserByApp returns, for a user, the number of grants held per\n application. Use it to size or filter an access graph before calling\n SearchGraph: counts are computed directly from grant bindings and are an\n upper bound on what SearchGraph will render for the same user and app\n filter (SearchGraph applies additional filters that this count does not).", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "iam", - "personal_clients", - ":id" + "search", + "graph", + "counts" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -28971,10 +56520,10 @@ "value": "application/json" } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"userId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -28986,33 +56535,22 @@ }, "response": [ { - "id": "b36665b6-03a3-41c3-8c74-3677c053dbbc", - "name": "Successful response", + "id": "ab5ab93d-f631-4a56-bde8-ab2237f4f5ae", + "name": "CountGrantsForUserByApp response. Grant counts are computed directly from\n grant bindings and are an upper bound on what SearchGraph renders for the\n same user and app filter — SearchGraph applies additional filters that\n these counts do not.", "originalRequest": { "url": { "path": [ "api", "v1", - "iam", - "personal_clients", - ":id" + "search", + "graph", + "counts" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ { @@ -29032,10 +56570,10 @@ "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"userId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -29052,116 +56590,7 @@ "value": "application/json" } ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "8255dd49-516f-44a5-a987-22b1efea8c49", - "name": "Get", - "request": { - "name": "Get", - "description": { - "content": "Get retrieves a single personal client credential by its ID.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "iam", - "personal_clients", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "66a11973-34c0-47c2-a12b-59a014a6271f", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "iam", - "personal_clients", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"client\": {\n \"allowSourceCidr\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n}", + "body": "{\n \"appCount\": \"\",\n \"appGrantCounts\": null,\n \"appUsers\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"band\": \"GRAPH_SIZE_BAND_TOO_LARGE\",\n \"totalGrants\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -29170,40 +56599,35 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "resources", + "description": "", + "item": [ { - "id": "d9f16822-a805-43c9-8303-e2f6da3a736d", - "name": "Update", + "id": "3ee0ca70-f441-4ea6-a096-43bc2806d0b9", + "name": "Search Reachable Resources For User", "request": { - "name": "Update", + "name": "Search Reachable Resources For User", "description": { - "content": "Update modifies an existing personal client credential. Use the update mask to specify which fields to change.", + "content": "SearchReachableResourcesForUser returns the distinct app resources a user\n can reach through any of their grants, deduplicated across entitlements\n (a resource reachable via more than one grant appears once). Powers the\n Resources lane of the access graph's list view: supports free-text search\n over resource display name and narrowing to specific applications.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "iam", - "personal_clients", - ":id" + "search", + "graph", + "resources" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -29218,7 +56642,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"client\": {\n \"allowSourceCidr\": [\n \"\",\n \"\"\n ],\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"appIds\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"userId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -29230,33 +56654,22 @@ }, "response": [ { - "id": "80fcfb8c-f323-405a-8edc-59db8e7ecd20", - "name": "Successful response", + "id": "72036678-f31b-4c4c-ae4e-036e8231e514", + "name": "SearchReachableResourcesForUser response. Resources are deduplicated: a\n resource reachable through more than one grant or entitlement appears once.", "originalRequest": { "url": { "path": [ "api", "v1", - "iam", - "personal_clients", - ":id" + "search", + "graph", + "resources" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ { @@ -29279,7 +56692,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"client\": {\n \"allowSourceCidr\": [\n \"\",\n \"\"\n ],\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"appIds\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"userId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -29296,7 +56709,7 @@ "value": "application/json" } ], - "body": "{\n \"client\": {\n \"allowSourceCidr\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -29311,98 +56724,77 @@ ] }, { - "name": "roles", + "name": "hooks", "description": "", "item": [ { - "id": "1e9d1843-6de1-4141-936b-4f76534c39a9", - "name": "List", + "id": "206bd794-080d-4296-a007-8cc6df52e51a", + "name": "Search", "request": { - "name": "List", + "name": "Search", "description": { - "content": "List all roles for the current user.", + "content": "Invokes the c1.api.hooks.v1.HooksSearch.Search method.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "iam", - "roles" + "search", + "hooks" ], "host": [ "{{baseUrl}}" ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], + "query": [], "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "337187b6-f798-429f-8ed3-92a7c50651f6", - "name": "The ListRolesResponse message contains a list of results and a nextPageToken if applicable.", + "id": "dd9f3b67-596d-4155-b69c-d4f44b08ed04", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "iam", - "roles" + "search", + "hooks" ], "host": [ "{{baseUrl}}" ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], + "query": [], "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -29416,8 +56808,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -29427,7 +56828,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"name\": \"\",\n \"permissions\": [\n \"\",\n \"\"\n ],\n \"serviceRoles\": [\n \"\",\n \"\"\n ],\n \"systemApiOnly\": \"\",\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"name\": \"\",\n \"permissions\": [\n \"\",\n \"\"\n ],\n \"serviceRoles\": [\n \"\",\n \"\"\n ],\n \"systemApiOnly\": \"\",\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -29436,86 +56837,206 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "iam", + "description": "", + "item": [ { - "name": "{role_id}", + "name": "external_clients", "description": "", "item": [ { - "id": "811a9070-1820-4487-a874-07d179cc852f", - "name": "Get", + "id": "d3acabd6-709b-4668-bdc0-1d078793acef", + "name": "NOTE: Searches external client grants for all users", "request": { - "name": "Get", + "name": "NOTE: Searches external client grants for all users", "description": { - "content": "Get a role by id.", + "content": "Search returns external client grants for all users in the tenant.\n Request a modest page_size (≤25) to keep responses small.", "type": "text/plain" }, "url": { "path": [ "api", "v1", + "search", "iam", - "roles", - ":role_id" + "external_clients" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "role_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"clientIdUrls\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"users\": null,\n \"wellKnownClients\": [\n \"WELL_KNOWN_CLIENT_CLAUDE_DESKTOP\",\n \"WELL_KNOWN_CLIENT_ZED\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "01812575-db3d-420e-a6b0-6a5510e68925", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "search", + "iam", + "external_clients" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"clientIdUrls\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"users\": null,\n \"wellKnownClients\": [\n \"WELL_KNOWN_CLIENT_CLAUDE_DESKTOP\",\n \"WELL_KNOWN_CLIENT_ZED\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } } } - ] + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"clientId\": \"\",\n \"clientIdType\": \"CLIENT_ID_TYPE_METADATA_URL\",\n \"clientIdUrl\": \"\",\n \"clientName\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"lastUsedAt\": \"\",\n \"mcpClientId\": \"\",\n \"roleIds\": null,\n \"userId\": \"\",\n \"verifiedDomain\": \"\",\n \"wellKnownClient\": \"WELL_KNOWN_CLIENT_VSCODE\"\n },\n {\n \"clientId\": \"\",\n \"clientIdType\": \"CLIENT_ID_TYPE_APP\",\n \"clientIdUrl\": \"\",\n \"clientName\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"lastUsedAt\": \"\",\n \"mcpClientId\": \"\",\n \"roleIds\": null,\n \"userId\": \"\",\n \"verifiedDomain\": \"\",\n \"wellKnownClient\": \"WELL_KNOWN_CLIENT_VSCODE\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "personal_clients", + "description": "", + "item": [ + { + "id": "aeb00eef-4944-4abe-99df-44dbd72d812c", + "name": "NOTE: Searches personal clients for all users", + "request": { + "name": "NOTE: Searches personal clients for all users", + "description": { + "content": "Search finds personal client credentials across all users, with optional filtering by query text or user.\n Request a modest page_size (≤25) to keep responses small.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "search", + "iam", + "personal_clients" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"users\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "0d04ac2b-7be1-444e-815b-684fe9dab4c3", - "name": "The GetRolesResponse message contains the retrieved role.", + "id": "f3ee5f81-0226-4018-b259-24a22ffde594", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", + "search", "iam", - "roles", - ":role_id" + "personal_clients" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "role_id" - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -29529,8 +57050,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"users\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -29540,7 +57070,7 @@ "value": "application/json" } ], - "body": "{\n \"role\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"name\": \"\",\n \"permissions\": [\n \"\",\n \"\"\n ],\n \"serviceRoles\": [\n \"\",\n \"\"\n ],\n \"systemApiOnly\": \"\",\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -29549,40 +57079,35 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "personal_devices", + "description": "", + "item": [ { - "id": "80907b83-4e67-4240-b41d-28081be1c1b9", - "name": "Update", + "id": "883373eb-c422-4418-9dbb-423f2ff9ca0a", + "name": "NOTE: Only shows devices for the current user.", "request": { - "name": "Update", + "name": "NOTE: Only shows devices for the current user.", "description": { - "content": "Update a role by passing a Role object.", + "content": "Search returns the calling user's registered devices, ordered by display name.\n By default only active devices are returned; use the status filter to include\n revoked devices. Optionally filter by a display-name query.", "type": "text/plain" }, "url": { "path": [ "api", "v1", + "search", "iam", - "roles", - ":role_id" + "personal_devices" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "role_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -29597,7 +57122,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"role\": {\n \"displayName\": \"\",\n \"permissions\": [\n \"\",\n \"\"\n ],\n \"serviceRoles\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"statusFilter\": \"PERSONAL_DEVICE_STATUS_FILTER_REVOKED\"\n}", "options": { "raw": { "headerFamily": "json", @@ -29609,33 +57134,22 @@ }, "response": [ { - "id": "4b5e957b-5723-41a6-b443-f0228fd2dbb2", - "name": "UpdateRolesResponse is the response message containing the updated role.", + "id": "0502d1b0-f5f2-4d75-a628-8a24e39ed9dd", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", + "search", "iam", - "roles", - ":role_id" + "personal_devices" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "role_id" - } - ] + "variable": [] }, "header": [ { @@ -29658,7 +57172,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"role\": {\n \"displayName\": \"\",\n \"permissions\": [\n \"\",\n \"\"\n ],\n \"serviceRoles\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"statusFilter\": \"PERSONAL_DEVICE_STATUS_FILTER_REVOKED\"\n}", "options": { "raw": { "headerFamily": "json", @@ -29675,7 +57189,7 @@ "value": "application/json" } ], - "body": "{\n \"role\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"name\": \"\",\n \"permissions\": [\n \"\",\n \"\"\n ],\n \"serviceRoles\": [\n \"\",\n \"\"\n ],\n \"systemApiOnly\": \"\",\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"deviceId\": \"\",\n \"deviceOs\": \"\",\n \"deviceSurface\": \"\",\n \"displayName\": \"\",\n \"status\": \"PERSONAL_DEVICE_STATUS_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n {\n \"createdAt\": \"\",\n \"deviceId\": \"\",\n \"deviceOs\": \"\",\n \"deviceSurface\": \"\",\n \"displayName\": \"\",\n \"status\": \"PERSONAL_DEVICE_STATUS_REVOKED\",\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -29688,279 +57202,32 @@ ] } ] - } - ] - }, - { - "name": "local-directory-configs", - "description": "", - "item": [ - { - "id": "c471ea5d-05c5-4e5f-a29f-21de2298e5b7", - "name": "List", - "request": { - "name": "List", - "description": { - "content": "List local directory configs for the tenant.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "local-directory-configs" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "2d492f6a-8eaf-4b57-aa0d-11152b2daf33", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "local-directory-configs" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"allowSelfRegistration\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"defaultProfileTypeId\": \"\",\n \"displayName\": \"\",\n \"invitationTtl\": \"\",\n \"isDefault\": \"\",\n \"onboardingFlowId\": \"\",\n \"organizationId\": \"\",\n \"selfRegistrationDomains\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n },\n {\n \"allowSelfRegistration\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"defaultProfileTypeId\": \"\",\n \"displayName\": \"\",\n \"invitationTtl\": \"\",\n \"isDefault\": \"\",\n \"onboardingFlowId\": \"\",\n \"organizationId\": \"\",\n \"selfRegistrationDomains\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "b8760992-2c59-4152-9097-51806b3ef523", - "name": "Create", - "request": { - "name": "Create", - "description": { - "content": "Create a new local directory config backed by an existing App.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "local-directory-configs" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appId\": \"\",\n \"displayName\": \"\",\n \"allowSelfRegistration\": \"\",\n \"defaultProfileTypeId\": \"\",\n \"invitationTtl\": \"\",\n \"isDefault\": \"\",\n \"onboardingFlowId\": \"\",\n \"organizationId\": \"\",\n \"selfRegistrationDomains\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "14d200f7-9d1f-4f72-99e3-fa9a06065107", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "local-directory-configs" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appId\": \"\",\n \"displayName\": \"\",\n \"allowSelfRegistration\": \"\",\n \"defaultProfileTypeId\": \"\",\n \"invitationTtl\": \"\",\n \"isDefault\": \"\",\n \"onboardingFlowId\": \"\",\n \"organizationId\": \"\",\n \"selfRegistrationDomains\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"localDirectoryConfig\": {\n \"allowSelfRegistration\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"defaultProfileTypeId\": \"\",\n \"displayName\": \"\",\n \"invitationTtl\": \"\",\n \"isDefault\": \"\",\n \"onboardingFlowId\": \"\",\n \"organizationId\": \"\",\n \"selfRegistrationDomains\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } }, { - "name": "{app_id}", + "name": "local-directory-invitations", "description": "", "item": [ { - "id": "c48d1fa2-8574-4a72-81da-48d1ddda7ef0", - "name": "Delete", + "id": "ab51f405-d891-463b-b1c1-a554227a20c5", + "name": "Search", "request": { - "name": "Delete", + "name": "Search", "description": { - "content": "Delete a local directory config. Does not delete the underlying App.", + "content": "List invitations for a directory, with optional status filter.\n Search invitations with filters (directory, status).", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "local-directory-configs", - ":app_id" + "search", + "local-directory-invitations" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -29972,10 +57239,10 @@ "value": "application/json" } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"directoryAppId\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"statusFilter\": \"LOCAL_INVITATION_STATUS_UNSPECIFIED\"\n}", "options": { "raw": { "headerFamily": "json", @@ -29987,32 +57254,21 @@ }, "response": [ { - "id": "1822e4fd-f0a9-4f3e-869b-6f4d09b7653f", + "id": "ed6c03aa-eb29-416b-b55b-2443788c4494", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "local-directory-configs", - ":app_id" + "search", + "local-directory-invitations" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - } - ] + "variable": [] }, "header": [ { @@ -30032,10 +57288,10 @@ "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"directoryAppId\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"statusFilter\": \"LOCAL_INVITATION_STATUS_UNSPECIFIED\"\n}", "options": { "raw": { "headerFamily": "json", @@ -30052,114 +57308,7 @@ "value": "application/json" } ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "206fee50-e065-45ed-a9d5-94307185f922", - "name": "Get", - "request": { - "name": "Get", - "description": { - "content": "Get a local directory config by app_id.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "local-directory-configs", - ":app_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "57e30af0-a00d-4ec7-bce8-d296e4b35681", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "local-directory-configs", - ":app_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"localDirectoryConfig\": {\n \"allowSelfRegistration\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"defaultProfileTypeId\": \"\",\n \"displayName\": \"\",\n \"invitationTtl\": \"\",\n \"isDefault\": \"\",\n \"onboardingFlowId\": \"\",\n \"organizationId\": \"\",\n \"selfRegistrationDomains\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"list\": [\n {\n \"acceptedAt\": \"\",\n \"createdAt\": \"\",\n \"createdUserId\": \"\",\n \"directoryAppId\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"initialRoleIds\": null,\n \"invitedByUserId\": \"\",\n \"jobId\": \"\",\n \"onboardingFlowId\": \"\",\n \"purpose\": \"\",\n \"sponsorUserId\": \"\",\n \"status\": \"LOCAL_INVITATION_STATUS_REVOKED\",\n \"updatedAt\": \"\"\n },\n {\n \"acceptedAt\": \"\",\n \"createdAt\": \"\",\n \"createdUserId\": \"\",\n \"directoryAppId\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"initialRoleIds\": [\n \"\",\n \"\"\n ],\n \"invitedByUserId\": \"\",\n \"jobId\": \"\",\n \"onboardingFlowId\": \"\",\n \"purpose\": \"\",\n \"sponsorUserId\": \"\",\n \"status\": \"LOCAL_INVITATION_STATUS_EXPIRED\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -30168,39 +57317,34 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "past-grants", + "description": "", + "item": [ { - "id": "8637a1bf-ae69-401d-9fa0-ac84be6b5229", - "name": "Update", + "id": "f8ebe1a9-d4c0-4f00-a362-a12703eff395", + "name": "Search Past Grants", "request": { - "name": "Update", + "name": "Search Past Grants", "description": { - "content": "Update a local directory config.", + "content": "Search historical grants that have been revoked, filtered by app user or entitlement.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "local-directory-configs", - ":app_id" + "search", + "past-grants" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -30215,7 +57359,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"localDirectoryConfig\": {\n \"allowSelfRegistration\": \"\",\n \"defaultProfileTypeId\": \"\",\n \"displayName\": \"\",\n \"invitationTtl\": \"\",\n \"isDefault\": \"\",\n \"onboardingFlowId\": \"\",\n \"organizationId\": \"\",\n \"selfRegistrationDomains\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserRefs\": null,\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -30227,32 +57371,21 @@ }, "response": [ { - "id": "27a28804-98d0-407f-ad07-f7a8f6529272", - "name": "Successful response", + "id": "db63cb96-017f-44d2-a3c5-b6e6d7973d31", + "name": "The SearchPastGrantsResponse message contains a list of past grants and a nextPageToken if applicable.", "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "local-directory-configs", - ":app_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - } - ] + "url": { + "path": [ + "api", + "v1", + "search", + "past-grants" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] }, "header": [ { @@ -30275,7 +57408,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"localDirectoryConfig\": {\n \"allowSelfRegistration\": \"\",\n \"defaultProfileTypeId\": \"\",\n \"displayName\": \"\",\n \"invitationTtl\": \"\",\n \"isDefault\": \"\",\n \"onboardingFlowId\": \"\",\n \"organizationId\": \"\",\n \"selfRegistrationDomains\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserRefs\": null,\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -30292,7 +57425,7 @@ "value": "application/json" } ], - "body": "{\n \"localDirectoryConfig\": {\n \"allowSelfRegistration\": \"\",\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"defaultProfileTypeId\": \"\",\n \"displayName\": \"\",\n \"invitationTtl\": \"\",\n \"isDefault\": \"\",\n \"onboardingFlowId\": \"\",\n \"organizationId\": \"\",\n \"selfRegistrationDomains\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"expanded\": null,\n \"list\": [\n {\n \"appPath\": \"\",\n \"appUserPath\": \"\",\n \"entitlementPath\": \"\",\n \"history\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantedAt\": \"\",\n \"id\": \"\",\n \"revokedAt\": \"\"\n }\n },\n {\n \"appPath\": \"\",\n \"appUserPath\": \"\",\n \"entitlementPath\": \"\",\n \"history\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantedAt\": \"\",\n \"id\": \"\",\n \"revokedAt\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -30300,640 +57433,146 @@ "event": [], "protocolProfileBehavior": { "disableBodyPruning": true - } - } - ] - }, - { - "name": "{directory_app_id}", - "description": "", - "item": [ - { - "name": "invitations", - "description": "", - "item": [ - { - "id": "4a89af23-bbfd-42c3-b519-23a408fc40ca", - "name": "Create", - "request": { - "name": "Create", - "description": { - "content": "Create (send) a new invitation to a user.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "local-directory-configs", - ":directory_app_id", - "invitations" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "directory_app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"email\": \"\",\n \"displayName\": \"\",\n \"initialRoleIds\": [\n \"\",\n \"\"\n ],\n \"jobId\": \"\",\n \"onboardingFlowId\": \"\",\n \"purpose\": \"\",\n \"sponsorUserId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "339667aa-1e50-4ff7-a849-0d0d562e1997", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "local-directory-configs", - ":directory_app_id", - "invitations" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "directory_app_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"email\": \"\",\n \"displayName\": \"\",\n \"initialRoleIds\": [\n \"\",\n \"\"\n ],\n \"jobId\": \"\",\n \"onboardingFlowId\": \"\",\n \"purpose\": \"\",\n \"sponsorUserId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"invitation\": {\n \"acceptedAt\": \"\",\n \"createdAt\": \"\",\n \"createdUserId\": \"\",\n \"directoryAppId\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"initialRoleIds\": [\n \"\",\n \"\"\n ],\n \"invitedByUserId\": \"\",\n \"jobId\": \"\",\n \"onboardingFlowId\": \"\",\n \"purpose\": \"\",\n \"sponsorUserId\": \"\",\n \"status\": \"LOCAL_INVITATION_STATUS_ACCEPTED\",\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{id}", - "description": "", - "item": [ - { - "id": "f20685d7-8e0e-4ebe-acc7-eecc7a6f85bd", - "name": "Get", - "request": { - "name": "Get", - "description": { - "content": "Get a specific invitation by id.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "local-directory-configs", - ":directory_app_id", - "invitations", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "directory_app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "788ecbc7-b8de-4847-a18c-96adcca46708", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "local-directory-configs", - ":directory_app_id", - "invitations", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "directory_app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"invitation\": {\n \"acceptedAt\": \"\",\n \"createdAt\": \"\",\n \"createdUserId\": \"\",\n \"directoryAppId\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"initialRoleIds\": [\n \"\",\n \"\"\n ],\n \"invitedByUserId\": \"\",\n \"jobId\": \"\",\n \"onboardingFlowId\": \"\",\n \"purpose\": \"\",\n \"sponsorUserId\": \"\",\n \"status\": \"LOCAL_INVITATION_STATUS_ACCEPTED\",\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "revoke", - "description": "", - "item": [ - { - "id": "0a108e66-a150-4757-ab28-8f6d6d29a42a", - "name": "Revoke", - "request": { - "name": "Revoke", - "description": { - "content": "Revoke a pending invitation.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "local-directory-configs", - ":directory_app_id", - "invitations", - ":id", - "revoke" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "directory_app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "15bda49e-1d19-4620-87e4-458a1b60bfbb", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "local-directory-configs", - ":directory_app_id", - "invitations", - ":id", - "revoke" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "directory_app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"invitation\": {\n \"acceptedAt\": \"\",\n \"createdAt\": \"\",\n \"createdUserId\": \"\",\n \"directoryAppId\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"initialRoleIds\": [\n \"\",\n \"\"\n ],\n \"invitedByUserId\": \"\",\n \"jobId\": \"\",\n \"onboardingFlowId\": \"\",\n \"purpose\": \"\",\n \"sponsorUserId\": \"\",\n \"status\": \"LOCAL_INVITATION_STATUS_EXPIRED\",\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - } - ] - } - ] - } - ] - }, - { - "name": "policies", - "description": "", - "item": [ - { - "id": "076ce4d5-c066-4104-9d58-a748290b2a61", - "name": "List", - "request": { - "name": "List", - "description": { - "content": "List policies.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "policies" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + } + } + ] + }, + { + "name": "policies", + "description": "", + "item": [ { - "id": "05134d5a-483c-4c08-940a-73dca5757fed", - "name": "Successful response", - "originalRequest": { + "id": "34440d59-7191-4b6e-8e2e-fd8331cd042e", + "name": "Search", + "request": { + "name": "Search", + "description": { + "content": "Search policies based on filters specified in the request body.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", + "search", "policies" ], "host": [ "{{baseUrl}}" ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], + "query": [], "variable": [] }, "header": [ { - "key": "Accept", + "key": "Content-Type", "value": "application/json" }, { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " + "key": "Accept", + "value": "application/json" } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"excludePolicyIds\": [\n \"\",\n \"\"\n ],\n \"includeDeleted\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"policyTypes\": null,\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"scopeAppEntitlementId\": \"\",\n \"scopeAppId\": \"\",\n \"scopeObjectType\": \"POLICY_SCOPE_OBJECT_TYPE_APP\",\n \"scopeSlot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\",\n \"scopeView\": \"POLICY_SCOPE_VIEW_GLOBAL\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "2c52fa4a-078b-486c-8ba6-1df40689d2b4", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "search", + "policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"excludePolicyIds\": [\n \"\",\n \"\"\n ],\n \"includeDeleted\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"policyTypes\": null,\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"scopeAppEntitlementId\": \"\",\n \"scopeAppId\": \"\",\n \"scopeObjectType\": \"POLICY_SCOPE_OBJECT_TYPE_APP\",\n \"scopeSlot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\",\n \"scopeView\": \"POLICY_SCOPE_VIEW_GLOBAL\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 3993,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 1293.958012197336\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_ACCESS_REQUEST\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, { - "id": "3215a5fd-f82a-4295-acb2-6d3fc64c44d8", - "name": "Create", - "request": { - "name": "Create", - "description": { - "content": "Create a policy.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "policies" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"description\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 2197.0836516530135,\n \"key_1\": 3217.4226158395622\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_2\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 2187.895121548844\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_ACCESS_REQUEST\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "name": "recovery-policies", + "description": "", + "item": [ { - "id": "23bb8a06-e80c-4359-bc86-fd1a296f95ba", - "name": "The CreatePolicyResponse message contains the created policy object.", - "originalRequest": { + "id": "8adf8460-126d-481d-af34-10d34a85b480", + "name": "Search", + "request": { + "name": "Search", + "description": { + "content": "Search recovery policies by name, or fetch a specific set by ID. Returns\n one page of matching policies at a time.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "policies" + "search", + "recovery-policies" ], "host": [ "{{baseUrl}}" @@ -30949,82 +57588,364 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"description\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 2197.0836516530135,\n \"key_1\": 3217.4226158395622\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_2\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 2187.895121548844\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_ACCESS_REQUEST\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ]\n}", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "9a8f07c3-0864-418a-a55b-59cb08022175", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "search", + "recovery-policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"allowedRecoveryTypes\": null,\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"isBuiltin\": \"\",\n \"minRecoveryAuthLevel\": \"AUTH_LEVEL_UNSPECIFIED\",\n \"priority\": \"\",\n \"revokeOnRecovery\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"allowedRecoveryTypes\": null,\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"isBuiltin\": \"\",\n \"minRecoveryAuthLevel\": \"AUTH_LEVEL_PHRH\",\n \"priority\": \"\",\n \"revokeOnRecovery\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 7752.462763399734,\n \"key_1\": 9084.85868145679,\n \"key_2\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": 9508,\n \"key_2\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_2\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": true,\n \"key_2\": 4348.4918397208785\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_3\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 6927\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_ACCESS_REQUEST\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, { - "name": "{id}", + "name": "request_catalog", + "description": "", + "item": [ + { + "name": "entitlements", + "description": "", + "item": [ + { + "id": "6bf4a882-0d6d-4e43-b4b3-99745f6b3deb", + "name": "Search Entitlements", + "request": { + "name": "Search Entitlements", + "description": { + "content": "Search request catalogs based on filters specified in the request body.\n Rows are heavy (each entitlement carries its user bindings) — request a small page_size (≤10) and set expand_mask to only the paths you need; broad expansion inlines whole related objects and bloats the response.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "search", + "request_catalog", + "entitlements" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appDisplayName\": \"\",\n \"entitlementAlias\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"grantedStatus\": \"GRANTED\",\n \"includeDeleted\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "aba8aed8-fddb-4e80-b07a-990b27ce0dfd", + "name": "The RequestCatalogSearchServiceSearchEntitlementsResponse message contains a list of results and a nextPageToken if applicable.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "search", + "request_catalog", + "entitlements" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appDisplayName\": \"\",\n \"entitlementAlias\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"grantedStatus\": \"GRANTED\",\n \"includeDeleted\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": null,\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "role-mining", + "description": "", + "item": [ + { + "name": "suggestions", + "description": "", + "item": [ + { + "id": "117e445b-2097-4945-9db7-bde45da4dbcf", + "name": "Search", + "request": { + "name": "Search", + "description": { + "content": "Search role mining suggestions by name, description, or cohort filter values with optional state and type filters.\n Each suggestion row is large (cohort filters, entitlements, insights, profile matches) — request a small page_size (≤10) to keep responses small.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "search", + "role-mining", + "suggestions" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"cohortTypes\": [\n \"\",\n \"\"\n ],\n \"matchTypes\": [\n \"ACCESS_PROFILE_MATCH_TYPE_PARTIAL\",\n \"ACCESS_PROFILE_MATCH_TYPE_SUPERSET\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"states\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "7493ce82-e513-4760-8217-afa88eeadc96", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "search", + "role-mining", + "suggestions" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"cohortTypes\": [\n \"\",\n \"\"\n ],\n \"matchTypes\": [\n \"ACCESS_PROFILE_MATCH_TYPE_PARTIAL\",\n \"ACCESS_PROFILE_MATCH_TYPE_SUPERSET\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"states\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "secrets-admin", "description": "", "item": [ { - "id": "22e932a9-53c0-4680-81cf-67b940a1b510", - "name": "Delete", + "id": "b2e1af13-3acf-4165-9a01-624c1c5ae663", + "name": "Search", "request": { - "name": "Delete", + "name": "Search", "description": { - "content": "Delete a policy by ID.", + "content": "Search returns secrets across the tenant.\n Can filter by creator, sharing mode, status, time range, etc.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "policies", - ":id" + "search", + "secrets-admin" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -31036,10 +57957,10 @@ "value": "application/json" } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"createdAfter\": \"\",\n \"createdBefore\": \"\",\n \"creatorUserIds\": [\n \"\",\n \"\"\n ],\n \"includeDeleted\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"secretType\": \"SECRET_TYPE_TEXT\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_INTERNAL\",\n \"sortBy\": \"SEARCH_SORT_BY_NAME_ASC\",\n \"statuses\": [\n \"SECRET_STATUS_DATA_DELETED\",\n \"SECRET_STATUS_EXPIRED\"\n ]\n}", "options": { "raw": { "headerFamily": "json", @@ -31051,32 +57972,21 @@ }, "response": [ { - "id": "20e677aa-a7d2-47bb-865d-73647ce6edff", - "name": "Empty response with a status code indicating success.", + "id": "b712084a-a835-45c1-ae3a-29cf58326006", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "policies", - ":id" + "search", + "secrets-admin" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ { @@ -31096,10 +58006,10 @@ "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"createdAfter\": \"\",\n \"createdBefore\": \"\",\n \"creatorUserIds\": [\n \"\",\n \"\"\n ],\n \"includeDeleted\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"secretType\": \"SECRET_TYPE_TEXT\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_INTERNAL\",\n \"sortBy\": \"SEARCH_SORT_BY_NAME_ASC\",\n \"statuses\": [\n \"SECRET_STATUS_DATA_DELETED\",\n \"SECRET_STATUS_EXPIRED\"\n ]\n}", "options": { "raw": { "headerFamily": "json", @@ -31116,7 +58026,7 @@ "value": "application/json" } ], - "body": "{}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -31127,78 +58037,442 @@ } }, { - "id": "ee8b82cb-ebf1-424a-98f6-df13f71edf72", - "name": "Get", + "name": "audit_events", + "description": "", + "item": [ + { + "id": "2af8d0cb-44bf-4de9-bc6e-084d2e944b7f", + "name": "Search Audit Events", + "request": { + "name": "Search Audit Events", + "description": { + "content": "SearchAuditEvents returns audit events for paper secrets.\n Can filter by vault_id, actor (user ID or email), client IP.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "search", + "secrets-admin", + "audit_events" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"actorEmail\": \"\",\n \"actorUserId\": \"\",\n \"clientIp\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"vaultId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "3a558525-42eb-439d-ac69-aadea2f901f0", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "search", + "secrets-admin", + "audit_events" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"actorEmail\": \"\",\n \"actorUserId\": \"\",\n \"clientIp\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"vaultId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "secrets", + "description": "", + "item": [ + { + "name": "audit_events", + "description": "", + "item": [ + { + "id": "cd6f4b3a-7846-4886-8c7c-0d2e760676b3", + "name": "Search Audit Events", + "request": { + "name": "Search Audit Events", + "description": { + "content": "SearchAuditEvents returns audit events for a secret owned by the calling user.\n Returns sanitized OCSF events (IP addresses stripped for non-admin consumption).", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "search", + "secrets", + "audit_events" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"vaultId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "0abf2e5b-a0a2-4c6e-b558-a855713622ff", + "name": "PaperSecretServiceSearchAuditEventsResponse contains a page of audit events\n for the requested secret.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "search", + "secrets", + "audit_events" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"vaultId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"key_0\": false,\n \"key_1\": 7764.736950440698\n },\n {\n \"key_0\": 6512,\n \"key_1\": 3436\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "mine", + "description": "", + "item": [ + { + "id": "7b74e54e-56fc-4c66-91c0-e3e3e1636495", + "name": "Search My Secrets", + "request": { + "name": "Search My Secrets", + "description": { + "content": "SearchMySecrets returns secrets created by the current user.\n Automatically scoped to current user - no user_id filter parameter.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "search", + "secrets", + "mine" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"secretType\": \"SECRET_TYPE_FILE\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_EXTERNAL\",\n \"sortBy\": \"SEARCH_SORT_BY_CREATED_DESC\",\n \"statuses\": [\n \"SECRET_STATUS_ACTIVE\",\n \"SECRET_STATUS_UNSPECIFIED\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "f2b3aef2-ec93-4a73-9517-d750dc00bf0d", + "name": "Search response for user's own secrets", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "search", + "secrets", + "mine" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"secretType\": \"SECRET_TYPE_FILE\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_EXTERNAL\",\n \"sortBy\": \"SEARCH_SORT_BY_CREATED_DESC\",\n \"statuses\": [\n \"SECRET_STATUS_ACTIVE\",\n \"SECRET_STATUS_UNSPECIFIED\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "session-policies", + "description": "", + "item": [ + { + "id": "b70d31b9-fc49-4837-9c97-fb9dd787b88d", + "name": "Search", "request": { - "name": "Get", + "name": "Search", "description": { - "content": "Get a policy by ID.", + "content": "Search session policies by name, or fetch a specific set by ID. Returns\n one page of matching policies at a time.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "policies", - ":id" + "search", + "session-policies" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "6acfa119-a6b9-4f56-9f72-085fc3a09c86", - "name": "The GetPolicyResponse message contains the policy object.", + "id": "8923e76a-bb17-4048-a63f-c0ee7674c3c1", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "policies", - ":id" + "search", + "session-policies" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -31212,8 +58486,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -31223,7 +58506,7 @@ "value": "application/json" } ], - "body": "{\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": false,\n \"key_2\": false,\n \"key_3\": false,\n \"key_4\": 4932\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 6679\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_UNSPECIFIED\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"list\": [\n {\n \"accessTokenTtlSeconds\": \"\",\n \"continuousDefaultOutcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_NONE\"\n },\n \"challengeRequired\": {\n \"types\": [\n \"CREDENTIAL_TYPE_PASSKEY\",\n \"CREDENTIAL_TYPE_DELEGATED_GOOGLE\"\n ]\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_NONE\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_UNSPECIFIED\",\n \"CREDENTIAL_TYPE_DELEGATED_MICROSOFT\"\n ]\n }\n },\n \"continuousRules\": null,\n \"createdAt\": \"\",\n \"credentialDurations\": null,\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"idleTimeoutSeconds\": \"\",\n \"isBuiltin\": \"\",\n \"maxSessionDurationSeconds\": \"\",\n \"persistence\": \"PERSISTENCE_MODE_SESSION_ONLY\",\n \"priority\": \"\",\n \"refreshRotationWindowSeconds\": \"\",\n \"refreshTokenTtlSeconds\": \"\",\n \"rotateRefreshOnUse\": \"\",\n \"ssfReceive\": {\n \"enabled\": \"\",\n \"ssfReceiverStreamIds\": null\n },\n \"ssfTransmit\": {\n \"enabled\": \"\",\n \"eventTypes\": [\n \"\",\n \"\"\n ],\n \"ssfTransmitterStreamIds\": null\n },\n \"updatedAt\": \"\"\n },\n {\n \"accessTokenTtlSeconds\": \"\",\n \"continuousDefaultOutcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_UNSPECIFIED\"\n },\n \"challengeRequired\": {\n \"types\": [\n \"CREDENTIAL_TYPE_RECOVERY_CODE\",\n \"CREDENTIAL_TYPE_TOTP\"\n ]\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": [\n \"CREDENTIAL_TYPE_PASSWORD\",\n \"CREDENTIAL_TYPE_DELEGATED_MICROSOFT\"\n ]\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_UNSPECIFIED\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_TOTP\",\n \"CREDENTIAL_TYPE_DELEGATED_GOOGLE\"\n ]\n }\n },\n \"continuousRules\": [\n {\n \"description\": \"\",\n \"id\": \"\",\n \"matchCel\": \"\",\n \"mode\": \"POLICY_RULE_MODE_OBSERVE\",\n \"outcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_MULTI_FACTOR\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": [\n \"CREDENTIAL_TYPE_UNSPECIFIED\",\n \"CREDENTIAL_TYPE_PASSKEY\"\n ]\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_UNSPECIFIED\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_TOTP\",\n \"CREDENTIAL_TYPE_UPSTREAM_IDP\"\n ]\n }\n }\n },\n {\n \"description\": \"\",\n \"id\": \"\",\n \"matchCel\": \"\",\n \"mode\": \"POLICY_RULE_MODE_ENFORCE\",\n \"outcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_MULTI_FACTOR\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_PHRH\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_UPSTREAM_IDP\",\n \"CREDENTIAL_TYPE_PASSKEY\"\n ]\n }\n }\n }\n ],\n \"createdAt\": \"\",\n \"credentialDurations\": [\n {\n \"accessTokenTtlSeconds\": \"\",\n \"credentialType\": \"CREDENTIAL_TYPE_PASSKEY\",\n \"maxSessionDurationSeconds\": \"\"\n },\n {\n \"accessTokenTtlSeconds\": \"\",\n \"credentialType\": \"CREDENTIAL_TYPE_PASSKEY\",\n \"maxSessionDurationSeconds\": \"\"\n }\n ],\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"idleTimeoutSeconds\": \"\",\n \"isBuiltin\": \"\",\n \"maxSessionDurationSeconds\": \"\",\n \"persistence\": \"PERSISTENCE_MODE_ALWAYS_PERSIST\",\n \"priority\": \"\",\n \"refreshRotationWindowSeconds\": \"\",\n \"refreshTokenTtlSeconds\": \"\",\n \"rotateRefreshOnUse\": \"\",\n \"ssfReceive\": {\n \"enabled\": \"\",\n \"ssfReceiverStreamIds\": null\n },\n \"ssfTransmit\": {\n \"enabled\": \"\",\n \"eventTypes\": null,\n \"ssfTransmitterStreamIds\": null\n },\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -31232,39 +58515,34 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "sign-in-policies", + "description": "", + "item": [ { - "id": "334f9b7b-b066-4d04-a5b2-c897f0917767", - "name": "Update", + "id": "18fb6e9c-c229-41a3-8a0b-4853f39592cc", + "name": "Search", "request": { - "name": "Update", + "name": "Search", "description": { - "content": "Update a policy by providing a policy object and an update mask.", + "content": "Search sign-in policies by name, or fetch a specific set by ID. Returns\n one page of matching policies at a time.", "type": "text/plain" }, "url": { "path": [ - "api", - "v1", - "policies", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "api", + "v1", + "search", + "sign-in-policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] }, "header": [ { @@ -31279,7 +58557,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"policy\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_REVOKE\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ]\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -31291,32 +58569,21 @@ }, "response": [ { - "id": "5f758346-f1aa-4a1e-888c-78bce88431af", - "name": "The UpdatePolicyResponse message contains the updated policy object.", + "id": "baa424af-f4b1-438d-aa15-f59f94dc4cfb", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "policies", - ":id" + "search", + "sign-in-policies" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ { @@ -31339,7 +58606,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"policy\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_REVOKE\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ]\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -31356,7 +58623,7 @@ "value": "application/json" } ], - "body": "{\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 6554.721453191528\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 7745\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_PROVISION\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -31369,24 +58636,24 @@ ] }, { - "name": "test-account-provision-policy", + "name": "ssf-receiver-events", "description": "", "item": [ { - "id": "c16c81df-3382-4463-943a-0320a9db31d3", - "name": "Test", + "id": "bd187502-4f61-4fa5-b1e5-530916f0626a", + "name": "Search", "request": { - "name": "Test", + "name": "Search", "description": { - "content": "Test an account provision policy by evaluating a CEL expression and returning the computed result.", + "content": "Search performs a full-text search across received SSF events with optional filters for stream, event type, outcome, and matched user.\n Request a modest page_size (≤25) to keep responses small.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "policies", - "test-account-provision-policy" + "search", + "ssf-receiver-events" ], "host": [ "{{baseUrl}}" @@ -31407,7 +58674,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"cel\": \"\"\n}", + "raw": "{\n \"eventType\": \"\",\n \"matchedUserId\": \"\",\n \"outcome\": \"SSF_EVENT_OUTCOME_ERROR\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"streamId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -31419,15 +58686,15 @@ }, "response": [ { - "id": "84d22913-223a-47db-92b0-5dbfdf507344", - "name": "TestAccountProvisionPolicyResponse is the response for testing an account provision policy.", + "id": "44792624-ff97-49ec-a5bb-fc29f7d60369", + "name": "SSFReceiverEventSearchServiceSearchResponse contains the matching events and a pagination token.", "originalRequest": { "url": { "path": [ "api", "v1", - "policies", - "test-account-provision-policy" + "search", + "ssf-receiver-events" ], "host": [ "{{baseUrl}}" @@ -31456,7 +58723,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"cel\": \"\"\n}", + "raw": "{\n \"eventType\": \"\",\n \"matchedUserId\": \"\",\n \"outcome\": \"SSF_EVENT_OUTCOME_ERROR\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"streamId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -31473,7 +58740,7 @@ "value": "application/json" } ], - "body": "{\n \"type\": \"\",\n \"value\": \"\"\n}", + "body": "{\n \"list\": [\n {\n \"canonicalType\": \"SSF_CANONICAL_EVENT_TYPE_ACCOUNT_DISABLED\",\n \"id\": \"\",\n \"matchMethod\": \"SSF_SUBJECT_MATCH_METHOD_NOT_FOUND\",\n \"matchedUserId\": \"\",\n \"outcome\": \"SSF_EVENT_OUTCOME_STREAM_STATUS_UPDATED\",\n \"outcomeDetail\": \"\",\n \"receivedAt\": \"\",\n \"sessionsRevoked\": \"\",\n \"setJti\": \"\",\n \"streamId\": \"\",\n \"wireEventProfile\": \"\",\n \"wireEventType\": \"\",\n \"wireInitiatingEntity\": \"\",\n \"wireReasonAdmin\": \"\",\n \"wireSubjectFormat\": \"\",\n \"wireSubjectIdentifier\": \"\"\n },\n {\n \"canonicalType\": \"SSF_CANONICAL_EVENT_TYPE_STREAM_UPDATED\",\n \"id\": \"\",\n \"matchMethod\": \"SSF_SUBJECT_MATCH_METHOD_NOT_FOUND\",\n \"matchedUserId\": \"\",\n \"outcome\": \"SSF_EVENT_OUTCOME_VERIFIED\",\n \"outcomeDetail\": \"\",\n \"receivedAt\": \"\",\n \"sessionsRevoked\": \"\",\n \"setJti\": \"\",\n \"streamId\": \"\",\n \"wireEventProfile\": \"\",\n \"wireEventType\": \"\",\n \"wireInitiatingEntity\": \"\",\n \"wireReasonAdmin\": \"\",\n \"wireSubjectFormat\": \"\",\n \"wireSubjectIdentifier\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -31486,29 +58753,29 @@ ] }, { - "name": "validate", + "name": "sso", "description": "", "item": [ { - "name": "cel", + "name": "applications", "description": "", "item": [ { - "id": "d160bf7c-553a-450e-8034-4ac125ded84e", - "name": "Validate Cel", + "id": "7e630224-c0f4-4311-80dc-59b28f81b199", + "name": "Search", "request": { - "name": "Validate Cel", + "name": "Search", "description": { - "content": "Validate policies", + "content": "Search SSO applications across the tenant. Supports filtering by the\n applications in your catalog and by display-name or description text.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "policies", - "validate", - "cel" + "search", + "sso", + "applications" ], "host": [ "{{baseUrl}}" @@ -31529,7 +58796,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"text\": \"\"\n}", + "raw": "{\n \"appIds\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -31541,16 +58808,16 @@ }, "response": [ { - "id": "af238c46-87b8-4595-8234-608bbfa4d483", - "name": "Successful response", + "id": "76a65bfa-180b-429e-9c7e-cb55646af9a9", + "name": "SSOApplicationServiceSearchResponse returns matching SSO applications.", "originalRequest": { "url": { "path": [ "api", "v1", - "policies", - "validate", - "cel" + "search", + "sso", + "applications" ], "host": [ "{{baseUrl}}" @@ -31579,7 +58846,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"text\": \"\"\n}", + "raw": "{\n \"appIds\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -31596,7 +58863,7 @@ "value": "application/json" } ], - "body": "{\n \"markers\": [\n {\n \"endColumn\": \"\",\n \"endLineNumber\": \"\",\n \"message\": \"\",\n \"severity\": \"WARNING\",\n \"startColumn\": \"\",\n \"startLineNumber\": \"\"\n },\n {\n \"endColumn\": \"\",\n \"endLineNumber\": \"\",\n \"message\": \"\",\n \"severity\": \"INFO\",\n \"startColumn\": \"\",\n \"startLineNumber\": \"\"\n }\n ]\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -31609,543 +58876,281 @@ ] } ] - } - ] - }, - { - "name": "request_schema_entitlement_binding", - "description": "", - "item": [ - { - "id": "0c09ba28-c00b-4afd-a50a-dc2eda201c63", - "name": "Remove Entitlement Binding", - "request": { - "name": "Remove Entitlement Binding", - "description": { - "content": "Remove the link between a request schema and a single app entitlement.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "request_schema_entitlement_binding" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"requestSchemaId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "55fd0e93-5b05-4422-9517-3b60febb984f", - "name": "The response message for removing a single entitlement binding.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "request_schema_entitlement_binding" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"requestSchemaId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } }, { - "id": "cc939b8a-551a-4b13-a4cc-d427006b5b90", - "name": "Create Entitlement Binding", - "request": { - "name": "Create Entitlement Binding", - "description": { - "content": "Link a request schema to a single app entitlement so the form is shown when requesting that entitlement.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "request_schema_entitlement_binding" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"requestSchemaId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "name": "step-up", + "description": "", + "item": [ { - "id": "bc32f802-294b-4b6c-8669-ed869cf24ae6", - "name": "The response message for creating a single entitlement binding.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "request_schema_entitlement_binding" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"requestSchemaId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ + "name": "providers", + "description": "", + "item": [ { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"requestSchemaId\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "8909f607-19ac-4476-8a0f-adc7f5456e2e", - "name": "Find Binding For App Entitlement", - "request": { - "name": "Find Binding For App Entitlement", - "description": { - "content": "Look up which request schema is bound to a given app entitlement.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "request_schema_entitlement_binding" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "PUT", - "body": { - "mode": "raw", - "raw": "{\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "683b5662-b043-4827-b173-f93541017cd1", - "name": "The response message containing the binding for the specified app entitlement.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "request_schema_entitlement_binding" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + "id": "201d2a76-b617-4971-9112-710b7cb70253", + "name": "Search", + "request": { + "name": "Search", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "Search allows searching for step-up providers with various filters", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "PUT", - "body": { - "mode": "raw", - "raw": "{\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"requestSchemaId\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "request_schemas", - "description": "", - "item": [ - { - "id": "7b861cc9-48bc-4459-adcd-226db1fac504", - "name": "Create", - "request": { - "name": "Create", - "description": { - "content": "Create a new request schema that defines a form template for access requests.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "request_schemas" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"description\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"justificationVisibility\": \"JUSTIFICATION_VISIBILITY_HIDE\",\n \"name\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + "url": { + "path": [ + "api", + "v1", + "search", + "step-up", + "providers" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"providerType\": \"PROVIDER_TYPE_MICROSOFT\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "265b9418-f56b-400c-82c6-766c78ddc9fb", + "name": "Response message for searching step-up providers", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "search", + "step-up", + "providers" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"providerType\": \"PROVIDER_TYPE_MICROSOFT\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - } + ] }, - "auth": null - }, - "response": [ { - "id": "430115fb-69ee-4868-840f-cd196a338808", - "name": "The response message for creating a request schema.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "request_schemas" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + "name": "transactions", + "description": "", + "item": [ + { + "id": "63cd739f-343d-456e-b6c7-02f41f6343ac", + "name": "Search", + "request": { + "name": "Search", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "Search allows searching for step-up transactions with various filters", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"description\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"justificationVisibility\": \"JUSTIFICATION_VISIBILITY_HIDE\",\n \"name\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + "url": { + "path": [ + "api", + "v1", + "search", + "step-up", + "transactions" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"createdAfter\": \"\",\n \"createdBefore\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"providerId\": \"\",\n \"state\": \"STEP_UP_TRANSACTION_STATE_PENDING\",\n \"targetType\": \"TARGET_TYPE_TICKET\",\n \"taskId\": \"\",\n \"userId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "1f1ae1dc-4b1d-4d58-bec6-d48f994a5808", + "name": "Response message for searching step-up transactions", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "search", + "step-up", + "transactions" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"createdAfter\": \"\",\n \"createdBefore\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"providerId\": \"\",\n \"state\": \"STEP_UP_TRANSACTION_STATE_PENDING\",\n \"targetType\": \"TARGET_TYPE_TICKET\",\n \"taskId\": \"\",\n \"userId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"requestSchema\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"justificationVisibility\": \"JUSTIFICATION_VISIBILITY_SHOW\",\n \"modifiedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + ] } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, { - "name": "{request_schema_id}", + "name": "systemlog", "description": "", "item": [ { - "id": "f43ccef2-8956-4db5-bf03-f5cd31fc758d", - "name": "Delete", - "request": { - "name": "Delete", - "description": { - "content": "Delete a request schema by ID. Associated entitlement bindings are also deleted.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "request_schemas", - ":request_schema_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "request_schema_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "name": "exports", + "description": "", + "item": [ { - "id": "d2e8da94-f629-4df7-a1a9-8c2d1843e596", - "name": "The response message for deleting a request schema.", - "originalRequest": { + "id": "f0e99515-0839-4cfd-bf16-e0d44429373d", + "name": "Search", + "request": { + "name": "Search", + "description": { + "content": "Search for system log exports matching the specified filters.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "request_schemas", - ":request_schema_id" + "search", + "systemlog", + "exports" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "request_schema_id" - } - ] + "variable": [] }, "header": [ { @@ -32155,119 +59160,164 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"displayName\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"exportId\": \"\"\n },\n {\n \"exportId\": \"\"\n }\n ]\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "1124a45e-12ef-4fe7-9602-694d5a1af346", + "name": "ExportsSearchServiceSearchResponse is the response for searching system log exports.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "search", + "systemlog", + "exports" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"exportId\": \"\"\n },\n {\n \"exportId\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_GZIP\",\n \"prefix\": \"\"\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"exportId\": \"\",\n \"state\": \"EXPORT_STATE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"watermarkEventId\": \"\"\n },\n {\n \"createdAt\": \"\",\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_UNSPECIFIED\",\n \"prefix\": \"\"\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"exportId\": \"\",\n \"state\": \"EXPORT_STATE_WAITING\",\n \"updatedAt\": \"\",\n \"watermarkEventId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, + ] + } + ] + }, + { + "name": "tasks", + "description": "", + "item": [ { - "id": "c2a7f6b7-888a-4b15-b4e5-b50a2e36dd85", - "name": "Get", + "id": "3d315d05-224c-443e-a603-ead4f979d2b1", + "name": "Search", "request": { - "name": "Get", + "name": "Search", "description": { - "content": "Retrieve a single request schema by ID.", + "content": "Search tasks based on filters specified in the request body.\n Each TaskView row is large — request a small page_size (≤10) and set expand_mask to only the paths you need; broad expansion inlines whole related objects (app, entitlement, user, policy) and bloats the response.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "request_schemas", - ":request_schema_id" + "search", + "tasks" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "request_schema_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"accessReviewIds\": [\n \"\",\n \"\"\n ],\n \"accountOwnerIds\": [\n \"\",\n \"\"\n ],\n \"accountStatuses\": null,\n \"accountTypes\": null,\n \"actorId\": \"\",\n \"appEntitlementIds\": [\n \"\",\n \"\"\n ],\n \"appResourceIds\": [\n \"\",\n \"\"\n ],\n \"appResourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"appUserSubjectIds\": null,\n \"applicationIds\": [\n \"\",\n \"\"\n ],\n \"assignedOrStepApproverUserId\": \"\",\n \"assigneesInIds\": null,\n \"certifyOutcomes\": null,\n \"createdAfter\": \"\",\n \"createdBefore\": \"\",\n \"currentStep\": \"TASK_SEARCH_CURRENT_STEP_PROVISION\",\n \"emergencyStatus\": \"EMERGENCY\",\n \"excludeAppEntitlementIds\": null,\n \"excludeAppResourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"excludeApplicationIds\": null,\n \"excludeIds\": [\n \"\",\n \"\"\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"grantOutcomes\": [\n \"GRANT_OUTCOME_DENIED\",\n \"GRANT_OUTCOME_CANCELLED\"\n ],\n \"includeActedAfter\": \"\",\n \"includeDeleted\": \"\",\n \"myWorkUserIds\": null,\n \"olderThanDuration\": \"\",\n \"openerIds\": null,\n \"openerOrSubjectUserId\": \"\",\n \"outcomeAfter\": \"\",\n \"outcomeBefore\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"pendingActionFilter\": \"PENDING_ACTION_FILTER_WITH_PENDING\",\n \"previouslyActedOnIds\": null,\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"revokeOutcomes\": [\n \"REVOKE_OUTCOME_ERROR\",\n \"REVOKE_OUTCOME_REVOKED\"\n ],\n \"sortBy\": \"TASK_SEARCH_SORT_BY_TICKET_ID\",\n \"stepApprovalTypes\": null,\n \"subjectIds\": null,\n \"taskStates\": [\n \"TASK_STATE_UNSPECIFIED\",\n \"TASK_STATE_CLOSED\"\n ],\n \"taskTypes\": null,\n \"userEmploymentStatuses\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "f6d78dd9-b633-4458-8c0d-48e3337ca20e", - "name": "The response message for retrieving a request schema.", + "id": "a7b2e50d-aa73-4475-b9a1-ec845302b197", + "name": "The TaskSearchResponse message contains a list of results and a nextPageToken if applicable.", "originalRequest": { "url": { "path": [ "api", "v1", - "request_schemas", - ":request_schema_id" + "search", + "tasks" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "request_schema_id" - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -32281,8 +59331,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"accessReviewIds\": [\n \"\",\n \"\"\n ],\n \"accountOwnerIds\": [\n \"\",\n \"\"\n ],\n \"accountStatuses\": null,\n \"accountTypes\": null,\n \"actorId\": \"\",\n \"appEntitlementIds\": [\n \"\",\n \"\"\n ],\n \"appResourceIds\": [\n \"\",\n \"\"\n ],\n \"appResourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"appUserSubjectIds\": null,\n \"applicationIds\": [\n \"\",\n \"\"\n ],\n \"assignedOrStepApproverUserId\": \"\",\n \"assigneesInIds\": null,\n \"certifyOutcomes\": null,\n \"createdAfter\": \"\",\n \"createdBefore\": \"\",\n \"currentStep\": \"TASK_SEARCH_CURRENT_STEP_PROVISION\",\n \"emergencyStatus\": \"EMERGENCY\",\n \"excludeAppEntitlementIds\": null,\n \"excludeAppResourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"excludeApplicationIds\": null,\n \"excludeIds\": [\n \"\",\n \"\"\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"grantOutcomes\": [\n \"GRANT_OUTCOME_DENIED\",\n \"GRANT_OUTCOME_CANCELLED\"\n ],\n \"includeActedAfter\": \"\",\n \"includeDeleted\": \"\",\n \"myWorkUserIds\": null,\n \"olderThanDuration\": \"\",\n \"openerIds\": null,\n \"openerOrSubjectUserId\": \"\",\n \"outcomeAfter\": \"\",\n \"outcomeBefore\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"pendingActionFilter\": \"PENDING_ACTION_FILTER_WITH_PENDING\",\n \"previouslyActedOnIds\": null,\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"revokeOutcomes\": [\n \"REVOKE_OUTCOME_ERROR\",\n \"REVOKE_OUTCOME_REVOKED\"\n ],\n \"sortBy\": \"TASK_SEARCH_SORT_BY_TICKET_ID\",\n \"stepApprovalTypes\": null,\n \"subjectIds\": null,\n \"taskStates\": [\n \"TASK_STATE_UNSPECIFIED\",\n \"TASK_STATE_CLOSED\"\n ],\n \"taskTypes\": null,\n \"userEmploymentStatuses\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -32292,7 +59351,7 @@ "value": "application/json" } ], - "body": "{\n \"requestSchema\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"justificationVisibility\": \"JUSTIFICATION_VISIBILITY_HIDE\",\n \"modifiedAt\": \"\"\n }\n}", + "body": "{\n \"expanded\": null,\n \"list\": [\n {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": null,\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\"\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": null,\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": null,\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_PROFILE_MEMBERSHIP_AUTOMATION\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_INIT\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": null,\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 9912.542234393715,\n \"key_1\": \"string\",\n \"key_2\": 5597,\n \"key_3\": 8144.4079676436095\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_WEBHOOK_WAITING\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_WAITING\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_UNSPECIFIED\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": null,\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_DONE\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 2650.1720102481177\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_UNSPECIFIED\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_TIMED_OUT\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_ACCESS_REQUEST\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyId\": \"\",\n \"policyKey\": \"\",\n \"stepKey\": \"\"\n }\n ],\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_EMERGENCY\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_UNSPECIFIED\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_DENY\",\n \"revocationTargets\": null,\n \"state\": \"TASK_STATE_UNSPECIFIED\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_GRANT\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": null,\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": {\n \"key_0\": false\n },\n \"outcome\": \"ACTION_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": null,\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": 32.153997499266836\n },\n \"type\": \"TYPE_TOOL_CALL\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_DECERTIFIED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_REMEDIATED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_GRANTED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -32301,39 +59360,34 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "user-ownership", + "description": "", + "item": [ { - "id": "6e775dc1-bd95-4812-aacd-e765a7306519", - "name": "Update", + "id": "b7282a42-abf4-4fd2-b809-a49f1aedb88e", + "name": "Search User Ownership", "request": { - "name": "Update", + "name": "Search User Ownership", "description": { - "content": "Update an existing request schema's form definition or settings.", + "content": "Search all ownership assignments for a given user across apps, resources, and entitlements.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "request_schemas", - ":request_schema_id" + "search", + "user-ownership" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "request_schema_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -32348,7 +59402,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"requestSchema\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"justificationVisibility\": \"JUSTIFICATION_VISIBILITY_UNSPECIFIED\",\n \"modifiedAt\": \"\"\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"ownershipTypes\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"userId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -32360,32 +59414,21 @@ }, "response": [ { - "id": "c1e724d8-be1b-477c-97c8-13ca343c40de", - "name": "The response message for updating a request schema.", + "id": "92718636-cf7a-45d9-b255-fb3b1ac7a0d7", + "name": "The SearchUserOwnershipResponse message contains a paginated list of ownership entries.", "originalRequest": { "url": { "path": [ "api", "v1", - "request_schemas", - ":request_schema_id" + "search", + "user-ownership" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "request_schema_id" - } - ] + "variable": [] }, "header": [ { @@ -32408,7 +59451,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"requestSchema\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"justificationVisibility\": \"JUSTIFICATION_VISIBILITY_UNSPECIFIED\",\n \"modifiedAt\": \"\"\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"ownershipTypes\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"userId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -32425,43 +59468,37 @@ "value": "application/json" } ], - "body": "{\n \"requestSchema\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"justificationVisibility\": \"JUSTIFICATION_VISIBILITY_HIDE\",\n \"modifiedAt\": \"\"\n }\n}", + "body": "{\n \"list\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"ownershipType\": \"USER_OWNERSHIP_TYPE_RESOURCE\",\n \"resourceDisplayName\": \"\",\n \"resourceId\": \"\",\n \"resourceTypeId\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"ownershipType\": \"USER_OWNERSHIP_TYPE_RESOURCE\",\n \"resourceDisplayName\": \"\",\n \"resourceId\": \"\",\n \"resourceTypeId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } ], "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - }, - { - "name": "role-mining", - "description": "", - "item": [ + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, { - "name": "access-profiles", + "name": "users", "description": "", "item": [ { - "id": "99077023-0b74-4067-8c7f-33f5a32b8184", - "name": "Create Access Profile From Cohort", + "id": "b46a06ff-3aa2-466c-b6ff-aace51735208", + "name": "Search", "request": { - "name": "Create Access Profile From Cohort", + "name": "Search", "description": { - "content": "CreateAccessProfileFromCohort creates an access profile from a cohort definition,\n adds the specified entitlements, and sets up dynamic membership automation using\n a CEL expression derived from the profile filters.", + "content": "Search users based on filters specified in the request body.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "role-mining", - "access-profiles" + "search", + "users" ], "host": [ "{{baseUrl}}" @@ -32482,7 +59519,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"createTasks\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enableAutomation\": \"\",\n \"entitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"profileFilters\": [\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"suggestionId\": \"\"\n}", + "raw": "{\n \"delegateStatus\": \"DELEGATE_STATUS_NO_DELEGATE\",\n \"delegatedUserIds\": [\n \"\",\n \"\"\n ],\n \"departments\": null,\n \"email\": \"\",\n \"excludeIds\": null,\n \"excludeOrigins\": [\n \"USER_ORIGIN_LOCAL\",\n \"USER_ORIGIN_SYSTEM\"\n ],\n \"excludeTypes\": [\n \"USER_TYPE_UNSPECIFIED\",\n \"USER_TYPE_SERVICE\"\n ],\n \"expandMask\": {\n \"paths\": null\n },\n \"ids\": [\n \"\",\n \"\"\n ],\n \"isDelegate\": \"\",\n \"jobTitles\": [\n \"\",\n \"\"\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"origins\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"sourceAppIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": [\n \"DELETED\",\n \"UNKNOWN\"\n ]\n}", "options": { "raw": { "headerFamily": "json", @@ -32494,15 +59531,15 @@ }, "response": [ { - "id": "76101560-d466-452a-99ba-bf32b73cbd1f", + "id": "dc0dfb04-9522-485c-a060-bad5d69dc071", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "role-mining", - "access-profiles" + "search", + "users" ], "host": [ "{{baseUrl}}" @@ -32531,7 +59568,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"createTasks\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enableAutomation\": \"\",\n \"entitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"profileFilters\": [\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"suggestionId\": \"\"\n}", + "raw": "{\n \"delegateStatus\": \"DELEGATE_STATUS_NO_DELEGATE\",\n \"delegatedUserIds\": [\n \"\",\n \"\"\n ],\n \"departments\": null,\n \"email\": \"\",\n \"excludeIds\": null,\n \"excludeOrigins\": [\n \"USER_ORIGIN_LOCAL\",\n \"USER_ORIGIN_SYSTEM\"\n ],\n \"excludeTypes\": [\n \"USER_TYPE_UNSPECIFIED\",\n \"USER_TYPE_SERVICE\"\n ],\n \"expandMask\": {\n \"paths\": null\n },\n \"ids\": [\n \"\",\n \"\"\n ],\n \"isDelegate\": \"\",\n \"jobTitles\": [\n \"\",\n \"\"\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"origins\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"sourceAppIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": [\n \"DELETED\",\n \"UNKNOWN\"\n ]\n}", "options": { "raw": { "headerFamily": "json", @@ -32548,7 +59585,7 @@ "value": "application/json" } ], - "body": "{\n \"accessProfileId\": \"\",\n \"celExpression\": \"\"\n}", + "body": "{\n \"expanded\": null,\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -32561,24 +59598,24 @@ ] }, { - "name": "config", + "name": "webhooks", "description": "", "item": [ { - "id": "c912542f-45bc-4bc2-b084-59a03f68437d", - "name": "Get Role Mining Config", + "id": "e9a3ad86-c429-40b0-a597-f41ad6675428", + "name": "Search", "request": { - "name": "Get Role Mining Config", + "name": "Search", "description": { - "content": "Retrieve the current role mining configuration, including cohort hints and threshold settings.", + "content": "Search for webhook subscriptions by query string or specific webhook references.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "role-mining", - "config" + "search", + "webhooks" ], "host": [ "{{baseUrl}}" @@ -32587,26 +59624,39 @@ "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "0a2283df-4921-4bc5-b082-c1ecc95465a4", + "id": "a74dd947-d2e0-4308-8c1f-28a12e98e896", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "role-mining", - "config" + "search", + "webhooks" ], "host": [ "{{baseUrl}}" @@ -32615,6 +59665,10 @@ "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -32628,8 +59682,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -32639,7 +59702,7 @@ "value": "application/json" } ], - "body": "{\n \"config\": {\n \"cohortHints\": [\n {\n \"attribute\": \"\",\n \"priority\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"priority\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"maxSuggestions\": \"\",\n \"minCohortSize\": \"\"\n }\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -32648,22 +59711,28 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "workload_federation_trusts", + "description": "", + "item": [ { - "id": "72111da0-025e-4d7a-a60f-303ed7ac7b03", - "name": "Update Role Mining Config", + "id": "dd391c6c-4059-4e35-bd1d-33faa55bdae0", + "name": "Search Trusts", "request": { - "name": "Update Role Mining Config", + "name": "Search Trusts", "description": { - "content": "Update the role mining configuration, such as cohort hints, max suggestions, and minimum cohort size.", + "content": "SearchTrusts searches trusts across all service principals with optional filters.\n Used by the admin providers page to list trusts referencing a provider.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "role-mining", - "config" + "search", + "workload_federation_trusts" ], "host": [ "{{baseUrl}}" @@ -32684,7 +59753,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"cohortHints\": [\n {\n \"attribute\": \"\",\n \"priority\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"priority\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"maxSuggestions\": \"\",\n \"minCohortSize\": \"\"\n}", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"providerId\": \"\",\n \"query\": \"\",\n \"servicePrincipalId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -32696,15 +59765,15 @@ }, "response": [ { - "id": "6d6642a1-1341-4dc6-94c1-98d86da480e6", + "id": "b17bb760-067e-4ba7-8a69-e51ae454c0b8", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "role-mining", - "config" + "search", + "workload_federation_trusts" ], "host": [ "{{baseUrl}}" @@ -32733,7 +59802,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"cohortHints\": [\n {\n \"attribute\": \"\",\n \"priority\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"priority\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"maxSuggestions\": \"\",\n \"minCohortSize\": \"\"\n}", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"providerId\": \"\",\n \"query\": \"\",\n \"servicePrincipalId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -32750,7 +59819,7 @@ "value": "application/json" } ], - "body": "{\n \"config\": {\n \"cohortHints\": [\n {\n \"attribute\": \"\",\n \"priority\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"priority\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"maxSuggestions\": \"\",\n \"minCohortSize\": \"\"\n }\n}", + "body": "{\n \"list\": [\n {\n \"allowSourceCidrs\": null,\n \"clientId\": \"\",\n \"conditionExpression\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": [\n \"\",\n \"\"\n ],\n \"providerId\": \"\",\n \"scopedRoleIds\": null,\n \"servicePrincipalId\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"allowSourceCidrs\": null,\n \"clientId\": \"\",\n \"conditionExpression\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": null,\n \"providerId\": \"\",\n \"scopedRoleIds\": null,\n \"servicePrincipalId\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -32763,88 +59832,83 @@ ] }, { - "name": "custom-analysis", + "name": "xaa", "description": "", "item": [ { - "name": "{id}", + "name": "access_profile_scope_bindings", "description": "", "item": [ { - "id": "def08416-3d93-4cdf-b1b9-011a9f843e77", - "name": "Get Custom Analysis Result", + "id": "8810ca9a-87b5-4b87-bdce-8c4219365f2a", + "name": "Search", "request": { - "name": "Get Custom Analysis Result", + "name": "Search", "description": { - "content": "Invokes the c1.api.role_mining_management.v1.RoleMiningManagementService.GetCustomAnalysisResult method.", + "content": "Search scope bindings, filtered by access profile or by scope, or fetch a\n specific set by ref. The by-scope direction answers \"which profiles\n contain this scope\" for impact analysis.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "role-mining", - "custom-analysis", - ":id" + "search", + "xaa", + "access_profile_scope_bindings" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"accessProfileIds\": null,\n \"appId\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"refs\": null,\n \"xaaScopeIds\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "d9ef3a60-1686-4d07-80d9-e82266c5def1", - "name": "Successful response", + "id": "1b43c80b-4d0e-4a96-8f80-f7fb036d7f3e", + "name": "XAAAccessProfileScopeBindingServiceSearchResponse returns matching bindings.", "originalRequest": { "url": { "path": [ "api", "v1", - "role-mining", - "custom-analysis", - ":id" + "search", + "xaa", + "access_profile_scope_bindings" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -32858,8 +59922,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"accessProfileIds\": null,\n \"appId\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"refs\": null,\n \"xaaScopeIds\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -32869,7 +59942,7 @@ "value": "application/json" } ], - "body": "{\n \"appsAnalyzed\": \"\",\n \"clusters\": [\n {\n \"avgCoverage\": \"\",\n \"avgSimilarity\": \"\",\n \"entitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"userCount\": \"\"\n },\n {\n \"avgCoverage\": \"\",\n \"avgSimilarity\": \"\",\n \"entitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"userCount\": \"\"\n }\n ],\n \"cohortSize\": \"\",\n \"entitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"errorMessage\": \"\",\n \"facetUserCount\": \"\",\n \"facets\": [\n {\n \"attribute\": \"\",\n \"displayName\": \"\",\n \"values\": [\n {\n \"displayName\": \"\",\n \"userCount\": \"\",\n \"value\": \"\"\n },\n {\n \"displayName\": \"\",\n \"userCount\": \"\",\n \"value\": \"\"\n }\n ]\n },\n {\n \"attribute\": \"\",\n \"displayName\": \"\",\n \"values\": [\n {\n \"displayName\": \"\",\n \"userCount\": \"\",\n \"value\": \"\"\n },\n {\n \"displayName\": \"\",\n \"userCount\": \"\",\n \"value\": \"\"\n }\n ]\n }\n ],\n \"id\": \"\",\n \"status\": \"RUN_STATUS_FAILED\"\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -32882,25 +59955,25 @@ ] }, { - "name": "trigger", + "name": "access_profiles", "description": "", "item": [ { - "id": "59320823-9399-4d90-89e8-a569ad4e00b1", - "name": "Trigger Custom Analysis", + "id": "a77ec7d2-d50b-4e8b-af11-f4339532972d", + "name": "Search", "request": { - "name": "Trigger Custom Analysis", + "name": "Search", "description": { - "content": "Invokes the c1.api.role_mining_management.v1.RoleMiningManagementService.TriggerCustomAnalysis method.", + "content": "Search access profiles across the tenant, filtered by application,\n resource server, or text query, or fetch a specific set by ref.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "role-mining", - "custom-analysis", - "trigger" + "search", + "xaa", + "access_profiles" ], "host": [ "{{baseUrl}}" @@ -32921,7 +59994,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"profileFilters\": [\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ]\n}", + "raw": "{\n \"appIds\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"xaaResourceServerIds\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -32933,16 +60006,16 @@ }, "response": [ { - "id": "dbc144d6-e3ef-4ac6-8c47-b67fbceea32f", - "name": "Successful response", + "id": "a313c327-2402-4af4-b6b4-3348cee5a707", + "name": "XAAAccessProfileServiceSearchResponse returns matching access profiles.", "originalRequest": { "url": { "path": [ "api", "v1", - "role-mining", - "custom-analysis", - "trigger" + "search", + "xaa", + "access_profiles" ], "host": [ "{{baseUrl}}" @@ -32971,7 +60044,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"profileFilters\": [\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ]\n}", + "raw": "{\n \"appIds\": null,\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"xaaResourceServerIds\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -32988,7 +60061,7 @@ "value": "application/json" } ], - "body": "{\n \"id\": \"\"\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -32999,118 +60072,27 @@ } } ] - } - ] - }, - { - "name": "runs", - "description": "", - "item": [ - { - "id": "db63b4e2-efb4-42e3-9247-217fe998daf7", - "name": "List Runs", - "request": { - "name": "List Runs", - "description": { - "content": "List role mining analysis runs in reverse chronological order.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "role-mining", - "runs" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "23b4e0ef-32ac-4617-8c79-3229012a81d9", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "role-mining", - "runs" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"cohortsAnalyzed\": \"\",\n \"completedAt\": \"\",\n \"createdAt\": \"\",\n \"errorMessage\": \"\",\n \"id\": \"\",\n \"status\": \"RUN_STATUS_UNSPECIFIED\",\n \"suggestionsGenerated\": \"\",\n \"totalUsers\": \"\",\n \"triggerDetail\": \"\",\n \"triggerType\": \"TRIGGER_TYPE_SCHEDULED\",\n \"updatedAt\": \"\"\n },\n {\n \"cohortsAnalyzed\": \"\",\n \"completedAt\": \"\",\n \"createdAt\": \"\",\n \"errorMessage\": \"\",\n \"id\": \"\",\n \"status\": \"RUN_STATUS_FAILED\",\n \"suggestionsGenerated\": \"\",\n \"totalUsers\": \"\",\n \"triggerDetail\": \"\",\n \"triggerType\": \"TRIGGER_TYPE_DIRECTORY_MERGE\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } }, { - "name": "latest", + "name": "client_audience_mappings", "description": "", "item": [ { - "id": "ca4ce213-6196-4e31-8ae2-d7bf53a2a593", - "name": "Get Latest Run", + "id": "97892147-6a21-4686-a288-211d397a12a3", + "name": "Search", "request": { - "name": "Get Latest Run", + "name": "Search", "description": { - "content": "Retrieve the most recent role mining analysis run, including its status and results summary.", + "content": "Search client audience mappings across the tenant, filtered by resource\n server, disabled state, or text query, or fetch a specific set by ref.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "role-mining", - "runs", - "latest" + "search", + "xaa", + "client_audience_mappings" ], "host": [ "{{baseUrl}}" @@ -33120,240 +60102,51 @@ }, "header": [ { - "key": "Accept", + "key": "Content-Type", "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "37caa59b-43fe-4cdb-926a-11592a8a8a4d", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "role-mining", - "runs", - "latest" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"run\": {\n \"cohortsAnalyzed\": \"\",\n \"completedAt\": \"\",\n \"createdAt\": \"\",\n \"errorMessage\": \"\",\n \"id\": \"\",\n \"status\": \"RUN_STATUS_RUNNING\",\n \"suggestionsGenerated\": \"\",\n \"totalUsers\": \"\",\n \"triggerDetail\": \"\",\n \"triggerType\": \"TRIGGER_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - }, - { - "name": "suggestions", - "description": "", - "item": [ - { - "id": "f9f0b40c-8610-4667-9895-08dfbd5fe47c", - "name": "List Suggestions", - "request": { - "name": "List Suggestions", - "description": { - "content": "List role suggestions generated by analysis runs, optionally filtered by state.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "role-mining", - "suggestions" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "5e5fb20c-c0d3-43d4-a77f-b0c385565866", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "role-mining", - "suggestions" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"avgCoverage\": \"\",\n \"cohortFilters\": [\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"cohortSize\": \"\",\n \"confidence\": \"\",\n \"createdAt\": \"\",\n \"createdCatalogId\": \"\",\n \"description\": \"\",\n \"dimensionCount\": \"\",\n \"entitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"existingProfileMatches\": [\n {\n \"catalogDisplayName\": \"\",\n \"catalogId\": \"\",\n \"matchType\": \"ACCESS_PROFILE_MATCH_TYPE_EXACT\",\n \"missingEntitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"overlapRatio\": \"\"\n },\n {\n \"catalogDisplayName\": \"\",\n \"catalogId\": \"\",\n \"matchType\": \"ACCESS_PROFILE_MATCH_TYPE_PARTIAL\",\n \"missingEntitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"overlapRatio\": \"\"\n }\n ],\n \"id\": \"\",\n \"insights\": [\n \"\",\n \"\"\n ],\n \"lastGeneratedAt\": \"\",\n \"runId\": \"\",\n \"suggestedName\": \"\",\n \"suggestionState\": \"SUGGESTION_STATE_NEW\",\n \"updatedAt\": \"\",\n \"usersWithAll\": \"\"\n },\n {\n \"avgCoverage\": \"\",\n \"cohortFilters\": [\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"cohortSize\": \"\",\n \"confidence\": \"\",\n \"createdAt\": \"\",\n \"createdCatalogId\": \"\",\n \"description\": \"\",\n \"dimensionCount\": \"\",\n \"entitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"existingProfileMatches\": [\n {\n \"catalogDisplayName\": \"\",\n \"catalogId\": \"\",\n \"matchType\": \"ACCESS_PROFILE_MATCH_TYPE_SUPERSET\",\n \"missingEntitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"overlapRatio\": \"\"\n },\n {\n \"catalogDisplayName\": \"\",\n \"catalogId\": \"\",\n \"matchType\": \"ACCESS_PROFILE_MATCH_TYPE_UNSPECIFIED\",\n \"missingEntitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"overlapRatio\": \"\"\n }\n ],\n \"id\": \"\",\n \"insights\": [\n \"\",\n \"\"\n ],\n \"lastGeneratedAt\": \"\",\n \"runId\": \"\",\n \"suggestedName\": \"\",\n \"suggestionState\": \"SUGGESTION_STATE_ACCEPTED\",\n \"updatedAt\": \"\",\n \"usersWithAll\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{id}", - "description": "", - "item": [ - { - "id": "d00575ce-467c-4317-96e2-f8b2447cbc5a", - "name": "Get Suggestion", - "request": { - "name": "Get Suggestion", - "description": { - "content": "Retrieve a single role suggestion by ID, including its cohort filters, entitlements, and confidence score.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "role-mining", - "suggestions", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"disabled\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"clientKey\": \"\",\n \"xaaResourceServerId\": \"\"\n },\n {\n \"clientKey\": \"\",\n \"xaaResourceServerId\": \"\"\n }\n ],\n \"xaaResourceServerIds\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" } - ], - "method": "GET", - "body": {}, + }, "auth": null }, "response": [ { - "id": "470c0e4d-0ceb-47af-be94-4359e809ed6f", - "name": "Successful response", + "id": "c3aa80db-d746-4ebf-ae17-7beaa531d22c", + "name": "XAAClientAudienceMappingServiceSearchResponse returns matching mappings.", "originalRequest": { "url": { "path": [ "api", "v1", - "role-mining", - "suggestions", - ":id" + "search", + "xaa", + "client_audience_mappings" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -33366,9 +60159,18 @@ "key": "Authorization", "value": "Bearer " } - ], - "method": "GET", - "body": {} + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"disabled\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"clientKey\": \"\",\n \"xaaResourceServerId\": \"\"\n },\n {\n \"clientKey\": \"\",\n \"xaaResourceServerId\": \"\"\n }\n ],\n \"xaaResourceServerIds\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -33378,7 +60180,7 @@ "value": "application/json" } ], - "body": "{\n \"suggestion\": {\n \"avgCoverage\": \"\",\n \"cohortFilters\": [\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"cohortSize\": \"\",\n \"confidence\": \"\",\n \"createdAt\": \"\",\n \"createdCatalogId\": \"\",\n \"description\": \"\",\n \"dimensionCount\": \"\",\n \"entitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"existingProfileMatches\": [\n {\n \"catalogDisplayName\": \"\",\n \"catalogId\": \"\",\n \"matchType\": \"ACCESS_PROFILE_MATCH_TYPE_EXACT\",\n \"missingEntitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"overlapRatio\": \"\"\n },\n {\n \"catalogDisplayName\": \"\",\n \"catalogId\": \"\",\n \"matchType\": \"ACCESS_PROFILE_MATCH_TYPE_PARTIAL\",\n \"missingEntitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"overlapRatio\": \"\"\n }\n ],\n \"id\": \"\",\n \"insights\": [\n \"\",\n \"\"\n ],\n \"lastGeneratedAt\": \"\",\n \"runId\": \"\",\n \"suggestedName\": \"\",\n \"suggestionState\": \"SUGGESTION_STATE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"usersWithAll\": \"\"\n }\n}", + "body": "{\n \"list\": [\n {\n \"audienceClientId\": \"\",\n \"clientKey\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disabled\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n },\n {\n \"audienceClientId\": \"\",\n \"clientKey\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disabled\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -33387,45 +60189,77 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "resource_servers", + "description": "", + "item": [ { - "name": "state", - "description": "", - "item": [ + "id": "aeb3fe6c-7214-487d-9b34-4594da80f85d", + "name": "Search", + "request": { + "name": "Search", + "description": { + "content": "Search resource servers across the tenant, filtered by application,\n audience substring, signing algorithm, or disabled state, or fetch a\n specific set by ref. Returns one page at a time.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "search", + "xaa", + "resource_servers" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"disabled\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"signingAlgorithmFilter\": [\n \"XAA_SIGNING_ALGORITHM_UNSPECIFIED\",\n \"XAA_SIGNING_ALGORITHM_RS256\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ { - "id": "2510cc45-39ad-4024-8ebc-4cdee3ef0d45", - "name": "Update Suggestion State", - "request": { - "name": "Update Suggestion State", - "description": { - "content": "Transition a role suggestion to a new state, such as accepted, rejected, or dismissed.", - "type": "text/plain" - }, + "id": "a9cfcece-4fe0-4446-8c33-b5f833dbd872", + "name": "XAAResourceServerServiceSearchResponse returns matching resource servers.", + "originalRequest": { "url": { "path": [ "api", "v1", - "role-mining", - "suggestions", - ":id", - "state" + "search", + "xaa", + "resource_servers" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -33435,146 +60269,116 @@ { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"createdCatalogId\": \"\",\n \"state\": \"SUGGESTION_STATE_NEW\"\n}", + "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"disabled\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"signingAlgorithmFilter\": [\n \"XAA_SIGNING_ALGORITHM_UNSPECIFIED\",\n \"XAA_SIGNING_ALGORITHM_RS256\"\n ]\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - }, - "auth": null + } }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "80545644-1db0-4d1c-987d-907a03e71906", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "role-mining", - "suggestions", - ":id", - "state" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"createdCatalogId\": \"\",\n \"state\": \"SUGGESTION_STATE_NEW\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"suggestion\": {\n \"avgCoverage\": \"\",\n \"cohortFilters\": [\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"cohortSize\": \"\",\n \"confidence\": \"\",\n \"createdAt\": \"\",\n \"createdCatalogId\": \"\",\n \"description\": \"\",\n \"dimensionCount\": \"\",\n \"entitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"existingProfileMatches\": [\n {\n \"catalogDisplayName\": \"\",\n \"catalogId\": \"\",\n \"matchType\": \"ACCESS_PROFILE_MATCH_TYPE_EXACT\",\n \"missingEntitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"overlapRatio\": \"\"\n },\n {\n \"catalogDisplayName\": \"\",\n \"catalogId\": \"\",\n \"matchType\": \"ACCESS_PROFILE_MATCH_TYPE_SUPERSET\",\n \"missingEntitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"overlapRatio\": \"\"\n }\n ],\n \"id\": \"\",\n \"insights\": [\n \"\",\n \"\"\n ],\n \"lastGeneratedAt\": \"\",\n \"runId\": \"\",\n \"suggestedName\": \"\",\n \"suggestionState\": \"SUGGESTION_STATE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"usersWithAll\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "body": "{\n \"list\": [\n {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"maxGrantLifetime\": \"\",\n \"modifyClaimsHook\": {\n \"commitId\": \"\",\n \"disabled\": \"\",\n \"functionId\": \"\"\n },\n \"normalizedAudience\": \"\",\n \"requireProofOfPossession\": \"\",\n \"resourceUris\": null,\n \"sectorId\": \"\",\n \"signingAlgorithm\": \"XAA_SIGNING_ALGORITHM_EDDSA\",\n \"updatedAt\": \"\"\n },\n {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"maxGrantLifetime\": \"\",\n \"modifyClaimsHook\": {\n \"commitId\": \"\",\n \"disabled\": \"\",\n \"functionId\": \"\"\n },\n \"normalizedAudience\": \"\",\n \"requireProofOfPossession\": \"\",\n \"resourceUris\": [\n \"\",\n \"\"\n ],\n \"sectorId\": \"\",\n \"signingAlgorithm\": \"XAA_SIGNING_ALGORITHM_EDDSA\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } ] }, { - "name": "{suggestion_id}", + "name": "scopes", "description": "", "item": [ { - "name": "users", - "description": "", - "item": [ + "id": "d38babe1-ccbb-4d60-babd-31d45041533a", + "name": "Search", + "request": { + "name": "Search", + "description": { + "content": "Search scopes across the tenant, filtered by resource server, state,\n classification, source, or text query, or fetch a specific set by ref.\n Filter on PENDING_REVIEW to find scopes awaiting approval.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "search", + "xaa", + "scopes" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"classificationFilter\": [\n \"XAA_SCOPE_CLASSIFICATION_DESTRUCTIVE\",\n \"XAA_SCOPE_CLASSIFICATION_UNSPECIFIED\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"sourceFilter\": null,\n \"stateFilter\": [\n \"XAA_SCOPE_STATE_UNSPECIFIED\",\n \"XAA_SCOPE_STATE_UNSPECIFIED\"\n ],\n \"xaaResourceServerIds\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ { - "id": "43f95579-2ff3-424b-92fc-1bc8cfaa0ed4", - "name": "Search Cohort Users", - "request": { - "name": "Search Cohort Users", - "description": { - "content": "Search for users that belong to a suggestion's cohort, with optional additional profile filters.", - "type": "text/plain" - }, + "id": "f979f589-027a-4dd0-a0cd-53d7b106ddc6", + "name": "XAAScopeServiceSearchResponse returns matching scopes.", + "originalRequest": { "url": { "path": [ "api", "v1", - "role-mining", - "suggestions", - ":suggestion_id", - "users" + "search", + "xaa", + "scopes" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "suggestion_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -33584,131 +60388,92 @@ { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"profileFilters\": [\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ]\n}", + "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"classificationFilter\": [\n \"XAA_SCOPE_CLASSIFICATION_DESTRUCTIVE\",\n \"XAA_SCOPE_CLASSIFICATION_UNSPECIFIED\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"sourceFilter\": null,\n \"stateFilter\": [\n \"XAA_SCOPE_STATE_UNSPECIFIED\",\n \"XAA_SCOPE_STATE_UNSPECIFIED\"\n ],\n \"xaaResourceServerIds\": null\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - }, - "auth": null + } }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "40f2f1cd-a1cd-4ade-8a28-2f204dc2baaa", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "role-mining", - "suggestions", - ":suggestion_id", - "users" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "suggestion_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"profileFilters\": [\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"ENABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": {\n \"key_0\": 4025\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_AGENT\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": {\n \"key_0\": 3226.6500273365996,\n \"key_1\": 2640,\n \"key_2\": 8557\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_HUMAN\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } ] } ] - }, + } + ] + }, + { + "name": "secrets-admin", + "description": "", + "item": [ { - "name": "trigger", + "name": "{vault_id}", "description": "", "item": [ { - "id": "9f10dffc-bb4b-4fd9-b233-89e5a7ac00e7", - "name": "Trigger Analysis", + "id": "5adaeffa-3bde-4525-b940-013af139fcee", + "name": "Revoke", "request": { - "name": "Trigger Analysis", + "name": "Revoke", "description": { - "content": "Start a new role mining analysis job that scans existing access patterns to generate role suggestions.", + "content": "Revoke allows admin to revoke any secret (not just their own).", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "role-mining", - "trigger" + "secrets-admin", + ":vault_id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "vault_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -33720,7 +60485,7 @@ "value": "application/json" } ], - "method": "POST", + "method": "DELETE", "body": { "mode": "raw", "raw": "{}", @@ -33735,21 +60500,32 @@ }, "response": [ { - "id": "defa771a-9bc0-4a6d-bd98-7c213e1bc9e9", + "id": "f28f92c0-2a20-42e1-9750-11f6700ac07c", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "role-mining", - "trigger" + "secrets-admin", + ":vault_id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "vault_id" + } + ] }, "header": [ { @@ -33769,7 +60545,7 @@ "value": "Bearer " } ], - "method": "POST", + "method": "DELETE", "body": { "mode": "raw", "raw": "{}", @@ -33789,7 +60565,114 @@ "value": "application/json" } ], - "body": "{\n \"runId\": \"\"\n}", + "body": "{\n \"secret\": {\n \"ageSuite\": \"AGE_SUITE_UNSPECIFIED\",\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"allowedUserIds\": null,\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_PLAINTEXT\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_FILE\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_UNSPECIFIED\",\n \"status\": \"SECRET_STATUS_ACTIVE\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "8dd56a5b-e205-4f17-a4be-ef393020a3d4", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get retrieves any secret's metadata by vault ID (admin override).", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "secrets-admin", + ":vault_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "vault_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "ac9cf45d-5a93-4602-965a-eb35e937eb49", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "secrets-admin", + ":vault_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "vault_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"secret\": {\n \"ageSuite\": \"AGE_SUITE_X25519\",\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_PLAINTEXT\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_FILE\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_EXTERNAL\",\n \"status\": \"SECRET_STATUS_ACTIVE\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -33804,34 +60687,45 @@ ] }, { - "name": "search", + "name": "secrets", "description": "", "item": [ { - "name": "all_automation_executions", + "name": "{vault_id}", "description": "", "item": [ { - "id": "24282200-8f96-438c-b234-62e83d3a7b33", - "name": "Search All Automation Executions", + "id": "f79736a6-44b8-4e0a-b09c-7802df3b5d1a", + "name": "Revoke", "request": { - "name": "Search All Automation Executions", + "name": "Revoke", "description": { - "content": "Search across all automation executions in the tenant, with filters for state, template, app, and subject user.", + "content": "Revoke soft-deletes a secret (sets Vault.deleted_at, deletes content).", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "all_automation_executions" + "secrets", + ":vault_id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "vault_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -33843,10 +60737,10 @@ "value": "application/json" } ], - "method": "POST", + "method": "DELETE", "body": { "mode": "raw", - "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"automationTemplateIds\": [\n \"\",\n \"\"\n ],\n \"executionStates\": [\n \"AUTOMATION_EXECUTION_STATE_COMPLETE_STEP\",\n \"AUTOMATION_EXECUTION_STATE_GET_STEP\"\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"subjectUserIds\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{}", "options": { "raw": { "headerFamily": "json", @@ -33858,21 +60752,32 @@ }, "response": [ { - "id": "c3367088-e493-4ddd-a7de-a0d6b026c72b", + "id": "52ef4b13-c6fd-4811-976c-d6c854e9caa1", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "all_automation_executions" + "secrets", + ":vault_id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "vault_id" + } + ] }, "header": [ { @@ -33892,10 +60797,10 @@ "value": "Bearer " } ], - "method": "POST", + "method": "DELETE", "body": { "mode": "raw", - "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"automationTemplateIds\": [\n \"\",\n \"\"\n ],\n \"executionStates\": [\n \"AUTOMATION_EXECUTION_STATE_COMPLETE_STEP\",\n \"AUTOMATION_EXECUTION_STATE_GET_STEP\"\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"subjectUserIds\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{}", "options": { "raw": { "headerFamily": "json", @@ -33912,7 +60817,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": true,\n \"key_1\": 9547.987070101017,\n \"key_2\": 9927,\n \"key_3\": true\n },\n {\n \"@type\": \"\"\n }\n ],\n \"list\": [\n {\n \"automationExecution\": {\n \"automationTemplateId\": \"\",\n \"completedAt\": \"\",\n \"context\": {\n \"context\": {\n \"key_0\": 4224.169784551564,\n \"key_1\": false,\n \"key_2\": 3818.8693685612043\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"deletedAt\": \"\",\n \"duration\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"state\": \"AUTOMATION_EXECUTION_STATE_CREATING\",\n \"updatedAt\": \"\"\n },\n \"automationExecutionTriggerPath\": \"\",\n \"automationPath\": \"\"\n },\n {\n \"automationExecution\": {\n \"automationTemplateId\": \"\",\n \"completedAt\": \"\",\n \"context\": {\n \"context\": {\n \"key_0\": \"string\",\n \"key_1\": 501.80857343626207\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"deletedAt\": \"\",\n \"duration\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"state\": \"AUTOMATION_EXECUTION_STATE_ERROR\",\n \"updatedAt\": \"\"\n },\n \"automationExecutionTriggerPath\": \"\",\n \"automationPath\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"secret\": {\n \"ageSuite\": \"AGE_SUITE_MLKEM768X25519\",\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_PLAINTEXT\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_FILE\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_UNSPECIFIED\",\n \"status\": \"SECRET_STATUS_REVOKED\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -33921,81 +60826,80 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "app_resource_types", - "description": "", - "item": [ + }, { - "id": "376575bb-052a-4774-a424-5517b649771f", - "name": "Search App Resource Types", + "id": "900bd4e8-c5c4-49a7-8e9e-15c9839f53a9", + "name": "Get", "request": { - "name": "Search App Resource Types", + "name": "Get", "description": { - "content": "Search app resources based on filters specified in the request body.", + "content": "Get retrieves a secret's metadata by vault ID.\n Creator can always get their own secrets. Admins can get any secret.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "app_resource_types" + "secrets", + ":vault_id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "vault_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"displayName\": \"\",\n \"excludeResourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"excludeResourceTypeTraitIds\": [\n \"\",\n \"\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"resourceTypeTraitIds\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "18498f5f-c959-4fe9-a673-58f09ed63d84", - "name": "The SearchAppResourceTypesResponse message contains a list of results and a nextPageToken if applicable.", + "id": "2f693071-c06a-4a40-bdf1-ff0358c6198c", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "app_resource_types" + "secrets", + ":vault_id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "vault_id" + } + ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -34009,17 +60913,8 @@ "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"displayName\": \"\",\n \"excludeResourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"excludeResourceTypeTraitIds\": [\n \"\",\n \"\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"resourceTypeTraitIds\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -34029,7 +60924,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"traitIds\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n },\n {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"traitIds\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"secret\": {\n \"ageSuite\": \"AGE_SUITE_X25519\",\n \"allowedEmails\": null,\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_KEY_VALUE\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_UNSPECIFIED\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_UNSPECIFIED\",\n \"status\": \"SECRET_STATUS_DATA_DELETED\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -34038,28 +60933,431 @@ "protocolProfileBehavior": { "disableBodyPruning": true } + }, + { + "name": "content", + "description": "", + "item": [ + { + "id": "cb1c79c7-c1e1-4f09-ad5e-d0b7b33c0246", + "name": "Set Text Content", + "request": { + "name": "Set Text Content", + "description": { + "content": "SetTextContent sets the encrypted content for a text secret.\n Client encrypts content using age_recipient from CreateResponse.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "secrets", + ":vault_id", + "content" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "vault_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"encryptedContent\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_JSON\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "41fcd3cb-68de-4aa0-861b-0545b35baeb5", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "secrets", + ":vault_id", + "content" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "vault_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"encryptedContent\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_JSON\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"secret\": {\n \"ageSuite\": \"AGE_SUITE_UNSPECIFIED\",\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_UNSPECIFIED\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_TEXT\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_UNSPECIFIED\",\n \"status\": \"SECRET_STATUS_EXPIRED\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "view", + "description": "", + "item": [ + { + "id": "b4a5d93e-f4bc-4a01-8b7d-2d6677bc0503", + "name": "Get Content", + "request": { + "name": "Get Content", + "description": { + "content": "GetContent retrieves the encrypted secret content for an authorized recipient.\n Caller must be in the secret's allowed_user_ids list (for INTERNAL secrets).\n Returns content re-encrypted to caller's ephemeral public key.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "secrets", + ":vault_id", + "view" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "vault_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"readerRecipient\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "4ffe897d-cb8e-49ea-9e0a-c56f8819afe7", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "secrets", + ":vault_id", + "view" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "vault_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"readerRecipient\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"downloadUrl\": \"\",\n \"encryptedContent\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_KEY_VALUE\",\n \"secretType\": \"SECRET_TYPE_FILE\",\n \"viewsRemaining\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "code", + "description": "", + "item": [ + { + "name": "{share_code}", + "description": "", + "item": [ + { + "id": "2b51944b-a465-4575-945b-9c7c295c9ba9", + "name": "Get By Share Code", + "request": { + "name": "Get By Share Code", + "description": { + "content": "GetByShareCode retrieves a secret by its human-friendly share code.\n Share codes are in XXXX-XXXX-XXXX format and are used in share URLs.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "secrets", + "code", + ":share_code" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "share_code", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "e0255d1d-ee38-4f7c-bd57-d525c7dd8f3e", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "secrets", + "code", + ":share_code" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "share_code" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"secret\": {\n \"ageSuite\": \"AGE_SUITE_X25519\",\n \"allowedEmails\": null,\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_KEY_VALUE\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_UNSPECIFIED\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_UNSPECIFIED\",\n \"status\": \"SECRET_STATUS_DATA_DELETED\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] } ] }, { - "name": "app_resources", + "name": "external", "description": "", "item": [ { - "id": "42b9b90e-7859-4ddd-8be8-62a9fd893728", - "name": "Search App Resources", + "id": "e01cffec-191a-4aba-9703-ab2d8a1e14ce", + "name": "Create External", "request": { - "name": "Search App Resources", + "name": "Create External", "description": { - "content": "Search app resources based on filters specified in the request body.", + "content": "CreateExternal creates a secret using the requested Age suite.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "app_resources" + "secrets", + "external" ], "host": [ "{{baseUrl}}" @@ -34080,7 +61378,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appId\": \"\",\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"excludeDeletedResourceBindings\": \"\",\n \"excludeResourceIds\": [\n \"\",\n \"\"\n ],\n \"excludeResourceTypeTraitIds\": [\n \"\",\n \"\"\n ],\n \"ownerUserIds\": [\n \"\",\n \"\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n ],\n \"resourceIds\": [\n \"\",\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"resourceTypeTraitIds\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"contentType\": \"\",\n \"displayName\": \"\",\n \"expiresIn\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_YAML\",\n \"maxViews\": \"\",\n \"requiredAgeSuite\": \"AGE_SUITE_X25519\",\n \"secretType\": \"SECRET_TYPE_UNSPECIFIED\"\n}", "options": { "raw": { "headerFamily": "json", @@ -34092,15 +61390,15 @@ }, "response": [ { - "id": "c05f616a-ac45-427b-b15b-eaa5bb657c4e", - "name": "The SearchAppResourcesResponse message contains a list of results and a nextPageToken if applicable.", + "id": "232dacf9-7966-40cc-8cb4-a9158bb4af7f", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "app_resources" + "secrets", + "external" ], "host": [ "{{baseUrl}}" @@ -34129,7 +61427,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appId\": \"\",\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"excludeDeletedResourceBindings\": \"\",\n \"excludeResourceIds\": [\n \"\",\n \"\"\n ],\n \"excludeResourceTypeTraitIds\": [\n \"\",\n \"\"\n ],\n \"ownerUserIds\": [\n \"\",\n \"\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n ],\n \"resourceIds\": [\n \"\",\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"resourceTypeTraitIds\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"contentType\": \"\",\n \"displayName\": \"\",\n \"expiresIn\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_YAML\",\n \"maxViews\": \"\",\n \"requiredAgeSuite\": \"AGE_SUITE_X25519\",\n \"secretType\": \"SECRET_TYPE_UNSPECIFIED\"\n}", "options": { "raw": { "headerFamily": "json", @@ -34146,7 +61444,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": true,\n \"key_1\": 4203\n },\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": 706.9587346987261,\n \"key_2\": \"string\",\n \"key_3\": \"string\"\n }\n ],\n \"list\": [\n {\n \"appPath\": \"\",\n \"appResource\": {\n \"accessConfigId\": \"\",\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customDescription\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"matchBatonId\": \"\",\n \"parentAppResourceId\": \"\",\n \"parentAppResourceTypeId\": \"\",\n \"profile\": {\n \"key_0\": false\n },\n \"secretTrait\": {\n \"identityAppUserId\": \"\",\n \"lastUsedAt\": \"\",\n \"secretCreatedAt\": \"\",\n \"secretExpiresAt\": \"\"\n },\n \"updatedAt\": \"\"\n },\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"parentResourcePath\": \"\",\n \"parentResourceTypePath\": \"\",\n \"resourceTypePath\": \"\"\n },\n {\n \"appPath\": \"\",\n \"appResource\": {\n \"accessConfigId\": \"\",\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"createdAt\": \"\",\n \"customDescription\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"id\": \"\",\n \"matchBatonId\": \"\",\n \"parentAppResourceId\": \"\",\n \"parentAppResourceTypeId\": \"\",\n \"profile\": {\n \"key_0\": 8213,\n \"key_1\": false,\n \"key_2\": \"string\"\n },\n \"secretTrait\": {\n \"identityAppUserId\": \"\",\n \"lastUsedAt\": \"\",\n \"secretCreatedAt\": \"\",\n \"secretExpiresAt\": \"\"\n },\n \"updatedAt\": \"\"\n },\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n },\n \"parentResourcePath\": \"\",\n \"parentResourceTypePath\": \"\",\n \"resourceTypePath\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"ageRecipient\": \"\",\n \"ageSuite\": \"AGE_SUITE_X25519\",\n \"secret\": {\n \"ageSuite\": \"AGE_SUITE_MLKEM768X25519\",\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"allowedUserIds\": null,\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_KEY_VALUE\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_FILE\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_EXTERNAL\",\n \"status\": \"SECRET_STATUS_ACTIVE\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n },\n \"uploadUrl\": \"\",\n \"vaultId\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -34159,24 +61457,24 @@ ] }, { - "name": "app_users", + "name": "internal", "description": "", "item": [ { - "id": "18f04702-b0a5-4ee5-8ba4-82d820ff0425", - "name": "Search", + "id": "4cf71a77-006c-4531-96b0-694effa1bb1d", + "name": "Create Internal", "request": { - "name": "Search", + "name": "Create Internal", "description": { - "content": "Search app users based on filters specified in the request body.", + "content": "CreateInternal creates a secret using the requested Age suite.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "app_users" + "secrets", + "internal" ], "host": [ "{{baseUrl}}" @@ -34197,7 +61495,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appId\": \"\",\n \"appUserDomains\": [\n \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"APP_USER_DOMAIN_TRUSTED\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"appUserStatusDetails\": [\n \"\",\n \"\"\n ],\n \"appUserStatuses\": [\n \"STATUS_ENABLED\",\n \"STATUS_UNSPECIFIED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_USER\"\n ],\n \"excludeAppUserIds\": [\n \"\",\n \"\"\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{\n \"allowedUserIds\": null,\n \"contentType\": \"\",\n \"displayName\": \"\",\n \"expiresIn\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_JSON\",\n \"maxViews\": \"\",\n \"requiredAgeSuite\": \"AGE_SUITE_MLKEM768X25519\",\n \"secretType\": \"SECRET_TYPE_UNSPECIFIED\"\n}", "options": { "raw": { "headerFamily": "json", @@ -34209,15 +61507,15 @@ }, "response": [ { - "id": "2cc2e717-a560-460f-a04b-fa6a7ca8061b", + "id": "69b0806c-a3be-4ef9-a32e-fc29a51af952", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "app_users" + "secrets", + "internal" ], "host": [ "{{baseUrl}}" @@ -34246,7 +61544,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appId\": \"\",\n \"appUserDomains\": [\n \"APP_USER_DOMAIN_UNSPECIFIED\",\n \"APP_USER_DOMAIN_TRUSTED\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"appUserStatusDetails\": [\n \"\",\n \"\"\n ],\n \"appUserStatuses\": [\n \"STATUS_ENABLED\",\n \"STATUS_UNSPECIFIED\"\n ],\n \"appUserTypes\": [\n \"APP_USER_TYPE_USER\",\n \"APP_USER_TYPE_USER\"\n ],\n \"excludeAppUserIds\": [\n \"\",\n \"\"\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"userIds\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{\n \"allowedUserIds\": null,\n \"contentType\": \"\",\n \"displayName\": \"\",\n \"expiresIn\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_JSON\",\n \"maxViews\": \"\",\n \"requiredAgeSuite\": \"AGE_SUITE_MLKEM768X25519\",\n \"secretType\": \"SECRET_TYPE_UNSPECIFIED\"\n}", "options": { "raw": { "headerFamily": "json", @@ -34263,7 +61561,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 325.28660788478936\n },\n {\n \"@type\": \"\"\n }\n ],\n \"list\": [\n {\n \"appPath\": \"\",\n \"appUser\": {\n \"appId\": \"\",\n \"appUserType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"identityUserId\": \"\",\n \"isExternal\": \"\",\n \"profile\": {\n \"key_0\": 1519,\n \"key_1\": false\n },\n \"status\": {\n \"details\": \"\",\n \"status\": \"STATUS_ENABLED\"\n },\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"identityUserPath\": \"\",\n \"lastUsagePath\": \"\"\n },\n {\n \"appPath\": \"\",\n \"appUser\": {\n \"appId\": \"\",\n \"appUserType\": \"APP_USER_TYPE_UNSPECIFIED\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"identityUserId\": \"\",\n \"isExternal\": \"\",\n \"profile\": {\n \"key_0\": true\n },\n \"status\": {\n \"details\": \"\",\n \"status\": \"STATUS_ENABLED\"\n },\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"identityUserPath\": \"\",\n \"lastUsagePath\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"ageRecipient\": \"\",\n \"ageSuite\": \"AGE_SUITE_X25519\",\n \"secret\": {\n \"ageSuite\": \"AGE_SUITE_MLKEM768X25519\",\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"allowedUserIds\": null,\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_KEY_VALUE\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_FILE\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_EXTERNAL\",\n \"status\": \"SECRET_STATUS_ACTIVE\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n },\n \"uploadUrl\": \"\",\n \"vaultId\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -34274,32 +61572,241 @@ } } ] + } + ] + }, + { + "name": "service_principals", + "description": "", + "item": [ + { + "id": "bfd87258-9bf4-4e42-bbef-8f9df5e7ab39", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List lists service principals for the tenant.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "service_principals" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "461da4d3-4ae6-4320-bda4-60708e88726f", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "service_principals" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"updatedAt\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": null,\n \"directoryIds\": null,\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": null,\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": null,\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_AGENT\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": null,\n \"usernames\": null\n }\n },\n {\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n },\n \"updatedAt\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": null,\n \"employeeIdSources\": null,\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": null,\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": null,\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": null,\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, { - "name": "apps", + "id": "ca85e7a0-108f-4b2c-b668-402d690ec3b5", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create creates a new service principal.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "service_principals" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "57a92841-1d67-4276-9ccc-c16d31871f93", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "service_principals" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"servicePrincipal\": {\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"updatedAt\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": null,\n \"directoryIds\": null,\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": null,\n \"employeeIds\": null,\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": null,\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": null,\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": null,\n \"roleIds\": null,\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_HUMAN\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": null,\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", "description": "", "item": [ { - "id": "5663a948-4408-4196-be66-a684fd65116d", - "name": "Search", + "id": "05920e26-1728-40e9-b89a-4caac326edb2", + "name": "Delete", "request": { - "name": "Search", + "name": "Delete", "description": { - "content": "Search apps based on filters specified in the request body.", + "content": "Delete deletes a service principal and all its credentials.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "apps" + "service_principals", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -34311,10 +61818,10 @@ "value": "application/json" } ], - "method": "POST", + "method": "DELETE", "body": { "mode": "raw", - "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"displayName\": \"\",\n \"excludeAppIds\": [\n \"\",\n \"\"\n ],\n \"onlyDirectories\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"policyRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"query\": \"\"\n}", + "raw": "{}", "options": { "raw": { "headerFamily": "json", @@ -34326,21 +61833,32 @@ }, "response": [ { - "id": "ddc49edb-200a-4aa4-9656-65e141a736b2", - "name": "The SearchAppsResponse message contains a list of results and a nextPageToken if applicable.", + "id": "7dbbec3f-5463-45a2-81b3-a419036277f0", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "apps" + "service_principals", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] }, "header": [ { @@ -34360,10 +61878,10 @@ "value": "Bearer " } ], - "method": "POST", + "method": "DELETE", "body": { "mode": "raw", - "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"displayName\": \"\",\n \"excludeAppIds\": [\n \"\",\n \"\"\n ],\n \"onlyDirectories\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"policyRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"query\": \"\"\n}", + "raw": "{}", "options": { "raw": { "headerFamily": "json", @@ -34380,7 +61898,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"accessModel\": \"APP_ACCESS_MODEL_UNSPECIFIED\",\n \"appAccountId\": \"\",\n \"appAccountName\": \"\",\n \"appOwners\": [\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\",\n \"key_2\": \"string\"\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": {\n \"key_0\": 5594.095457367498\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_AGENT\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"appUserMapper\": {\n \"mappingCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n },\n \"certifyPolicyId\": \"\",\n \"connectorVersion\": \"\",\n \"createdAt\": \"\",\n \"defaultRequestCatalogId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enableConnectorSourcedOwnership\": \"\",\n \"fieldMask\": \"\",\n \"grantPolicyId\": \"\",\n \"iconUrl\": \"\",\n \"id\": \"\",\n \"identityMatching\": \"APP_USER_IDENTITY_MATCHING_STRICT\",\n \"instructions\": \"\",\n \"isDirectory\": \"\",\n \"isManuallyManaged\": \"\",\n \"logoUri\": \"\",\n \"monthlyCostUsd\": \"\",\n \"parentAppId\": \"\",\n \"revokePolicyId\": \"\",\n \"strictAccessEntitlementProvisioning\": \"\",\n \"updatedAt\": \"\",\n \"userCount\": \"\"\n },\n {\n \"accessModel\": \"APP_ACCESS_MODEL_CLASSIC\",\n \"appAccountId\": \"\",\n \"appAccountName\": \"\",\n \"appOwners\": [\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"ENABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": \"string\",\n \"key_1\": 2064.9194718470862\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_HUMAN\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"ENABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": {\n \"key_0\": 1132,\n \"key_1\": \"string\",\n \"key_2\": 5504\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_SERVICE\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"appUserMapper\": {\n \"mappingCases\": [\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n },\n {\n \"appUserKeyCel\": \"\",\n \"userKeyCel\": \"\"\n }\n ]\n },\n \"certifyPolicyId\": \"\",\n \"connectorVersion\": \"\",\n \"createdAt\": \"\",\n \"defaultRequestCatalogId\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enableConnectorSourcedOwnership\": \"\",\n \"fieldMask\": \"\",\n \"grantPolicyId\": \"\",\n \"iconUrl\": \"\",\n \"id\": \"\",\n \"identityMatching\": \"APP_USER_IDENTITY_MATCHING_DISPLAY_NAME\",\n \"instructions\": \"\",\n \"isDirectory\": \"\",\n \"isManuallyManaged\": \"\",\n \"logoUri\": \"\",\n \"monthlyCostUsd\": \"\",\n \"parentAppId\": \"\",\n \"revokePolicyId\": \"\",\n \"strictAccessEntitlementProvisioning\": \"\",\n \"updatedAt\": \"\",\n \"userCount\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{}", "cookie": [], "_postman_previewlanguage": "json" } @@ -34391,229 +61909,144 @@ } }, { - "name": "{app_id}", - "description": "", - "item": [ - { - "name": "entitlements", - "description": "", - "item": [ + "id": "feb1be0f-1be1-4d83-965a-187f3627770c", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get returns a service principal by ID.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ { - "name": "users", - "description": "", - "item": [ - { - "name": "{app_user_id}", - "description": "", - "item": [ - { - "id": "021beec2-61df-45a4-9f0d-44448a890d94", - "name": "Search App Entitlements For App User", - "request": { - "name": "Search App Entitlements For App User", - "description": { - "content": "Search for app entitlements associated with a specific app user, with optional resource type trait filtering.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "search", - "apps", - ":app_id", - "entitlements", - "users", - ":app_user_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "app_user_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "4d025b22-fbb9-42fd-9dbd-c341b3eec020", - "name": "The ListAppEntitlementsResponse message contains a list of results and a nextPageToken if applicable.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "search", - "apps", - ":app_id", - "entitlements", - "users", - ":app_user_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_user_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": true\n },\n {\n \"@type\": \"\",\n \"key_0\": 9815,\n \"key_1\": \"string\"\n }\n ],\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 8211.696429567206,\n \"key_2\": 5442\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\",\n \"key_4\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n }\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 4082\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": 1323\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "d202c3a4-2633-4e05-8dba-4570df9ddcf1", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" } ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" } - ] + ], + "body": "{\n \"servicePrincipal\": {\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"updatedAt\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": null,\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": null,\n \"employeeIdSources\": null,\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": null,\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": null,\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": 4994,\n \"key_1\": \"string\",\n \"key_2\": false,\n \"key_3\": \"string\"\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_HUMAN\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": null\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] - } - ] - }, - { - "name": "attributes", - "description": "", - "item": [ + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, { - "id": "cfd2942a-7cd7-47cd-92dc-06b307a1880c", - "name": "Search Attribute Values", + "id": "76f29383-1329-41b8-8073-0e98359a726f", + "name": "Update", "request": { - "name": "Search Attribute Values", + "name": "Update", "description": { - "content": "Search attributes based on filters specified in the request body.", + "content": "Update updates a service principal's display name.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "attributes" + "service_principals", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -34625,10 +62058,10 @@ "value": "application/json" } ], - "method": "POST", + "method": "PATCH", "body": { "mode": "raw", - "raw": "{\n \"attributeTypeIds\": [\n \"\",\n \"\"\n ],\n \"excludeIds\": [\n \"\",\n \"\"\n ],\n \"ids\": [\n \"\",\n \"\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"value\": \"\"\n}", + "raw": "{\n \"servicePrincipal\": {\n \"displayName\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"user\": {\n \"delegatedUserId\": \"\",\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\"\n }\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -34640,372 +62073,934 @@ }, "response": [ { - "id": "066c6ac2-6fd7-4f0a-91fe-ba0b25ccc991", - "name": "SearchAttributeValuesResponse is the response for searching AttributeValues.", + "id": "d53a2e0b-8473-4efd-884c-5929981c2ddc", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "attributes" + "service_principals", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "PATCH", + "body": { + "mode": "raw", + "raw": "{\n \"servicePrincipal\": {\n \"displayName\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"user\": {\n \"delegatedUserId\": \"\",\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\"\n }\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"servicePrincipal\": {\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"updatedAt\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": null,\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": null,\n \"employmentType\": \"\",\n \"employmentTypeSources\": null,\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": null,\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": null,\n \"roleIds\": null,\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": null\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "{service_principal_id}", + "description": "", + "item": [ + { + "name": "credentials", + "description": "", + "item": [ + { + "id": "c720d961-80e6-4efe-9c6d-25891ccf387f", + "name": "List Credentials", + "request": { + "name": "List Credentials", + "description": { + "content": "ListCredentials lists client credentials for a service principal.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "credentials" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "service_principal_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "53d76ebd-8277-47c9-88ae-2afd3d2bce0a", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "credentials" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "service_principal_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "7336d11c-3ced-415e-9e30-54d578e8bbbd", + "name": "Create Credential", + "request": { + "name": "Create Credential", + "description": { + "content": "CreateCredential creates a new client credential for a service principal.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "credentials" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [] + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "service_principal_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"allowSourceCidrs\": null,\n \"displayName\": \"\",\n \"expires\": \"\",\n \"requireDpop\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "581bfc90-45e4-4c2a-b54a-4528678fa7d2", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "credentials" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "service_principal_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"allowSourceCidrs\": null,\n \"displayName\": \"\",\n \"expires\": \"\",\n \"requireDpop\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"clientSecret\": \"\",\n \"credential\": {\n \"allowSourceCidrs\": null,\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"requireDpop\": \"\",\n \"scopedRoleIds\": null,\n \"servicePrincipalId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "0100b9e3-e0a1-4f8d-865f-788d7c73f6ab", + "name": "Revoke Credential", + "request": { + "name": "Revoke Credential", + "description": { + "content": "RevokeCredential revokes (deletes) a client credential for a service principal.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "credentials", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "service_principal_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "bcd9a1c7-1518-4180-982e-77524ea37b8b", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "credentials", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "service_principal_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + { + "id": "9644d68c-5d21-4bef-9f34-c7ff29cbf458", + "name": "Get Credential", + "request": { + "name": "Get Credential", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "GetCredential returns a single client credential for a service principal.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"attributeTypeIds\": [\n \"\",\n \"\"\n ],\n \"excludeIds\": [\n \"\",\n \"\"\n ],\n \"ids\": [\n \"\",\n \"\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"value\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "credentials", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "service_principal_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "7b9409fb-5130-4024-b9b4-8eafb75f60a6", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "credentials", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "service_principal_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"credential\": {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"requireDpop\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"servicePrincipalId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n },\n {\n \"attributeTypeId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"value\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "automation_executions", - "description": "", - "item": [ - { - "id": "23473091-101e-45b1-8f13-5a15b6b8e098", - "name": "Search Automation Executions", - "request": { - "name": "Search Automation Executions", - "description": { - "content": "Search for automation executions with optional filters for automation_template_id, state, and query.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "search", - "automation_executions" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"automationTemplateId\": \"\",\n \"executionId\": \"\",\n \"executionStepStates\": [\n \"AUTOMATION_EXECUTION_STATE_CREATING\",\n \"AUTOMATION_EXECUTION_STATE_ERROR\"\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "c67392f3-dda8-430a-af2b-739b59650257", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "search", - "automation_executions" - ], - "host": [ - "{{baseUrl}}" ], - "query": [], - "variable": [] + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + { + "id": "eef9223d-f8ef-43d3-ad7f-c4f1025bb584", + "name": "Update Credential", + "request": { + "name": "Update Credential", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "UpdateCredential updates a client credential for a service principal.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"automationTemplateId\": \"\",\n \"executionId\": \"\",\n \"executionStepStates\": [\n \"AUTOMATION_EXECUTION_STATE_CREATING\",\n \"AUTOMATION_EXECUTION_STATE_ERROR\"\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "credentials", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "service_principal_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "PATCH", + "body": { + "mode": "raw", + "raw": "{\n \"credential\": {\n \"displayName\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "2302da87-b1f4-459b-be2c-51566abd8570", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "credentials", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "service_principal_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "PATCH", + "body": { + "mode": "raw", + "raw": "{\n \"credential\": {\n \"displayName\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"credential\": {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"requireDpop\": \"\",\n \"scopedRoleIds\": null,\n \"servicePrincipalId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 9475,\n \"key_1\": false\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n }\n ],\n \"list\": [\n {\n \"automationExecution\": {\n \"automationTemplateId\": \"\",\n \"completedAt\": \"\",\n \"context\": {\n \"context\": {\n \"key_0\": 5574\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"deletedAt\": \"\",\n \"duration\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"state\": \"AUTOMATION_EXECUTION_STATE_COMPLETE_STEP\",\n \"updatedAt\": \"\"\n },\n \"automationExecutionTriggerPath\": \"\",\n \"automationPath\": \"\"\n },\n {\n \"automationExecution\": {\n \"automationTemplateId\": \"\",\n \"completedAt\": \"\",\n \"context\": {\n \"context\": {\n \"key_0\": false,\n \"key_1\": \"string\",\n \"key_2\": \"string\"\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"deletedAt\": \"\",\n \"duration\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"state\": \"AUTOMATION_EXECUTION_STATE_CREATING\",\n \"updatedAt\": \"\"\n },\n \"automationExecutionTriggerPath\": \"\",\n \"automationPath\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + ] } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "automation_versions", - "description": "", - "item": [ + ] + }, { - "id": "3ed32908-a968-4861-8c17-4ef16f608d4f", - "name": "Search Automation Template Versions", - "request": { - "name": "Search Automation Template Versions", - "description": { - "content": "Search for versioned snapshots of an automation template's steps and triggers.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "search", - "automation_versions" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"automationTemplateId\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "name": "trusts", + "description": "", + "item": [ { - "id": "a10df628-8b51-449e-b006-19cac8aa9931", - "name": "Successful response", - "originalRequest": { + "id": "fde1cce5-5fed-4ef6-a926-f8fe423f77da", + "name": "List Trusts", + "request": { + "name": "List Trusts", + "description": { + "content": "ListTrusts lists trusts for a service principal.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "search", - "automation_versions" + "service_principals", + ":service_principal_id", + "trusts" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "service_principal_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"automationTemplateId\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "256c51cf-f800-4ddc-974c-8da3c66935dc", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "trusts" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "service_principal_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"list\": [\n {\n \"automationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": \"string\"\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": false,\n \"key_1\": \"string\"\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_SSO_INTERNAL\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_APP_VAULT\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_UNSPECIFIED\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_SUBJECT\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DELETED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": true,\n \"key_1\": true,\n \"key_2\": \"string\",\n \"key_3\": \"string\"\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"automationTemplateId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"triggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_UNSPECIFIED\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_DIRECT\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_UNSPECIFIED\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_SYSTEM_ACCOUNT\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ],\n \"updatedAt\": \"\",\n \"version\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "automations", - "description": "", - "item": [ - { - "id": "bc629047-5745-41e4-9c71-670231066499", - "name": "Search Automations", - "request": { - "name": "Search Automations", - "description": { - "content": "Search for automations matching the provided filters, including query text, template refs, app, and trigger types.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "search", - "automations" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appId\": \"\",\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"direction\": \"SORT_DIRECTION_UNSPECIFIED\",\n \"isDraft\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"sortField\": \"AUTOMATION_SORT_FIELD_DISPLAY_NAME\",\n \"statuses\": [\n \"AUTOMATION_STATUS_FILTER_OFF\",\n \"AUTOMATION_STATUS_FILTER_OFF\"\n ],\n \"triggerTypes\": [\n \"TRIGGER_TYPE_APP_USER_UPDATE\",\n \"TRIGGER_TYPE_USER_CREATED\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } }, - "auth": null - }, - "response": [ { - "id": "104d7110-9904-46a2-901b-442acf637e77", - "name": "Successful response", - "originalRequest": { + "id": "c354e01a-6eb8-4a84-b9fe-6fd9cb22952f", + "name": "Create Trust", + "request": { + "name": "Create Trust", + "description": { + "content": "CreateTrust creates a trust policy for a service principal.\n Validates the CEL condition_expression at creation time.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "search", - "automations" + "service_principals", + ":service_principal_id", + "trusts" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "service_principal_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -35015,418 +63010,738 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"appId\": \"\",\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"direction\": \"SORT_DIRECTION_UNSPECIFIED\",\n \"isDraft\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"sortField\": \"AUTOMATION_SORT_FIELD_DISPLAY_NAME\",\n \"statuses\": [\n \"AUTOMATION_STATUS_FILTER_OFF\",\n \"AUTOMATION_STATUS_FILTER_OFF\"\n ],\n \"triggerTypes\": [\n \"TRIGGER_TYPE_APP_USER_UPDATE\",\n \"TRIGGER_TYPE_USER_CREATED\"\n ]\n}", + "raw": "{\n \"allowSourceCidrs\": null,\n \"conditionExpression\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": [\n \"\",\n \"\"\n ],\n \"providerId\": \"\",\n \"scopedRoleIds\": null\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "2cb21cb3-847c-4a8d-8219-6987b0da9000", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "trusts" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "service_principal_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"allowSourceCidrs\": null,\n \"conditionExpression\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": [\n \"\",\n \"\"\n ],\n \"providerId\": \"\",\n \"scopedRoleIds\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"trust\": {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"conditionExpression\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": [\n \"\",\n \"\"\n ],\n \"providerId\": \"\",\n \"scopedRoleIds\": null,\n \"servicePrincipalId\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"list\": [\n {\n \"appId\": \"\",\n \"automationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": 4506.501403187444\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": 7163.53945565346,\n \"key_1\": \"string\",\n \"key_2\": 1313\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_UNSPECIFIED\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_PAPER_VAULT\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_REQUEST\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_UNSPECIFIED\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"DISABLED\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": false,\n \"key_1\": 7065\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"circuitBreaker\": {\n \"observedCount\": \"\",\n \"period\": \"CIRCUIT_BREAKER_PERIOD_MONTH\",\n \"threshold\": \"\",\n \"trippedAt\": \"\"\n },\n \"circuitBreakerMax\": \"\",\n \"circuitBreakerPeriod\": \"CIRCUIT_BREAKER_PERIOD_UNSPECIFIED\",\n \"context\": {\n \"context\": {\n \"key_0\": 2067\n }\n },\n \"createdAt\": \"\",\n \"currentVersion\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"draftAutomationSteps\": [\n {\n \"accountLifecycleAction\": {\n \"accountInContext\": {},\n \"accountRef\": {\n \"accountIdCel\": \"\"\n },\n \"actionName\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n },\n \"callFunction\": {\n \"args\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"functionId\": \"\"\n },\n \"connectorAction\": {\n \"actionName\": \"\",\n \"argsTemplate\": {\n \"key_0\": \"string\",\n \"key_1\": 4810.51954915098\n },\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"resourceTypeId\": \"\"\n },\n \"connectorCreateAccount\": {\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\",\n \"userIdCel\": \"\",\n \"userProperties\": {\n \"displayNameCel\": \"\",\n \"emailCel\": \"\",\n \"profileAttributeCel\": \"\",\n \"usernameCel\": \"\"\n }\n },\n \"createAccessReview\": {\n \"accessReviewTemplateCel\": \"\",\n \"accessReviewTemplateId\": \"\",\n \"campaignName\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"createRevokeTasks\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appEntitlementRefsCel\": \"\",\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedAppEntitlementRefsCel\": \"\",\n \"revokeAll\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"createRevokeTasksV2\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedResourceTypeIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"evaluateExpressions\": {\n \"expressions\": [\n {\n \"expressionCel\": \"\",\n \"isSecret\": \"\",\n \"key\": \"\"\n }\n ]\n },\n \"generatePassword\": {\n \"passwordPolicyId\": \"\",\n \"policy\": {\n \"customCharacters\": \"\",\n \"excludedCharacters\": \"\",\n \"maxCharacterCount\": \"\",\n \"minCharacterCount\": \"\",\n \"noRestrictions\": \"\",\n \"requireLowercase\": \"\",\n \"requireNumbers\": \"\",\n \"requireSpecialCharacters\": \"\",\n \"requireUppercase\": \"\"\n }\n },\n \"grantEntitlements\": {\n \"exclusionCriteria\": {\n \"excludedAppIds\": [\n \"\"\n ],\n \"excludedComplianceFrameworkIds\": [\n \"\"\n ],\n \"excludedRiskLevelIds\": [\n \"\"\n ]\n },\n \"exclusionList\": {\n \"excludedAppEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"exclusionListCel\": {\n \"excludedAppEntitlementRefsCel\": \"\"\n },\n \"exclusionNone\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"removeFromDelegation\": {\n \"replacementUserIdCel\": \"\",\n \"replacementUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"runAutomation\": {\n \"automationTemplateIdCel\": \"\",\n \"automationTemplateRef\": {\n \"id\": \"\"\n },\n \"context\": {\n \"context\": {\n \"key_0\": 6275.492631290085,\n \"key_1\": 4964.343726146416\n }\n }\n },\n \"sendEmail\": {\n \"body\": \"\",\n \"email\": \"\",\n \"emailCel\": \"\",\n \"subject\": \"\",\n \"title\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"sendSlackMessage\": {\n \"body\": \"\",\n \"channelName\": \"\",\n \"channelNameCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"setCredential\": {\n \"accountIdCel\": \"\",\n \"connectorRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n },\n \"passwordCel\": \"\"\n },\n \"skipIfTrueCel\": \"\",\n \"stepDisplayName\": \"\",\n \"stepName\": \"\",\n \"storeCredential\": {\n \"appIdCel\": \"\",\n \"authType\": \"STORE_CREDENTIAL_AUTH_TYPE_UNSPECIFIED\",\n \"credentialCel\": \"\",\n \"expiry\": \"\",\n \"labelCel\": \"\",\n \"maxViews\": \"\",\n \"recipientCel\": \"\",\n \"recipientEmailCel\": \"\",\n \"ttl\": \"\",\n \"vaultType\": \"STORE_CREDENTIAL_VAULT_TYPE_UNSPECIFIED\"\n },\n \"taskAction\": {\n \"close\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n }\n },\n \"reassign\": {\n \"assigneeUserIdCel\": \"\",\n \"assigneeUserRef\": {\n \"id\": \"\"\n },\n \"subjectUserIdCel\": \"\",\n \"subjectUserRef\": {\n \"id\": \"\"\n },\n \"useSubjectUser\": \"\"\n },\n \"taskTypes\": [\n \"TASK_TYPE_UNSPECIFIED\"\n ],\n \"taskUserRelation\": \"TASK_USER_RELATION_UNSPECIFIED\"\n },\n \"unenrollFromAllAccessProfiles\": {\n \"catalogIds\": [\n \"\"\n ],\n \"catalogIdsCel\": \"\",\n \"useSubjectUser\": \"\",\n \"userIdsCel\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n }\n ]\n },\n \"updateUser\": {\n \"useSubjectUser\": \"\",\n \"userIdCel\": \"\",\n \"userRef\": {\n \"id\": \"\"\n },\n \"userStatusCel\": \"\",\n \"userStatusEnum\": \"UNKNOWN\"\n },\n \"waitForDuration\": {\n \"duration\": \"\"\n },\n \"webhook\": {\n \"payload\": {\n \"key_0\": true\n },\n \"webhookId\": \"\",\n \"webhookIdCel\": \"\"\n }\n }\n ],\n \"draftTriggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_DIRECT\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_DIRECT\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_UNSPECIFIED\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_TEMPORARY\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_UNSPECIFIED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_USER\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ],\n \"enabled\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"lastExecutedAt\": \"\",\n \"primaryTriggerType\": \"TRIGGER_TYPE_GRANT_FOUND\",\n \"triggers\": [\n {\n \"accessConflict\": {\n \"allConflictMonitors\": \"\",\n \"conflictMonitorRefs\": {\n \"conflictMonitorRefs\": [\n {\n \"id\": \"\"\n }\n ]\n }\n },\n \"appUserCreated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"appUserUpdated\": {\n \"appId\": \"\",\n \"appIdCel\": \"\",\n \"condition\": \"\"\n },\n \"grantDeleted\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_PERMANENT\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_CONDUCTOR_ONE\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"grantFound\": {\n \"grantTriggerFilter\": {\n \"accountFilter\": {\n \"accountType\": \"APP_USER_TYPE_SERVICE_ACCOUNT\"\n },\n \"grantFilter\": {\n \"grantFilterType\": \"GRANT_FILTER_TYPE_UNSPECIFIED\",\n \"grantJustificationType\": \"GRANT_JUSTIFICATION_TYPE_ALL\",\n \"grantSourceFilter\": \"GRANT_SOURCE_FILTER_INHERITED\"\n },\n \"inclusionAll\": {},\n \"inclusionCriteria\": {\n \"appIds\": [\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\"\n ],\n \"riskLevelIds\": [\n \"\"\n ]\n },\n \"inclusionList\": {\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n \"inclusionListCel\": {\n \"appEntitlementRefsCel\": \"\"\n }\n }\n },\n \"schedule\": {\n \"advanced\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"skipIfTrueCel\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleAppUser\": {\n \"appId\": \"\",\n \"condition\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"scheduleNoUser\": {\n \"advanced\": \"\",\n \"cronSpec\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n },\n \"usageBasedRevocation\": {\n \"appId\": \"\",\n \"enabledAt\": \"\",\n \"excludedGroupRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"excludedUserRefs\": [\n {\n \"id\": \"\"\n }\n ],\n \"includeUsersWithNoActivity\": \"\",\n \"runDelayed\": {\n \"coldStartDelayDays\": \"\"\n },\n \"runImmediately\": {},\n \"targetedAppUserTypes\": [\n \"APP_USER_TYPE_UNSPECIFIED\"\n ],\n \"targetedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"unusedForDays\": \"\"\n },\n \"userCreated\": {\n \"condition\": \"\"\n },\n \"userProfileChange\": {\n \"condition\": \"\"\n },\n \"webhook\": {\n \"capabilityUrl\": {},\n \"hmac\": {},\n \"jwt\": {\n \"jwksUrl\": \"\"\n },\n \"listenerId\": \"\"\n }\n }\n ]\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "entitlements", - "description": "", - "item": [ - { - "id": "0d957e4c-4fd2-4895-8948-5d710e2b1785", - "name": "Search", - "request": { - "name": "Search", - "description": { - "content": "Search app entitlements based on filters specified in the request body.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "search", - "entitlements" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"accessReviewId\": \"\",\n \"alias\": \"\",\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\",\n \"\"\n ],\n \"displayName\": \"\",\n \"excludeAppIds\": [\n \"\",\n \"\"\n ],\n \"excludeAppUserIds\": [\n \"\",\n \"\"\n ],\n \"excludeImmutable\": \"\",\n \"excludeResourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"excludedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"includeDeleted\": \"\",\n \"isAutomated\": \"\",\n \"membershipType\": [\n \"APP_ENTITLEMENT_MEMBERSHIP_TYPE_MEMBER\",\n \"APP_ENTITLEMENT_MEMBERSHIP_TYPE_MEMBER\"\n ],\n \"onlyGetExpiring\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"policyRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"query\": \"\",\n \"refs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"resourceIds\": [\n \"\",\n \"\"\n ],\n \"resourceTraitIds\": [\n \"\",\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelIds\": [\n \"\",\n \"\"\n ],\n \"sourceConnectorId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } }, - "auth": null - }, - "response": [ { - "id": "0fcf4be1-686a-44f9-be98-bb30cf467522", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "search", - "entitlements" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + "name": "{client_id}", + "description": "", + "item": [ + { + "id": "9e3a4581-d568-4484-ab74-ba3fb914ed28", + "name": "Delete Trust", + "request": { + "name": "Delete Trust", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "DeleteTrust deletes a trust for a service principal.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"accessReviewId\": \"\",\n \"alias\": \"\",\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"complianceFrameworkIds\": [\n \"\",\n \"\"\n ],\n \"displayName\": \"\",\n \"excludeAppIds\": [\n \"\",\n \"\"\n ],\n \"excludeAppUserIds\": [\n \"\",\n \"\"\n ],\n \"excludeImmutable\": \"\",\n \"excludeResourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"excludedEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"includeDeleted\": \"\",\n \"isAutomated\": \"\",\n \"membershipType\": [\n \"APP_ENTITLEMENT_MEMBERSHIP_TYPE_MEMBER\",\n \"APP_ENTITLEMENT_MEMBERSHIP_TYPE_MEMBER\"\n ],\n \"onlyGetExpiring\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"policyRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"query\": \"\",\n \"refs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"resourceIds\": [\n \"\",\n \"\"\n ],\n \"resourceTraitIds\": [\n \"\",\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"riskLevelIds\": [\n \"\",\n \"\"\n ],\n \"sourceConnectorId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "trusts", + ":client_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "service_principal_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "client_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "d9b57cc9-cfec-4400-a920-79b564ce8443", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "trusts", + ":client_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "service_principal_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "client_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": false,\n \"key_2\": 7996,\n \"key_3\": true\n },\n {\n \"@type\": \"\",\n \"key_0\": false\n }\n ],\n \"facets\": {\n \"count\": \"\",\n \"facets\": [\n {\n \"displayName\": \"\",\n \"iconUrl\": \"\",\n \"param\": \"\",\n \"range\": {\n \"ranges\": [\n {\n \"count\": \"\",\n \"displayName\": \"\",\n \"from\": \"\",\n \"iconUrl\": \"\",\n \"to\": \"\"\n },\n {\n \"count\": \"\",\n \"displayName\": \"\",\n \"from\": \"\",\n \"iconUrl\": \"\",\n \"to\": \"\"\n }\n ]\n },\n \"value\": {\n \"values\": [\n {\n \"count\": \"\",\n \"displayName\": \"\",\n \"iconUrl\": \"\",\n \"value\": \"\"\n },\n {\n \"count\": \"\",\n \"displayName\": \"\",\n \"iconUrl\": \"\",\n \"value\": \"\"\n }\n ]\n }\n },\n {\n \"displayName\": \"\",\n \"iconUrl\": \"\",\n \"param\": \"\",\n \"range\": {\n \"ranges\": [\n {\n \"count\": \"\",\n \"displayName\": \"\",\n \"from\": \"\",\n \"iconUrl\": \"\",\n \"to\": \"\"\n },\n {\n \"count\": \"\",\n \"displayName\": \"\",\n \"from\": \"\",\n \"iconUrl\": \"\",\n \"to\": \"\"\n }\n ]\n },\n \"value\": {\n \"values\": [\n {\n \"count\": \"\",\n \"displayName\": \"\",\n \"iconUrl\": \"\",\n \"value\": \"\"\n },\n {\n \"count\": \"\",\n \"displayName\": \"\",\n \"iconUrl\": \"\",\n \"value\": \"\"\n }\n ]\n }\n }\n ]\n },\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 209.9482854227519,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n }\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": \"string\",\n \"key_2\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 7992.991309331225\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "functions", - "description": "", - "item": [ - { - "id": "afdca7e1-9d21-49c1-a8f9-7d20669a6f1c", - "name": "Search", - "request": { - "name": "Search", - "description": { - "content": "Search searches for functions based on criteria", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "search", - "functions" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"functionTypes\": [\n \"FUNCTION_TYPE_UNSPECIFIED\",\n \"FUNCTION_TYPE_ANY\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "7a2f17b0-7095-4a6e-90dc-4f8d7d3975f3", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "search", - "functions" - ], - "host": [ - "{{baseUrl}}" ], - "query": [], - "variable": [] + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + { + "id": "b0e7e8e1-ade2-44ed-bafe-fe399099b8d3", + "name": "Get Trust", + "request": { + "name": "Get Trust", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "GetTrust returns a trust by ID for a service principal.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"functionTypes\": [\n \"FUNCTION_TYPE_UNSPECIFIED\",\n \"FUNCTION_TYPE_ANY\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "trusts", + ":client_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "service_principal_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "client_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "7cb2653c-94b0-4cf3-b472-8c12d4e3b877", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "trusts", + ":client_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "service_principal_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "client_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"trust\": {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"conditionExpression\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": null,\n \"providerId\": \"\",\n \"scopedRoleIds\": null,\n \"servicePrincipalId\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_CODE_MODE\",\n \"head\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"outboundNetworkAllowlist\": [\n \"\",\n \"\"\n ],\n \"publishedCommitId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"secret\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"updatedAt\": \"\",\n \"useSpn\": \"\"\n },\n {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"functionType\": \"FUNCTION_TYPE_CODE_MODE\",\n \"head\": \"\",\n \"id\": \"\",\n \"isDraft\": \"\",\n \"outboundNetworkAllowlist\": [\n \"\",\n \"\"\n ],\n \"publishedCommitId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"secret\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"updatedAt\": \"\",\n \"useSpn\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "grants", - "description": "", - "item": [ - { - "id": "41d7d689-efb6-48b5-9e5c-29635b6f8de2", - "name": "Search Grants", - "request": { - "name": "Search Grants", - "description": { - "content": "Search grants (user-to-entitlement bindings) across apps, with filters for app, user, resource type, and entitlement.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "search", - "grants" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"entitlementSlugs\": [\n \"\",\n \"\"\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"purpose\": [\n \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\"\n ],\n \"resourceIds\": [\n \"\",\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"userId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "c290e8a7-7829-48c1-9079-d0742b40dd6e", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "search", - "grants" - ], - "host": [ - "{{baseUrl}}" ], - "query": [], - "variable": [] + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + { + "id": "7f42b9f4-a6e2-4960-b163-93211b5d561f", + "name": "Update Trust", + "request": { + "name": "Update Trust", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "UpdateTrust updates a trust's mutable fields. The provider_id is immutable.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "trusts", + ":client_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "service_principal_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "client_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "PATCH", + "body": { + "mode": "raw", + "raw": "{\n \"trust\": {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"conditionExpression\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": [\n \"\",\n \"\"\n ],\n \"scopedRoleIds\": null\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "854e6d0b-3d4a-430b-9198-48ea0ae2fe01", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "trusts", + ":client_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "service_principal_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "client_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "PATCH", + "body": { + "mode": "raw", + "raw": "{\n \"trust\": {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"conditionExpression\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": [\n \"\",\n \"\"\n ],\n \"scopedRoleIds\": null\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"trust\": {\n \"allowSourceCidrs\": null,\n \"clientId\": \"\",\n \"conditionExpression\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": null,\n \"providerId\": \"\",\n \"scopedRoleIds\": null,\n \"servicePrincipalId\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserIds\": [\n \"\",\n \"\"\n ],\n \"entitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"entitlementSlugs\": [\n \"\",\n \"\"\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"purpose\": [\n \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\"\n ],\n \"resourceIds\": [\n \"\",\n \"\"\n ],\n \"resourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"userId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + }, + { + "name": "test", + "description": "", + "item": [ + { + "id": "21c506a5-9b20-4027-acb2-bc51847ee972", + "name": "Test Token", + "request": { + "name": "Test Token", + "description": { + "content": "TestToken validates a JWT against a specific trust's configuration without\n issuing an access token. Returns per-step validation results for debugging.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "trusts", + ":client_id", + "test" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "service_principal_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "client_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"sourceIp\": \"\",\n \"subjectToken\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "b22b2af6-765d-48d6-9370-c08561d5ab94", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "service_principals", + ":service_principal_id", + "trusts", + ":client_id", + "test" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "service_principal_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "client_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"sourceIp\": \"\",\n \"subjectToken\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"audienceValidation\": {\n \"actual\": \"\",\n \"detail\": \"\",\n \"expected\": \"\",\n \"passed\": \"\",\n \"skipped\": \"\",\n \"stepName\": \"\"\n },\n \"celEvaluation\": {\n \"actual\": \"\",\n \"detail\": \"\",\n \"expected\": \"\",\n \"passed\": \"\",\n \"skipped\": \"\",\n \"stepName\": \"\"\n },\n \"cidrCheck\": {\n \"actual\": \"\",\n \"detail\": \"\",\n \"expected\": \"\",\n \"passed\": \"\",\n \"skipped\": \"\",\n \"stepName\": \"\"\n },\n \"decodedClaimsJson\": \"\",\n \"issuerMatch\": {\n \"actual\": \"\",\n \"detail\": \"\",\n \"expected\": \"\",\n \"passed\": \"\",\n \"skipped\": \"\",\n \"stepName\": \"\"\n },\n \"jwtDecode\": {\n \"actual\": \"\",\n \"detail\": \"\",\n \"expected\": \"\",\n \"passed\": \"\",\n \"skipped\": \"\",\n \"stepName\": \"\"\n },\n \"overallResult\": \"\",\n \"signatureValidation\": {\n \"actual\": \"\",\n \"detail\": \"\",\n \"expected\": \"\",\n \"passed\": \"\",\n \"skipped\": \"\",\n \"stepName\": \"\"\n },\n \"subjectValidation\": {\n \"actual\": \"\",\n \"detail\": \"\",\n \"expected\": \"\",\n \"passed\": \"\",\n \"skipped\": \"\",\n \"stepName\": \"\"\n },\n \"tokenFreshness\": {\n \"actual\": \"\",\n \"detail\": \"\",\n \"expected\": \"\",\n \"passed\": \"\",\n \"skipped\": \"\",\n \"stepName\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" + ] } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 8648.714224402607,\n \"key_1\": \"string\"\n },\n {\n \"@type\": \"\",\n \"key_0\": 4692.602289601537\n }\n ],\n \"list\": [\n {\n \"appEntitlementUserBinding\": {\n \"appEntitlementUserBindingCreatedAt\": \"\",\n \"appEntitlementUserBindingDeprovisionAt\": \"\",\n \"appUser\": {\n \"appPath\": \"\",\n \"appUser\": {\n \"appId\": \"\",\n \"appUserType\": \"APP_USER_TYPE_USER\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"identityUserId\": \"\",\n \"isExternal\": \"\",\n \"profile\": {\n \"key_0\": 6461.623181190242,\n \"key_1\": 7059,\n \"key_2\": 9134\n },\n \"status\": {\n \"details\": \"\",\n \"status\": \"STATUS_DISABLED\"\n },\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"identityUserPath\": \"\",\n \"lastUsagePath\": \"\"\n },\n \"grantSources\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"originatingTicketId\": \"\"\n },\n \"entitlement\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": true,\n \"key_2\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n }\n }\n },\n {\n \"appEntitlementUserBinding\": {\n \"appEntitlementUserBindingCreatedAt\": \"\",\n \"appEntitlementUserBindingDeprovisionAt\": \"\",\n \"appUser\": {\n \"appPath\": \"\",\n \"appUser\": {\n \"appId\": \"\",\n \"appUserType\": \"APP_USER_TYPE_USER\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"id\": \"\",\n \"identityUserId\": \"\",\n \"isExternal\": \"\",\n \"profile\": {\n \"key_0\": \"string\"\n },\n \"status\": {\n \"details\": \"\",\n \"status\": \"STATUS_UNSPECIFIED\"\n },\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"identityUserPath\": \"\",\n \"lastUsagePath\": \"\"\n },\n \"grantSources\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"originatingTicketId\": \"\"\n },\n \"entitlement\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n }\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + ] } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] } ] }, { - "name": "hooks", + "name": "bindings", "description": "", "item": [ { - "id": "1e781992-228e-46f0-bd2e-35bc00fb33c0", - "name": "Search", + "id": "134ec4c0-3354-4830-8038-a6a48f5333eb", + "name": "Add Binding", "request": { - "name": "Search", + "name": "Add Binding", "description": { - "content": "Invokes the c1.api.hooks.v1.HooksSearch.Search method.", + "content": "AddBinding links a tenant-scoped subject (a function today; future kinds\n tomorrow) to a service principal. Outbound c1-api calls made on the\n subject's behalf can then be minted as user: via\n an RFC 8693 token-exchange (act-as) flow. Many-aware: a subject may\n hold multiple bindings at the storage layer. Idempotent on\n (subject, service_principal_id) — adds the row if missing,\n resurrects it if soft-deleted, no-op if already active. Consumers\n that need 0-or-1 cardinality (Functions today) enforce it\n client-side via ListBindings + DeleteBinding. Requires the\n SERVICE_PRINCIPALS feature flag.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "hooks" + "service_principals", + "bindings" ], "host": [ "{{baseUrl}}" @@ -35447,7 +63762,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "raw": "{\n \"servicePrincipalId\": \"\",\n \"subject\": {\n \"functionId\": \"\"\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -35459,15 +63774,15 @@ }, "response": [ { - "id": "cea1e5e7-4b29-467d-afc0-4aa0d50423d1", + "id": "2b62652e-fe3e-49da-8e2d-6eb07c931bb5", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "hooks" + "service_principals", + "bindings" ], "host": [ "{{baseUrl}}" @@ -35496,7 +63811,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "raw": "{\n \"servicePrincipalId\": \"\",\n \"subject\": {\n \"functionId\": \"\"\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -35513,7 +63828,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"builtinPattern\": {\n \"creditCardBlocking\": {},\n \"piiRedaction\": {\n \"redactFields\": [\n \"\",\n \"\"\n ],\n \"replacement\": \"\"\n },\n \"queryScopeLimit\": {\n \"fields\": [\n \"\",\n \"\"\n ],\n \"maxLimit\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": [\n \"\",\n \"\"\n ],\n \"blockedPatterns\": [\n \"\",\n \"\"\n ]\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": [\n \"TOOL_CLASSIFICATION_READ\",\n \"TOOL_CLASSIFICATION_DESTRUCTIVE\"\n ],\n \"businessHours\": {\n \"days\": [\n \"\",\n \"\"\n ],\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_PRE_TOOL_USE\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"id\": \"\",\n \"priority\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"builtinPattern\": {\n \"creditCardBlocking\": {},\n \"piiRedaction\": {\n \"redactFields\": [\n \"\",\n \"\"\n ],\n \"replacement\": \"\"\n },\n \"queryScopeLimit\": {\n \"fields\": [\n \"\",\n \"\"\n ],\n \"maxLimit\": \"\"\n },\n \"sensitiveFileGuard\": {\n \"blockedDirectories\": [\n \"\",\n \"\"\n ],\n \"blockedPatterns\": [\n \"\",\n \"\"\n ]\n },\n \"writeAuthorization\": {\n \"blockedClassifications\": [\n \"TOOL_CLASSIFICATION_SENSITIVE\",\n \"TOOL_CLASSIFICATION_SENSITIVE\"\n ],\n \"businessHours\": {\n \"days\": [\n \"\",\n \"\"\n ],\n \"end\": \"\",\n \"start\": \"\",\n \"timezone\": \"\"\n }\n }\n },\n \"createdAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"event\": \"HOOK_EVENT_TYPE_PRE_TOOL_USE\",\n \"filter\": {\n \"celExpression\": \"\"\n },\n \"function\": {\n \"commitId\": \"\",\n \"functionId\": \"\"\n },\n \"id\": \"\",\n \"priority\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{}", "cookie": [], "_postman_previewlanguage": "json" } @@ -35522,33 +63837,27 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "iam", - "description": "", - "item": [ + }, { - "name": "external_clients", + "name": "delete", "description": "", "item": [ { - "id": "b17664db-b40a-440b-bc23-bd66f6d64221", - "name": "NOTE: Searches external client grants for all users", + "id": "bf372ba9-4644-42d0-baf0-de1973ef507e", + "name": "Delete Binding", "request": { - "name": "NOTE: Searches external client grants for all users", + "name": "Delete Binding", "description": { - "content": "Search returns external client grants for all users in the tenant.", + "content": "DeleteBinding removes a single (subject, service_principal_id) binding\n row. At-most-one delete — does not touch other bindings the subject\n may hold against different service principals. Idempotent — succeeds\n even if no matching row exists.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "iam", - "external_clients" + "service_principals", + "bindings", + "delete" ], "host": [ "{{baseUrl}}" @@ -35569,7 +63878,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"clientIdUrls\": [\n \"\",\n \"\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"users\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"wellKnownClients\": [\n \"WELL_KNOWN_CLIENT_CHATGPT\",\n \"WELL_KNOWN_CLIENT_JETBRAINS\"\n ]\n}", + "raw": "{\n \"servicePrincipalId\": \"\",\n \"subject\": {\n \"functionId\": \"\"\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -35581,16 +63890,16 @@ }, "response": [ { - "id": "127630d7-5d86-40f5-9a36-58eec97a8be4", + "id": "47aab68a-75e9-4fff-9ebd-9a42bbda758f", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "iam", - "external_clients" + "service_principals", + "bindings", + "delete" ], "host": [ "{{baseUrl}}" @@ -35619,7 +63928,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"clientIdUrls\": [\n \"\",\n \"\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"users\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"wellKnownClients\": [\n \"WELL_KNOWN_CLIENT_CHATGPT\",\n \"WELL_KNOWN_CLIENT_JETBRAINS\"\n ]\n}", + "raw": "{\n \"servicePrincipalId\": \"\",\n \"subject\": {\n \"functionId\": \"\"\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -35636,7 +63945,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"clientId\": \"\",\n \"clientIdType\": \"CLIENT_ID_TYPE_DCR\",\n \"clientIdUrl\": \"\",\n \"clientName\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"lastUsedAt\": \"\",\n \"mcpClientId\": \"\",\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"userId\": \"\",\n \"verifiedDomain\": \"\",\n \"wellKnownClient\": \"WELL_KNOWN_CLIENT_CHATGPT\"\n },\n {\n \"clientId\": \"\",\n \"clientIdType\": \"CLIENT_ID_TYPE_UNSPECIFIED\",\n \"clientIdUrl\": \"\",\n \"clientName\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"lastUsedAt\": \"\",\n \"mcpClientId\": \"\",\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"userId\": \"\",\n \"verifiedDomain\": \"\",\n \"wellKnownClient\": \"WELL_KNOWN_CLIENT_UNSPECIFIED\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{}", "cookie": [], "_postman_previewlanguage": "json" } @@ -35649,25 +63958,25 @@ ] }, { - "name": "personal_clients", + "name": "list", "description": "", "item": [ { - "id": "da2ae2c8-42cd-49a4-81a5-05a32de4e34d", - "name": "NOTE: Searches personal clients for all users", + "id": "d6e7ae50-520b-4b46-9b47-4d0bd8914a12", + "name": "List Bindings", "request": { - "name": "NOTE: Searches personal clients for all users", + "name": "List Bindings", "description": { - "content": "Search finds personal client credentials across all users, with optional filtering by query text or user.", + "content": "ListBindings returns every active binding held by a subject. Empty\n list when the subject is unbound. The response is unordered.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "iam", - "personal_clients" + "service_principals", + "bindings", + "list" ], "host": [ "{{baseUrl}}" @@ -35688,7 +63997,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"users\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"subject\": {\n \"functionId\": \"\"\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -35700,16 +64009,16 @@ }, "response": [ { - "id": "192beb9f-c7a0-4f22-948f-81dfba8eecaf", + "id": "e2de9fc9-799b-4197-a8b0-f7c9df8340ee", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "iam", - "personal_clients" + "service_principals", + "bindings", + "list" ], "host": [ "{{baseUrl}}" @@ -35738,7 +64047,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"users\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"subject\": {\n \"functionId\": \"\"\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -35755,7 +64064,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"allowSourceCidr\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n {\n \"allowSourceCidr\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"expiresTime\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"bindings\": [\n {\n \"createdAt\": \"\",\n \"servicePrincipalId\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"createdAt\": \"\",\n \"servicePrincipalId\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -35768,32 +64077,279 @@ ] } ] + } + ] + }, + { + "name": "session-policies", + "description": "", + "item": [ + { + "id": "b66181e9-3309-4810-a6a9-a23a729fd9d1", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List all session policies in your tenant, one page at a time.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "session-policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "e4e0de04-1101-49db-81cc-83ded4aa2481", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "session-policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, { - "name": "local-directory-invitations", + "id": "b00321db-f843-496d-b18f-daa806f74d1e", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create a session policy.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "session-policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"accessTokenTtlSeconds\": \"\",\n \"continuousDefaultOutcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_PHRH\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": [\n \"CREDENTIAL_TYPE_EMAIL_OTP\",\n \"CREDENTIAL_TYPE_RECOVERY_CODE\"\n ]\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_PHRH\",\n \"maxAgeSeconds\": \"\",\n \"types\": null\n }\n },\n \"continuousRules\": [\n {\n \"description\": \"\",\n \"id\": \"\",\n \"matchCel\": \"\",\n \"mode\": \"POLICY_RULE_MODE_DISABLED\",\n \"outcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_SINGLE_FACTOR\"\n },\n \"challengeRequired\": {\n \"types\": [\n \"CREDENTIAL_TYPE_RECOVERY_CODE\",\n \"CREDENTIAL_TYPE_DELEGATED_GOOGLE\"\n ]\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_PHR\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_UNSPECIFIED\",\n \"CREDENTIAL_TYPE_EMAIL_OTP\"\n ]\n }\n }\n },\n {\n \"description\": \"\",\n \"id\": \"\",\n \"matchCel\": \"\",\n \"mode\": \"POLICY_RULE_MODE_UNSPECIFIED\",\n \"outcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_PHRH\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_MULTI_FACTOR\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_UNSPECIFIED\",\n \"CREDENTIAL_TYPE_EMAIL_OTP\"\n ]\n }\n }\n }\n ],\n \"credentialDurations\": null,\n \"idleTimeoutSeconds\": \"\",\n \"maxSessionDurationSeconds\": \"\",\n \"persistence\": \"PERSISTENCE_MODE_SESSION_ONLY\",\n \"priority\": \"\",\n \"refreshRotationWindowSeconds\": \"\",\n \"refreshTokenTtlSeconds\": \"\",\n \"rotateRefreshOnUse\": \"\",\n \"ssfReceive\": {\n \"enabled\": \"\",\n \"ssfReceiverStreamIds\": null\n },\n \"ssfTransmit\": {\n \"enabled\": \"\",\n \"eventTypes\": [\n \"\",\n \"\"\n ],\n \"ssfTransmitterStreamIds\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "f2f0b005-1656-456b-b8dd-529df1b5d5e0", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "session-policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"accessTokenTtlSeconds\": \"\",\n \"continuousDefaultOutcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_PHRH\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": [\n \"CREDENTIAL_TYPE_EMAIL_OTP\",\n \"CREDENTIAL_TYPE_RECOVERY_CODE\"\n ]\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_PHRH\",\n \"maxAgeSeconds\": \"\",\n \"types\": null\n }\n },\n \"continuousRules\": [\n {\n \"description\": \"\",\n \"id\": \"\",\n \"matchCel\": \"\",\n \"mode\": \"POLICY_RULE_MODE_DISABLED\",\n \"outcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_SINGLE_FACTOR\"\n },\n \"challengeRequired\": {\n \"types\": [\n \"CREDENTIAL_TYPE_RECOVERY_CODE\",\n \"CREDENTIAL_TYPE_DELEGATED_GOOGLE\"\n ]\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_PHR\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_UNSPECIFIED\",\n \"CREDENTIAL_TYPE_EMAIL_OTP\"\n ]\n }\n }\n },\n {\n \"description\": \"\",\n \"id\": \"\",\n \"matchCel\": \"\",\n \"mode\": \"POLICY_RULE_MODE_UNSPECIFIED\",\n \"outcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_PHRH\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_MULTI_FACTOR\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_UNSPECIFIED\",\n \"CREDENTIAL_TYPE_EMAIL_OTP\"\n ]\n }\n }\n }\n ],\n \"credentialDurations\": null,\n \"idleTimeoutSeconds\": \"\",\n \"maxSessionDurationSeconds\": \"\",\n \"persistence\": \"PERSISTENCE_MODE_SESSION_ONLY\",\n \"priority\": \"\",\n \"refreshRotationWindowSeconds\": \"\",\n \"refreshTokenTtlSeconds\": \"\",\n \"rotateRefreshOnUse\": \"\",\n \"ssfReceive\": {\n \"enabled\": \"\",\n \"ssfReceiverStreamIds\": null\n },\n \"ssfTransmit\": {\n \"enabled\": \"\",\n \"eventTypes\": [\n \"\",\n \"\"\n ],\n \"ssfTransmitterStreamIds\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"sessionPolicy\": {\n \"accessTokenTtlSeconds\": \"\",\n \"continuousDefaultOutcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_PHR\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": [\n \"CREDENTIAL_TYPE_PASSKEY\",\n \"CREDENTIAL_TYPE_RECOVERY_CODE\"\n ]\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_PHR\",\n \"maxAgeSeconds\": \"\",\n \"types\": null\n }\n },\n \"continuousRules\": null,\n \"createdAt\": \"\",\n \"credentialDurations\": [\n {\n \"accessTokenTtlSeconds\": \"\",\n \"credentialType\": \"CREDENTIAL_TYPE_DELEGATED_GOOGLE\",\n \"maxSessionDurationSeconds\": \"\"\n },\n {\n \"accessTokenTtlSeconds\": \"\",\n \"credentialType\": \"CREDENTIAL_TYPE_EMAIL_OTP\",\n \"maxSessionDurationSeconds\": \"\"\n }\n ],\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"idleTimeoutSeconds\": \"\",\n \"isBuiltin\": \"\",\n \"maxSessionDurationSeconds\": \"\",\n \"persistence\": \"PERSISTENCE_MODE_UNSPECIFIED\",\n \"priority\": \"\",\n \"refreshRotationWindowSeconds\": \"\",\n \"refreshTokenTtlSeconds\": \"\",\n \"rotateRefreshOnUse\": \"\",\n \"ssfReceive\": {\n \"enabled\": \"\",\n \"ssfReceiverStreamIds\": null\n },\n \"ssfTransmit\": {\n \"enabled\": \"\",\n \"eventTypes\": null,\n \"ssfTransmitterStreamIds\": [\n \"\",\n \"\"\n ]\n },\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", "description": "", "item": [ { - "id": "ec6a3ab9-216f-4494-82d8-72977a6060e8", - "name": "Search", + "id": "ca50fc9f-88a1-4445-a3f0-fc2421f39904", + "name": "Delete", "request": { - "name": "Search", + "name": "Delete", "description": { - "content": "List invitations for a directory, with optional status filter.\n Search invitations with filters (directory, status).", + "content": "Delete a session policy by ID.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "local-directory-invitations" + "session-policies", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -35805,10 +64361,10 @@ "value": "application/json" } ], - "method": "POST", + "method": "DELETE", "body": { "mode": "raw", - "raw": "{\n \"directoryAppId\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"statusFilter\": \"LOCAL_INVITATION_STATUS_EXPIRED\"\n}", + "raw": "{}", "options": { "raw": { "headerFamily": "json", @@ -35820,21 +64376,32 @@ }, "response": [ { - "id": "7bd914b3-77b5-4dfb-8367-7f6acc0e8dc8", + "id": "5456f739-8a2f-4ece-9548-b784fbe788fe", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "local-directory-invitations" + "session-policies", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] }, "header": [ { @@ -35854,10 +64421,10 @@ "value": "Bearer " } ], - "method": "POST", + "method": "DELETE", "body": { "mode": "raw", - "raw": "{\n \"directoryAppId\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"statusFilter\": \"LOCAL_INVITATION_STATUS_EXPIRED\"\n}", + "raw": "{}", "options": { "raw": { "headerFamily": "json", @@ -35874,7 +64441,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"acceptedAt\": \"\",\n \"createdAt\": \"\",\n \"createdUserId\": \"\",\n \"directoryAppId\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"initialRoleIds\": [\n \"\",\n \"\"\n ],\n \"invitedByUserId\": \"\",\n \"jobId\": \"\",\n \"onboardingFlowId\": \"\",\n \"purpose\": \"\",\n \"sponsorUserId\": \"\",\n \"status\": \"LOCAL_INVITATION_STATUS_ACCEPTED\",\n \"updatedAt\": \"\"\n },\n {\n \"acceptedAt\": \"\",\n \"createdAt\": \"\",\n \"createdUserId\": \"\",\n \"directoryAppId\": \"\",\n \"displayName\": \"\",\n \"email\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"initialRoleIds\": [\n \"\",\n \"\"\n ],\n \"invitedByUserId\": \"\",\n \"jobId\": \"\",\n \"onboardingFlowId\": \"\",\n \"purpose\": \"\",\n \"sponsorUserId\": \"\",\n \"status\": \"LOCAL_INVITATION_STATUS_ACCEPTED\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{}", "cookie": [], "_postman_previewlanguage": "json" } @@ -35883,81 +64450,80 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "past-grants", - "description": "", - "item": [ + }, { - "id": "5fab2b98-5386-4bcd-82db-bee9c97e0f3e", - "name": "Search Past Grants", + "id": "c6a6eb87-2c16-4d58-ad12-5ded05a4c949", + "name": "Get", "request": { - "name": "Search Past Grants", + "name": "Get", "description": { - "content": "Search historical grants that have been revoked, filtered by app user or entitlement.", + "content": "Get a session policy by ID.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "past-grants" + "session-policies", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "e7651b22-da63-494e-9738-7c5fd4619f5e", - "name": "The SearchPastGrantsResponse message contains a list of past grants and a nextPageToken if applicable.", + "id": "748a1cbd-56a2-47b8-96c8-b46ef472f848", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "past-grants" + "session-policies", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -35971,17 +64537,8 @@ "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"appIds\": [\n \"\",\n \"\"\n ],\n \"appUserRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -35991,7 +64548,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\"\n },\n {\n \"@type\": \"\",\n \"key_0\": true,\n \"key_1\": false,\n \"key_2\": 4912\n }\n ],\n \"list\": [\n {\n \"appPath\": \"\",\n \"appUserPath\": \"\",\n \"entitlementPath\": \"\",\n \"history\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantedAt\": \"\",\n \"revokedAt\": \"\"\n }\n },\n {\n \"appPath\": \"\",\n \"appUserPath\": \"\",\n \"entitlementPath\": \"\",\n \"history\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantedAt\": \"\",\n \"revokedAt\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"sessionPolicy\": {\n \"accessTokenTtlSeconds\": \"\",\n \"continuousDefaultOutcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_SINGLE_FACTOR\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": [\n \"CREDENTIAL_TYPE_PASSWORD\",\n \"CREDENTIAL_TYPE_UPSTREAM_IDP\"\n ]\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_NONE\",\n \"maxAgeSeconds\": \"\",\n \"types\": null\n }\n },\n \"continuousRules\": null,\n \"createdAt\": \"\",\n \"credentialDurations\": [\n {\n \"accessTokenTtlSeconds\": \"\",\n \"credentialType\": \"CREDENTIAL_TYPE_UPSTREAM_IDP\",\n \"maxSessionDurationSeconds\": \"\"\n },\n {\n \"accessTokenTtlSeconds\": \"\",\n \"credentialType\": \"CREDENTIAL_TYPE_EMAIL_OTP\",\n \"maxSessionDurationSeconds\": \"\"\n }\n ],\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"idleTimeoutSeconds\": \"\",\n \"isBuiltin\": \"\",\n \"maxSessionDurationSeconds\": \"\",\n \"persistence\": \"PERSISTENCE_MODE_ALLOW_USER_CHOICE\",\n \"priority\": \"\",\n \"refreshRotationWindowSeconds\": \"\",\n \"refreshTokenTtlSeconds\": \"\",\n \"rotateRefreshOnUse\": \"\",\n \"ssfReceive\": {\n \"enabled\": \"\",\n \"ssfReceiverStreamIds\": null\n },\n \"ssfTransmit\": {\n \"enabled\": \"\",\n \"eventTypes\": [\n \"\",\n \"\"\n ],\n \"ssfTransmitterStreamIds\": null\n },\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -36000,34 +64557,39 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "policies", - "description": "", - "item": [ + }, { - "id": "ee801993-4d6a-48e1-abf6-1bd9a0377e5b", - "name": "Search", + "id": "64918d2a-c6a6-4ab6-b6c1-6e286be2a435", + "name": "Update", "request": { - "name": "Search", + "name": "Update", "description": { - "content": "Search policies based on filters specified in the request body.", + "content": "Update a session policy. Supply the policy object and an update mask\n listing the fields to change; omitted fields are left as-is.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "policies" + "session-policies", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -36042,7 +64604,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"excludePolicyIds\": [\n \"\",\n \"\"\n ],\n \"includeDeleted\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"policyTypes\": [\n \"POLICY_TYPE_UNSPECIFIED\",\n \"POLICY_TYPE_UNSPECIFIED\"\n ],\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "raw": "{\n \"sessionPolicy\": {\n \"accessTokenTtlSeconds\": \"\",\n \"continuousDefaultOutcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_NONE\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": [\n \"CREDENTIAL_TYPE_UNSPECIFIED\",\n \"CREDENTIAL_TYPE_PASSWORD\"\n ]\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_SINGLE_FACTOR\",\n \"maxAgeSeconds\": \"\",\n \"types\": null\n }\n },\n \"continuousRules\": [\n {\n \"description\": \"\",\n \"id\": \"\",\n \"matchCel\": \"\",\n \"mode\": \"POLICY_RULE_MODE_DISABLED\",\n \"outcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_UNSPECIFIED\"\n },\n \"challengeRequired\": {\n \"types\": [\n \"CREDENTIAL_TYPE_PASSKEY\",\n \"CREDENTIAL_TYPE_DELEGATED_GOOGLE\"\n ]\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_PHR\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_UNSPECIFIED\",\n \"CREDENTIAL_TYPE_DELEGATED_GOOGLE\"\n ]\n }\n }\n },\n {\n \"description\": \"\",\n \"id\": \"\",\n \"matchCel\": \"\",\n \"mode\": \"POLICY_RULE_MODE_OBSERVE\",\n \"outcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_SINGLE_FACTOR\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_UNSPECIFIED\",\n \"maxAgeSeconds\": \"\",\n \"types\": null\n }\n }\n }\n ],\n \"credentialDurations\": [\n {\n \"accessTokenTtlSeconds\": \"\",\n \"credentialType\": \"CREDENTIAL_TYPE_PASSWORD\",\n \"maxSessionDurationSeconds\": \"\"\n },\n {\n \"accessTokenTtlSeconds\": \"\",\n \"credentialType\": \"CREDENTIAL_TYPE_UNSPECIFIED\",\n \"maxSessionDurationSeconds\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"idleTimeoutSeconds\": \"\",\n \"maxSessionDurationSeconds\": \"\",\n \"persistence\": \"PERSISTENCE_MODE_ALWAYS_PERSIST\",\n \"priority\": \"\",\n \"refreshRotationWindowSeconds\": \"\",\n \"refreshTokenTtlSeconds\": \"\",\n \"rotateRefreshOnUse\": \"\",\n \"ssfReceive\": {\n \"enabled\": \"\",\n \"ssfReceiverStreamIds\": [\n \"\",\n \"\"\n ]\n },\n \"ssfTransmit\": {\n \"enabled\": \"\",\n \"eventTypes\": [\n \"\",\n \"\"\n ],\n \"ssfTransmitterStreamIds\": null\n }\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -36054,21 +64616,32 @@ }, "response": [ { - "id": "5d268eb9-a301-4c25-a0a4-8944899ed81a", + "id": "d8fe830a-4923-4225-970a-96edada71e56", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "policies" + "session-policies", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] }, "header": [ { @@ -36091,7 +64664,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"excludePolicyIds\": [\n \"\",\n \"\"\n ],\n \"includeDeleted\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"policyTypes\": [\n \"POLICY_TYPE_UNSPECIFIED\",\n \"POLICY_TYPE_UNSPECIFIED\"\n ],\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "raw": "{\n \"sessionPolicy\": {\n \"accessTokenTtlSeconds\": \"\",\n \"continuousDefaultOutcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_NONE\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": [\n \"CREDENTIAL_TYPE_UNSPECIFIED\",\n \"CREDENTIAL_TYPE_PASSWORD\"\n ]\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_SINGLE_FACTOR\",\n \"maxAgeSeconds\": \"\",\n \"types\": null\n }\n },\n \"continuousRules\": [\n {\n \"description\": \"\",\n \"id\": \"\",\n \"matchCel\": \"\",\n \"mode\": \"POLICY_RULE_MODE_DISABLED\",\n \"outcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_UNSPECIFIED\"\n },\n \"challengeRequired\": {\n \"types\": [\n \"CREDENTIAL_TYPE_PASSKEY\",\n \"CREDENTIAL_TYPE_DELEGATED_GOOGLE\"\n ]\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_PHR\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_UNSPECIFIED\",\n \"CREDENTIAL_TYPE_DELEGATED_GOOGLE\"\n ]\n }\n }\n },\n {\n \"description\": \"\",\n \"id\": \"\",\n \"matchCel\": \"\",\n \"mode\": \"POLICY_RULE_MODE_OBSERVE\",\n \"outcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_SINGLE_FACTOR\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_UNSPECIFIED\",\n \"maxAgeSeconds\": \"\",\n \"types\": null\n }\n }\n }\n ],\n \"credentialDurations\": [\n {\n \"accessTokenTtlSeconds\": \"\",\n \"credentialType\": \"CREDENTIAL_TYPE_PASSWORD\",\n \"maxSessionDurationSeconds\": \"\"\n },\n {\n \"accessTokenTtlSeconds\": \"\",\n \"credentialType\": \"CREDENTIAL_TYPE_UNSPECIFIED\",\n \"maxSessionDurationSeconds\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"idleTimeoutSeconds\": \"\",\n \"maxSessionDurationSeconds\": \"\",\n \"persistence\": \"PERSISTENCE_MODE_ALWAYS_PERSIST\",\n \"priority\": \"\",\n \"refreshRotationWindowSeconds\": \"\",\n \"refreshTokenTtlSeconds\": \"\",\n \"rotateRefreshOnUse\": \"\",\n \"ssfReceive\": {\n \"enabled\": \"\",\n \"ssfReceiverStreamIds\": [\n \"\",\n \"\"\n ]\n },\n \"ssfTransmit\": {\n \"enabled\": \"\",\n \"eventTypes\": [\n \"\",\n \"\"\n ],\n \"ssfTransmitterStreamIds\": null\n }\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -36108,7 +64681,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 1645.2649690166177\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_GRANT\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"sessionPolicy\": {\n \"accessTokenTtlSeconds\": \"\",\n \"continuousDefaultOutcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_SINGLE_FACTOR\"\n },\n \"challengeRequired\": {\n \"types\": [\n \"CREDENTIAL_TYPE_EMAIL_OTP\",\n \"CREDENTIAL_TYPE_PASSKEY\"\n ]\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_SINGLE_FACTOR\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_PASSKEY\",\n \"CREDENTIAL_TYPE_TOTP\"\n ]\n }\n },\n \"continuousRules\": [\n {\n \"description\": \"\",\n \"id\": \"\",\n \"matchCel\": \"\",\n \"mode\": \"POLICY_RULE_MODE_ENFORCE\",\n \"outcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_NONE\"\n },\n \"challengeRequired\": {\n \"types\": [\n \"CREDENTIAL_TYPE_UPSTREAM_IDP\",\n \"CREDENTIAL_TYPE_UPSTREAM_IDP\"\n ]\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": [\n \"CREDENTIAL_TYPE_RECOVERY_CODE\",\n \"CREDENTIAL_TYPE_PASSKEY\"\n ]\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_SINGLE_FACTOR\",\n \"maxAgeSeconds\": \"\",\n \"types\": null\n }\n }\n },\n {\n \"description\": \"\",\n \"id\": \"\",\n \"matchCel\": \"\",\n \"mode\": \"POLICY_RULE_MODE_ENFORCE\",\n \"outcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_MULTI_FACTOR\"\n },\n \"challengeRequired\": {\n \"types\": [\n \"CREDENTIAL_TYPE_EMAIL_OTP\",\n \"CREDENTIAL_TYPE_RECOVERY_CODE\"\n ]\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_UNSPECIFIED\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_PASSWORD\",\n \"CREDENTIAL_TYPE_RECOVERY_CODE\"\n ]\n }\n }\n }\n ],\n \"createdAt\": \"\",\n \"credentialDurations\": null,\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"idleTimeoutSeconds\": \"\",\n \"isBuiltin\": \"\",\n \"maxSessionDurationSeconds\": \"\",\n \"persistence\": \"PERSISTENCE_MODE_ALLOW_USER_CHOICE\",\n \"priority\": \"\",\n \"refreshRotationWindowSeconds\": \"\",\n \"refreshTokenTtlSeconds\": \"\",\n \"rotateRefreshOnUse\": \"\",\n \"ssfReceive\": {\n \"enabled\": \"\",\n \"ssfReceiverStreamIds\": null\n },\n \"ssfTransmit\": {\n \"enabled\": \"\",\n \"eventTypes\": [\n \"\",\n \"\"\n ],\n \"ssfTransmitterStreamIds\": null\n },\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -36117,212 +64690,124 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "request_catalog", - "description": "", - "item": [ + }, { - "name": "entitlements", + "name": "assignments", "description": "", "item": [ { - "id": "29fd30fb-4ec9-49fc-8c4f-e57967ff8635", - "name": "Search Entitlements", + "id": "f6485e8e-1efb-4b07-8fd6-99c679cbe8e4", + "name": "List Assignments", "request": { - "name": "Search Entitlements", + "name": "List Assignments", "description": { - "content": "Search request catalogs based on filters specified in the request body.", + "content": "List the principals assigned to a session policy, including both direct\n assignments and those conferred through a group.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "request_catalog", - "entitlements" + "session-policies", + ":id", + "assignments" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appDisplayName\": \"\",\n \"entitlementAlias\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"grantedStatus\": \"GRANTED\",\n \"includeDeleted\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "8928bce4-c03f-4640-87a2-d9a0d8f2570c", - "name": "The RequestCatalogSearchServiceSearchEntitlementsResponse message contains a list of results and a nextPageToken if applicable.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "search", - "request_catalog", - "entitlements" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" }, - { - "key": "Accept", - "value": "application/json" + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appDisplayName\": \"\",\n \"entitlementAlias\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"grantedStatus\": \"GRANTED\",\n \"includeDeleted\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } + "key": "page_token", + "value": "" } - }, - "status": "OK", - "code": 200, - "header": [ + ], + "variable": [ { - "key": "Content-Type", - "value": "application/json" + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\"\n },\n {\n \"@type\": \"\",\n \"key_0\": false\n }\n ],\n \"list\": [\n {\n \"appEntitlementUserBindings\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionAt\": \"\",\n \"grantSources\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionAt\": \"\",\n \"grantSources\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n }\n ],\n \"entitlement\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n }\n }\n },\n {\n \"appEntitlementUserBindings\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionAt\": \"\",\n \"grantSources\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n },\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionAt\": \"\",\n \"grantSources\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ]\n }\n ],\n \"entitlement\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 546.4342164549207,\n \"key_1\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": 7070.81192888152,\n \"key_2\": 5536,\n \"key_3\": 1182.541268333921\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appPath\": \"\",\n \"appResourcePath\": \"\",\n \"appResourceTypePath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n }\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - }, - { - "name": "role-mining", - "description": "", - "item": [ - { - "name": "suggestions", - "description": "", - "item": [ - { - "id": "d2033042-9e12-482b-80e8-a1ba299010cb", - "name": "Search", - "request": { - "name": "Search", - "description": { - "content": "Search role mining suggestions by name, description, or cohort filter values with optional state and type filters.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "search", - "role-mining", - "suggestions" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] + ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"cohortTypes\": [\n \"\",\n \"\"\n ],\n \"matchTypes\": [\n \"ACCESS_PROFILE_MATCH_TYPE_EXACT\",\n \"ACCESS_PROFILE_MATCH_TYPE_UNSPECIFIED\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"states\": [\n \"SUGGESTION_STATE_NEW\",\n \"SUGGESTION_STATE_UNSPECIFIED\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "605fda62-0fae-4739-9610-b05fe50d6e9a", + "id": "806f4550-d6e6-4baa-8cba-bed98e753611", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "role-mining", - "suggestions" + "session-policies", + ":id", + "assignments" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [] + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -36336,17 +64821,8 @@ "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"cohortTypes\": [\n \"\",\n \"\"\n ],\n \"matchTypes\": [\n \"ACCESS_PROFILE_MATCH_TYPE_EXACT\",\n \"ACCESS_PROFILE_MATCH_TYPE_UNSPECIFIED\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"states\": [\n \"SUGGESTION_STATE_NEW\",\n \"SUGGESTION_STATE_UNSPECIFIED\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -36356,7 +64832,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"avgCoverage\": \"\",\n \"cohortFilters\": [\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"cohortSize\": \"\",\n \"confidence\": \"\",\n \"createdAt\": \"\",\n \"createdCatalogId\": \"\",\n \"description\": \"\",\n \"dimensionCount\": \"\",\n \"entitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"existingProfileMatches\": [\n {\n \"catalogDisplayName\": \"\",\n \"catalogId\": \"\",\n \"matchType\": \"ACCESS_PROFILE_MATCH_TYPE_UNSPECIFIED\",\n \"missingEntitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"overlapRatio\": \"\"\n },\n {\n \"catalogDisplayName\": \"\",\n \"catalogId\": \"\",\n \"matchType\": \"ACCESS_PROFILE_MATCH_TYPE_EXACT\",\n \"missingEntitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"overlapRatio\": \"\"\n }\n ],\n \"id\": \"\",\n \"insights\": [\n \"\",\n \"\"\n ],\n \"lastGeneratedAt\": \"\",\n \"runId\": \"\",\n \"suggestedName\": \"\",\n \"suggestionState\": \"SUGGESTION_STATE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"usersWithAll\": \"\"\n },\n {\n \"avgCoverage\": \"\",\n \"cohortFilters\": [\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n },\n {\n \"attribute\": \"\",\n \"values\": [\n \"\",\n \"\"\n ]\n }\n ],\n \"cohortSize\": \"\",\n \"confidence\": \"\",\n \"createdAt\": \"\",\n \"createdCatalogId\": \"\",\n \"description\": \"\",\n \"dimensionCount\": \"\",\n \"entitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"existingProfileMatches\": [\n {\n \"catalogDisplayName\": \"\",\n \"catalogId\": \"\",\n \"matchType\": \"ACCESS_PROFILE_MATCH_TYPE_UNSPECIFIED\",\n \"missingEntitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"overlapRatio\": \"\"\n },\n {\n \"catalogDisplayName\": \"\",\n \"catalogId\": \"\",\n \"matchType\": \"ACCESS_PROFILE_MATCH_TYPE_PARTIAL\",\n \"missingEntitlements\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"appResourceDisplayName\": \"\",\n \"appResourceTypeDisplayName\": \"\",\n \"coverage\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"grantedCount\": \"\"\n }\n ],\n \"overlapRatio\": \"\"\n }\n ],\n \"id\": \"\",\n \"insights\": [\n \"\",\n \"\"\n ],\n \"lastGeneratedAt\": \"\",\n \"runId\": \"\",\n \"suggestedName\": \"\",\n \"suggestionState\": \"SUGGESTION_STATE_NEW\",\n \"updatedAt\": \"\",\n \"usersWithAll\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"assignments\": [\n {\n \"source\": \"ASSIGNMENT_SOURCE_GROUP\",\n \"userId\": \"\"\n },\n {\n \"source\": \"ASSIGNMENT_SOURCE_GROUP\",\n \"userId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -36365,194 +64841,45 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - } - ] - }, - { - "name": "secrets-admin", - "description": "", - "item": [ - { - "id": "b0b302e2-fbe0-4496-9024-5a4a670d9aa1", - "name": "Search", - "request": { - "name": "Search", - "description": { - "content": "Search returns secrets across the tenant.\n Can filter by creator, sharing mode, status, time range, etc.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "search", - "secrets-admin" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"createdAfter\": \"\",\n \"createdBefore\": \"\",\n \"creatorUserIds\": [\n \"\",\n \"\"\n ],\n \"includeDeleted\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"secretType\": \"SECRET_TYPE_TEXT\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_EXTERNAL\",\n \"sortBy\": \"SEARCH_SORT_BY_CREATED_ASC\",\n \"statuses\": [\n \"SECRET_STATUS_BURNED\",\n \"SECRET_STATUS_BURNED\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } }, - "auth": null - }, - "response": [ { - "id": "ec31c313-1fd8-47ce-90a8-af94d8dd4543", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "search", - "secrets-admin" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + "name": "groups", + "description": "", + "item": [ + { + "id": "1632c9fc-6288-4eb3-a476-b176a02ab5c7", + "name": "Assign Group", + "request": { + "name": "Assign Group", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "Assign a group to a session policy. Every member of the group becomes\n assigned to the policy; because group membership is expanded\n asynchronously, the per-user effect is eventually consistent (typically\n within a few minutes).", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"createdAfter\": \"\",\n \"createdBefore\": \"\",\n \"creatorUserIds\": [\n \"\",\n \"\"\n ],\n \"includeDeleted\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"secretType\": \"SECRET_TYPE_TEXT\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_EXTERNAL\",\n \"sortBy\": \"SEARCH_SORT_BY_CREATED_ASC\",\n \"statuses\": [\n \"SECRET_STATUS_BURNED\",\n \"SECRET_STATUS_BURNED\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_JSON\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_FILE\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_UNSPECIFIED\",\n \"status\": \"SECRET_STATUS_REVOKED\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n },\n {\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_PLAINTEXT\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_UNSPECIFIED\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_INTERNAL\",\n \"status\": \"SECRET_STATUS_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "audit_events", - "description": "", - "item": [ - { - "id": "fb8cec35-9b63-4ad6-b633-889e4b9849de", - "name": "Search Audit Events", - "request": { - "name": "Search Audit Events", - "description": { - "content": "SearchAuditEvents returns audit events for paper secrets.\n Can filter by vault_id, actor (user ID or email), client IP.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "search", - "secrets-admin", - "audit_events" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"actorEmail\": \"\",\n \"actorUserId\": \"\",\n \"clientIp\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"vaultId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "7c563c9a-5fac-4fd6-ae95-f95c587655f0", - "name": "Successful response", - "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "secrets-admin", - "audit_events" + "session-policies", + ":id", + "assignments", + "groups" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -36562,122 +64889,305 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"actorEmail\": \"\",\n \"actorUserId\": \"\",\n \"clientIp\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"vaultId\": \"\"\n}", + "raw": "{\n \"groupAppEntitlementId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "129984a3-1e8d-4ce5-8f80-ec590b5e4664", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "session-policies", + ":id", + "assignments", + "groups" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"groupAppEntitlementId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"list\": [\n {\n \"key_0\": \"string\",\n \"key_1\": 4365.93724857836\n },\n {\n \"key_0\": 8831\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - }, - { - "name": "secrets", - "description": "", - "item": [ - { - "name": "audit_events", - "description": "", - "item": [ - { - "id": "b1fa3fbf-ddfa-4656-9406-15a4c7c760ee", - "name": "Search Audit Events", - "request": { - "name": "Search Audit Events", - "description": { - "content": "SearchAuditEvents returns audit events for a secret owned by the calling user.\n Returns sanitized OCSF events (IP addresses stripped for non-admin consumption).", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "search", - "secrets", - "audit_events" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"vaultId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } }, - "auth": null - }, - "response": [ { - "id": "9fba9a4f-0833-4ce7-a147-ad107922a11f", - "name": "PaperSecretServiceSearchAuditEventsResponse contains a page of audit events\n for the requested secret.", - "originalRequest": { + "name": "{group_app_entitlement_id}", + "description": "", + "item": [ + { + "id": "5a6ea3ee-a80e-490f-b5e5-76c859f69efb", + "name": "Unassign Group", + "request": { + "name": "Unassign Group", + "description": { + "content": "Unassign a group from a session policy. The per-user effect is eventually\n consistent, mirroring AssignGroup.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "session-policies", + ":id", + "assignments", + "groups", + ":group_app_entitlement_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "group_app_entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "d18983d3-2be7-44be-a5e0-469e130c2150", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "session-policies", + ":id", + "assignments", + "groups", + ":group_app_entitlement_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "group_app_entitlement_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "users", + "description": "", + "item": [ + { + "id": "fa5f28ab-98cb-4efd-9111-3f6250aac36f", + "name": "Assign User", + "request": { + "name": "Assign User", + "description": { + "content": "Assign a user to a session policy. The assignment takes effect immediately.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "search", - "secrets", - "audit_events" + "session-policies", + ":id", + "assignments", + "users" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -36687,68 +65197,324 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"vaultId\": \"\"\n}", + "raw": "{\n \"userId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } + }, + "auth": null + }, + "response": [ + { + "id": "6ce77f44-64d9-4de1-9b35-41b0834e1285", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "session-policies", + ":id", + "assignments", + "users" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"userId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{user_id}", + "description": "", + "item": [ + { + "id": "a9c7b978-da6c-49e5-9fc9-602d407b0adc", + "name": "Unassign User", + "request": { + "name": "Unassign User", + "description": { + "content": "Unassign a user from a session policy.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "session-policies", + ":id", + "assignments", + "users", + ":user_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "user_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "9c8e1239-a4a0-43f8-aecf-3775a91cedff", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "session-policies", + ":id", + "assignments", + "users", + ":user_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "user_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"key_0\": 5349.163726993375,\n \"key_1\": 2151.254636515205\n },\n {\n \"key_0\": 7342\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + ] } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] } ] - }, + } + ] + } + ] + }, + { + "name": "settings", + "description": "", + "item": [ + { + "name": "ai-governance", + "description": "", + "item": [ { - "name": "mine", - "description": "", - "item": [ + "id": "bcc4d6a2-7559-4ae5-b789-fe26567856af", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get the tenant's AI governance settings — the controls behind the admin\n /admin/settings/ai-governance page. Returns the full AIGovernanceSettings:\n allowed MCP client types, default client lifecycle, require_tool_approval,\n default tool classification, audit verbosity, auto-discovery toggle +\n interval, prefer_code_mode_over_direct_tools, surface_requestable_tools,\n and untrusted_judge_disable.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "settings", + "ai-governance" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ { - "id": "8a773fcb-643a-44f6-ad8c-98cf45f6b8af", - "name": "Search My Secrets", - "request": { - "name": "Search My Secrets", - "description": { - "content": "SearchMySecrets returns secrets created by the current user.\n Automatically scoped to current user - no user_id filter parameter.", - "type": "text/plain" - }, + "id": "46a40c24-e91d-412a-9d07-dcca90fee7e0", + "name": "GetAIGovernanceSettingsResponse contains the tenant's AI governance settings.", + "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "secrets", - "mine" + "settings", + "ai-governance" ], "host": [ "{{baseUrl}}" @@ -36758,117 +65524,54 @@ }, "header": [ { - "key": "Content-Type", + "key": "Accept", "value": "application/json" }, { - "key": "Accept", - "value": "application/json" + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"secretType\": \"SECRET_TYPE_TEXT\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_INTERNAL\",\n \"sortBy\": \"SEARCH_SORT_BY_CREATED_ASC\",\n \"statuses\": [\n \"SECRET_STATUS_UNSPECIFIED\",\n \"SECRET_STATUS_DATA_DELETED\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null + "method": "GET", + "body": {} }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "67e7e178-5d3a-49ac-bd94-5770ba6481d9", - "name": "Search response for user's own secrets", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "search", - "secrets", - "mine" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"secretType\": \"SECRET_TYPE_TEXT\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_INTERNAL\",\n \"sortBy\": \"SEARCH_SORT_BY_CREATED_ASC\",\n \"statuses\": [\n \"SECRET_STATUS_UNSPECIFIED\",\n \"SECRET_STATUS_DATA_DELETED\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_JSON\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_TEXT\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_UNSPECIFIED\",\n \"status\": \"SECRET_STATUS_REVOKED\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n },\n {\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_JSON\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_TEXT\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_UNSPECIFIED\",\n \"status\": \"SECRET_STATUS_EXPIRED\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "body": "{\n \"aiGovernanceSettings\": {\n \"allowedClientTypes\": null,\n \"auditVerbosity\": \"AUDIT_VERBOSITY_STANDARD\",\n \"autoDiscoveryEnabled\": \"\",\n \"c1awAutospillDisabled\": \"\",\n \"c1awAutospillThresholdBytes\": \"\",\n \"codeModeConcurrency\": \"\",\n \"createdAt\": \"\",\n \"defaultClientLifecycle\": {\n \"inactivityCloseAfter\": \"\",\n \"inactivityHideAfter\": \"\",\n \"retentionDeleteAfter\": \"\"\n },\n \"defaultToolClassification\": \"TOOL_CLASSIFICATION_DESTRUCTIVE\",\n \"discoveryInterval\": \"\",\n \"enabled\": \"\",\n \"preferCodeModeOverDirectTools\": \"\",\n \"requireToolApproval\": \"\",\n \"surfaceRequestableTools\": \"\",\n \"untrustedJudgeDisable\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] - } - ] - }, - { - "name": "ssf-receiver-events", - "description": "", - "item": [ + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, { - "id": "fb036c8c-0fdc-4b8b-b154-b1002e3a641a", - "name": "Search", + "id": "99611a30-0c27-4c62-9fad-cd8464436db8", + "name": "Update", "request": { - "name": "Search", + "name": "Update", "description": { - "content": "Search performs a full-text search across received SSF events with optional filters for stream, event type, outcome, and matched user.", + "content": "Update the tenant's AI governance settings. Requires update_mask listing\n which fields to apply (e.g. require_tool_approval,\n default_tool_classification, audit_verbosity, auto_discovery_enabled,\n discovery_interval, prefer_code_mode_over_direct_tools,\n surface_requestable_tools, untrusted_judge_disable, allowed_client_types,\n default_client_lifecycle).\n Only masked fields change. Returns the updated settings.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "ssf-receiver-events" + "settings", + "ai-governance" ], "host": [ "{{baseUrl}}" @@ -36889,7 +65592,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"eventType\": \"\",\n \"matchedUserId\": \"\",\n \"outcome\": \"SSF_EVENT_OUTCOME_PRINCIPAL_NOT_FOUND\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"streamId\": \"\"\n}", + "raw": "{\n \"aiGovernanceSettings\": {\n \"allowedClientTypes\": null,\n \"auditVerbosity\": \"AUDIT_VERBOSITY_UNSPECIFIED\",\n \"autoDiscoveryEnabled\": \"\",\n \"c1awAutospillDisabled\": \"\",\n \"c1awAutospillThresholdBytes\": \"\",\n \"codeModeConcurrency\": \"\",\n \"createdAt\": \"\",\n \"defaultClientLifecycle\": {\n \"inactivityCloseAfter\": \"\",\n \"inactivityHideAfter\": \"\",\n \"retentionDeleteAfter\": \"\"\n },\n \"defaultToolClassification\": \"TOOL_CLASSIFICATION_UNSPECIFIED\",\n \"discoveryInterval\": \"\",\n \"enabled\": \"\",\n \"preferCodeModeOverDirectTools\": \"\",\n \"requireToolApproval\": \"\",\n \"surfaceRequestableTools\": \"\",\n \"untrustedJudgeDisable\": \"\",\n \"updatedAt\": \"\"\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -36901,15 +65604,15 @@ }, "response": [ { - "id": "8451ab64-dd4c-4510-9e46-bd69e44214d5", - "name": "SSFReceiverEventSearchServiceSearchResponse contains the matching events and a pagination token.", + "id": "f848698b-112c-460c-aa37-42606fcfab02", + "name": "UpdateAIGovernanceSettingsResponse contains the updated AI governance settings.", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "ssf-receiver-events" + "settings", + "ai-governance" ], "host": [ "{{baseUrl}}" @@ -36938,7 +65641,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"eventType\": \"\",\n \"matchedUserId\": \"\",\n \"outcome\": \"SSF_EVENT_OUTCOME_PRINCIPAL_NOT_FOUND\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"streamId\": \"\"\n}", + "raw": "{\n \"aiGovernanceSettings\": {\n \"allowedClientTypes\": null,\n \"auditVerbosity\": \"AUDIT_VERBOSITY_UNSPECIFIED\",\n \"autoDiscoveryEnabled\": \"\",\n \"c1awAutospillDisabled\": \"\",\n \"c1awAutospillThresholdBytes\": \"\",\n \"codeModeConcurrency\": \"\",\n \"createdAt\": \"\",\n \"defaultClientLifecycle\": {\n \"inactivityCloseAfter\": \"\",\n \"inactivityHideAfter\": \"\",\n \"retentionDeleteAfter\": \"\"\n },\n \"defaultToolClassification\": \"TOOL_CLASSIFICATION_UNSPECIFIED\",\n \"discoveryInterval\": \"\",\n \"enabled\": \"\",\n \"preferCodeModeOverDirectTools\": \"\",\n \"requireToolApproval\": \"\",\n \"surfaceRequestableTools\": \"\",\n \"untrustedJudgeDisable\": \"\",\n \"updatedAt\": \"\"\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -36955,7 +65658,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"canonicalType\": \"SSF_CANONICAL_EVENT_TYPE_ACCOUNT_ENABLED\",\n \"id\": \"\",\n \"matchMethod\": \"SSF_SUBJECT_MATCH_METHOD_UNSPECIFIED\",\n \"matchedUserId\": \"\",\n \"outcome\": \"SSF_EVENT_OUTCOME_UNRECOGNIZED\",\n \"outcomeDetail\": \"\",\n \"receivedAt\": \"\",\n \"sessionsRevoked\": \"\",\n \"setJti\": \"\",\n \"streamId\": \"\",\n \"wireEventProfile\": \"\",\n \"wireEventType\": \"\",\n \"wireInitiatingEntity\": \"\",\n \"wireReasonAdmin\": \"\",\n \"wireSubjectFormat\": \"\",\n \"wireSubjectIdentifier\": \"\"\n },\n {\n \"canonicalType\": \"SSF_CANONICAL_EVENT_TYPE_VERIFICATION\",\n \"id\": \"\",\n \"matchMethod\": \"SSF_SUBJECT_MATCH_METHOD_NOT_FOUND\",\n \"matchedUserId\": \"\",\n \"outcome\": \"SSF_EVENT_OUTCOME_UNSPECIFIED\",\n \"outcomeDetail\": \"\",\n \"receivedAt\": \"\",\n \"sessionsRevoked\": \"\",\n \"setJti\": \"\",\n \"streamId\": \"\",\n \"wireEventProfile\": \"\",\n \"wireEventType\": \"\",\n \"wireInitiatingEntity\": \"\",\n \"wireReasonAdmin\": \"\",\n \"wireSubjectFormat\": \"\",\n \"wireSubjectIdentifier\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"aiGovernanceSettings\": {\n \"allowedClientTypes\": null,\n \"auditVerbosity\": \"AUDIT_VERBOSITY_MINIMAL\",\n \"autoDiscoveryEnabled\": \"\",\n \"c1awAutospillDisabled\": \"\",\n \"c1awAutospillThresholdBytes\": \"\",\n \"codeModeConcurrency\": \"\",\n \"createdAt\": \"\",\n \"defaultClientLifecycle\": {\n \"inactivityCloseAfter\": \"\",\n \"inactivityHideAfter\": \"\",\n \"retentionDeleteAfter\": \"\"\n },\n \"defaultToolClassification\": \"TOOL_CLASSIFICATION_DESTRUCTIVE\",\n \"discoveryInterval\": \"\",\n \"enabled\": \"\",\n \"preferCodeModeOverDirectTools\": \"\",\n \"requireToolApproval\": \"\",\n \"surfaceRequestableTools\": \"\",\n \"untrustedJudgeDisable\": \"\",\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -36964,33 +65667,27 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "step-up", - "description": "", - "item": [ + }, { - "name": "providers", + "name": "history", "description": "", "item": [ { - "id": "71880eaf-2cc3-49f5-92c8-ed31f126c210", - "name": "Search", + "id": "6e73d3ba-364a-42f8-b712-b1f15c29067e", + "name": "List History", "request": { - "name": "Search", + "name": "List History", "description": { - "content": "Search allows searching for step-up providers with various filters", + "content": "List the change history for AI governance settings (newest first).\n Singleton: scoped to the caller's tenant. Admin-tier per object-history convention.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "step-up", - "providers" + "settings", + "ai-governance", + "history" ], "host": [ "{{baseUrl}}" @@ -36999,40 +65696,27 @@ "variable": [] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"providerType\": \"PROVIDER_TYPE_MICROSOFT\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "e609d1a7-7570-4468-b217-c92f42524a0a", - "name": "Response message for searching step-up providers", + "id": "0a6ac024-c4f2-4c54-8689-e2b0534ed35e", + "name": "ListAIGovernanceSettingsHistoryResponse contains a page of AI governance\n settings change-history entries, newest first.", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "step-up", - "providers" + "settings", + "ai-governance", + "history" ], "host": [ "{{baseUrl}}" @@ -37041,10 +65725,6 @@ "variable": [] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -37058,17 +65738,8 @@ "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"providerType\": \"PROVIDER_TYPE_MICROSOFT\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -37078,7 +65749,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"lastTestedAt\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": [\n \"\",\n \"\"\n ],\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_ACRS\"\n },\n \"oauth2\": {\n \"acrValues\": [\n \"\",\n \"\"\n ]\n },\n \"updatedAt\": \"\"\n },\n {\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"lastTestedAt\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": [\n \"\",\n \"\"\n ],\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_ACRS\"\n },\n \"oauth2\": {\n \"acrValues\": [\n \"\",\n \"\"\n ]\n },\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -37091,25 +65762,25 @@ ] }, { - "name": "transactions", + "name": "tenant-defaults", "description": "", "item": [ { - "id": "f8e08b73-038d-4086-b703-9d57e8ccde07", - "name": "Search", + "id": "22f5b843-ef34-48b5-9eb7-02ad34e24f1f", + "name": "Get Tenant Defaults", "request": { - "name": "Search", + "name": "Get Tenant Defaults", "description": { - "content": "Search allows searching for step-up transactions with various filters", + "content": "Get the tenant-default subset of AI governance settings. Currently returns\n only require_tool_approval — the default applied to newly registered MCP\n servers/tools. Use Get for the full settings object.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "step-up", - "transactions" + "settings", + "ai-governance", + "tenant-defaults" ], "host": [ "{{baseUrl}}" @@ -37118,40 +65789,27 @@ "variable": [] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"createdAfter\": \"\",\n \"createdBefore\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"providerId\": \"\",\n \"state\": \"STEP_UP_TRANSACTION_STATE_ERROR\",\n \"targetType\": \"TARGET_TYPE_TEST\",\n \"taskId\": \"\",\n \"userId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "c2c13b0d-fcfe-4095-8fec-3f84bc0a1963", - "name": "Response message for searching step-up transactions", + "id": "14c6913e-2ff0-4194-9fec-66b220c81cec", + "name": "GetTenantDefaultsResponse contains the tenant-default subset of AI governance\n settings applied to newly registered MCP servers and tools.", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "step-up", - "transactions" + "settings", + "ai-governance", + "tenant-defaults" ], "host": [ "{{baseUrl}}" @@ -37160,10 +65818,6 @@ "variable": [] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -37177,17 +65831,8 @@ "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"createdAfter\": \"\",\n \"createdBefore\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"providerId\": \"\",\n \"state\": \"STEP_UP_TRANSACTION_STATE_ERROR\",\n \"targetType\": \"TARGET_TYPE_TEST\",\n \"taskId\": \"\",\n \"userId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -37197,7 +65842,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"approveTask\": {\n \"policyStepId\": \"\",\n \"taskId\": \"\"\n },\n \"claims\": {\n \"key_0\": 4734\n },\n \"createdAt\": \"\",\n \"errorMessage\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"providerId\": \"\",\n \"state\": \"STEP_UP_TRANSACTION_STATE_ERROR\",\n \"test\": {},\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n {\n \"approveTask\": {\n \"policyStepId\": \"\",\n \"taskId\": \"\"\n },\n \"claims\": {\n \"key_0\": \"string\"\n },\n \"createdAt\": \"\",\n \"errorMessage\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"providerId\": \"\",\n \"state\": \"STEP_UP_TRANSACTION_STATE_PENDING\",\n \"test\": {},\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"requireToolApproval\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -37212,29 +65857,52 @@ ] }, { - "name": "systemlog", + "name": "aws-external-id", "description": "", "item": [ { - "name": "exports", - "description": "", - "item": [ + "id": "04d0b429-790f-4b5c-992d-39694bb2c555", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get retrieves the AWS external ID for the tenant, used in IAM role trust policies for AWS connectors.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "settings", + "aws-external-id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ { - "id": "f8bde8db-b1bc-4e10-af00-7fe8a19f998c", - "name": "Search", - "request": { - "name": "Search", - "description": { - "content": "Search for system log exports matching the specified filters.", - "type": "text/plain" - }, + "id": "130808f6-9176-4228-90c4-6ec530428f51", + "name": "Successful response", + "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "systemlog", - "exports" + "settings", + "aws-external-id" ], "host": [ "{{baseUrl}}" @@ -37244,117 +65912,60 @@ }, "header": [ { - "key": "Content-Type", + "key": "Accept", "value": "application/json" }, { - "key": "Accept", - "value": "application/json" + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"exportId\": \"\"\n },\n {\n \"exportId\": \"\"\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null + "method": "GET", + "body": {} }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "84be17d3-cc1e-4dbb-b3d9-f6433588ef0b", - "name": "ExportsSearchServiceSearchResponse is the response for searching system log exports.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "search", - "systemlog", - "exports" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"exportId\": \"\"\n },\n {\n \"exportId\": \"\"\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_UNSPECIFIED\",\n \"prefix\": \"\"\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"exportId\": \"\",\n \"state\": \"EXPORT_STATE_ERROR\",\n \"updatedAt\": \"\",\n \"watermarkEventId\": \"\"\n },\n {\n \"createdAt\": \"\",\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_ZSTD\",\n \"prefix\": \"\"\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"exportId\": \"\",\n \"state\": \"EXPORT_STATE_ERROR\",\n \"updatedAt\": \"\",\n \"watermarkEventId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "body": "{\n \"awsExternalId\": {\n \"externalId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } ] }, { - "name": "tasks", + "name": "contacts", "description": "", "item": [ { - "id": "d1309f43-769e-418c-aa27-086481f963f8", - "name": "Search", + "id": "d0aeed9a-094a-46ce-be2c-a6441765d554", + "name": "Get Contacts", "request": { - "name": "Search", + "name": "Get Contacts", "description": { - "content": "Search tasks based on filters specified in the request body.", + "content": "Invokes the c1.api.settings.v1.ContactsService.GetContacts method.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "tasks" + "settings", + "contacts" ], "host": [ "{{baseUrl}}" @@ -37363,39 +65974,26 @@ "variable": [] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"accessReviewIds\": [\n \"\",\n \"\"\n ],\n \"accountOwnerIds\": [\n \"\",\n \"\"\n ],\n \"accountTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_USER\"\n ],\n \"actorId\": \"\",\n \"appEntitlementIds\": [\n \"\",\n \"\"\n ],\n \"appResourceIds\": [\n \"\",\n \"\"\n ],\n \"appResourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"appUserSubjectIds\": [\n \"\",\n \"\"\n ],\n \"applicationIds\": [\n \"\",\n \"\"\n ],\n \"assignedOrStepApproverUserId\": \"\",\n \"assigneesInIds\": [\n \"\",\n \"\"\n ],\n \"certifyOutcomes\": [\n \"CERTIFY_OUTCOME_CERTIFIED\",\n \"CERTIFY_OUTCOME_UNSPECIFIED\"\n ],\n \"createdAfter\": \"\",\n \"createdBefore\": \"\",\n \"currentStep\": \"TASK_SEARCH_CURRENT_STEP_UNSPECIFIED\",\n \"emergencyStatus\": \"ALL\",\n \"excludeAppEntitlementIds\": [\n \"\",\n \"\"\n ],\n \"excludeAppResourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"excludeApplicationIds\": [\n \"\",\n \"\"\n ],\n \"excludeIds\": [\n \"\",\n \"\"\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"grantOutcomes\": [\n \"GRANT_OUTCOME_CANCELLED\",\n \"GRANT_OUTCOME_WAIT_TIMED_OUT\"\n ],\n \"includeActedAfter\": \"\",\n \"includeDeleted\": \"\",\n \"myWorkUserIds\": [\n \"\",\n \"\"\n ],\n \"olderThanDuration\": \"\",\n \"openerIds\": [\n \"\",\n \"\"\n ],\n \"openerOrSubjectUserId\": \"\",\n \"outcomeAfter\": \"\",\n \"outcomeBefore\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"pendingActionFilter\": \"PENDING_ACTION_FILTER_WITH_PENDING\",\n \"previouslyActedOnIds\": [\n \"\",\n \"\"\n ],\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"revokeOutcomes\": [\n \"REVOKE_OUTCOME_WAIT_TIMED_OUT\",\n \"REVOKE_OUTCOME_DENIED\"\n ],\n \"sortBy\": \"TASK_SEARCH_SORT_BY_CREATED_AT\",\n \"stepApprovalTypes\": [\n \"STEP_APPROVAL_TYPE_WEBHOOK\",\n \"STEP_APPROVAL_TYPE_EXPRESSION\"\n ],\n \"subjectIds\": [\n \"\",\n \"\"\n ],\n \"taskStates\": [\n \"TASK_STATE_CLOSED\",\n \"TASK_STATE_OPEN\"\n ],\n \"taskTypes\": [\n {\n \"action\": {\n \"actionInstance\": {\n \"connectorActionRef\": {}\n },\n \"scopeRole\": {}\n },\n \"certify\": {},\n \"finding\": {},\n \"grant\": {\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {},\n \"revoke\": {\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n {\n \"action\": {\n \"actionInstance\": {\n \"connectorActionRef\": {}\n },\n \"scopeRole\": {}\n },\n \"certify\": {},\n \"finding\": {},\n \"grant\": {\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {},\n \"revoke\": {\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n }\n ],\n \"userEmploymentStatuses\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "1df58880-a31a-45b2-973c-9283e901650f", - "name": "The TaskSearchResponse message contains a list of results and a nextPageToken if applicable.", + "id": "40869f6f-c922-471e-bca1-c673d71ed12c", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "tasks" + "settings", + "contacts" ], "host": [ "{{baseUrl}}" @@ -37404,10 +66002,6 @@ "variable": [] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -37421,17 +66015,8 @@ "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"accessReviewIds\": [\n \"\",\n \"\"\n ],\n \"accountOwnerIds\": [\n \"\",\n \"\"\n ],\n \"accountTypes\": [\n \"APP_USER_TYPE_SERVICE_ACCOUNT\",\n \"APP_USER_TYPE_USER\"\n ],\n \"actorId\": \"\",\n \"appEntitlementIds\": [\n \"\",\n \"\"\n ],\n \"appResourceIds\": [\n \"\",\n \"\"\n ],\n \"appResourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"appUserSubjectIds\": [\n \"\",\n \"\"\n ],\n \"applicationIds\": [\n \"\",\n \"\"\n ],\n \"assignedOrStepApproverUserId\": \"\",\n \"assigneesInIds\": [\n \"\",\n \"\"\n ],\n \"certifyOutcomes\": [\n \"CERTIFY_OUTCOME_CERTIFIED\",\n \"CERTIFY_OUTCOME_UNSPECIFIED\"\n ],\n \"createdAfter\": \"\",\n \"createdBefore\": \"\",\n \"currentStep\": \"TASK_SEARCH_CURRENT_STEP_UNSPECIFIED\",\n \"emergencyStatus\": \"ALL\",\n \"excludeAppEntitlementIds\": [\n \"\",\n \"\"\n ],\n \"excludeAppResourceTypeIds\": [\n \"\",\n \"\"\n ],\n \"excludeApplicationIds\": [\n \"\",\n \"\"\n ],\n \"excludeIds\": [\n \"\",\n \"\"\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"grantOutcomes\": [\n \"GRANT_OUTCOME_CANCELLED\",\n \"GRANT_OUTCOME_WAIT_TIMED_OUT\"\n ],\n \"includeActedAfter\": \"\",\n \"includeDeleted\": \"\",\n \"myWorkUserIds\": [\n \"\",\n \"\"\n ],\n \"olderThanDuration\": \"\",\n \"openerIds\": [\n \"\",\n \"\"\n ],\n \"openerOrSubjectUserId\": \"\",\n \"outcomeAfter\": \"\",\n \"outcomeBefore\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"pendingActionFilter\": \"PENDING_ACTION_FILTER_WITH_PENDING\",\n \"previouslyActedOnIds\": [\n \"\",\n \"\"\n ],\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"revokeOutcomes\": [\n \"REVOKE_OUTCOME_WAIT_TIMED_OUT\",\n \"REVOKE_OUTCOME_DENIED\"\n ],\n \"sortBy\": \"TASK_SEARCH_SORT_BY_CREATED_AT\",\n \"stepApprovalTypes\": [\n \"STEP_APPROVAL_TYPE_WEBHOOK\",\n \"STEP_APPROVAL_TYPE_EXPRESSION\"\n ],\n \"subjectIds\": [\n \"\",\n \"\"\n ],\n \"taskStates\": [\n \"TASK_STATE_CLOSED\",\n \"TASK_STATE_OPEN\"\n ],\n \"taskTypes\": [\n {\n \"action\": {\n \"actionInstance\": {\n \"connectorActionRef\": {}\n },\n \"scopeRole\": {}\n },\n \"certify\": {},\n \"finding\": {},\n \"grant\": {\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {},\n \"revoke\": {\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n {\n \"action\": {\n \"actionInstance\": {\n \"connectorActionRef\": {}\n },\n \"scopeRole\": {}\n },\n \"certify\": {},\n \"finding\": {},\n \"grant\": {\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {},\n \"revoke\": {\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n }\n ],\n \"userEmploymentStatuses\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -37441,7 +66026,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\"\n }\n ],\n \"list\": [\n {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_ROLLBACK_CANCELLED\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": 4334.164765244955,\n \"key_2\": \"string\",\n \"key_3\": 1359\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": \"string\"\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_TIME_REVOKE\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_UNSPECIFIED\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_DONE\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": false,\n \"key_1\": true,\n \"key_2\": 1739\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_WEBHOOK_WAITING\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_UNSPECIFIED\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_SENDING_NOTIFICATIONS\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": false,\n \"key_1\": false\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": 753,\n \"key_2\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_WEBHOOK_WAITING\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 3776,\n \"key_1\": 9178,\n \"key_2\": 5796.289345078909\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_PROVISION\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_WAITING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_APPROVE\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"displayName\": \"\",\n \"formValues\": {\n \"key_0\": 5453,\n \"key_1\": \"string\"\n },\n \"outcome\": \"ACTION_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"type\": \"TYPE_RESOURCE_ACTION\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\"\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_REMEDIATED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_REVOKED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"contacts\": {\n \"billingEmails\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"operationsEmails\": [\n \"\",\n \"\"\n ],\n \"securityEmails\": null,\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -37450,28 +66035,22 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "user-ownership", - "description": "", - "item": [ + }, { - "id": "43af12ac-62dc-46bd-81eb-cf421953b8b0", - "name": "Search User Ownership", + "id": "caa04e16-d8f4-493c-af8a-200d7b7af555", + "name": "Update Contacts", "request": { - "name": "Search User Ownership", + "name": "Update Contacts", "description": { - "content": "Search all ownership assignments for a given user across apps, resources, and entitlements.", + "content": "Invokes the c1.api.settings.v1.ContactsService.UpdateContacts method.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "user-ownership" + "settings", + "contacts" ], "host": [ "{{baseUrl}}" @@ -37492,7 +66071,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"ownershipTypes\": [\n \"USER_OWNERSHIP_TYPE_APP\",\n \"USER_OWNERSHIP_TYPE_RESOURCE\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"userId\": \"\"\n}", + "raw": "{\n \"contacts\": {\n \"billingEmails\": [\n \"\",\n \"\"\n ],\n \"operationsEmails\": [\n \"\",\n \"\"\n ],\n \"securityEmails\": null\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -37504,15 +66083,15 @@ }, "response": [ { - "id": "899eaea2-c15a-4a1e-869f-fb4dff413bbd", - "name": "The SearchUserOwnershipResponse message contains a paginated list of ownership entries.", + "id": "fda601cc-cb2e-4f56-9097-1e6bca35c514", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "user-ownership" + "settings", + "contacts" ], "host": [ "{{baseUrl}}" @@ -37541,7 +66120,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"ownershipTypes\": [\n \"USER_OWNERSHIP_TYPE_APP\",\n \"USER_OWNERSHIP_TYPE_RESOURCE\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"userId\": \"\"\n}", + "raw": "{\n \"contacts\": {\n \"billingEmails\": [\n \"\",\n \"\"\n ],\n \"operationsEmails\": [\n \"\",\n \"\"\n ],\n \"securityEmails\": null\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -37558,7 +66137,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"ownershipType\": \"USER_OWNERSHIP_TYPE_APP\",\n \"resourceDisplayName\": \"\",\n \"resourceId\": \"\",\n \"resourceTypeId\": \"\"\n },\n {\n \"appDisplayName\": \"\",\n \"appId\": \"\",\n \"entitlementDisplayName\": \"\",\n \"entitlementId\": \"\",\n \"ownershipType\": \"USER_OWNERSHIP_TYPE_ENTITLEMENT\",\n \"resourceDisplayName\": \"\",\n \"resourceId\": \"\",\n \"resourceTypeId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"contacts\": {\n \"billingEmails\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"operationsEmails\": null,\n \"securityEmails\": null,\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -37571,24 +66150,24 @@ ] }, { - "name": "users", + "name": "cross-app-access", "description": "", "item": [ { - "id": "ea5ea208-d65c-490c-aa21-938cbfb61b86", - "name": "Search", + "id": "e9b375c1-dcce-46fe-a399-c7a617c95c44", + "name": "Get", "request": { - "name": "Search", + "name": "Get", "description": { - "content": "Search users based on filters specified in the request body.", + "content": "Get the tenant's cross-app-access settings.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "users" + "settings", + "cross-app-access" ], "host": [ "{{baseUrl}}" @@ -37597,39 +66176,26 @@ "variable": [] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"delegateStatus\": \"DELEGATE_STATUS_NO_DELEGATE\",\n \"delegatedUserIds\": [\n \"\",\n \"\"\n ],\n \"departments\": [\n \"\",\n \"\"\n ],\n \"email\": \"\",\n \"excludeIds\": [\n \"\",\n \"\"\n ],\n \"excludeOrigins\": [\n \"USER_ORIGIN_LOCAL\",\n \"USER_ORIGIN_SYSTEM\"\n ],\n \"excludeTypes\": [\n \"USER_TYPE_SERVICE\",\n \"USER_TYPE_SERVICE\"\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"ids\": [\n \"\",\n \"\"\n ],\n \"isDelegate\": \"\",\n \"jobTitles\": [\n \"\",\n \"\"\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"origins\": [\n \"USER_ORIGIN_DIRECTORY\",\n \"USER_ORIGIN_UNSPECIFIED\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": [\n \"DELETED\",\n \"DISABLED\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "f6e4a9db-9e35-404a-a38d-af6d1e121ecc", - "name": "Successful response", + "id": "09d4b5b3-dcb0-4e1f-b01d-cc528cf75346", + "name": "XAASettingsServiceGetResponse returns the tenant's cross-app-access settings.", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "users" + "settings", + "cross-app-access" ], "host": [ "{{baseUrl}}" @@ -37638,10 +66204,6 @@ "variable": [] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -37655,17 +66217,8 @@ "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"delegateStatus\": \"DELEGATE_STATUS_NO_DELEGATE\",\n \"delegatedUserIds\": [\n \"\",\n \"\"\n ],\n \"departments\": [\n \"\",\n \"\"\n ],\n \"email\": \"\",\n \"excludeIds\": [\n \"\",\n \"\"\n ],\n \"excludeOrigins\": [\n \"USER_ORIGIN_LOCAL\",\n \"USER_ORIGIN_SYSTEM\"\n ],\n \"excludeTypes\": [\n \"USER_TYPE_SERVICE\",\n \"USER_TYPE_SERVICE\"\n ],\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"ids\": [\n \"\",\n \"\"\n ],\n \"isDelegate\": \"\",\n \"jobTitles\": [\n \"\",\n \"\"\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"origins\": [\n \"USER_ORIGIN_DIRECTORY\",\n \"USER_ORIGIN_UNSPECIFIED\"\n ],\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"userStatuses\": [\n \"DELETED\",\n \"DISABLED\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -37675,7 +66228,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 963\n },\n {\n \"@type\": \"\",\n \"key_0\": 7500.6655618893055\n }\n ],\n \"list\": [\n {\n \"delegatedUserPath\": \"\",\n \"directoriesPath\": \"\",\n \"managersPath\": \"\",\n \"rolesPath\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"ENABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": {\n \"key_0\": false\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_SERVICE\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n },\n {\n \"delegatedUserPath\": \"\",\n \"directoriesPath\": \"\",\n \"managersPath\": \"\",\n \"rolesPath\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": {\n \"key_0\": 5398,\n \"key_1\": true\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_SERVICE\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"settings\": {\n \"allowRefreshTokenSubjects\": \"\",\n \"createdAt\": \"\",\n \"defaultGrantLifetime\": \"\",\n \"defaultSigningAlgorithm\": \"XAA_SIGNING_ALGORITHM_RS256\",\n \"enabled\": \"\",\n \"enabledSigningAlgorithms\": [\n \"XAA_SIGNING_ALGORITHM_EDDSA\",\n \"XAA_SIGNING_ALGORITHM_UNSPECIFIED\"\n ],\n \"updatedAt\": \"\",\n \"xaaIdTokenLifetime\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -37684,28 +66237,22 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "webhooks", - "description": "", - "item": [ + }, { - "id": "922c40b4-5c58-4558-8cfb-782ddf27123e", - "name": "Search", + "id": "c7aad8b2-1fcb-4500-81bd-667f5a286527", + "name": "Update", "request": { - "name": "Search", + "name": "Update", "description": { - "content": "Search for webhook subscriptions by query string or specific webhook references.", + "content": "Update the tenant's cross-app-access settings. Supply the settings object\n and an update mask listing the fields to change; only masked fields are\n applied. Editable paths: enabled, default_grant_lifetime,\n allow_refresh_token_subjects, default_signing_algorithm,\n enabled_signing_algorithms, xaa_id_token_lifetime.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "webhooks" + "settings", + "cross-app-access" ], "host": [ "{{baseUrl}}" @@ -37726,7 +66273,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "raw": "{\n \"settings\": {\n \"allowRefreshTokenSubjects\": \"\",\n \"createdAt\": \"\",\n \"defaultGrantLifetime\": \"\",\n \"defaultSigningAlgorithm\": \"XAA_SIGNING_ALGORITHM_UNSPECIFIED\",\n \"enabled\": \"\",\n \"enabledSigningAlgorithms\": [\n \"XAA_SIGNING_ALGORITHM_RS256\",\n \"XAA_SIGNING_ALGORITHM_RS256\"\n ],\n \"updatedAt\": \"\",\n \"xaaIdTokenLifetime\": \"\"\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -37738,15 +66285,15 @@ }, "response": [ { - "id": "751ca998-7708-4b7a-82f7-8ff836ebb38b", - "name": "Successful response", + "id": "d42f9974-2936-4e73-9c0d-a594fbaa4930", + "name": "XAASettingsServiceUpdateResponse returns the updated settings.", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "webhooks" + "settings", + "cross-app-access" ], "host": [ "{{baseUrl}}" @@ -37775,7 +66322,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"query\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "raw": "{\n \"settings\": {\n \"allowRefreshTokenSubjects\": \"\",\n \"createdAt\": \"\",\n \"defaultGrantLifetime\": \"\",\n \"defaultSigningAlgorithm\": \"XAA_SIGNING_ALGORITHM_UNSPECIFIED\",\n \"enabled\": \"\",\n \"enabledSigningAlgorithms\": [\n \"XAA_SIGNING_ALGORITHM_RS256\",\n \"XAA_SIGNING_ALGORITHM_RS256\"\n ],\n \"updatedAt\": \"\",\n \"xaaIdTokenLifetime\": \"\"\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -37792,7 +66339,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"callbackTimeout\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"url\": \"\"\n },\n {\n \"callbackTimeout\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"url\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"settings\": {\n \"allowRefreshTokenSubjects\": \"\",\n \"createdAt\": \"\",\n \"defaultGrantLifetime\": \"\",\n \"defaultSigningAlgorithm\": \"XAA_SIGNING_ALGORITHM_EDDSA\",\n \"enabled\": \"\",\n \"enabledSigningAlgorithms\": null,\n \"updatedAt\": \"\",\n \"xaaIdTokenLifetime\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -37801,81 +66348,445 @@ "protocolProfileBehavior": { "disableBodyPruning": true } + }, + { + "name": "history", + "description": "", + "item": [ + { + "id": "76137143-d6d9-49f1-b89f-d5202d12a852", + "name": "List History", + "request": { + "name": "List History", + "description": { + "content": "List the change history for the tenant's cross-app-access settings (newest\n first). Singleton: scoped to the caller's tenant.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "settings", + "cross-app-access", + "history" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "c20a254f-2c1a-42e2-972f-d5770f59b15c", + "name": "XAASettingsServiceListHistoryResponse returns cross-app-access settings\n history entries.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "settings", + "cross-app-access", + "history" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"metadata\": {\n \"actor\": {\n \"kind\": \"ACTOR_KIND_MSTEAMS\",\n \"userId\": \"\"\n },\n \"annotations\": null,\n \"changeKind\": \"CHANGE_KIND_UNSPECIFIED\",\n \"createdAt\": \"\",\n \"id\": \"\",\n \"syslogEventId\": \"\",\n \"traceId\": \"\"\n },\n \"snapshot\": {\n \"allowRefreshTokenSubjects\": \"\",\n \"createdAt\": \"\",\n \"defaultGrantLifetime\": \"\",\n \"defaultSigningAlgorithm\": \"XAA_SIGNING_ALGORITHM_ES256\",\n \"enabled\": \"\",\n \"enabledSigningAlgorithms\": [\n \"XAA_SIGNING_ALGORITHM_EDDSA\",\n \"XAA_SIGNING_ALGORITHM_UNSPECIFIED\"\n ],\n \"updatedAt\": \"\",\n \"xaaIdTokenLifetime\": \"\"\n }\n },\n {\n \"metadata\": {\n \"actor\": {\n \"kind\": \"ACTOR_KIND_API\",\n \"userId\": \"\"\n },\n \"annotations\": [\n {\n \"displayLabel\": \"\",\n \"displayUrl\": \"\",\n \"displayValue\": \"\",\n \"key\": \"\",\n \"kind\": \"ANNOTATION_KIND_BATCH\",\n \"rawValue\": \"\"\n },\n {\n \"displayLabel\": \"\",\n \"displayUrl\": \"\",\n \"displayValue\": \"\",\n \"key\": \"\",\n \"kind\": \"ANNOTATION_KIND_CORRELATION\",\n \"rawValue\": \"\"\n }\n ],\n \"changeKind\": \"CHANGE_KIND_UNSPECIFIED\",\n \"createdAt\": \"\",\n \"id\": \"\",\n \"syslogEventId\": \"\",\n \"traceId\": \"\"\n },\n \"snapshot\": {\n \"allowRefreshTokenSubjects\": \"\",\n \"createdAt\": \"\",\n \"defaultGrantLifetime\": \"\",\n \"defaultSigningAlgorithm\": \"XAA_SIGNING_ALGORITHM_RS256\",\n \"enabled\": \"\",\n \"enabledSigningAlgorithms\": [\n \"XAA_SIGNING_ALGORITHM_EDDSA\",\n \"XAA_SIGNING_ALGORITHM_EDDSA\"\n ],\n \"updatedAt\": \"\",\n \"xaaIdTokenLifetime\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] } ] }, { - "name": "workload_federation_trusts", + "name": "developer-preferences", "description": "", "item": [ { - "id": "530a2aef-464d-420b-926a-5af3285fe4bc", - "name": "Search Trusts", + "name": "user", + "description": "", + "item": [ + { + "id": "fdcaf822-6e6e-4cb8-8696-e01a55bae948", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get returns the calling user's developer preferences. Returns the\n zero value (all preferences off) for users who have never updated\n them.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "settings", + "developer-preferences", + "user" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "403d9027-3c3d-45b5-a6c8-e6c8c55b6579", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "settings", + "developer-preferences", + "user" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"userDeveloperPreferences\": {\n \"terraform\": {\n \"showCode\": \"\"\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "cf3be4ea-a27d-441c-a5c9-9c1a149022cb", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update modifies the calling user's developer preferences. See the\n service-level comment for cluster-merge semantics.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "settings", + "developer-preferences", + "user" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"terraform\": {\n \"showCode\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "6a19faf8-1017-4201-84a2-65031e2c72b8", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "settings", + "developer-preferences", + "user" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"terraform\": {\n \"showCode\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"userDeveloperPreferences\": {\n \"terraform\": {\n \"showCode\": \"\"\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "domains", + "description": "", + "item": [ + { + "id": "2289d89c-32b7-4535-9c4c-47ac828632c3", + "name": "List", "request": { - "name": "Search Trusts", + "name": "List", "description": { - "content": "SearchTrusts searches trusts across all service principals with optional filters.\n Used by the admin providers page to list trusts referencing a provider.", + "content": "List returns all verified domains configured for the tenant.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "search", - "workload_federation_trusts" + "settings", + "domains" ], "host": [ "{{baseUrl}}" ], - "query": [], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], "variable": [] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"providerId\": \"\",\n \"query\": \"\",\n \"servicePrincipalId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "3689e197-3f62-4e33-b03c-aa6d34b329ed", + "id": "35de060e-8c12-4d69-bdd3-4f7a16589c5b", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "search", - "workload_federation_trusts" + "settings", + "domains" ], "host": [ "{{baseUrl}}" ], - "query": [], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], "variable": [] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -37889,17 +66800,8 @@ "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"providerId\": \"\",\n \"query\": \"\",\n \"servicePrincipalId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -37909,7 +66811,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"conditionExpression\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": [\n \"\",\n \"\"\n ],\n \"providerId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"servicePrincipalId\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"conditionExpression\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": [\n \"\",\n \"\"\n ],\n \"providerId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"servicePrincipalId\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -37918,51 +66820,28 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - } - ] - }, - { - "name": "secrets-admin", - "description": "", - "item": [ - { - "name": "{vault_id}", - "description": "", - "item": [ + }, { - "id": "30b42485-be7a-406a-a7c9-46cd357dcbdf", - "name": "Revoke", + "id": "89b78531-65f6-44ad-8c85-947a33d636f6", + "name": "Update", "request": { - "name": "Revoke", + "name": "Update", "description": { - "content": "Revoke allows admin to revoke any secret (not just their own).", + "content": "Update replaces the tenant's set of verified domains with the provided list.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "secrets-admin", - ":vault_id" + "settings", + "domains" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "vault_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -37974,10 +66853,10 @@ "value": "application/json" } ], - "method": "DELETE", + "method": "PUT", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"newDomains\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -37989,32 +66868,21 @@ }, "response": [ { - "id": "503c67a6-f432-49f2-af22-1d468f71a5a8", + "id": "ed23ce80-42f1-452e-a64f-62c851253e7c", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "secrets-admin", - ":vault_id" + "settings", + "domains" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "vault_id" - } - ] + "variable": [] }, "header": [ { @@ -38034,10 +66902,10 @@ "value": "Bearer " } ], - "method": "DELETE", + "method": "PUT", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"newDomains\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -38054,7 +66922,7 @@ "value": "application/json" } ], - "body": "{\n \"secret\": {\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_UNSPECIFIED\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_UNSPECIFIED\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_UNSPECIFIED\",\n \"status\": \"SECRET_STATUS_ACTIVE\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n }\n}", + "body": "{\n \"list\": null\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -38063,39 +66931,34 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "email-capabilities", + "description": "", + "item": [ { - "id": "d747a60b-7ec7-49fb-b5ff-94418bef5b90", - "name": "Get", + "id": "bdc6fca3-61a8-4610-995e-2065d26a2eae", + "name": "Get Email Capabilities", "request": { - "name": "Get", + "name": "Get Email Capabilities", "description": { - "content": "Get retrieves any secret's metadata by vault ID (admin override).", + "content": "GetEmailCapabilities returns a lightweight summary of email capabilities\n for the current tenant. Intended for non-admin users (automation builders,\n secret sharers) to check if external email is available without exposing\n provider configuration details.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "secrets-admin", - ":vault_id" + "settings", + "email-capabilities" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "vault_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -38109,32 +66972,21 @@ }, "response": [ { - "id": "86bb5ead-70c9-4963-bf55-edaaca2c24bb", + "id": "7592ef50-0539-408c-8943-fcc225423feb", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "secrets-admin", - ":vault_id" + "settings", + "email-capabilities" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "vault_id" - } - ] + "variable": [] }, "header": [ { @@ -38161,7 +67013,7 @@ "value": "application/json" } ], - "body": "{\n \"secret\": {\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_UNSPECIFIED\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_FILE\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_UNSPECIFIED\",\n \"status\": \"SECRET_STATUS_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n }\n}", + "body": "{\n \"externalEmailSupported\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -38172,107 +67024,62 @@ } } ] - } - ] - }, - { - "name": "secrets", - "description": "", - "item": [ + }, { - "name": "{vault_id}", + "name": "email-provider", "description": "", "item": [ { - "id": "feced9ae-4f59-4dfe-a8da-4fc2292766ab", - "name": "Revoke", + "id": "e6443ae9-341c-4ea6-995c-639b7d86a973", + "name": "Get", "request": { - "name": "Revoke", + "name": "Get", "description": { - "content": "Revoke soft-deletes a secret (sets Vault.deleted_at, deletes content).", + "content": "Get retrieves the current tenant email provider configuration.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "secrets", - ":vault_id" + "settings", + "email-provider" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "vault_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "3f9df34f-a8cf-4dc5-8e33-414e1d61b498", + "id": "1a7b0af6-3ac1-4f5b-9586-29ff98854960", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "secrets", - ":vault_id" + "settings", + "email-provider" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "vault_id" - } - ] + "variable": [] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -38286,17 +67093,8 @@ "value": "Bearer " } ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -38306,7 +67104,7 @@ "value": "application/json" } ], - "body": "{\n \"secret\": {\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_JSON\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_UNSPECIFIED\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_INTERNAL\",\n \"status\": \"SECRET_STATUS_DATA_DELETED\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n }\n}", + "body": "{\n \"emailProvider\": {\n \"awsSes\": {\n \"configurationSetName\": \"\",\n \"region\": \"\",\n \"roleArn\": \"\"\n },\n \"c1Builtin\": {},\n \"createdAt\": \"\",\n \"fromAddress\": \"\",\n \"fromName\": \"\",\n \"googleWorkspace\": {\n \"delegatedUser\": \"\",\n \"serviceAccountJson\": \"\"\n },\n \"microsoftGraph\": {\n \"azureTenantId\": \"\",\n \"clientId\": \"\",\n \"clientSecret\": \"\"\n },\n \"replyToAddress\": \"\",\n \"sendgrid\": {\n \"apiKey\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -38317,78 +67115,73 @@ } }, { - "id": "f5bcdc6f-6a65-4b4d-896a-5688b6e9a5d8", - "name": "Get", + "id": "ba016555-b896-4fbe-9ff7-24d1a7c7a6c2", + "name": "Update", "request": { - "name": "Get", + "name": "Update", "description": { - "content": "Get retrieves a secret's metadata by vault ID.\n Creator can always get their own secrets. Admins can get any secret.", + "content": "Update creates or updates the tenant email provider configuration.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "secrets", - ":vault_id" + "settings", + "email-provider" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "vault_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"emailProvider\": {\n \"awsSes\": {\n \"configurationSetName\": \"\",\n \"region\": \"\",\n \"roleArn\": \"\"\n },\n \"c1Builtin\": {},\n \"fromAddress\": \"\",\n \"fromName\": \"\",\n \"googleWorkspace\": {\n \"delegatedUser\": \"\",\n \"serviceAccountJson\": \"\"\n },\n \"microsoftGraph\": {\n \"azureTenantId\": \"\",\n \"clientId\": \"\",\n \"clientSecret\": \"\"\n },\n \"replyToAddress\": \"\",\n \"sendgrid\": {\n \"apiKey\": \"\"\n }\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "71f0effa-863d-4da3-b4df-aefa4f9a88fc", + "id": "1073266b-163d-4e14-9b8b-14312a756f2e", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "secrets", - ":vault_id" + "settings", + "email-provider" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "vault_id" - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -38402,8 +67195,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"emailProvider\": {\n \"awsSes\": {\n \"configurationSetName\": \"\",\n \"region\": \"\",\n \"roleArn\": \"\"\n },\n \"c1Builtin\": {},\n \"fromAddress\": \"\",\n \"fromName\": \"\",\n \"googleWorkspace\": {\n \"delegatedUser\": \"\",\n \"serviceAccountJson\": \"\"\n },\n \"microsoftGraph\": {\n \"azureTenantId\": \"\",\n \"clientId\": \"\",\n \"clientSecret\": \"\"\n },\n \"replyToAddress\": \"\",\n \"sendgrid\": {\n \"apiKey\": \"\"\n }\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -38413,7 +67215,7 @@ "value": "application/json" } ], - "body": "{\n \"secret\": {\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_UNSPECIFIED\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_TEXT\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_UNSPECIFIED\",\n \"status\": \"SECRET_STATUS_EXPIRED\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n }\n}", + "body": "{\n \"emailProvider\": {\n \"awsSes\": {\n \"configurationSetName\": \"\",\n \"region\": \"\",\n \"roleArn\": \"\"\n },\n \"c1Builtin\": {},\n \"createdAt\": \"\",\n \"fromAddress\": \"\",\n \"fromName\": \"\",\n \"googleWorkspace\": {\n \"delegatedUser\": \"\",\n \"serviceAccountJson\": \"\"\n },\n \"microsoftGraph\": {\n \"azureTenantId\": \"\",\n \"clientId\": \"\",\n \"clientSecret\": \"\"\n },\n \"replyToAddress\": \"\",\n \"sendgrid\": {\n \"apiKey\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -38424,42 +67226,31 @@ } }, { - "name": "content", + "name": "audit-events", "description": "", "item": [ { - "id": "174d73aa-2f19-4601-9aa6-60e66505973f", - "name": "Set Text Content", + "id": "5b5694a4-5809-44b2-9df4-1d7df5900997", + "name": "Search Audit Events", "request": { - "name": "Set Text Content", + "name": "Search Audit Events", "description": { - "content": "SetTextContent sets the encrypted content for a text secret.\n Client encrypts content using age_recipient from CreateResponse.", + "content": "SearchAuditEvents returns email audit events for the tenant.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "secrets", - ":vault_id", - "content" + "settings", + "email-provider", + "audit-events" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "vault_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -38474,7 +67265,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"encryptedContent\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_PLAINTEXT\"\n}", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -38486,33 +67277,22 @@ }, "response": [ { - "id": "9a2c18a0-e283-4c5b-8b45-570fd6a029b6", + "id": "a886793c-b28a-4851-93f0-5598e8392578", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "secrets", - ":vault_id", - "content" + "settings", + "email-provider", + "audit-events" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "vault_id" - } - ] + "variable": [] }, "header": [ { @@ -38535,7 +67315,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"encryptedContent\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_PLAINTEXT\"\n}", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -38552,7 +67332,7 @@ "value": "application/json" } ], - "body": "{\n \"secret\": {\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_YAML\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_FILE\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_INTERNAL\",\n \"status\": \"SECRET_STATUS_BURNED\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n }\n}", + "body": "{\n \"list\": [\n {\n \"key_0\": 6686.758393306256\n },\n {\n \"key_0\": 1793\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -38565,42 +67345,31 @@ ] }, { - "name": "view", + "name": "test", "description": "", "item": [ { - "id": "7833bc03-f558-4575-8c36-67efd44c4d9e", - "name": "Get Content", + "id": "6402e08c-62b2-4ce6-94a8-fb7650c1140b", + "name": "Test", "request": { - "name": "Get Content", + "name": "Test", "description": { - "content": "GetContent retrieves the encrypted secret content for an authorized recipient.\n Caller must be in the secret's allowed_user_ids list (for INTERNAL secrets).\n Returns content re-encrypted to caller's ephemeral public key.", + "content": "Test sends a test email to verify the provider configuration works end-to-end.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "secrets", - ":vault_id", - "view" + "settings", + "email-provider", + "test" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "vault_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -38612,184 +67381,43 @@ "value": "application/json" } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"readerRecipient\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "803414c5-3fa4-4a7e-93f5-540aac03bc54", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "secrets", - ":vault_id", - "view" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "vault_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"readerRecipient\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"downloadUrl\": \"\",\n \"encryptedContent\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_KEY_VALUE\",\n \"secretType\": \"SECRET_TYPE_FILE\",\n \"viewsRemaining\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - }, - { - "name": "code", - "description": "", - "item": [ - { - "name": "{share_code}", - "description": "", - "item": [ - { - "id": "b5865abb-e6a4-4839-b220-d70d1f0d96a7", - "name": "Get By Share Code", - "request": { - "name": "Get By Share Code", - "description": { - "content": "GetByShareCode retrieves a secret by its human-friendly share code.\n Share codes are in XXXX-XXXX-XXXX format and are used in share URLs.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "secrets", - "code", - ":share_code" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "share_code", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"testRecipientEmail\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "0a992470-087c-4221-a72c-e8617beba42f", + "id": "1ad20a1e-fda0-4f51-8e71-4ab4227efd07", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "secrets", - "code", - ":share_code" + "settings", + "email-provider", + "test" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "share_code" - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -38803,8 +67431,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"testRecipientEmail\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -38814,7 +67451,7 @@ "value": "application/json" } ], - "body": "{\n \"secret\": {\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_UNSPECIFIED\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_TEXT\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_UNSPECIFIED\",\n \"status\": \"SECRET_STATUS_EXPIRED\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n }\n}", + "body": "{\n \"message\": \"\",\n \"success\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -38829,24 +67466,24 @@ ] }, { - "name": "external", + "name": "identity-policy-defaults", "description": "", "item": [ { - "id": "fda14276-f96c-43a1-a0b9-ffb50dc0b760", - "name": "Create External", + "id": "080f8dfa-5798-4853-a88c-9603dac1d489", + "name": "Get", "request": { - "name": "Create External", + "name": "Get", "description": { - "content": "CreateExternal creates a secret vault for external email recipients.", + "content": "Get returns the tenant's default identity policies.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "secrets", - "external" + "settings", + "identity-policy-defaults" ], "host": [ "{{baseUrl}}" @@ -38855,39 +67492,26 @@ "variable": [] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"contentType\": \"\",\n \"displayName\": \"\",\n \"expiresIn\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_PLAINTEXT\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_FILE\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "4ff033a1-8a8d-4e1c-b8c1-8acbddb1c436", + "id": "10fd2180-fbdb-4851-ab69-575b785f79b0", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "secrets", - "external" + "settings", + "identity-policy-defaults" ], "host": [ "{{baseUrl}}" @@ -38896,10 +67520,6 @@ "variable": [] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -38913,17 +67533,8 @@ "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"contentType\": \"\",\n \"displayName\": \"\",\n \"expiresIn\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_PLAINTEXT\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_FILE\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -38933,7 +67544,7 @@ "value": "application/json" } ], - "body": "{\n \"ageRecipient\": \"\",\n \"secret\": {\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_KEY_VALUE\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_TEXT\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_INTERNAL\",\n \"status\": \"SECRET_STATUS_EXPIRED\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n },\n \"uploadUrl\": \"\",\n \"vaultId\": \"\"\n}", + "body": "{\n \"defaults\": {\n \"createdAt\": \"\",\n \"credentialInventoryPolicyId\": \"\",\n \"enrollmentRequirementId\": \"\",\n \"recoveryPolicyId\": \"\",\n \"resourcePolicyId\": \"\",\n \"sessionPolicyId\": \"\",\n \"signInPolicyId\": \"\",\n \"universalPromiseIds\": null,\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -38942,28 +67553,22 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "internal", - "description": "", - "item": [ + }, { - "id": "ed95b562-fed4-4cea-9ba7-ae34dc6f3ed3", - "name": "Create Internal", + "id": "72de8e7b-aa55-4074-b040-e05fc22181b1", + "name": "Update", "request": { - "name": "Create Internal", + "name": "Update", "description": { - "content": "CreateInternal creates a secret vault for internal C1 users.", + "content": "Update changes the tenant's default identity policies. Supply the defaults\n object and an update mask listing the fields to change; omitted fields are\n left as-is.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "secrets", - "internal" + "settings", + "identity-policy-defaults" ], "host": [ "{{baseUrl}}" @@ -38984,7 +67589,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentType\": \"\",\n \"displayName\": \"\",\n \"expiresIn\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_PLAINTEXT\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_UNSPECIFIED\"\n}", + "raw": "{\n \"defaults\": {\n \"credentialInventoryPolicyId\": \"\",\n \"enrollmentRequirementId\": \"\",\n \"recoveryPolicyId\": \"\",\n \"resourcePolicyId\": \"\",\n \"sessionPolicyId\": \"\",\n \"signInPolicyId\": \"\",\n \"universalPromiseIds\": null\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -38996,15 +67601,15 @@ }, "response": [ { - "id": "ee71ffac-7efe-4e97-b9dd-51c2b447f48f", + "id": "aef8a599-953d-4893-ab59-a0e993e9dc14", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "secrets", - "internal" + "settings", + "identity-policy-defaults" ], "host": [ "{{baseUrl}}" @@ -39033,7 +67638,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentType\": \"\",\n \"displayName\": \"\",\n \"expiresIn\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_PLAINTEXT\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_UNSPECIFIED\"\n}", + "raw": "{\n \"defaults\": {\n \"credentialInventoryPolicyId\": \"\",\n \"enrollmentRequirementId\": \"\",\n \"recoveryPolicyId\": \"\",\n \"resourcePolicyId\": \"\",\n \"sessionPolicyId\": \"\",\n \"signInPolicyId\": \"\",\n \"universalPromiseIds\": null\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -39050,7 +67655,7 @@ "value": "application/json" } ], - "body": "{\n \"ageRecipient\": \"\",\n \"secret\": {\n \"allowedEmails\": [\n \"\",\n \"\"\n ],\n \"allowedUserIds\": [\n \"\",\n \"\"\n ],\n \"contentDeleted\": \"\",\n \"contentExpiresAt\": \"\",\n \"contentReady\": \"\",\n \"contentType\": \"\",\n \"createdAt\": \"\",\n \"creatorUserId\": \"\",\n \"currentViews\": \"\",\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"fileSize\": \"\",\n \"filename\": \"\",\n \"inputFormat\": \"SECRET_INPUT_FORMAT_KEY_VALUE\",\n \"maxViews\": \"\",\n \"secretType\": \"SECRET_TYPE_TEXT\",\n \"shareCode\": \"\",\n \"shareUrl\": \"\",\n \"sharingMode\": \"PAPER_VAULT_SHARING_MODE_INTERNAL\",\n \"status\": \"SECRET_STATUS_EXPIRED\",\n \"updatedAt\": \"\",\n \"vaultId\": \"\"\n },\n \"uploadUrl\": \"\",\n \"vaultId\": \"\"\n}", + "body": "{\n \"defaults\": {\n \"createdAt\": \"\",\n \"credentialInventoryPolicyId\": \"\",\n \"enrollmentRequirementId\": \"\",\n \"recoveryPolicyId\": \"\",\n \"resourcePolicyId\": \"\",\n \"sessionPolicyId\": \"\",\n \"signInPolicyId\": \"\",\n \"universalPromiseIds\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -39061,293 +67666,330 @@ } } ] - } - ] - }, - { - "name": "service_principals", - "description": "", - "item": [ + }, { - "id": "8b9bdca1-0fe8-4ff7-899c-c635a79dc9ee", - "name": "List", - "request": { - "name": "List", - "description": { - "content": "List lists service principals for the tenant.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "service_principals" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + "name": "notifications", + "description": "", + "item": [ { - "id": "5ec15d03-028d-4541-8bd0-f7b7c27efba0", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "service_principals" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { + "name": "org", + "description": "", + "item": [ + { + "id": "ca6ce77f-bbcf-402c-a908-50013ed12bae", + "name": "Get", + "request": { + "name": "Get", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "Get retrieves the organization-level notification settings, including per-channel preferences and admin-locked defaults.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"ENABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": \"string\",\n \"key_1\": 5041\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n },\n {\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": 1538.2775779360625\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_HUMAN\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "1a4b5849-315e-459f-a2e5-66e454627637", - "name": "Create", - "request": { - "name": "Create", - "description": { - "content": "Create creates a new service principal.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "service_principals" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"displayName\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "6d127896-ddd2-4099-ab97-4484d4ae0217", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "service_principals" - ], - "host": [ - "{{baseUrl}}" + "url": { + "path": [ + "api", + "v1", + "settings", + "notifications", + "org" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "f76f3fc9-22b3-401b-910c-b4b84e874e06", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "settings", + "notifications", + "org" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"orgNotificationSettings\": {\n \"channelSettings\": {\n \"email\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_FRIDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"slack\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_SUNDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_UNSPECIFIED\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"teams\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_FRIDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_UNSPECIFIED\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n }\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } ], - "query": [], - "variable": [] + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + { + "id": "9da43d1e-4139-48df-8dac-a940712ea289", + "name": "Update", + "request": { + "name": "Update", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "Update modifies the organization-level notification settings, such as enabling channels and locking preferences for users.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"displayName\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + "url": { + "path": [ + "api", + "v1", + "settings", + "notifications", + "org" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"channelSettings\": {\n \"email\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_THURSDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_WEEKLY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"slack\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_MONDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"teams\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_SUNDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n }\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "c28b421d-9cd0-47d0-97c5-f47b0967877a", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "settings", + "notifications", + "org" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"channelSettings\": {\n \"email\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_THURSDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_WEEKLY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"slack\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_MONDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"teams\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_SUNDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n }\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"orgNotificationSettings\": {\n \"channelSettings\": {\n \"email\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_TUESDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_WEEKLY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"slack\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_WEDNESDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_WEEKLY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"teams\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_UNSPECIFIED\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_UNSPECIFIED\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n }\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"servicePrincipal\": {\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\",\n \"key_2\": 5031.517803230243\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{id}", - "description": "", - "item": [ + ] + }, { - "id": "7ce0e615-6e7d-429a-ab4b-c600e53317b6", - "name": "Delete", - "request": { - "name": "Delete", - "description": { - "content": "Delete deletes a service principal and all its credentials.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "service_principals", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "name": "user", + "description": "", + "item": [ + { + "id": "06bc78a1-1625-4e8e-989c-8e1ef00acbac", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get retrieves the calling user's notification preferences, merged with organization-level defaults.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "settings", + "notifications", + "user" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" + ], + "method": "GET", + "body": {}, + "auth": null }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + "response": [ + { + "id": "654a6a2c-ecab-4f8c-a328-59d123b37210", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "settings", + "notifications", + "user" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"userNotificationSettings\": {\n \"channelSettings\": {\n \"email\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_FRIDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"slack\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_FRIDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"teams\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_UNSPECIFIED\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_UNSPECIFIED\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n }\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } }, - "auth": null - }, - "response": [ { - "id": "fef6d462-f5cf-4494-aa94-6ad964ab43c5", - "name": "Successful response", - "originalRequest": { + "id": "ff60e8af-c01b-4f72-b4c8-a3a9ffdf11a6", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update modifies the calling user's personal notification preferences for each channel.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "service_principals", - ":id" + "settings", + "notifications", + "user" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ { @@ -39357,78 +67999,117 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"channelSettings\": {\n \"email\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_SUNDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_WEEKLY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"slack\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_TUESDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"teams\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_WEDNESDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_UNSPECIFIED\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n }\n }\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "07acd12c-2ff4-46b3-8ccf-ab177ee19bd5", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "settings", + "notifications", + "user" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"channelSettings\": {\n \"email\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_SUNDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_WEEKLY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"slack\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_TUESDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"teams\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_WEDNESDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_UNSPECIFIED\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n }\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"userNotificationSettings\": {\n \"channelSettings\": {\n \"email\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_MONDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"slack\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_WEDNESDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_UNSPECIFIED\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"teams\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_FRIDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_UNSPECIFIED\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"requestCreated\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"system\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n }\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, + ] + } + ] + }, + { + "name": "onboarding", + "description": "", + "item": [ { - "id": "6b718651-d81e-431d-b04f-3c6a5c2489fa", + "id": "d9e02cec-6700-4fe7-a93a-05ec864ee524", "name": "Get", "request": { "name": "Get", "description": { - "content": "Get returns a service principal by ID.", + "content": "Get retrieves the current onboarding progress for the tenant.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "service_principals", - ":id" + "settings", + "onboarding" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -39442,32 +68123,21 @@ }, "response": [ { - "id": "2ac194de-8419-43d0-8141-bcb681d1cfd9", + "id": "502202a8-979e-4deb-b174-f4aafbfaa127", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "service_principals", - ":id" + "settings", + "onboarding" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ { @@ -39494,7 +68164,7 @@ "value": "application/json" } ], - "body": "{\n \"servicePrincipal\": {\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": {\n \"key_0\": 6693,\n \"key_1\": true,\n \"key_2\": \"string\"\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n}", + "body": "{\n \"conversationId\": \"\",\n \"intents\": [\n \"\",\n \"\"\n ],\n \"mcpOnboardingGoal\": \"\",\n \"mcpOnboardingStatus\": \"MCP_ONBOARDING_STATUS_COMPLETE\",\n \"mcpOnboardingTargets\": [\n {\n \"displayName\": \"\",\n \"id\": \"\",\n \"kind\": \"MCP_ONBOARDING_TARGET_KIND_UNSPECIFIED\",\n \"mcpServerId\": \"\",\n \"status\": \"MCP_ONBOARDING_TARGET_STATUS_DONE\"\n },\n {\n \"displayName\": \"\",\n \"id\": \"\",\n \"kind\": \"MCP_ONBOARDING_TARGET_KIND_MCP_SERVER\",\n \"mcpServerId\": \"\",\n \"status\": \"MCP_ONBOARDING_TARGET_STATUS_PENDING\"\n }\n ],\n \"orgContext\": {\n \"industry\": \"\",\n \"organizationSize\": \"\"\n },\n \"status\": \"ONBOARDING_STATUS_NOT_STARTED\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -39505,37 +68175,26 @@ } }, { - "id": "c926beee-6e9b-4a88-bfdf-d1b1c9d55e81", + "id": "a3a031a6-1694-4617-88c4-47a7bdcf9632", "name": "Update", "request": { "name": "Update", "description": { - "content": "Update updates a service principal's display name.", + "content": "Update modifies the onboarding progress, such as marking steps complete or dismissing the wizard.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "service_principals", - ":id" + "settings", + "onboarding" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -39547,10 +68206,10 @@ "value": "application/json" } ], - "method": "PATCH", + "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"servicePrincipal\": {\n \"displayName\": \"\",\n \"user\": {\n \"delegatedUserId\": \"\",\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\"\n }\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"conversationId\": \"\",\n \"mcpOnboardingGoal\": \"\",\n \"mcpOnboardingStatus\": \"MCP_ONBOARDING_STATUS_NOT_STARTED\",\n \"mcpOnboardingTargets\": {\n \"targets\": [\n {\n \"displayName\": \"\",\n \"id\": \"\",\n \"kind\": \"MCP_ONBOARDING_TARGET_KIND_CATALOG_ENTRY\",\n \"mcpServerId\": \"\",\n \"status\": \"MCP_ONBOARDING_TARGET_STATUS_UNSPECIFIED\"\n },\n {\n \"displayName\": \"\",\n \"id\": \"\",\n \"kind\": \"MCP_ONBOARDING_TARGET_KIND_APP\",\n \"mcpServerId\": \"\",\n \"status\": \"MCP_ONBOARDING_TARGET_STATUS_SKIPPED\"\n }\n ]\n },\n \"status\": \"ONBOARDING_STATUS_UNSPECIFIED\"\n}", "options": { "raw": { "headerFamily": "json", @@ -39562,32 +68221,21 @@ }, "response": [ { - "id": "06ea6213-0019-43e9-9dd1-71fdb6e858ca", + "id": "5f2b5478-7ee0-4769-85f9-f1a1d4a3c642", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "service_principals", - ":id" + "settings", + "onboarding" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ { @@ -39607,10 +68255,10 @@ "value": "Bearer " } ], - "method": "PATCH", + "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"servicePrincipal\": {\n \"displayName\": \"\",\n \"user\": {\n \"delegatedUserId\": \"\",\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\"\n }\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"conversationId\": \"\",\n \"mcpOnboardingGoal\": \"\",\n \"mcpOnboardingStatus\": \"MCP_ONBOARDING_STATUS_NOT_STARTED\",\n \"mcpOnboardingTargets\": {\n \"targets\": [\n {\n \"displayName\": \"\",\n \"id\": \"\",\n \"kind\": \"MCP_ONBOARDING_TARGET_KIND_CATALOG_ENTRY\",\n \"mcpServerId\": \"\",\n \"status\": \"MCP_ONBOARDING_TARGET_STATUS_UNSPECIFIED\"\n },\n {\n \"displayName\": \"\",\n \"id\": \"\",\n \"kind\": \"MCP_ONBOARDING_TARGET_KIND_APP\",\n \"mcpServerId\": \"\",\n \"status\": \"MCP_ONBOARDING_TARGET_STATUS_SKIPPED\"\n }\n ]\n },\n \"status\": \"ONBOARDING_STATUS_UNSPECIFIED\"\n}", "options": { "raw": { "headerFamily": "json", @@ -39627,7 +68275,7 @@ "value": "application/json" } ], - "body": "{\n \"servicePrincipal\": {\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": {\n \"key_0\": true\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n}", + "body": "{\n \"mcpOnboardingGoal\": \"\",\n \"mcpOnboardingStatus\": \"MCP_ONBOARDING_STATUS_UNSPECIFIED\",\n \"mcpOnboardingTargets\": [\n {\n \"displayName\": \"\",\n \"id\": \"\",\n \"kind\": \"MCP_ONBOARDING_TARGET_KIND_UNSPECIFIED\",\n \"mcpServerId\": \"\",\n \"status\": \"MCP_ONBOARDING_TARGET_STATUS_SKIPPED\"\n },\n {\n \"displayName\": \"\",\n \"id\": \"\",\n \"kind\": \"MCP_ONBOARDING_TARGET_KIND_UNSPECIFIED\",\n \"mcpServerId\": \"\",\n \"status\": \"MCP_ONBOARDING_TARGET_STATUS_DONE\"\n }\n ],\n \"status\": \"ONBOARDING_STATUS_COMPLETE\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -39640,155 +68288,156 @@ ] }, { - "name": "{service_principal_id}", + "name": "request", "description": "", "item": [ { - "name": "credentials", - "description": "", - "item": [ + "id": "506cc20e-3d0f-4ef7-8e97-8baf34e7af1d", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get returns the tenant's access-request settings.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "settings", + "request" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ { - "id": "94f296b6-1b72-4f5b-b688-a047515d29e0", - "name": "List Credentials", - "request": { - "name": "List Credentials", - "description": { - "content": "ListCredentials lists client credentials for a service principal.", - "type": "text/plain" - }, + "id": "bd91984c-70a6-4845-afc2-9eafb4b8ba63", + "name": "Successful response", + "originalRequest": { "url": { "path": [ "api", "v1", - "service_principals", - ":service_principal_id", - "credentials" + "settings", + "request" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "service_principal_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], "method": "GET", - "body": {}, - "auth": null + "body": {} }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "b7ab20c4-43bb-4bb0-affd-6da4a12ba79f", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "service_principals", - ":service_principal_id", - "credentials" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "service_principal_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"requireDpop\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"servicePrincipalId\": \"\"\n },\n {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"requireDpop\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"servicePrincipalId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true + "body": "{\n \"requestSettings\": {\n \"maxBulkEntitlementSelection\": \"\",\n \"skipJustification\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "caaa9d0f-df18-404c-9721-f883fc8ad43d", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update modifies the tenant's access-request settings.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "settings", + "request" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"requestSettings\": {\n \"maxBulkEntitlementSelection\": \"\",\n \"skipJustification\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } } }, + "auth": null + }, + "response": [ { - "id": "5c6396df-a51e-4c08-8899-7bc7121897b5", - "name": "Create Credential", - "request": { - "name": "Create Credential", - "description": { - "content": "CreateCredential creates a new client credential for a service principal.", - "type": "text/plain" - }, + "id": "22563895-cecf-433d-b5a9-615b68c16b9b", + "name": "Successful response", + "originalRequest": { "url": { "path": [ "api", "v1", - "service_principals", - ":service_principal_id", - "credentials" + "settings", + "request" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "service_principal_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -39798,631 +68447,322 @@ { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"displayName\": \"\",\n \"expires\": \"\",\n \"requireDpop\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{\n \"requestSettings\": {\n \"maxBulkEntitlementSelection\": \"\",\n \"skipJustification\": \"\"\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - }, - "auth": null + } }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "9e07f9b0-bfaa-4d82-8a43-5eaf3892b97d", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "service_principals", - ":service_principal_id", - "credentials" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "service_principal_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"displayName\": \"\",\n \"expires\": \"\",\n \"requireDpop\": \"\",\n \"scopedRoles\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"clientSecret\": \"\",\n \"credential\": {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"requireDpop\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"servicePrincipalId\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "body": "{\n \"requestSettings\": {\n \"maxBulkEntitlementSelection\": \"\",\n \"skipJustification\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "session", + "description": "", + "item": [ + { + "id": "5ddecae9-5f7a-4456-b350-fe1ecfc45dda", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get retrieves the current session security settings for the tenant.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "settings", + "session" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ { - "name": "{id}", - "description": "", - "item": [ - { - "id": "2b363857-b5fd-45cc-b0b8-af8e38571c99", - "name": "Revoke Credential", - "request": { - "name": "Revoke Credential", - "description": { - "content": "RevokeCredential revokes (deletes) a client credential for a service principal.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "service_principals", - ":service_principal_id", - "credentials", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "service_principal_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "ab089b2c-cd6b-4037-83da-0e7eb56f5ad0", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "service_principals", - ":service_principal_id", - "credentials", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "service_principal_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } + "id": "7bf977ed-cd36-437e-8671-35a4b6aefe2e", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "settings", + "session" ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] }, - { - "id": "38ca91cd-dd8e-4204-b4c9-f1e11187faab", - "name": "Get Credential", - "request": { - "name": "Get Credential", + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { "description": { - "content": "GetCredential returns a single client credential for a service principal.", + "content": "Added as a part of security scheme: bearer", "type": "text/plain" }, - "url": { - "path": [ - "api", - "v1", - "service_principals", - ":service_principal_id", - "credentials", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "service_principal_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "7d04edf9-bc38-4783-beb3-d571a56332d5", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "service_principals", - ":service_principal_id", - "credentials", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "service_principal_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"credential\": {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"requireDpop\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"servicePrincipalId\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true + "key": "Authorization", + "value": "Bearer " } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"sessionSettings\": {\n \"clientIdApprovalRequestPolicyId\": \"\",\n \"clientIdMetadataDocumentPolicy\": \"CLIENT_ID_METADATA_DOCUMENT_POLICY_UNSPECIFIED\",\n \"connectorSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": null\n },\n \"externalClientSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": null\n },\n \"externalClientsEnabled\": \"\",\n \"maxSessionLength\": \"\",\n \"pccAdminSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": null\n },\n \"pccUserSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"ssoAdminSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": null\n },\n \"ssoUserSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "6d5c1282-f1d5-48e4-b756-89a285fe8bf1", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update modifies the session security settings for the tenant, such as session length and IP allowlists.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "settings", + "session" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"sessionSettings\": {\n \"clientIdApprovalRequestPolicyId\": \"\",\n \"clientIdMetadataDocumentPolicy\": \"CLIENT_ID_METADATA_DOCUMENT_POLICY_REQUESTABLE\",\n \"connectorSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": null\n },\n \"externalClientSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": null\n },\n \"externalClientsEnabled\": \"\",\n \"maxSessionLength\": \"\",\n \"pccAdminSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"pccUserSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"ssoAdminSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": null\n },\n \"ssoUserSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n }\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "a03a2a0d-aa1d-4e8a-b64b-f0a7e2e5352b", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "settings", + "session" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] }, - { - "id": "2560a3fe-c8a1-4298-b347-30fc05e2de58", - "name": "Update Credential", - "request": { - "name": "Update Credential", + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { "description": { - "content": "UpdateCredential updates a client credential for a service principal.", + "content": "Added as a part of security scheme: bearer", "type": "text/plain" }, - "url": { - "path": [ - "api", - "v1", - "service_principals", - ":service_principal_id", - "credentials", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "service_principal_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "PATCH", - "body": { - "mode": "raw", - "raw": "{\n \"credential\": {\n \"displayName\": \"\"\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "a59e1cb9-ed70-40c7-a9e2-062df38bd9f3", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "service_principals", - ":service_principal_id", - "credentials", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "service_principal_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "PATCH", - "body": { - "mode": "raw", - "raw": "{\n \"credential\": {\n \"displayName\": \"\"\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"credential\": {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"lastUsedAt\": \"\",\n \"requireDpop\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"servicePrincipalId\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"sessionSettings\": {\n \"clientIdApprovalRequestPolicyId\": \"\",\n \"clientIdMetadataDocumentPolicy\": \"CLIENT_ID_METADATA_DOCUMENT_POLICY_REQUESTABLE\",\n \"connectorSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": null\n },\n \"externalClientSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": null\n },\n \"externalClientsEnabled\": \"\",\n \"maxSessionLength\": \"\",\n \"pccAdminSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"pccUserSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"ssoAdminSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": null\n },\n \"ssoUserSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n }\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true } } - ] + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"sessionSettings\": {\n \"clientIdApprovalRequestPolicyId\": \"\",\n \"clientIdMetadataDocumentPolicy\": \"CLIENT_ID_METADATA_DOCUMENT_POLICY_ALLOWLIST_ONLY\",\n \"connectorSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"externalClientSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"externalClientsEnabled\": \"\",\n \"maxSessionLength\": \"\",\n \"pccAdminSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": null\n },\n \"pccUserSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"ssoAdminSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": null\n },\n \"ssoUserSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": null\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, { - "name": "trusts", + "name": "test-source-ip", "description": "", "item": [ { - "id": "f617960c-e379-4426-9ce0-593e59ed63e4", - "name": "List Trusts", + "id": "e511fbfe-6e01-4c34-b677-7a83ff1b4789", + "name": "Test Source Ip", "request": { - "name": "List Trusts", + "name": "Test Source Ip", "description": { - "content": "ListTrusts lists trusts for a service principal.", + "content": "TestSourceIP checks whether a given IP address would be allowed by the specified CIDR allowlist rules.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "service_principals", - ":service_principal_id", - "trusts" + "settings", + "session", + "test-source-ip" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "service_principal_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"allowCidr\": [\n \"\",\n \"\"\n ],\n \"sourceIp\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "71e72818-47fa-4b46-806f-1d77761df014", + "id": "72d38ec9-76d3-49ee-911b-12047f28aeae", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "service_principals", - ":service_principal_id", - "trusts" + "settings", + "session", + "test-source-ip" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "service_principal_id" - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -40436,8 +68776,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"allowCidr\": [\n \"\",\n \"\"\n ],\n \"sourceIp\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -40447,7 +68796,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"conditionExpression\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": [\n \"\",\n \"\"\n ],\n \"providerId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"servicePrincipalId\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"conditionExpression\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": [\n \"\",\n \"\"\n ],\n \"providerId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"servicePrincipalId\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"allowed\": \"\",\n \"checkedIp\": \"\",\n \"details\": {\n \"code\": \"\",\n \"details\": null,\n \"message\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -40456,40 +68805,162 @@ "protocolProfileBehavior": { "disableBodyPruning": true } + } + ] + } + ] + }, + { + "name": "sso", + "description": "", + "item": [ + { + "id": "dbcf8739-6b92-4ca8-ada8-5b863dc60be2", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get returns the tenant's SSO provider settings.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "settings", + "sso" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ { - "id": "406326cb-7af5-4990-a74d-4d049396131d", - "name": "Create Trust", - "request": { - "name": "Create Trust", - "description": { - "content": "CreateTrust creates a trust policy for a service principal.\n Validates the CEL condition_expression at creation time.", - "type": "text/plain" + "id": "de3c26de-5161-452c-aad3-99e0379ed9b4", + "name": "SSOSettingsServiceGetResponse returns the tenant's SSO provider settings.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "settings", + "sso" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"settings\": {\n \"createdAt\": \"\",\n \"defaultAssertionLifetime\": \"\",\n \"defaultIdTokenSignedResponseAlg\": \"OIDC_SIGNING_ALGORITHM_ES256\",\n \"defaultSubjectType\": \"SSO_SUBJECT_TYPE_PUBLIC\",\n \"enabled\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "eb7d0a21-cc05-457f-ba5d-e6fa5353dde5", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update changes the tenant's SSO provider settings. Supply the settings\n object and an update mask listing the fields to change; only masked fields\n are applied. Editable paths: enabled, default_subject_type,\n default_assertion_lifetime, default_id_token_signed_response_alg.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "settings", + "sso" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"settings\": {\n \"createdAt\": \"\",\n \"defaultAssertionLifetime\": \"\",\n \"defaultIdTokenSignedResponseAlg\": \"OIDC_SIGNING_ALGORITHM_ES256\",\n \"defaultSubjectType\": \"SSO_SUBJECT_TYPE_PUBLIC\",\n \"enabled\": \"\",\n \"updatedAt\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "fadc8673-6274-4bae-968b-85562f837854", + "name": "SSOSettingsServiceUpdateResponse returns the updated settings.", + "originalRequest": { "url": { "path": [ "api", "v1", - "service_principals", - ":service_principal_id", - "trusts" + "settings", + "sso" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "service_principal_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -40499,56 +68970,141 @@ { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"conditionExpression\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": [\n \"\",\n \"\"\n ],\n \"providerId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ]\n}", + "raw": "{\n \"settings\": {\n \"createdAt\": \"\",\n \"defaultAssertionLifetime\": \"\",\n \"defaultIdTokenSignedResponseAlg\": \"OIDC_SIGNING_ALGORITHM_ES256\",\n \"defaultSubjectType\": \"SSO_SUBJECT_TYPE_PUBLIC\",\n \"enabled\": \"\",\n \"updatedAt\": \"\"\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"settings\": {\n \"createdAt\": \"\",\n \"defaultAssertionLifetime\": \"\",\n \"defaultIdTokenSignedResponseAlg\": \"OIDC_SIGNING_ALGORITHM_UNSPECIFIED\",\n \"defaultSubjectType\": \"SSO_SUBJECT_TYPE_COMPATIBILITY\",\n \"enabled\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "history", + "description": "", + "item": [ + { + "id": "b43c31c5-4dc9-4774-b049-a63aa01bbb35", + "name": "List History", + "request": { + "name": "List History", + "description": { + "content": "ListHistory returns the SSO settings change history, newest first.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "settings", + "sso", + "history" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "953a02b8-bf98-4702-8d60-85c92b4380e8", - "name": "Successful response", + "id": "96e90b62-fa19-44c0-97ab-192b23ccd708", + "name": "SSOSettingsServiceListHistoryResponse returns SSO settings history entries.", "originalRequest": { "url": { "path": [ "api", "v1", - "service_principals", - ":service_principal_id", - "trusts" + "settings", + "sso", + "history" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [ + "query": [ { "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" }, - "type": "any", - "value": "", - "key": "service_principal_id" + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" } - ] + ], + "variable": [] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -40562,17 +69118,8 @@ "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"conditionExpression\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": [\n \"\",\n \"\"\n ],\n \"providerId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -40582,7 +69129,7 @@ "value": "application/json" } ], - "body": "{\n \"trust\": {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"conditionExpression\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": [\n \"\",\n \"\"\n ],\n \"providerId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"servicePrincipalId\": \"\",\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"list\": [\n {\n \"metadata\": {\n \"actor\": {\n \"kind\": \"ACTOR_KIND_API\",\n \"userId\": \"\"\n },\n \"annotations\": null,\n \"changeKind\": \"CHANGE_KIND_CREATE\",\n \"createdAt\": \"\",\n \"id\": \"\",\n \"syslogEventId\": \"\",\n \"traceId\": \"\"\n },\n \"snapshot\": {\n \"createdAt\": \"\",\n \"defaultAssertionLifetime\": \"\",\n \"defaultIdTokenSignedResponseAlg\": \"OIDC_SIGNING_ALGORITHM_UNSPECIFIED\",\n \"defaultSubjectType\": \"SSO_SUBJECT_TYPE_UNSPECIFIED\",\n \"enabled\": \"\",\n \"updatedAt\": \"\"\n }\n },\n {\n \"metadata\": {\n \"actor\": {\n \"kind\": \"ACTOR_KIND_SUPPORT\",\n \"userId\": \"\"\n },\n \"annotations\": [\n {\n \"displayLabel\": \"\",\n \"displayUrl\": \"\",\n \"displayValue\": \"\",\n \"key\": \"\",\n \"kind\": \"ANNOTATION_KIND_REASON\",\n \"rawValue\": \"\"\n },\n {\n \"displayLabel\": \"\",\n \"displayUrl\": \"\",\n \"displayValue\": \"\",\n \"key\": \"\",\n \"kind\": \"ANNOTATION_KIND_WORKFLOW\",\n \"rawValue\": \"\"\n }\n ],\n \"changeKind\": \"CHANGE_KIND_HARD_DELETE\",\n \"createdAt\": \"\",\n \"id\": \"\",\n \"syslogEventId\": \"\",\n \"traceId\": \"\"\n },\n \"snapshot\": {\n \"createdAt\": \"\",\n \"defaultAssertionLifetime\": \"\",\n \"defaultIdTokenSignedResponseAlg\": \"OIDC_SIGNING_ALGORITHM_UNSPECIFIED\",\n \"defaultSubjectType\": \"SSO_SUBJECT_TYPE_PAIRWISE\",\n \"enabled\": \"\",\n \"updatedAt\": \"\"\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -40591,652 +69138,523 @@ "protocolProfileBehavior": { "disableBodyPruning": true } + } + ] + } + ] + } + ] + }, + { + "name": "sign-in-policies", + "description": "", + "item": [ + { + "id": "85f569c0-3056-46e3-ad55-7d5624bd1325", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List all sign-in policies in your tenant, one page at a time.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "sign-in-policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" }, { - "name": "{client_id}", - "description": "", - "item": [ + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "9b727ecd-b436-4649-9107-c8ecfbbb9f6d", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "sign-in-policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ { - "id": "5e050ac4-d805-466f-86de-1f36ca44fd77", - "name": "Delete Trust", - "request": { - "name": "Delete Trust", - "description": { - "content": "DeleteTrust deletes a trust for a service principal.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "service_principals", - ":service_principal_id", - "trusts", - ":client_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "service_principal_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "client_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null + "disabled": false, + "description": { + "content": "", + "type": "text/plain" }, - "response": [ - { - "id": "e2676be6-4f8b-454d-bcda-03851ef45323", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "service_principals", - ":service_principal_id", - "trusts", - ":client_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "service_principal_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "client_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "key": "page_size", + "value": "" }, { - "id": "1cebe320-bb1b-4f6d-a594-cb355791e575", - "name": "Get Trust", - "request": { - "name": "Get Trust", - "description": { - "content": "GetTrust returns a trust by ID for a service principal.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "service_principals", - ":service_principal_id", - "trusts", - ":client_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "service_principal_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "client_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null + "disabled": false, + "description": { + "content": "", + "type": "text/plain" }, - "response": [ + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"allowedMfaTypes\": [\n \"CREDENTIAL_TYPE_DELEGATED_MICROSOFT\",\n \"CREDENTIAL_TYPE_UPSTREAM_IDP\"\n ],\n \"allowedPrimaryTypes\": null,\n \"createdAt\": \"\",\n \"defaultOutcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_PHRH\"\n },\n \"challengeRequired\": {\n \"types\": [\n \"CREDENTIAL_TYPE_TOTP\",\n \"CREDENTIAL_TYPE_TOTP\"\n ]\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_PHR\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_RECOVERY_CODE\",\n \"CREDENTIAL_TYPE_DELEGATED_GOOGLE\"\n ]\n }\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"isBuiltin\": \"\",\n \"priority\": \"\",\n \"rules\": null,\n \"updatedAt\": \"\"\n },\n {\n \"allowedMfaTypes\": [\n \"CREDENTIAL_TYPE_PASSKEY\",\n \"CREDENTIAL_TYPE_DELEGATED_GOOGLE\"\n ],\n \"allowedPrimaryTypes\": [\n \"CREDENTIAL_TYPE_EMAIL_OTP\",\n \"CREDENTIAL_TYPE_RECOVERY_CODE\"\n ],\n \"createdAt\": \"\",\n \"defaultOutcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_PHR\"\n },\n \"challengeRequired\": {\n \"types\": [\n \"CREDENTIAL_TYPE_DELEGATED_MICROSOFT\",\n \"CREDENTIAL_TYPE_EMAIL_OTP\"\n ]\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_MULTI_FACTOR\",\n \"maxAgeSeconds\": \"\",\n \"types\": null\n }\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"isBuiltin\": \"\",\n \"priority\": \"\",\n \"rules\": [\n {\n \"description\": \"\",\n \"id\": \"\",\n \"matchCel\": \"\",\n \"mode\": \"POLICY_RULE_MODE_OBSERVE\",\n \"outcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_MULTI_FACTOR\"\n },\n \"challengeRequired\": {\n \"types\": [\n \"CREDENTIAL_TYPE_DELEGATED_MICROSOFT\",\n \"CREDENTIAL_TYPE_RECOVERY_CODE\"\n ]\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": [\n \"CREDENTIAL_TYPE_TOTP\",\n \"CREDENTIAL_TYPE_RECOVERY_CODE\"\n ]\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_NONE\",\n \"maxAgeSeconds\": \"\",\n \"types\": null\n }\n }\n },\n {\n \"description\": \"\",\n \"id\": \"\",\n \"matchCel\": \"\",\n \"mode\": \"POLICY_RULE_MODE_DISABLED\",\n \"outcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_SINGLE_FACTOR\"\n },\n \"challengeRequired\": {\n \"types\": [\n \"CREDENTIAL_TYPE_PASSWORD\",\n \"CREDENTIAL_TYPE_PASSKEY\"\n ]\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": [\n \"CREDENTIAL_TYPE_RECOVERY_CODE\",\n \"CREDENTIAL_TYPE_DELEGATED_MICROSOFT\"\n ]\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_UNSPECIFIED\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_RECOVERY_CODE\",\n \"CREDENTIAL_TYPE_PASSKEY\"\n ]\n }\n }\n }\n ],\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "a2caad17-30ca-48e3-af37-73f0ac0ba304", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create a sign-in policy.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "sign-in-policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"allowedMfaTypes\": [\n \"CREDENTIAL_TYPE_RECOVERY_CODE\",\n \"CREDENTIAL_TYPE_RECOVERY_CODE\"\n ],\n \"allowedPrimaryTypes\": null,\n \"defaultOutcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_SINGLE_FACTOR\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": [\n \"CREDENTIAL_TYPE_PASSWORD\",\n \"CREDENTIAL_TYPE_TOTP\"\n ]\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_SINGLE_FACTOR\",\n \"maxAgeSeconds\": \"\",\n \"types\": null\n }\n },\n \"priority\": \"\",\n \"rules\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "68dceb7f-35cb-4224-8739-0afe5cccfd11", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "sign-in-policies" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"allowedMfaTypes\": [\n \"CREDENTIAL_TYPE_RECOVERY_CODE\",\n \"CREDENTIAL_TYPE_RECOVERY_CODE\"\n ],\n \"allowedPrimaryTypes\": null,\n \"defaultOutcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_SINGLE_FACTOR\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": [\n \"CREDENTIAL_TYPE_PASSWORD\",\n \"CREDENTIAL_TYPE_TOTP\"\n ]\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_SINGLE_FACTOR\",\n \"maxAgeSeconds\": \"\",\n \"types\": null\n }\n },\n \"priority\": \"\",\n \"rules\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"signInPolicy\": {\n \"allowedMfaTypes\": null,\n \"allowedPrimaryTypes\": null,\n \"createdAt\": \"\",\n \"defaultOutcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_NONE\"\n },\n \"challengeRequired\": {\n \"types\": [\n \"CREDENTIAL_TYPE_TOTP\",\n \"CREDENTIAL_TYPE_TOTP\"\n ]\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": [\n \"CREDENTIAL_TYPE_EMAIL_OTP\",\n \"CREDENTIAL_TYPE_EMAIL_OTP\"\n ]\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_NONE\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_TOTP\",\n \"CREDENTIAL_TYPE_UPSTREAM_IDP\"\n ]\n }\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"isBuiltin\": \"\",\n \"priority\": \"\",\n \"rules\": [\n {\n \"description\": \"\",\n \"id\": \"\",\n \"matchCel\": \"\",\n \"mode\": \"POLICY_RULE_MODE_UNSPECIFIED\",\n \"outcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_PHRH\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_SINGLE_FACTOR\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_EMAIL_OTP\",\n \"CREDENTIAL_TYPE_UNSPECIFIED\"\n ]\n }\n }\n },\n {\n \"description\": \"\",\n \"id\": \"\",\n \"matchCel\": \"\",\n \"mode\": \"POLICY_RULE_MODE_OBSERVE\",\n \"outcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_PHR\"\n },\n \"challengeRequired\": {\n \"types\": [\n \"CREDENTIAL_TYPE_UPSTREAM_IDP\",\n \"CREDENTIAL_TYPE_PASSWORD\"\n ]\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_MULTI_FACTOR\",\n \"maxAgeSeconds\": \"\",\n \"types\": null\n }\n }\n }\n ],\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "e81f5426-d76c-405c-a0aa-3b8637290ee6", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete a sign-in policy by ID.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "sign-in-policies", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "e96c2984-5caf-4c01-8460-0f7ddc7b5d5d", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "sign-in-policies", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ { - "id": "ae4756e7-88a0-459d-82eb-5b80d11e2ef6", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "service_principals", - ":service_principal_id", - "trusts", - ":client_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "service_principal_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "client_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"trust\": {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"conditionExpression\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": [\n \"\",\n \"\"\n ],\n \"providerId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"servicePrincipalId\": \"\",\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "type": "any", + "value": "", + "key": "id" } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, - { - "id": "d1346740-061e-4a9c-88be-435ee9bfc938", - "name": "Update Trust", - "request": { - "name": "Update Trust", + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { "description": { - "content": "UpdateTrust updates a trust's mutable fields. The provider_id is immutable.", + "content": "Added as a part of security scheme: bearer", "type": "text/plain" }, - "url": { - "path": [ - "api", - "v1", - "service_principals", - ":service_principal_id", - "trusts", - ":client_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "service_principal_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "client_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "PATCH", - "body": { - "mode": "raw", - "raw": "{\n \"trust\": {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"conditionExpression\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": [\n \"\",\n \"\"\n ],\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "af1691e3-9f87-4385-88c1-036a4f2d67d0", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "service_principals", - ":service_principal_id", - "trusts", - ":client_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "service_principal_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "client_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "PATCH", - "body": { - "mode": "raw", - "raw": "{\n \"trust\": {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"conditionExpression\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": [\n \"\",\n \"\"\n ],\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"trust\": {\n \"allowSourceCidrs\": [\n \"\",\n \"\"\n ],\n \"clientId\": \"\",\n \"conditionExpression\": \"\",\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"passthroughClaims\": [\n \"\",\n \"\"\n ],\n \"providerId\": \"\",\n \"scopedRoleIds\": [\n \"\",\n \"\"\n ],\n \"servicePrincipalId\": \"\",\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true } - }, + } + }, + "status": "OK", + "code": 200, + "header": [ { - "name": "test", - "description": "", - "item": [ + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "8b4018ca-4680-4371-82a4-0694541eebea", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get a sign-in policy by ID.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "sign-in-policies", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "cfb2484d-fdf9-4af6-90b4-c4f1d08a2504", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "sign-in-policies", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ { - "id": "00bbdb2c-aa37-43c2-aa09-72ef5385c198", - "name": "Test Token", - "request": { - "name": "Test Token", - "description": { - "content": "TestToken validates a JWT against a specific trust's configuration without\n issuing an access token. Returns per-step validation results for debugging.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "service_principals", - ":service_principal_id", - "trusts", - ":client_id", - "test" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "service_principal_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "client_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"sourceIp\": \"\",\n \"subjectToken\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" }, - "response": [ - { - "id": "8b1b1150-36bb-4405-be31-971278ea93ea", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "service_principals", - ":service_principal_id", - "trusts", - ":client_id", - "test" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "service_principal_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "client_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"sourceIp\": \"\",\n \"subjectToken\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"audienceValidation\": {\n \"actual\": \"\",\n \"detail\": \"\",\n \"expected\": \"\",\n \"passed\": \"\",\n \"skipped\": \"\",\n \"stepName\": \"\"\n },\n \"celEvaluation\": {\n \"actual\": \"\",\n \"detail\": \"\",\n \"expected\": \"\",\n \"passed\": \"\",\n \"skipped\": \"\",\n \"stepName\": \"\"\n },\n \"cidrCheck\": {\n \"actual\": \"\",\n \"detail\": \"\",\n \"expected\": \"\",\n \"passed\": \"\",\n \"skipped\": \"\",\n \"stepName\": \"\"\n },\n \"decodedClaimsJson\": \"\",\n \"issuerMatch\": {\n \"actual\": \"\",\n \"detail\": \"\",\n \"expected\": \"\",\n \"passed\": \"\",\n \"skipped\": \"\",\n \"stepName\": \"\"\n },\n \"jwtDecode\": {\n \"actual\": \"\",\n \"detail\": \"\",\n \"expected\": \"\",\n \"passed\": \"\",\n \"skipped\": \"\",\n \"stepName\": \"\"\n },\n \"overallResult\": \"\",\n \"signatureValidation\": {\n \"actual\": \"\",\n \"detail\": \"\",\n \"expected\": \"\",\n \"passed\": \"\",\n \"skipped\": \"\",\n \"stepName\": \"\"\n },\n \"subjectValidation\": {\n \"actual\": \"\",\n \"detail\": \"\",\n \"expected\": \"\",\n \"passed\": \"\",\n \"skipped\": \"\",\n \"stepName\": \"\"\n },\n \"tokenFreshness\": {\n \"actual\": \"\",\n \"detail\": \"\",\n \"expected\": \"\",\n \"passed\": \"\",\n \"skipped\": \"\",\n \"stepName\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "type": "any", + "value": "", + "key": "id" } ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" } - ] + ], + "body": "{\n \"signInPolicy\": {\n \"allowedMfaTypes\": null,\n \"allowedPrimaryTypes\": [\n \"CREDENTIAL_TYPE_UPSTREAM_IDP\",\n \"CREDENTIAL_TYPE_TOTP\"\n ],\n \"createdAt\": \"\",\n \"defaultOutcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_PHRH\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_UNSPECIFIED\",\n \"maxAgeSeconds\": \"\",\n \"types\": null\n }\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"isBuiltin\": \"\",\n \"priority\": \"\",\n \"rules\": null,\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] - } - ] - }, - { - "name": "bindings", - "description": "", - "item": [ + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, { - "id": "da0778b5-e5b1-45a1-af67-edac50ee5327", - "name": "Add Binding", + "id": "6c22e973-41ba-48b3-bbbd-99092dccc1e5", + "name": "Update", "request": { - "name": "Add Binding", + "name": "Update", "description": { - "content": "AddBinding links a tenant-scoped subject (a function today; future kinds\n tomorrow) to a service principal. Outbound c1-api calls made on the\n subject's behalf can then be minted as user: via\n an RFC 8693 token-exchange (act-as) flow. Many-aware: a subject may\n hold multiple bindings at the storage layer. Idempotent on\n (subject, service_principal_id) — adds the row if missing,\n resurrects it if soft-deleted, no-op if already active. Consumers\n that need 0-or-1 cardinality (Functions today) enforce it\n client-side via ListBindings + DeleteBinding. Requires the\n SERVICE_PRINCIPALS feature flag.", + "content": "Update a sign-in policy. Supply the policy object and an update mask\n listing the fields to change; omitted fields are left as-is.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "service_principals", - "bindings" + "sign-in-policies", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -41251,7 +69669,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"servicePrincipalId\": \"\",\n \"subject\": {\n \"functionId\": \"\"\n }\n}", + "raw": "{\n \"signInPolicy\": {\n \"allowedMfaTypes\": [\n \"CREDENTIAL_TYPE_DELEGATED_MICROSOFT\",\n \"CREDENTIAL_TYPE_DELEGATED_MICROSOFT\"\n ],\n \"allowedPrimaryTypes\": null,\n \"defaultOutcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_NONE\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_PHR\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_DELEGATED_MICROSOFT\",\n \"CREDENTIAL_TYPE_UNSPECIFIED\"\n ]\n }\n },\n \"displayName\": \"\",\n \"priority\": \"\",\n \"rules\": null\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -41263,21 +69681,32 @@ }, "response": [ { - "id": "6545143e-dd4f-4528-a7e9-d3565c4b232d", + "id": "30468d8f-4f1f-43cb-b55a-dfb38d3f5a74", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "service_principals", - "bindings" + "sign-in-policies", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] }, "header": [ { @@ -41300,7 +69729,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"servicePrincipalId\": \"\",\n \"subject\": {\n \"functionId\": \"\"\n }\n}", + "raw": "{\n \"signInPolicy\": {\n \"allowedMfaTypes\": [\n \"CREDENTIAL_TYPE_DELEGATED_MICROSOFT\",\n \"CREDENTIAL_TYPE_DELEGATED_MICROSOFT\"\n ],\n \"allowedPrimaryTypes\": null,\n \"defaultOutcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_NONE\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_PHR\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_DELEGATED_MICROSOFT\",\n \"CREDENTIAL_TYPE_UNSPECIFIED\"\n ]\n }\n },\n \"displayName\": \"\",\n \"priority\": \"\",\n \"rules\": null\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -41317,7 +69746,7 @@ "value": "application/json" } ], - "body": "{}", + "body": "{\n \"signInPolicy\": {\n \"allowedMfaTypes\": null,\n \"allowedPrimaryTypes\": [\n \"CREDENTIAL_TYPE_UPSTREAM_IDP\",\n \"CREDENTIAL_TYPE_EMAIL_OTP\"\n ],\n \"createdAt\": \"\",\n \"defaultOutcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_SINGLE_FACTOR\"\n },\n \"challengeRequired\": {\n \"types\": [\n \"CREDENTIAL_TYPE_PASSKEY\",\n \"CREDENTIAL_TYPE_TOTP\"\n ]\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_PHR\",\n \"maxAgeSeconds\": \"\",\n \"types\": null\n }\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"isBuiltin\": \"\",\n \"priority\": \"\",\n \"rules\": [\n {\n \"description\": \"\",\n \"id\": \"\",\n \"matchCel\": \"\",\n \"mode\": \"POLICY_RULE_MODE_UNSPECIFIED\",\n \"outcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_MULTI_FACTOR\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": [\n \"CREDENTIAL_TYPE_EMAIL_OTP\",\n \"CREDENTIAL_TYPE_DELEGATED_GOOGLE\"\n ]\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_PHR\",\n \"maxAgeSeconds\": \"\",\n \"types\": [\n \"CREDENTIAL_TYPE_PASSKEY\",\n \"CREDENTIAL_TYPE_UNSPECIFIED\"\n ]\n }\n }\n },\n {\n \"description\": \"\",\n \"id\": \"\",\n \"matchCel\": \"\",\n \"mode\": \"POLICY_RULE_MODE_DISABLED\",\n \"outcome\": {\n \"allow\": {\n \"floorLevel\": \"AUTH_LEVEL_NONE\"\n },\n \"challengeRequired\": {\n \"types\": null\n },\n \"deny\": {\n \"reasonAdmin\": \"\",\n \"reasonUser\": \"\"\n },\n \"enrollmentRequired\": {\n \"credentialTypes\": null\n },\n \"stepUpRequired\": {\n \"level\": \"AUTH_LEVEL_SINGLE_FACTOR\",\n \"maxAgeSeconds\": \"\",\n \"types\": null\n }\n }\n }\n ],\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -41326,308 +69755,339 @@ "protocolProfileBehavior": { "disableBodyPruning": true } + } + ] + } + ] + }, + { + "name": "ssf-receiver-streams", + "description": "", + "item": [ + { + "id": "50e49cfd-be28-4c7a-8e9e-08268614350a", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List returns a paginated list of all SSF receiver streams configured for the tenant.", + "type": "text/plain" }, - { - "name": "delete", - "description": "", - "item": [ + "url": { + "path": [ + "api", + "v1", + "ssf-receiver-streams" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ { - "id": "81a6acf3-6351-4e51-8e71-a65481fec9e0", - "name": "Delete Binding", - "request": { - "name": "Delete Binding", - "description": { - "content": "DeleteBinding removes a single (subject, service_principal_id) binding\n row. At-most-one delete — does not touch other bindings the subject\n may hold against different service principals. Idempotent — succeeds\n even if no matching row exists.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "service_principals", - "bindings", - "delete" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "13afbc0a-a1da-446c-8a37-2868916ff443", + "name": "SSFReceiverStreamServiceListResponse contains a page of SSF receiver streams.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "ssf-receiver-streams" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"servicePrincipalId\": \"\",\n \"subject\": {\n \"functionId\": \"\"\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } + "key": "page_size", + "value": "" }, - "auth": null - }, - "response": [ { - "id": "9818fa30-d09e-4d1c-9ec8-81be8c3f8047", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "service_principals", - "bindings", - "delete" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"servicePrincipalId\": \"\",\n \"subject\": {\n \"functionId\": \"\"\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "disabled": false, + "description": { + "content": "", + "type": "text/plain" }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "page_token", + "value": "" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" } - ] + ], + "body": "{\n \"list\": [\n {\n \"accountDisabledAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"createdAt\": \"\",\n \"credentialChangeAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"credentialCompromiseAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"deletedAt\": \"\",\n \"deliveryMethod\": \"SSF_DELIVERY_METHOD_UNSPECIFIED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"eventTypesEnabled\": [\n \"\",\n \"\"\n ],\n \"expectedAudience\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"jwksUrl\": \"\",\n \"lastErrorAt\": \"\",\n \"lastErrorMessage\": \"\",\n \"lastVerifiedAt\": \"\",\n \"outboundAuthBearer\": {\n \"token\": \"\"\n },\n \"outboundAuthOauth2\": {\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ],\n \"tokenUrl\": \"\"\n },\n \"pollEndpointUrl\": \"\",\n \"pollInterval\": \"\",\n \"pushAuthToken\": \"\",\n \"pushEndpointUrl\": \"\",\n \"sessionRevokedAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"updatedAt\": \"\"\n },\n {\n \"accountDisabledAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"createdAt\": \"\",\n \"credentialChangeAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"credentialCompromiseAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"deletedAt\": \"\",\n \"deliveryMethod\": \"SSF_DELIVERY_METHOD_UNSPECIFIED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"eventTypesEnabled\": null,\n \"expectedAudience\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"jwksUrl\": \"\",\n \"lastErrorAt\": \"\",\n \"lastErrorMessage\": \"\",\n \"lastVerifiedAt\": \"\",\n \"outboundAuthBearer\": {\n \"token\": \"\"\n },\n \"outboundAuthOauth2\": {\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ],\n \"tokenUrl\": \"\"\n },\n \"pollEndpointUrl\": \"\",\n \"pollInterval\": \"\",\n \"pushAuthToken\": \"\",\n \"pushEndpointUrl\": \"\",\n \"sessionRevokedAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "53b2cb37-33f6-4e02-9077-19498dcf67be", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create registers a new SSF receiver stream with the specified configuration and returns the created stream along with the push auth token (if push delivery).", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "ssf-receiver-streams" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"issuerUrl\": \"\",\n \"accountDisabledAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"credentialChangeAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"credentialCompromiseAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"deliveryMethod\": \"SSF_DELIVERY_METHOD_PUSH\",\n \"description\": \"\",\n \"enabled\": \"\",\n \"expectedAudience\": \"\",\n \"jwksUrl\": \"\",\n \"pollEndpointUrl\": \"\",\n \"pollInterval\": \"\",\n \"sessionRevokedAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } }, + "auth": null + }, + "response": [ { - "name": "list", - "description": "", - "item": [ - { - "id": "82c47a5e-9754-42e6-ae3e-7238d0dd4f24", - "name": "List Bindings", - "request": { - "name": "List Bindings", + "id": "c510efb8-359c-494b-8f37-7dffc89a832c", + "name": "SSFReceiverStreamServiceCreateResponse returns the created stream and the push auth token in plaintext.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "ssf-receiver-streams" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { "description": { - "content": "ListBindings returns every active binding held by a subject. Empty\n list when the subject is unbound. The response is unordered.", + "content": "Added as a part of security scheme: bearer", "type": "text/plain" }, - "url": { - "path": [ - "api", - "v1", - "service_principals", - "bindings", - "list" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"subject\": {\n \"functionId\": \"\"\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "80f4853d-dca5-4e69-8440-280b435250b7", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "service_principals", - "bindings", - "list" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"subject\": {\n \"functionId\": \"\"\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"bindings\": [\n {\n \"createdAt\": \"\",\n \"servicePrincipalId\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"createdAt\": \"\",\n \"servicePrincipalId\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"issuerUrl\": \"\",\n \"accountDisabledAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"credentialChangeAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"credentialCompromiseAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"deliveryMethod\": \"SSF_DELIVERY_METHOD_PUSH\",\n \"description\": \"\",\n \"enabled\": \"\",\n \"expectedAudience\": \"\",\n \"jwksUrl\": \"\",\n \"pollEndpointUrl\": \"\",\n \"pollInterval\": \"\",\n \"sessionRevokedAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true } } - ] + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"pushAuthTokenPlaintext\": \"\",\n \"ssfReceiverStream\": {\n \"accountDisabledAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"createdAt\": \"\",\n \"credentialChangeAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"credentialCompromiseAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"deletedAt\": \"\",\n \"deliveryMethod\": \"SSF_DELIVERY_METHOD_POLL\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"eventTypesEnabled\": null,\n \"expectedAudience\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"jwksUrl\": \"\",\n \"lastErrorAt\": \"\",\n \"lastErrorMessage\": \"\",\n \"lastVerifiedAt\": \"\",\n \"outboundAuthBearer\": {\n \"token\": \"\"\n },\n \"outboundAuthOauth2\": {\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ],\n \"tokenUrl\": \"\"\n },\n \"pollEndpointUrl\": \"\",\n \"pollInterval\": \"\",\n \"pushAuthToken\": \"\",\n \"pushEndpointUrl\": \"\",\n \"sessionRevokedAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] - } - ] - }, - { - "name": "settings", - "description": "", - "item": [ + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, { - "name": "aws-external-id", + "name": "{id}", "description": "", "item": [ { - "id": "3ea9eba9-2dbf-4de2-95f2-4eec4b7d85be", - "name": "Get", + "id": "2422feb5-5904-4ca4-b61a-1d46fe7e54ac", + "name": "Delete", "request": { - "name": "Get", + "name": "Delete", "description": { - "content": "Get retrieves the AWS external ID for the tenant, used in IAM role trust policies for AWS connectors.", + "content": "Delete removes an SSF receiver stream and stops receiving events from the associated transmitter.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "settings", - "aws-external-id" + "ssf-receiver-streams", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "7ea5b3ea-dc48-473b-97c5-a9b4f3667fb0", - "name": "Successful response", + "id": "aa4790c8-5cf8-454e-8fca-1135bd589399", + "name": "SSFReceiverStreamServiceDeleteResponse is empty on success.", "originalRequest": { "url": { "path": [ "api", "v1", - "settings", - "aws-external-id" + "ssf-receiver-streams", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -41641,8 +70101,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -41652,7 +70121,7 @@ "value": "application/json" } ], - "body": "{\n \"awsExternalId\": {\n \"externalId\": \"\"\n }\n}", + "body": "{}", "cookie": [], "_postman_previewlanguage": "json" } @@ -41661,34 +70130,39 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "contacts", - "description": "", - "item": [ + }, { - "id": "0f04bf86-56cd-46ad-8a30-43e627a339de", - "name": "Get Contacts", + "id": "602ff738-ed9d-43c8-a5db-7e94c9b55a31", + "name": "Get", "request": { - "name": "Get Contacts", + "name": "Get", "description": { - "content": "Invokes the c1.api.settings.v1.ContactsService.GetContacts method.", + "content": "Get retrieves a single SSF receiver stream by its ID.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "settings", - "contacts" + "ssf-receiver-streams", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -41702,21 +70176,32 @@ }, "response": [ { - "id": "074b6275-ae60-46e9-b3bf-e42a33fc79eb", - "name": "Successful response", + "id": "ac217c3e-8bf6-4fe6-84b2-9f694cc5f09e", + "name": "SSFReceiverStreamServiceGetResponse contains the requested SSF receiver stream.", "originalRequest": { "url": { "path": [ "api", "v1", - "settings", - "contacts" + "ssf-receiver-streams", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] }, "header": [ { @@ -41743,7 +70228,7 @@ "value": "application/json" } ], - "body": "{\n \"contacts\": {\n \"billingEmails\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"operationsEmails\": [\n \"\",\n \"\"\n ],\n \"securityEmails\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"ssfReceiverStream\": {\n \"accountDisabledAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"createdAt\": \"\",\n \"credentialChangeAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"credentialCompromiseAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"deletedAt\": \"\",\n \"deliveryMethod\": \"SSF_DELIVERY_METHOD_POLL\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"eventTypesEnabled\": [\n \"\",\n \"\"\n ],\n \"expectedAudience\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"jwksUrl\": \"\",\n \"lastErrorAt\": \"\",\n \"lastErrorMessage\": \"\",\n \"lastVerifiedAt\": \"\",\n \"outboundAuthBearer\": {\n \"token\": \"\"\n },\n \"outboundAuthOauth2\": {\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"scopes\": null,\n \"tokenUrl\": \"\"\n },\n \"pollEndpointUrl\": \"\",\n \"pollInterval\": \"\",\n \"pushAuthToken\": \"\",\n \"pushEndpointUrl\": \"\",\n \"sessionRevokedAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -41754,26 +70239,37 @@ } }, { - "id": "12a826b1-6ba2-4d05-961b-d25b19cef8a3", - "name": "Update Contacts", + "id": "dc464a9b-8de2-4e4c-9fdb-1e89c8d90755", + "name": "Update", "request": { - "name": "Update Contacts", + "name": "Update", "description": { - "content": "Invokes the c1.api.settings.v1.ContactsService.UpdateContacts method.", + "content": "Update modifies an existing SSF receiver stream's configuration. Only fields specified in the update mask are changed.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "settings", - "contacts" + "ssf-receiver-streams", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -41788,7 +70284,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"contacts\": {\n \"billingEmails\": [\n \"\",\n \"\"\n ],\n \"operationsEmails\": [\n \"\",\n \"\"\n ],\n \"securityEmails\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"ssfReceiverStream\": {\n \"accountDisabledAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"credentialChangeAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"credentialCompromiseAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"deliveryMethod\": \"SSF_DELIVERY_METHOD_UNSPECIFIED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"eventTypesEnabled\": null,\n \"expectedAudience\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"jwksUrl\": \"\",\n \"lastErrorAt\": \"\",\n \"lastErrorMessage\": \"\",\n \"lastVerifiedAt\": \"\",\n \"outboundAuthBearer\": {\n \"token\": \"\"\n },\n \"outboundAuthOauth2\": {\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ],\n \"tokenUrl\": \"\"\n },\n \"pollEndpointUrl\": \"\",\n \"pollInterval\": \"\",\n \"pushAuthToken\": \"\",\n \"sessionRevokedAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\"\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -41800,21 +70296,32 @@ }, "response": [ { - "id": "d7a93f5e-5912-4b63-924c-b6407fc4bc1b", - "name": "Successful response", + "id": "aec02432-d865-4f38-8beb-5321d05006ba", + "name": "SSFReceiverStreamServiceUpdateResponse contains the updated SSF receiver stream.", "originalRequest": { "url": { "path": [ "api", "v1", - "settings", - "contacts" + "ssf-receiver-streams", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] }, "header": [ { @@ -41837,7 +70344,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"contacts\": {\n \"billingEmails\": [\n \"\",\n \"\"\n ],\n \"operationsEmails\": [\n \"\",\n \"\"\n ],\n \"securityEmails\": [\n \"\",\n \"\"\n ]\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"ssfReceiverStream\": {\n \"accountDisabledAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"credentialChangeAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"credentialCompromiseAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"deliveryMethod\": \"SSF_DELIVERY_METHOD_UNSPECIFIED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"eventTypesEnabled\": null,\n \"expectedAudience\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"jwksUrl\": \"\",\n \"lastErrorAt\": \"\",\n \"lastErrorMessage\": \"\",\n \"lastVerifiedAt\": \"\",\n \"outboundAuthBearer\": {\n \"token\": \"\"\n },\n \"outboundAuthOauth2\": {\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ],\n \"tokenUrl\": \"\"\n },\n \"pollEndpointUrl\": \"\",\n \"pollInterval\": \"\",\n \"pushAuthToken\": \"\",\n \"sessionRevokedAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\"\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -41854,7 +70361,7 @@ "value": "application/json" } ], - "body": "{\n \"contacts\": {\n \"billingEmails\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"operationsEmails\": [\n \"\",\n \"\"\n ],\n \"securityEmails\": [\n \"\",\n \"\"\n ],\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"ssfReceiverStream\": {\n \"accountDisabledAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"createdAt\": \"\",\n \"credentialChangeAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"credentialCompromiseAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"deletedAt\": \"\",\n \"deliveryMethod\": \"SSF_DELIVERY_METHOD_PUSH\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"eventTypesEnabled\": [\n \"\",\n \"\"\n ],\n \"expectedAudience\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"jwksUrl\": \"\",\n \"lastErrorAt\": \"\",\n \"lastErrorMessage\": \"\",\n \"lastVerifiedAt\": \"\",\n \"outboundAuthBearer\": {\n \"token\": \"\"\n },\n \"outboundAuthOauth2\": {\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ],\n \"tokenUrl\": \"\"\n },\n \"pollEndpointUrl\": \"\",\n \"pollInterval\": \"\",\n \"pushAuthToken\": \"\",\n \"pushEndpointUrl\": \"\",\n \"sessionRevokedAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -41863,75 +70370,174 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "domains", - "description": "", - "item": [ + }, { - "id": "eac3a277-f850-49f2-8b74-e2a5b8c62df3", - "name": "List", - "request": { - "name": "List", - "description": { - "content": "List returns all verified domains configured for the tenant.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "settings", - "domains" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" + "name": "test", + "description": "", + "item": [ + { + "id": "04ac6ed4-2caa-4c06-9f64-20183c078656", + "name": "Test", + "request": { + "name": "Test", + "description": { + "content": "Test validates an SSF receiver stream's configuration by checking JWKS reachability, identity resolution, and action preview without processing real events.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "ssf-receiver-streams", + ":id", + "test" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" }, - "key": "page_size", - "value": "" + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"testSubject\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } }, + "auth": null + }, + "response": [ { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" + "id": "527a2675-e6fc-4598-bcd1-0e824cdb81b6", + "name": "SSFReceiverStreamServiceTestResponse reports the results of the stream configuration test across JWKS, identity, and action readiness checks.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "ssf-receiver-streams", + ":id", + "test" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"testSubject\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, - "key": "page_token", - "value": "" + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"activeRefreshTokenCount\": \"\",\n \"activeSessionCount\": \"\",\n \"configuredSessionRevokedAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"identityLinkFound\": \"\",\n \"jwksError\": \"\",\n \"jwksKeyCount\": \"\",\n \"jwksReachable\": \"\",\n \"matchedUserId\": \"\",\n \"ready\": \"\",\n \"upstreamSubject\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + } + ] + } + ] + }, + { + "name": "{stream_id}", + "description": "", + "item": [ + { + "name": "events", + "description": "", + "item": [ { - "id": "fcac4c05-cc95-4dd0-9488-7df311f2421b", - "name": "Successful response", - "originalRequest": { + "id": "19c09783-804a-4df6-afba-ce3a117e3b1a", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List returns a paginated list of events received on a specific SSF receiver stream, ordered by receipt time.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "settings", - "domains" + "ssf-receiver-streams", + ":stream_id", + "events" ], "host": [ "{{baseUrl}}" @@ -41956,266 +70562,396 @@ "value": "" } ], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "stream_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], "method": "GET", - "body": {} + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "01adc6e9-8c8c-4d17-8e51-464af9f0263b", + "name": "SSFReceiverEventServiceListResponse contains a page of received SSF events.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "ssf-receiver-streams", + ":stream_id", + "events" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "stream_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"domain\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"domain\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "960bed44-5060-4426-9d43-6128b614612d", - "name": "Update", - "request": { - "name": "Update", - "description": { - "content": "Update replaces the tenant's set of verified domains with the provided list.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "settings", - "domains" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "PUT", - "body": { - "mode": "raw", - "raw": "{\n \"newDomains\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } - }, - "auth": null - }, - "response": [ + } + ] + }, + { + "name": "stats", + "description": "", + "item": [ { - "id": "8dd05416-e02b-4e40-b85b-f7aac8081e41", - "name": "Successful response", - "originalRequest": { + "id": "8786f486-f19a-43aa-b9f5-2d5ac3dc2f5b", + "name": "Get Stats", + "request": { + "name": "Get Stats", + "description": { + "content": "GetStats retrieves event processing statistics for a specific SSF receiver stream, including counts of received, acted-on, and failed events.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "settings", - "domains" + "ssf-receiver-streams", + ":stream_id", + "stats" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "stream_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "PUT", - "body": { - "mode": "raw", - "raw": "{\n \"newDomains\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "adc1d077-01c4-4eeb-ac02-25a337cdde6e", + "name": "SSFReceiverStreamServiceGetStatsResponse contains the event processing statistics for the stream.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "ssf-receiver-streams", + ":stream_id", + "stats" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "stream_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"stats\": {\n \"eventsActedOnCount\": \"\",\n \"eventsFailedCount\": \"\",\n \"eventsReceivedCount\": \"\",\n \"lastErrorAt\": \"\",\n \"lastErrorMessage\": \"\",\n \"lastEventReceivedAt\": \"\",\n \"lastVerifiedAt\": \"\",\n \"streamId\": \"\",\n \"transmitterStatus\": \"\",\n \"transmitterStatusReason\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"domain\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\"\n },\n {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"domain\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\"\n }\n ]\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] } ] - }, + } + ] + }, + { + "name": "sso", + "description": "", + "item": [ { - "name": "email-capabilities", + "name": "applications", "description": "", "item": [ { - "id": "afaebaff-6af4-49c1-9369-ffd47c11c5d4", - "name": "Get Email Capabilities", - "request": { - "name": "Get Email Capabilities", - "description": { - "content": "GetEmailCapabilities returns a lightweight summary of email capabilities\n for the current tenant. Intended for non-admin users (automation builders,\n secret sharers) to check if external email is available without exposing\n provider configuration details.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "settings", - "email-capabilities" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + "name": "saml", + "description": "", + "item": [ { - "id": "76d1813c-ce9c-4bc0-8162-a23f491d25da", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "settings", - "email-capabilities" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { + "name": "parse-sp-metadata", + "description": "", + "item": [ + { + "id": "9b9bdf4d-2cf2-4c86-908f-b7ac344b0dbf", + "name": "Parse Saml Service Provider Metadata", + "request": { + "name": "Parse Saml Service Provider Metadata", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "ParseSAMLServiceProviderMetadata parses one uploaded SAML service-provider\n metadata document and returns the SAML configuration it implies, without\n creating or changing anything. The document is not stored. Use it to\n preview an SP's capabilities before creating a SAML application; edit the\n returned configuration before passing it to Create. Only upload or paste a\n customer-supplied document -- C1 does not fetch metadata URLs.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " + "url": { + "path": [ + "api", + "v1", + "sso", + "applications", + "saml", + "parse-sp-metadata" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"metadataXml\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "91eac58f-b8c3-47b0-a958-31a59bad610e", + "name": "SSOApplicationServiceParseSAMLServiceProviderMetadataResponse returns the\n SAML configuration derived from one metadata document and every finding the\n parser raised about it.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "sso", + "applications", + "saml", + "parse-sp-metadata" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"metadataXml\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"config\": {\n \"spEntityId\": \"\",\n \"acsUrls\": null,\n \"attributeMappings\": [\n {\n \"userAttributeMappingId\": \"\",\n \"name\": \"\",\n \"friendlyName\": \"\",\n \"nameFormat\": \"SAML_ATTRIBUTE_NAME_FORMAT_UNSPECIFIED_URN\"\n },\n {\n \"userAttributeMappingId\": \"\",\n \"name\": \"\",\n \"friendlyName\": \"\",\n \"nameFormat\": \"SAML_ATTRIBUTE_NAME_FORMAT_URI\"\n }\n ],\n \"encryptAssertions\": \"\",\n \"encryptionAlgorithm\": \"SAML_ENCRYPTION_ALGORITHM_AES256_CBC\",\n \"nameIdFormat\": \"SAML_NAME_ID_FORMAT_UNSPECIFIED\",\n \"requireSignedAuthnRequests\": \"\",\n \"signAssertions\": \"\",\n \"signResponses\": \"\",\n \"spEncryptionCertificate\": \"\",\n \"spSigningCertificates\": [\n \"\",\n \"\"\n ]\n },\n \"findings\": [\n {\n \"component\": \"COMPONENT_BINDING\",\n \"level\": \"LEVEL_UNSPECIFIED\",\n \"reason\": \"\"\n },\n {\n \"component\": \"COMPONENT_DOCUMENT\",\n \"level\": \"LEVEL_UNSPECIFIED\",\n \"reason\": \"\"\n }\n ]\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" } - ], - "body": "{\n \"externalEmailSupported\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + ] } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] } ] - }, + } + ] + }, + { + "name": "step-up", + "description": "", + "item": [ { - "name": "email-provider", + "name": "providers", "description": "", "item": [ { - "id": "a788731e-25fc-4d16-ae48-c92397fc5180", - "name": "Get", + "id": "5bd4f309-99ce-47b1-a988-0bd8711a05dc", + "name": "List", "request": { - "name": "Get", + "name": "List", "description": { - "content": "Get retrieves the current tenant email provider configuration.", + "content": "List returns all step-up authentication providers configured for the tenant.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "settings", - "email-provider" + "step-up", + "providers" ], "host": [ "{{baseUrl}}" @@ -42235,15 +70971,15 @@ }, "response": [ { - "id": "86113877-1fc9-4b0b-8f77-ef7899ac8092", + "id": "c884a6d3-b03a-4a38-9773-5690f370cab1", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "settings", - "email-provider" + "step-up", + "providers" ], "host": [ "{{baseUrl}}" @@ -42276,7 +71012,7 @@ "value": "application/json" } ], - "body": "{\n \"emailProvider\": {\n \"awsSes\": {\n \"configurationSetName\": \"\",\n \"region\": \"\",\n \"roleArn\": \"\"\n },\n \"c1Builtin\": {},\n \"createdAt\": \"\",\n \"fromAddress\": \"\",\n \"fromName\": \"\",\n \"googleWorkspace\": {\n \"delegatedUser\": \"\",\n \"serviceAccountJson\": \"\"\n },\n \"microsoftGraph\": {\n \"azureTenantId\": \"\",\n \"clientId\": \"\",\n \"clientSecret\": \"\"\n },\n \"replyToAddress\": \"\",\n \"sendgrid\": {\n \"apiKey\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -42287,20 +71023,20 @@ } }, { - "id": "4572aac3-e991-4d23-a398-e82d75186784", - "name": "Update", + "id": "bd014f61-c9a7-4984-9452-f2b833b4c8bd", + "name": "Create", "request": { - "name": "Update", + "name": "Create", "description": { - "content": "Update creates or updates the tenant email provider configuration.", + "content": "Create registers a new step-up authentication provider for the tenant.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "settings", - "email-provider" + "step-up", + "providers" ], "host": [ "{{baseUrl}}" @@ -42321,227 +71057,119 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"emailProvider\": {\n \"awsSes\": {\n \"configurationSetName\": \"\",\n \"region\": \"\",\n \"roleArn\": \"\"\n },\n \"c1Builtin\": {},\n \"fromAddress\": \"\",\n \"fromName\": \"\",\n \"googleWorkspace\": {\n \"delegatedUser\": \"\",\n \"serviceAccountJson\": \"\"\n },\n \"microsoftGraph\": {\n \"azureTenantId\": \"\",\n \"clientId\": \"\",\n \"clientSecret\": \"\"\n },\n \"replyToAddress\": \"\",\n \"sendgrid\": {\n \"apiKey\": \"\"\n }\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"displayName\": \"\",\n \"issuerUrl\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": null,\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_UNSPECIFIED\"\n },\n \"oauth2\": {\n \"acrValues\": null\n }\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - }, - "auth": null - }, - "response": [ - { - "id": "3c27d9a7-4312-4a7f-aa97-087b453f36fb", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "settings", - "email-provider" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"emailProvider\": {\n \"awsSes\": {\n \"configurationSetName\": \"\",\n \"region\": \"\",\n \"roleArn\": \"\"\n },\n \"c1Builtin\": {},\n \"fromAddress\": \"\",\n \"fromName\": \"\",\n \"googleWorkspace\": {\n \"delegatedUser\": \"\",\n \"serviceAccountJson\": \"\"\n },\n \"microsoftGraph\": {\n \"azureTenantId\": \"\",\n \"clientId\": \"\",\n \"clientSecret\": \"\"\n },\n \"replyToAddress\": \"\",\n \"sendgrid\": {\n \"apiKey\": \"\"\n }\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"emailProvider\": {\n \"awsSes\": {\n \"configurationSetName\": \"\",\n \"region\": \"\",\n \"roleArn\": \"\"\n },\n \"c1Builtin\": {},\n \"createdAt\": \"\",\n \"fromAddress\": \"\",\n \"fromName\": \"\",\n \"googleWorkspace\": {\n \"delegatedUser\": \"\",\n \"serviceAccountJson\": \"\"\n },\n \"microsoftGraph\": {\n \"azureTenantId\": \"\",\n \"clientId\": \"\",\n \"clientSecret\": \"\"\n },\n \"replyToAddress\": \"\",\n \"sendgrid\": {\n \"apiKey\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "audit-events", - "description": "", - "item": [ - { - "id": "51a7dedb-736a-4d21-9f01-66522084f719", - "name": "Search Audit Events", - "request": { - "name": "Search Audit Events", - "description": { - "content": "SearchAuditEvents returns email audit events for the tenant.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "settings", - "email-provider", - "audit-events" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "5efcb30d-f9c0-45c7-981e-012cb30b487e", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "settings", - "email-provider", - "audit-events" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + }, + "auth": null + }, + "response": [ + { + "id": "d888f3de-e505-45e4-b6f3-59c8446427f0", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "step-up", + "providers" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"displayName\": \"\",\n \"issuerUrl\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": null,\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_UNSPECIFIED\"\n },\n \"oauth2\": {\n \"acrValues\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" } - ], - "body": "{\n \"list\": [\n {\n \"key_0\": true,\n \"key_1\": 6242.2570496442795\n },\n {\n \"key_0\": 4698\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "body": "{\n \"stepUpProvider\": {\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"lastTestedAt\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": null,\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_ACRS\"\n },\n \"oauth2\": {\n \"acrValues\": [\n \"\",\n \"\"\n ]\n },\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } }, { - "name": "test", + "name": "{id}", "description": "", "item": [ { - "id": "46f94719-c009-4487-9a21-5a754fb8c438", - "name": "Test", + "id": "efecffda-bdf9-4038-8a65-07c0c1a4cc69", + "name": "Delete", "request": { - "name": "Test", + "name": "Delete", "description": { - "content": "Test sends a test email to verify the provider configuration works end-to-end.", + "content": "Delete removes a step-up authentication provider from the tenant.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "settings", - "email-provider", - "test" + "step-up", + "providers", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -42553,10 +71181,10 @@ "value": "application/json" } ], - "method": "POST", + "method": "DELETE", "body": { "mode": "raw", - "raw": "{\n \"testRecipientEmail\": \"\"\n}", + "raw": "{}", "options": { "raw": { "headerFamily": "json", @@ -42568,22 +71196,33 @@ }, "response": [ { - "id": "29a2f565-b4c0-415b-a092-8ab1f42d2b19", + "id": "ac93003e-ed60-4760-9f7c-35a14c373607", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "settings", - "email-provider", - "test" + "step-up", + "providers", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] }, "header": [ { @@ -42603,10 +71242,10 @@ "value": "Bearer " } ], - "method": "POST", + "method": "DELETE", "body": { "mode": "raw", - "raw": "{\n \"testRecipientEmail\": \"\"\n}", + "raw": "{}", "options": { "raw": { "headerFamily": "json", @@ -42623,7 +71262,7 @@ "value": "application/json" } ], - "body": "{\n \"message\": \"\",\n \"success\": \"\"\n}", + "body": "{}", "cookie": [], "_postman_previewlanguage": "json" } @@ -42632,41 +71271,40 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - } - ] - }, - { - "name": "notifications", - "description": "", - "item": [ - { - "name": "org", - "description": "", - "item": [ + }, { - "id": "22c5de58-b578-42e1-b9cd-8b5ecab279ba", + "id": "9407bf71-8efe-4bb6-9a4f-56332c4d10a0", "name": "Get", "request": { "name": "Get", "description": { - "content": "Get retrieves the organization-level notification settings, including per-channel preferences and admin-locked defaults.", + "content": "Get retrieves a single step-up authentication provider by its ID.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "settings", - "notifications", - "org" + "step-up", + "providers", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -42680,22 +71318,33 @@ }, "response": [ { - "id": "c9c07833-2e6b-4f81-9e1e-1d07123475d1", + "id": "695f6dd9-6286-4f3d-a500-e6acfb9f857a", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "settings", - "notifications", - "org" + "step-up", + "providers", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] }, "header": [ { @@ -42722,7 +71371,7 @@ "value": "application/json" } ], - "body": "{\n \"orgNotificationSettings\": {\n \"channelSettings\": {\n \"email\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_THURSDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_UNSPECIFIED\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"slack\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_FRIDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_UNSPECIFIED\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"teams\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_SATURDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_UNSPECIFIED\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n }\n }\n }\n}", + "body": "{\n \"stepUpProvider\": {\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"lastTestedAt\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": [\n \"\",\n \"\"\n ],\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_UNSPECIFIED\"\n },\n \"oauth2\": {\n \"acrValues\": null\n },\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -42733,27 +71382,38 @@ } }, { - "id": "69137252-dab7-40e0-a01e-702d9eceda1f", + "id": "2466f8cd-318f-4df4-916a-a0e4836070a4", "name": "Update", "request": { "name": "Update", "description": { - "content": "Update modifies the organization-level notification settings, such as enabling channels and locking preferences for users.", + "content": "Update modifies an existing step-up authentication provider's configuration. Use the update mask to specify which fields to change.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "settings", - "notifications", - "org" + "step-up", + "providers", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -42768,7 +71428,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"channelSettings\": {\n \"email\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_WEDNESDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"slack\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_SUNDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_UNSPECIFIED\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"teams\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_THURSDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_WEEKLY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n }\n }\n}", + "raw": "{\n \"stepUpProvider\": {\n \"clientId\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"issuerUrl\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": null,\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_OIDC\"\n },\n \"oauth2\": {\n \"acrValues\": null\n }\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -42780,22 +71440,33 @@ }, "response": [ { - "id": "99762e4d-4e5d-4edb-b1aa-b8768f3c35d0", + "id": "6c4cdc4f-7e29-457a-8d31-b85ef991ec0e", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "settings", - "notifications", - "org" + "step-up", + "providers", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] }, "header": [ { @@ -42818,7 +71489,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"channelSettings\": {\n \"email\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_WEDNESDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"slack\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_SUNDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_UNSPECIFIED\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"teams\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_THURSDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_WEEKLY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n }\n }\n}", + "raw": "{\n \"stepUpProvider\": {\n \"clientId\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"issuerUrl\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": null,\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_OIDC\"\n },\n \"oauth2\": {\n \"acrValues\": null\n }\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -42835,7 +71506,7 @@ "value": "application/json" } ], - "body": "{\n \"orgNotificationSettings\": {\n \"channelSettings\": {\n \"email\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_FRIDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"slack\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_THURSDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_WEEKLY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"teams\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_WEDNESDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n }\n }\n }\n}", + "body": "{\n \"stepUpProvider\": {\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"lastTestedAt\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": [\n \"\",\n \"\"\n ],\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_ACRS\"\n },\n \"oauth2\": {\n \"acrValues\": [\n \"\",\n \"\"\n ]\n },\n \"updatedAt\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -42844,170 +71515,380 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "user", - "description": "", - "item": [ + }, { - "id": "975b7a87-91c9-4a08-8e01-29ab9a3dd927", - "name": "Get", - "request": { - "name": "Get", - "description": { - "content": "Get retrieves the calling user's notification preferences, merged with organization-level defaults.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "settings", - "notifications", - "user" - ], - "host": [ - "{{baseUrl}}" + "name": "secret", + "description": "", + "item": [ + { + "id": "96a3c387-cee0-4d07-ba10-cabecc120a95", + "name": "Update Secret", + "request": { + "name": "Update Secret", + "description": { + "content": "UpdateSecret rotates the client secret for a step-up authentication provider without modifying other settings.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "step-up", + "providers", + ":id", + "secret" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"clientSecret\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "3dd1ff41-e8f9-4643-89ec-d16923f49257", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "step-up", + "providers", + ":id", + "secret" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"clientSecret\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"stepUpProvider\": {\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"lastTestedAt\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": [\n \"\",\n \"\"\n ],\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_UNSPECIFIED\"\n },\n \"oauth2\": {\n \"acrValues\": [\n \"\",\n \"\"\n ]\n },\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + } + ] + }, + { + "name": "test", + "description": "", + "item": [ { - "id": "42884978-eb53-43ff-9e43-37ce8502e1f6", - "name": "Successful response", - "originalRequest": { + "id": "cb37a875-e1af-42df-89a0-36e844d8e9a2", + "name": "Test", + "request": { + "name": "Test", + "description": { + "content": "Test initiates a test authentication flow against a step-up provider and returns a redirect URL for the caller to complete verification.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "settings", - "notifications", - "user" + "step-up", + "providers", + ":id", + "test" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { - "key": "Accept", + "key": "Content-Type", "value": "application/json" }, { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " + "key": "Accept", + "value": "application/json" } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "cc272287-4586-4b72-b21d-753e5344daa6", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "step-up", + "providers", + ":id", + "test" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"redirectUrl\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"userNotificationSettings\": {\n \"channelSettings\": {\n \"email\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_SATURDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"slack\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_UNSPECIFIED\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"teams\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_THURSDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n }\n }\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, + ] + } + ] + } + ] + }, + { + "name": "transactions", + "description": "", + "item": [ + { + "name": "{id}", + "description": "", + "item": [ { - "id": "f708d497-49eb-40ce-8341-2482b242637f", - "name": "Update", + "id": "59c933ae-ce3c-47d4-b2d6-a365ded70e58", + "name": "Get", "request": { - "name": "Update", + "name": "Get", "description": { - "content": "Update modifies the calling user's personal notification preferences for each channel.", + "content": "Get retrieves a specific step-up transaction by ID", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "settings", - "notifications", - "user" + "step-up", + "transactions", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"channelSettings\": {\n \"email\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_THURSDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"slack\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_FRIDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_UNSPECIFIED\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"teams\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_FRIDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n }\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "90f3852e-f983-4df6-bd6c-dbda4db9ed9a", - "name": "Successful response", + "id": "2184c18f-2b1e-43fb-8429-9a1fc5bdd9f5", + "name": "Response message containing the requested step-up transaction", "originalRequest": { "url": { "path": [ "api", "v1", - "settings", - "notifications", - "user" + "step-up", + "transactions", + ":id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -43021,17 +71902,8 @@ "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"channelSettings\": {\n \"email\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_THURSDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"slack\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_FRIDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_UNSPECIFIED\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"teams\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_FRIDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n }\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -43041,7 +71913,7 @@ "value": "application/json" } ], - "body": "{\n \"userNotificationSettings\": {\n \"channelSettings\": {\n \"email\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_MONDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"slack\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_TUESDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_DAILY\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n },\n \"teams\": {\n \"accessProvisioned\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"approvalNeeded\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"commentOnRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"completion\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"connectorIssues\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"digest\": {\n \"dayOfWeek\": \"WEEKDAY_TUESDAY\",\n \"enabled\": \"\",\n \"frequency\": \"DIGEST_FREQUENCY_UNSPECIFIED\",\n \"locked\": \"\"\n },\n \"enabled\": \"\",\n \"expiringAccess\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"isConfigured\": \"\",\n \"provisioningRequest\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"reviews\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n },\n \"taskReminders\": {\n \"enabled\": \"\",\n \"locked\": \"\"\n }\n }\n }\n }\n}", + "body": "{\n \"transaction\": {\n \"approveTask\": {\n \"policyStepId\": \"\",\n \"taskId\": \"\"\n },\n \"claims\": null,\n \"createdAt\": \"\",\n \"errorMessage\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"providerId\": \"\",\n \"state\": \"STEP_UP_TRANSACTION_STATE_PENDING\",\n \"test\": {},\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -43054,111 +71926,32 @@ ] } ] - }, + } + ] + }, + { + "name": "systemlog", + "description": "", + "item": [ { - "name": "onboarding", + "name": "events", "description": "", "item": [ { - "id": "3e9b9f3d-07d7-4cf2-b406-6a9e69c66e8e", - "name": "Get", - "request": { - "name": "Get", - "description": { - "content": "Get retrieves the current onboarding progress for the tenant.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "settings", - "onboarding" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "33e17b07-3901-4ab9-a776-91aec5e8e31a", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "settings", - "onboarding" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"conversationId\": \"\",\n \"intents\": [\n \"\",\n \"\"\n ],\n \"orgContext\": {\n \"industry\": \"\",\n \"organizationSize\": \"\"\n },\n \"status\": \"ONBOARDING_STATUS_IN_PROGRESS\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "986d130b-0e11-449b-aa86-ab48a1de15b0", - "name": "Update", + "id": "59bb1f0f-574d-4726-82d3-07eaab29ba97", + "name": "List Events", "request": { - "name": "Update", + "name": "List Events", "description": { - "content": "Update modifies the onboarding progress, such as marking steps complete or dismissing the wizard.", + "content": "ListEvents pulls Events from the ConductorOne system.\n\n This endpoint should be used to synchronize the\n system log events to external systems.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "settings", - "onboarding" + "systemlog", + "events" ], "host": [ "{{baseUrl}}" @@ -43179,7 +71972,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"conversationId\": \"\",\n \"status\": \"ONBOARDING_STATUS_NOT_STARTED\"\n}", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"since\": \"\",\n \"sinceEventUid\": \"\",\n \"sortDirection\": \"SORT_DIRECTION_ASC\",\n \"until\": \"\",\n \"untilEventUid\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -43191,15 +71984,15 @@ }, "response": [ { - "id": "18e69692-043b-482c-a77b-f376f4ce7864", + "id": "57ebd5bf-1c43-47e4-bd15-4f2f662646c3", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "settings", - "onboarding" + "systemlog", + "events" ], "host": [ "{{baseUrl}}" @@ -43228,7 +72021,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"conversationId\": \"\",\n \"status\": \"ONBOARDING_STATUS_NOT_STARTED\"\n}", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"since\": \"\",\n \"sinceEventUid\": \"\",\n \"sortDirection\": \"SORT_DIRECTION_ASC\",\n \"until\": \"\",\n \"untilEventUid\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -43245,7 +72038,7 @@ "value": "application/json" } ], - "body": "{\n \"status\": \"ONBOARDING_STATUS_IN_PROGRESS\"\n}", + "body": "{\n \"list\": [\n {\n \"key_0\": \"string\",\n \"key_1\": 7994.992560010852,\n \"key_2\": 47\n },\n {\n \"key_0\": 9772.469886772285,\n \"key_1\": true\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -43258,29 +72051,48 @@ ] }, { - "name": "session", + "name": "exports", "description": "", "item": [ { - "id": "89ee08c3-f913-42f4-8427-828aa6df548c", - "name": "Get", + "id": "1af78359-8941-4a58-8bf3-4d49bb80aa16", + "name": "List", "request": { - "name": "Get", + "name": "List", "description": { - "content": "Get retrieves the current session security settings for the tenant.", + "content": "List Exports.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "settings", - "session" + "systemlog", + "exports" ], "host": [ "{{baseUrl}}" ], - "query": [], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], "variable": [] }, "header": [ @@ -43295,20 +72107,39 @@ }, "response": [ { - "id": "dc03d407-0ce9-4fa3-9107-02c9cbbda8d0", + "id": "03579b2f-f7b2-408d-9ca5-2074e9f5ee29", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "settings", - "session" + "systemlog", + "exports" ], "host": [ "{{baseUrl}}" ], - "query": [], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], "variable": [] }, "header": [ @@ -43336,7 +72167,7 @@ "value": "application/json" } ], - "body": "{\n \"sessionSettings\": {\n \"clientIdApprovalRequestPolicyId\": \"\",\n \"clientIdMetadataDocumentPolicy\": \"CLIENT_ID_METADATA_DOCUMENT_POLICY_ALLOWLIST_ONLY\",\n \"connectorSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"externalClientSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"externalClientsEnabled\": \"\",\n \"maxSessionLength\": \"\",\n \"pccAdminSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"pccUserSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"ssoAdminSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"ssoUserSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n }\n }\n}", + "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_ZSTD\",\n \"prefix\": \"\"\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"exportId\": \"\",\n \"state\": \"EXPORT_STATE_ERROR\",\n \"updatedAt\": \"\",\n \"watermarkEventId\": \"\"\n },\n {\n \"createdAt\": \"\",\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_GZIP\",\n \"prefix\": \"\"\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"exportId\": \"\",\n \"state\": \"EXPORT_STATE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"watermarkEventId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -43347,20 +72178,20 @@ } }, { - "id": "f4a0e76f-c2aa-4571-9bdf-d4984beb3e6b", - "name": "Update", + "id": "29f452ce-735e-4dab-a668-d42d74cbebe4", + "name": "Create", "request": { - "name": "Update", + "name": "Create", "description": { - "content": "Update modifies the session security settings for the tenant, such as session length and IP allowlists.", + "content": "Create a system log export.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "settings", - "session" + "systemlog", + "exports" ], "host": [ "{{baseUrl}}" @@ -43381,7 +72212,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"sessionSettings\": {\n \"clientIdApprovalRequestPolicyId\": \"\",\n \"clientIdMetadataDocumentPolicy\": \"CLIENT_ID_METADATA_DOCUMENT_POLICY_ALLOWLIST_ONLY\",\n \"connectorSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"externalClientSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"externalClientsEnabled\": \"\",\n \"maxSessionLength\": \"\",\n \"pccAdminSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"pccUserSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"ssoAdminSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"ssoUserSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n }\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_GZIP\",\n \"prefix\": \"\"\n },\n \"displayName\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -43393,15 +72224,15 @@ }, "response": [ { - "id": "c6263ff3-3c58-412d-baf1-88ebecbda8d9", + "id": "6e2cb143-bd7a-44b0-b151-1dd1c0b1b637", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "settings", - "session" + "systemlog", + "exports" ], "host": [ "{{baseUrl}}" @@ -43417,72 +72248,327 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_GZIP\",\n \"prefix\": \"\"\n },\n \"displayName\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"exporter\": {\n \"createdAt\": \"\",\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_ZSTD\",\n \"prefix\": \"\"\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"exportId\": \"\",\n \"state\": \"EXPORT_STATE_WAITING\",\n \"updatedAt\": \"\",\n \"watermarkEventId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{export_id}", + "description": "", + "item": [ + { + "id": "d61b9a53-8dd6-4008-8999-0931b2d2d151", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete a system log export by ID.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "systemlog", + "exports", + ":export_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "export_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "733a86fc-0ef4-4361-b7f8-f85689f95f78", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "systemlog", + "exports", + ":export_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "export_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "e29a6f0c-38da-49e3-9e74-8217a79764ed", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get a system log export by ID", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "systemlog", + "exports", + ":export_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "export_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"sessionSettings\": {\n \"clientIdApprovalRequestPolicyId\": \"\",\n \"clientIdMetadataDocumentPolicy\": \"CLIENT_ID_METADATA_DOCUMENT_POLICY_ALLOWLIST_ONLY\",\n \"connectorSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"externalClientSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"externalClientsEnabled\": \"\",\n \"maxSessionLength\": \"\",\n \"pccAdminSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"pccUserSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"ssoAdminSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"ssoUserSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n }\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "76879b83-3d43-4e18-8d5b-e3d8d20df6f1", + "name": "The ExportServiceGetResponse message contains the system log exporter object.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "systemlog", + "exports", + ":export_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "export_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"exporter\": {\n \"createdAt\": \"\",\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_GZIP\",\n \"prefix\": \"\"\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"exportId\": \"\",\n \"state\": \"EXPORT_STATE_WAITING\",\n \"updatedAt\": \"\",\n \"watermarkEventId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"sessionSettings\": {\n \"clientIdApprovalRequestPolicyId\": \"\",\n \"clientIdMetadataDocumentPolicy\": \"CLIENT_ID_METADATA_DOCUMENT_POLICY_ALLOW_ALL\",\n \"connectorSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"externalClientSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"externalClientsEnabled\": \"\",\n \"maxSessionLength\": \"\",\n \"pccAdminSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"pccUserSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"ssoAdminSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n },\n \"ssoUserSource\": {\n \"enabled\": \"\",\n \"sourceCidr\": [\n \"\",\n \"\"\n ]\n }\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "test-source-ip", - "description": "", - "item": [ + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, { - "id": "cf5a0c8a-0e74-4bdb-8043-43c621c9972b", - "name": "Test Source Ip", + "id": "559e6cf3-95c9-4532-ba67-b058dd5d8de8", + "name": "Update", "request": { - "name": "Test Source Ip", + "name": "Update", "description": { - "content": "TestSourceIP checks whether a given IP address would be allowed by the specified CIDR allowlist rules.", + "content": "Update a system log export by providing an export object and an update mask.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "settings", - "session", - "test-source-ip" + "systemlog", + "exports", + ":export_id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "type": "any", + "value": "", + "key": "export_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, "header": [ { @@ -43497,7 +72583,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"allowCidr\": [\n \"\",\n \"\"\n ],\n \"sourceIp\": \"\"\n}", + "raw": "{\n \"exporter\": {\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_GZIP\",\n \"prefix\": \"\"\n },\n \"displayName\": \"\"\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -43509,22 +72595,33 @@ }, "response": [ { - "id": "5f147c3f-c45c-4e97-a9b5-f7ab25094066", + "id": "3a8d38ba-bedd-48d8-ac96-8d7fb2ca8775", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "settings", - "session", - "test-source-ip" + "systemlog", + "exports", + ":export_id" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [] + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "export_id" + } + ] }, "header": [ { @@ -43547,7 +72644,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"allowCidr\": [\n \"\",\n \"\"\n ],\n \"sourceIp\": \"\"\n}", + "raw": "{\n \"exporter\": {\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_GZIP\",\n \"prefix\": \"\"\n },\n \"displayName\": \"\"\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -43564,7 +72661,7 @@ "value": "application/json" } ], - "body": "{\n \"allowed\": \"\",\n \"checkedIp\": \"\",\n \"details\": {\n \"code\": \"\",\n \"details\": [\n {\n \"@type\": \"\",\n \"key_0\": 531\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n }\n ],\n \"message\": \"\"\n }\n}", + "body": "{\n \"exporter\": {\n \"createdAt\": \"\",\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_ZSTD\",\n \"prefix\": \"\"\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"exportId\": \"\",\n \"state\": \"EXPORT_STATE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"watermarkEventId\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -43573,6 +72670,149 @@ "protocolProfileBehavior": { "disableBodyPruning": true } + }, + { + "name": "events", + "description": "", + "item": [ + { + "id": "bd419a13-ebe9-4a18-893b-0fdbeb4db5d6", + "name": "List Events", + "request": { + "name": "List Events", + "description": { + "content": "List audit events belonging to a specific system log export.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "systemlog", + "exports", + ":export_id", + "events" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "export_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "96745120-3d36-4557-b105-bf588ee7768d", + "name": "ExportServiceListEventsResponse is the response containing audit events for an export.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "systemlog", + "exports", + ":export_id", + "events" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "export_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"key_0\": 3605,\n \"key_1\": true,\n \"key_2\": 1824\n },\n {\n \"key_0\": 7969.394733408668,\n \"key_1\": false,\n \"key_2\": false,\n \"key_3\": 4017\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] } ] } @@ -43581,275 +72821,34 @@ ] }, { - "name": "ssf-receiver-streams", + "name": "task", "description": "", "item": [ { - "id": "fd8ca2cd-83ec-4547-9b4e-237ad8926ca4", - "name": "List", - "request": { - "name": "List", - "description": { - "content": "List returns a paginated list of all SSF receiver streams configured for the tenant.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "ssf-receiver-streams" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "a8e9a7eb-7c1d-4999-9aa9-adb9042a6449", - "name": "SSFReceiverStreamServiceListResponse contains a page of SSF receiver streams.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "ssf-receiver-streams" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"accountDisabledAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"createdAt\": \"\",\n \"credentialChangeAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"credentialCompromiseAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"deletedAt\": \"\",\n \"deliveryMethod\": \"SSF_DELIVERY_METHOD_UNSPECIFIED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"eventTypesEnabled\": [\n \"\",\n \"\"\n ],\n \"expectedAudience\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"jwksUrl\": \"\",\n \"lastErrorAt\": \"\",\n \"lastErrorMessage\": \"\",\n \"lastVerifiedAt\": \"\",\n \"outboundAuthBearer\": {\n \"token\": \"\"\n },\n \"outboundAuthOauth2\": {\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ],\n \"tokenUrl\": \"\"\n },\n \"pollEndpointUrl\": \"\",\n \"pollInterval\": \"\",\n \"pushAuthToken\": \"\",\n \"pushEndpointUrl\": \"\",\n \"sessionRevokedAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"updatedAt\": \"\"\n },\n {\n \"accountDisabledAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"createdAt\": \"\",\n \"credentialChangeAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"credentialCompromiseAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"deletedAt\": \"\",\n \"deliveryMethod\": \"SSF_DELIVERY_METHOD_UNSPECIFIED\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"eventTypesEnabled\": [\n \"\",\n \"\"\n ],\n \"expectedAudience\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"jwksUrl\": \"\",\n \"lastErrorAt\": \"\",\n \"lastErrorMessage\": \"\",\n \"lastVerifiedAt\": \"\",\n \"outboundAuthBearer\": {\n \"token\": \"\"\n },\n \"outboundAuthOauth2\": {\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ],\n \"tokenUrl\": \"\"\n },\n \"pollEndpointUrl\": \"\",\n \"pollInterval\": \"\",\n \"pushAuthToken\": \"\",\n \"pushEndpointUrl\": \"\",\n \"sessionRevokedAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "5759a9ce-d0b8-4dbb-b11b-07052575e137", - "name": "Create", - "request": { - "name": "Create", - "description": { - "content": "Create registers a new SSF receiver stream with the specified configuration and returns the created stream along with the push auth token (if push delivery).", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "ssf-receiver-streams" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"issuerUrl\": \"\",\n \"accountDisabledAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"credentialChangeAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"credentialCompromiseAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"deliveryMethod\": \"SSF_DELIVERY_METHOD_POLL\",\n \"description\": \"\",\n \"enabled\": \"\",\n \"expectedAudience\": \"\",\n \"jwksUrl\": \"\",\n \"pollEndpointUrl\": \"\",\n \"pollInterval\": \"\",\n \"sessionRevokedAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "56ca22ae-7323-4ebe-83be-aad837095249", - "name": "SSFReceiverStreamServiceCreateResponse returns the created stream and the push auth token in plaintext.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "ssf-receiver-streams" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"issuerUrl\": \"\",\n \"accountDisabledAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"credentialChangeAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"credentialCompromiseAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"deliveryMethod\": \"SSF_DELIVERY_METHOD_POLL\",\n \"description\": \"\",\n \"enabled\": \"\",\n \"expectedAudience\": \"\",\n \"jwksUrl\": \"\",\n \"pollEndpointUrl\": \"\",\n \"pollInterval\": \"\",\n \"sessionRevokedAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"pushAuthTokenPlaintext\": \"\",\n \"ssfReceiverStream\": {\n \"accountDisabledAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"createdAt\": \"\",\n \"credentialChangeAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"credentialCompromiseAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"deletedAt\": \"\",\n \"deliveryMethod\": \"SSF_DELIVERY_METHOD_POLL\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"eventTypesEnabled\": [\n \"\",\n \"\"\n ],\n \"expectedAudience\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"jwksUrl\": \"\",\n \"lastErrorAt\": \"\",\n \"lastErrorMessage\": \"\",\n \"lastVerifiedAt\": \"\",\n \"outboundAuthBearer\": {\n \"token\": \"\"\n },\n \"outboundAuthOauth2\": {\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ],\n \"tokenUrl\": \"\"\n },\n \"pollEndpointUrl\": \"\",\n \"pollInterval\": \"\",\n \"pushAuthToken\": \"\",\n \"pushEndpointUrl\": \"\",\n \"sessionRevokedAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{id}", + "name": "action", "description": "", "item": [ { - "id": "38dd852f-33d7-4114-8996-66eb52e4262c", - "name": "Delete", + "id": "1f43f499-7f88-4e60-9262-41f6ea2abe95", + "name": "Create Action Task", "request": { - "name": "Delete", + "name": "Create Action Task", "description": { - "content": "Delete removes an SSF receiver stream and stops receiving events from the associated transmitter.", + "content": "Create an action task: request a \"request action\" (requestable automation).", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "ssf-receiver-streams", - ":id" + "task", + "action" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -43861,10 +72860,10 @@ "value": "application/json" } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"actionId\": \"\",\n \"description\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"formValues\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -43876,32 +72875,21 @@ }, "response": [ { - "id": "cff2ef8f-252a-41e8-aff4-a7df928d4a06", - "name": "SSFReceiverStreamServiceDeleteResponse is empty on success.", + "id": "eedbb594-b9df-441b-82ee-0503ed0cf8fb", + "name": "The TaskServiceCreateActionResponse returns the created action task with optional expanded related objects.", "originalRequest": { "url": { "path": [ "api", "v1", - "ssf-receiver-streams", - ":id" + "task", + "action" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ { @@ -43921,10 +72909,10 @@ "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"actionId\": \"\",\n \"description\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"formValues\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -43941,7 +72929,7 @@ "value": "application/json" } ], - "body": "{}", + "body": "{\n \"expanded\": null,\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_DELETE\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": 5642\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\"\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": null,\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_UNSPECIFIED\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_DONE\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_INIT\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": null,\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_SENDING_NOTIFICATIONS\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_ERROR\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_DONE\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": \"string\"\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": null\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 9882,\n \"key_1\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_WEBHOOK\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_ACTIVE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_UNSPECIFIED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 5522.8783047999295,\n \"key_1\": 6417.064765440912\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 3261,\n \"key_1\": 477\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": null\n }\n },\n \"policyType\": \"POLICY_TYPE_REVOKE\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": null,\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_EMERGENCY\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_WAITING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_REVIEW\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_UNSPECIFIED\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": [\n \"\"\n ],\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": null,\n \"outcome\": \"ACTION_OUTCOME_SUCCESS\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\",\n \"key_2\": \"string\"\n },\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": \"string\"\n },\n \"type\": \"TYPE_WORKFLOW\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_REMEDIATED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_DONE\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -43950,80 +72938,81 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "audits", + "description": "", + "item": [ { - "id": "e626c722-eec8-4cd4-bf16-d2b90933fc33", - "name": "Get", + "id": "16f4c88a-db98-4b25-a7a8-4e43805dfaf3", + "name": "List", "request": { - "name": "Get", + "name": "List", "description": { - "content": "Get retrieves a single SSF receiver stream by its ID.", + "content": "List audit trail events for a task.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "ssf-receiver-streams", - ":id" + "task", + "audits" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"commentsOnly\": \"\",\n \"excludeComments\": \"\",\n \"newestFirst\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"taskId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "198f8538-ce93-41d7-93a5-d4371170bbc2", - "name": "SSFReceiverStreamServiceGetResponse contains the requested SSF receiver stream.", + "id": "c7d74446-79d8-42c7-9581-ed6a32ffdcd0", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "ssf-receiver-streams", - ":id" + "task", + "audits" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -44037,8 +73026,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"commentsOnly\": \"\",\n \"excludeComments\": \"\",\n \"newestFirst\": \"\",\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"taskId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -44048,7 +73046,7 @@ "value": "application/json" } ], - "body": "{\n \"ssfReceiverStream\": {\n \"accountDisabledAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"createdAt\": \"\",\n \"credentialChangeAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"credentialCompromiseAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"deletedAt\": \"\",\n \"deliveryMethod\": \"SSF_DELIVERY_METHOD_POLL\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"eventTypesEnabled\": [\n \"\",\n \"\"\n ],\n \"expectedAudience\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"jwksUrl\": \"\",\n \"lastErrorAt\": \"\",\n \"lastErrorMessage\": \"\",\n \"lastVerifiedAt\": \"\",\n \"outboundAuthBearer\": {\n \"token\": \"\"\n },\n \"outboundAuthOauth2\": {\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ],\n \"tokenUrl\": \"\"\n },\n \"pollEndpointUrl\": \"\",\n \"pollInterval\": \"\",\n \"pushAuthToken\": \"\",\n \"pushEndpointUrl\": \"\",\n \"sessionRevokedAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\",\n \"totalCount\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -44057,39 +73055,34 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "grant", + "description": "", + "item": [ { - "id": "4d2ac1f6-151f-4f97-9563-4085faaaed33", - "name": "Update", + "id": "87d73cc0-8e3e-4ae2-b41a-53b765d11714", + "name": "Create Grant Task", "request": { - "name": "Update", + "name": "Create Grant Task", "description": { - "content": "Update modifies an existing SSF receiver stream's configuration. Only fields specified in the update mask are changed.", + "content": "Create a grant task", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "ssf-receiver-streams", - ":id" + "task", + "grant" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ { @@ -44104,7 +73097,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"ssfReceiverStream\": {\n \"accountDisabledAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"credentialChangeAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"credentialCompromiseAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"deliveryMethod\": \"SSF_DELIVERY_METHOD_POLL\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"eventTypesEnabled\": [\n \"\",\n \"\"\n ],\n \"expectedAudience\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"jwksUrl\": \"\",\n \"lastErrorAt\": \"\",\n \"lastErrorMessage\": \"\",\n \"lastVerifiedAt\": \"\",\n \"outboundAuthBearer\": {\n \"token\": \"\"\n },\n \"outboundAuthOauth2\": {\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ],\n \"tokenUrl\": \"\"\n },\n \"pollEndpointUrl\": \"\",\n \"pollInterval\": \"\",\n \"pushAuthToken\": \"\",\n \"sessionRevokedAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\"\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"appId\": \"\",\n \"appEntitlementId\": \"\",\n \"appUserId\": \"\",\n \"description\": \"\",\n \"emergencyAccess\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"requestData\": {\n \"key_0\": 9267,\n \"key_1\": true,\n \"key_2\": true\n },\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -44116,32 +73109,21 @@ }, "response": [ { - "id": "66c86ab7-0cdc-436a-9b09-f95eb2ec429d", - "name": "SSFReceiverStreamServiceUpdateResponse contains the updated SSF receiver stream.", + "id": "9401ef3e-ab16-4528-997a-a10be563f148", + "name": "The TaskServiceCreateGrantResponse returns a task view which has a task including JSONPATHs to the expanded items in the expanded array.", "originalRequest": { "url": { "path": [ "api", "v1", - "ssf-receiver-streams", - ":id" + "task", + "grant" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ { @@ -44164,7 +73146,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"ssfReceiverStream\": {\n \"accountDisabledAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"credentialChangeAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"credentialCompromiseAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"deliveryMethod\": \"SSF_DELIVERY_METHOD_POLL\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"eventTypesEnabled\": [\n \"\",\n \"\"\n ],\n \"expectedAudience\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"jwksUrl\": \"\",\n \"lastErrorAt\": \"\",\n \"lastErrorMessage\": \"\",\n \"lastVerifiedAt\": \"\",\n \"outboundAuthBearer\": {\n \"token\": \"\"\n },\n \"outboundAuthOauth2\": {\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ],\n \"tokenUrl\": \"\"\n },\n \"pollEndpointUrl\": \"\",\n \"pollInterval\": \"\",\n \"pushAuthToken\": \"\",\n \"sessionRevokedAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\"\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"appId\": \"\",\n \"appEntitlementId\": \"\",\n \"appUserId\": \"\",\n \"description\": \"\",\n \"emergencyAccess\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"requestData\": {\n \"key_0\": 9267,\n \"key_1\": true,\n \"key_2\": true\n },\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -44181,7 +73163,7 @@ "value": "application/json" } ], - "body": "{\n \"ssfReceiverStream\": {\n \"accountDisabledAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"createdAt\": \"\",\n \"credentialChangeAction\": \"SSF_REVOCATION_ACTION_UNSPECIFIED\",\n \"credentialCompromiseAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"deletedAt\": \"\",\n \"deliveryMethod\": \"SSF_DELIVERY_METHOD_POLL\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"eventTypesEnabled\": [\n \"\",\n \"\"\n ],\n \"expectedAudience\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"jwksUrl\": \"\",\n \"lastErrorAt\": \"\",\n \"lastErrorMessage\": \"\",\n \"lastVerifiedAt\": \"\",\n \"outboundAuthBearer\": {\n \"token\": \"\"\n },\n \"outboundAuthOauth2\": {\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"scopes\": [\n \"\",\n \"\"\n ],\n \"tokenUrl\": \"\"\n },\n \"pollEndpointUrl\": \"\",\n \"pollInterval\": \"\",\n \"pushAuthToken\": \"\",\n \"pushEndpointUrl\": \"\",\n \"sessionRevokedAction\": \"SSF_REVOCATION_ACTION_REVOKE_ALL\",\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"expanded\": null,\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_HARD_RESET\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": 7675.043833651039,\n \"key_1\": true\n }\n ],\n \"approverIds\": null,\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": 78,\n \"key_1\": false,\n \"key_2\": 5954,\n \"key_3\": 8641\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"JIRA\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": null,\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_ACCESS_REVIEW\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_DONE\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": null,\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\",\n \"key_2\": 5481.937494811748\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": null\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": null,\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": 8472\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_WAITING\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_WAITING\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": null,\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 9247,\n \"key_1\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 5990,\n \"key_1\": 8177.746896452569\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": null\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_ACCESS_REQUEST\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": null,\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_EMERGENCY\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_DONE\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_APPROVE\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_UNSPECIFIED\",\n \"stepApproverIds\": null,\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": [\n \"\"\n ],\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": null,\n \"outcome\": \"ACTION_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": null,\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": null\n },\n \"type\": \"TYPE_GRANT\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_DECERTIFIED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_DONE\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -44190,449 +73172,145 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, - { - "name": "test", - "description": "", - "item": [ - { - "id": "11764da9-3f2f-4aa1-92c8-1a6cd5353d06", - "name": "Test", - "request": { - "name": "Test", - "description": { - "content": "Test validates an SSF receiver stream's configuration by checking JWKS reachability, identity resolution, and action preview without processing real events.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "ssf-receiver-streams", - ":id", - "test" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"testSubject\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "1d6892f4-8411-4ed0-a49d-77b3c9f6ef2c", - "name": "SSFReceiverStreamServiceTestResponse reports the results of the stream configuration test across JWKS, identity, and action readiness checks.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "ssf-receiver-streams", - ":id", - "test" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"testSubject\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"activeRefreshTokenCount\": \"\",\n \"activeSessionCount\": \"\",\n \"configuredSessionRevokedAction\": \"SSF_REVOCATION_ACTION_LOG_ONLY\",\n \"identityLinkFound\": \"\",\n \"jwksError\": \"\",\n \"jwksKeyCount\": \"\",\n \"jwksReachable\": \"\",\n \"matchedUserId\": \"\",\n \"ready\": \"\",\n \"upstreamSubject\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] } ] }, { - "name": "{stream_id}", + "name": "offboarding", "description": "", "item": [ { - "name": "events", - "description": "", - "item": [ - { - "id": "ca53fde1-9be7-40d7-a2ba-4690d0ceb758", - "name": "List", - "request": { - "name": "List", - "description": { - "content": "List returns a paginated list of events received on a specific SSF receiver stream, ordered by receipt time.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "ssf-receiver-streams", - ":stream_id", - "events" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ - { - "type": "any", - "value": "", - "key": "stream_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null + "id": "88dac72b-28d2-4748-9e2e-2400223ad3b2", + "name": "Create Offboarding Task", + "request": { + "name": "Create Offboarding Task", + "description": { + "content": "Create an offboarding task to remove a user's access across applications.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "task", + "offboarding" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" }, - "response": [ - { - "id": "3257b778-5d8a-408a-a4bd-1bb8c3deab41", - "name": "SSFReceiverEventServiceListResponse contains a page of received SSF events.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "ssf-receiver-streams", - ":stream_id", - "events" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "stream_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"canonicalType\": \"SSF_CANONICAL_EVENT_TYPE_STREAM_UPDATED\",\n \"id\": \"\",\n \"matchMethod\": \"SSF_SUBJECT_MATCH_METHOD_NOT_FOUND\",\n \"matchedUserId\": \"\",\n \"outcome\": \"SSF_EVENT_OUTCOME_VERIFIED\",\n \"outcomeDetail\": \"\",\n \"receivedAt\": \"\",\n \"sessionsRevoked\": \"\",\n \"setJti\": \"\",\n \"streamId\": \"\",\n \"wireEventProfile\": \"\",\n \"wireEventType\": \"\",\n \"wireInitiatingEntity\": \"\",\n \"wireReasonAdmin\": \"\",\n \"wireSubjectFormat\": \"\",\n \"wireSubjectIdentifier\": \"\"\n },\n {\n \"canonicalType\": \"SSF_CANONICAL_EVENT_TYPE_VERIFICATION\",\n \"id\": \"\",\n \"matchMethod\": \"SSF_SUBJECT_MATCH_METHOD_NOT_FOUND\",\n \"matchedUserId\": \"\",\n \"outcome\": \"SSF_EVENT_OUTCOME_PRINCIPAL_NOT_FOUND\",\n \"outcomeDetail\": \"\",\n \"receivedAt\": \"\",\n \"sessionsRevoked\": \"\",\n \"setJti\": \"\",\n \"streamId\": \"\",\n \"wireEventProfile\": \"\",\n \"wireEventType\": \"\",\n \"wireInitiatingEntity\": \"\",\n \"wireReasonAdmin\": \"\",\n \"wireSubjectFormat\": \"\",\n \"wireSubjectIdentifier\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"description\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"subjectUserId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true } - } - ] - }, - { - "name": "stats", - "description": "", - "item": [ - { - "id": "45a03445-08cb-4711-924d-ad1ea43549cc", - "name": "Get Stats", - "request": { - "name": "Get Stats", - "description": { - "content": "GetStats retrieves event processing statistics for a specific SSF receiver stream, including counts of received, acted-on, and failed events.", - "type": "text/plain" - }, + }, + "auth": null + }, + "response": [ + { + "id": "e4e0e99f-2731-4817-baf1-42890688a2b0", + "name": "The TaskServiceCreateOffboardingResponse returns the created offboarding task with optional expanded related objects.", + "originalRequest": { "url": { "path": [ "api", "v1", - "ssf-receiver-streams", - ":stream_id", - "stats" + "task", + "offboarding" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "stream_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], - "method": "GET", - "body": {}, - "auth": null + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"description\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"subjectUserId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "284b6949-d057-4cbf-af74-25b44d87124d", - "name": "SSFReceiverStreamServiceGetStatsResponse contains the event processing statistics for the stream.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "ssf-receiver-streams", - ":stream_id", - "stats" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "stream_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"stats\": {\n \"eventsActedOnCount\": \"\",\n \"eventsFailedCount\": \"\",\n \"eventsReceivedCount\": \"\",\n \"lastErrorAt\": \"\",\n \"lastErrorMessage\": \"\",\n \"lastEventReceivedAt\": \"\",\n \"lastVerifiedAt\": \"\",\n \"streamId\": \"\",\n \"transmitterStatus\": \"\",\n \"transmitterStatusReason\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 4022\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_DELETE\"\n ],\n \"analysisId\": \"\",\n \"annotations\": null,\n \"approverIds\": null,\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": true,\n \"key_1\": \"string\"\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_TIME_REVOKE\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_UNSPECIFIED\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": null,\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": null,\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_WAITING\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_WAITING\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": null,\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 7001\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_PROVISION\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": null,\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_PROCESSING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_UNSPECIFIED\",\n \"revocationTargets\": null,\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": null,\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_GRANT\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": null,\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": null,\n \"outcome\": \"ACTION_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\"\n },\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": 3235.233718512058\n },\n \"type\": \"TYPE_UNSPECIFIED\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_RISK_ACCEPTED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_IN_PROGRESS\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } ] - } - ] - }, - { - "name": "step-up", - "description": "", - "item": [ + }, { - "name": "providers", + "name": "resource-action", "description": "", "item": [ { - "id": "2ca64043-1068-41a1-976c-5c53af6eaffe", - "name": "List", + "id": "0db014d3-15e1-40b7-ad35-d2a370817dfd", + "name": "Create Resource Action Task", "request": { - "name": "List", + "name": "Create Resource Action Task", "description": { - "content": "List returns all step-up authentication providers configured for the tenant.", + "content": "Create a task that executes a connector resource-create action, for example\n creating a group in a connected application from a group template. The action\n must be enabled, visible to the caller, and target a connector action of type\n resource-create. Form values are validated against the connector's schema at\n request time.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "step-up", - "providers" + "task", + "resource-action" ], "host": [ "{{baseUrl}}" @@ -44641,26 +73319,39 @@ "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"actionId\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"formValues\": {\n \"key_0\": 2032.5187962502246\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "6a7df0d2-7632-4f4c-b0f8-641a040a11cc", - "name": "Successful response", + "id": "e735c4e2-802c-42e7-991d-7712fe7b5747", + "name": "The TaskServiceCreateResourceActionResponse returns the created action task with optional expanded related objects.", "originalRequest": { "url": { "path": [ "api", "v1", - "step-up", - "providers" + "task", + "resource-action" ], "host": [ "{{baseUrl}}" @@ -44669,6 +73360,10 @@ "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -44682,8 +73377,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"actionId\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"formValues\": {\n \"key_0\": 2032.5187962502246\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -44693,7 +73397,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"lastTestedAt\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": [\n \"\",\n \"\"\n ],\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_OIDC\"\n },\n \"oauth2\": {\n \"acrValues\": [\n \"\",\n \"\"\n ]\n },\n \"updatedAt\": \"\"\n },\n {\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"lastTestedAt\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": [\n \"\",\n \"\"\n ],\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_UNSPECIFIED\"\n },\n \"oauth2\": {\n \"acrValues\": [\n \"\",\n \"\"\n ]\n },\n \"updatedAt\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": null,\n \"analysisId\": \"\",\n \"annotations\": null,\n \"approverIds\": null,\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": \"string\"\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"JIRA\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": null,\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_NON_USAGE_REVOKE\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_UNSPECIFIED\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": null,\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_DONE\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 2762.581174450898,\n \"key_1\": 412\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": null,\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_ACCOUNT_LIFECYCLE_ACTIONS\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_TIMED_OUT\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": null,\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 4502,\n \"key_2\": true,\n \"key_3\": 9589,\n \"key_4\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": null\n }\n },\n \"policyType\": \"POLICY_TYPE_ACCESS_REQUEST\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": null,\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_WAITING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_APPROVE\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_CLOSED\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_GRANT\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": null,\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": null,\n \"outcome\": \"ACTION_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": {\n \"key_0\": \"string\"\n },\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": 7169.339440257953\n },\n \"type\": \"TYPE_GRANT\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_CERTIFIED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_REMEDIATED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -44702,22 +73406,28 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - }, + } + ] + }, + { + "name": "revoke", + "description": "", + "item": [ { - "id": "a620cdf2-6cdf-4cd4-814a-d013f507f95e", - "name": "Create", + "id": "ba797b35-5a40-4b95-8f24-478aaa018143", + "name": "Create Revoke Task", "request": { - "name": "Create", + "name": "Create Revoke Task", "description": { - "content": "Create registers a new step-up authentication provider for the tenant.", + "content": "Create a revoke task", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "step-up", - "providers" + "task", + "revoke" ], "host": [ "{{baseUrl}}" @@ -44738,155 +73448,375 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"displayName\": \"\",\n \"issuerUrl\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": [\n \"\",\n \"\"\n ],\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_ACRS\"\n },\n \"oauth2\": {\n \"acrValues\": [\n \"\",\n \"\"\n ]\n }\n}", + "raw": "{\n \"appId\": \"\",\n \"appEntitlementId\": \"\",\n \"appUserId\": \"\",\n \"description\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"identityUserId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } - } + } + }, + "auth": null + }, + "response": [ + { + "id": "725da176-301c-4e7f-af21-18c3495143c7", + "name": "The TaskServiceCreateRevokeResponse returns a task view which has a task including JSONPATHs to the expanded items in the expanded array.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "task", + "revoke" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appId\": \"\",\n \"appEntitlementId\": \"\",\n \"appUserId\": \"\",\n \"description\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"identityUserId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": null,\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": null,\n \"analysisId\": \"\",\n \"annotations\": null,\n \"approverIds\": null,\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": \"string\"\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_COPILOT\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_INIT\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": null,\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_SENDING_NOTIFICATIONS\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": \"string\",\n \"key_1\": 4044.024012302012\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 5637,\n \"key_1\": 1470\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_WEBHOOK\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_ACTIVE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_WAITING\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_DONE\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": null,\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_DONE\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": null\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": null,\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_ACCOUNT_LIFECYCLE_ACTIONS_WAITING\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_WAITING\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": null\n }\n },\n \"policyType\": \"POLICY_TYPE_ACCESS_REQUEST\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": null,\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_DONE\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_APPROVE\",\n \"revocationTargets\": null,\n \"state\": \"TASK_STATE_UNSPECIFIED\",\n \"stepApproverIds\": null,\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_GRANT\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": null,\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": null,\n \"outcome\": \"ACTION_OUTCOME_SUCCESS\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": null,\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": null\n },\n \"type\": \"TYPE_WORKFLOW\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_RISK_ACCEPTED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_DONE\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_REVOKED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "tasks", + "description": "", + "item": [ + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "d154c1c1-e19e-4e45-9e19-a6dfa0c5c4fb", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get a task by ID", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "tasks", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "74bb3840-f707-46f3-b20a-213bf2abe37a", + "name": "The TaskServiceGetResponse returns a task view which has a task including JSONPATHs to the expanded items in the expanded array.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "tasks", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\"\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": null,\n \"analysisId\": \"\",\n \"annotations\": null,\n \"approverIds\": null,\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": false\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"JIRA\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_NON_USAGE_REVOKE\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_ERROR\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": null,\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_CREATE_CONNECTOR_ACTIONS_FOR_TARGET\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": null,\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": null\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": null\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_2\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_GRANT\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": null,\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_PROCESSING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_REVIEW\",\n \"revocationTargets\": null,\n \"state\": \"TASK_STATE_UNSPECIFIED\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_GRANT\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": null,\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": {\n \"key_0\": true\n },\n \"outcome\": \"ACTION_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": {\n \"key_0\": 8259.879336807722,\n \"key_1\": 6935,\n \"key_2\": \"string\"\n },\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": true\n },\n \"type\": \"TYPE_WORKFLOW\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_REMEDIATED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "{task_id}", + "description": "", + "item": [ + { + "name": "action", + "description": "", + "item": [ + { + "name": "approve", + "description": "", + "item": [ + { + "id": "a77cbd72-489b-4a4c-828e-277dfed68d7a", + "name": "Approve", + "request": { + "name": "Approve", + "description": { + "content": "Approve the specified policy step on a task.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "tasks", + ":task_id", + "action", + "approve" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "task_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"policyStepId\": \"\",\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "231de726-eafc-4caa-9168-1cdd27d0a5eb", + "name": "The TaskActionsServiceApproveResponse returns a task view with paths indicating the location of expanded items in the array.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "tasks", + ":task_id", + "action", + "approve" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "task_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"policyStepId\": \"\",\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": null,\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": null,\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": true,\n \"key_1\": 8995.973355145803,\n \"key_2\": 3558\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\",\n \"key_2\": \"string\"\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": null,\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_AUTOMATION\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_RUNNING\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 8724.87151580589,\n \"key_1\": 9493,\n \"key_2\": 4767.544624209565\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": null,\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_DEVICE_PLACEMENT\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_UNSPECIFIED\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_SENDING_NOTIFICATIONS\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": null,\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 2355,\n \"key_1\": 9759\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_INIT\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_TIMED_OUT\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": null\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_GRANT\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyId\": \"\",\n \"policyKey\": \"\",\n \"stepKey\": \"\"\n }\n ],\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_EMERGENCY\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_DONE\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_UNSPECIFIED\",\n \"revocationTargets\": null,\n \"state\": \"TASK_STATE_CLOSED\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_GRANT\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": [\n \"\"\n ],\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": null,\n \"outcome\": \"ACTION_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": {\n \"key_0\": \"string\"\n },\n \"toolKind\": \"\",\n \"toolName\": \"\"\n },\n \"type\": \"TYPE_WORKFLOW\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_CERTIFIED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_REMEDIATED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_GRANTED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_IN_PROGRESS\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] }, - "auth": null - }, - "response": [ { - "id": "c386710e-a050-432e-856b-11cd6c8f3059", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "step-up", - "providers" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + "name": "approve-with-step-up", + "description": "", + "item": [ + { + "id": "4221b03a-ea86-4305-a1ec-b136b5df7fee", + "name": "Approve With Step Up", + "request": { + "name": "Approve With Step Up", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "Approve a task that requires step-up authentication. If a verified step-up transaction ID is provided, the approval is processed immediately. Otherwise, a redirect URL is returned for the caller to complete authentication first.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"clientId\": \"\",\n \"clientSecret\": \"\",\n \"displayName\": \"\",\n \"issuerUrl\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": [\n \"\",\n \"\"\n ],\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_ACRS\"\n },\n \"oauth2\": {\n \"acrValues\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"stepUpProvider\": {\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"lastTestedAt\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": [\n \"\",\n \"\"\n ],\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_UNSPECIFIED\"\n },\n \"oauth2\": {\n \"acrValues\": [\n \"\",\n \"\"\n ]\n },\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{id}", - "description": "", - "item": [ - { - "id": "1b2de3d6-e926-431f-8a8a-a2bbead17d55", - "name": "Delete", - "request": { - "name": "Delete", - "description": { - "content": "Delete removes a step-up authentication provider from the tenant.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "step-up", - "providers", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "b26e1479-295f-466a-b6e4-a0a3e06b6e7c", - "name": "Successful response", - "originalRequest": { "url": { "path": [ "api", "v1", - "step-up", - "providers", - ":id" + "tasks", + ":task_id", + "action", + "approve-with-step-up" ], "host": [ "{{baseUrl}}" @@ -44894,14 +73824,14 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "task_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" + } } ] }, @@ -44913,102 +73843,123 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"policyStepId\": \"\",\n \"stepUpTransactionId\": \"\",\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "71a45112-4615-47c2-94d7-6e1b2f8d4693", + "name": "TaskActionsServiceApproveWithStepUpResponse is the response for approving a task with step-up authentication", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "tasks", + ":task_id", + "action", + "approve-with-step-up" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "task_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"policyStepId\": \"\",\n \"stepUpTransactionId\": \"\",\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\"\n }\n ],\n \"redirectUrl\": \"\",\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": null,\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\"\n }\n ],\n \"approverIds\": null,\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": null,\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": null,\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_COPILOT\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_UNSPECIFIED\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_INIT\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": true\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_ACCOUNT_LIFECYCLE_ACTIONS_WAITING\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_UNSPECIFIED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": null,\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": null\n },\n \"key_1\": {\n \"steps\": null\n },\n \"key_2\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 3855.631237022883,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_3\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_CERTIFY\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": null,\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_EMERGENCY\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_WAITING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_REVIEW\",\n \"revocationTargets\": null,\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_GRANT\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": null,\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": {\n \"key_0\": 9302,\n \"key_1\": 728.4456380655357\n },\n \"outcome\": \"ACTION_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": null,\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": {}\n },\n \"type\": \"TYPE_RESOURCE_ACTION\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_DECERTIFIED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_GRANTED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_DONE\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, { - "id": "67c34bdc-2ff1-4b96-9b15-0d90de575d47", - "name": "Get", - "request": { - "name": "Get", - "description": { - "content": "Get retrieves a single step-up authentication provider by its ID.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "step-up", - "providers", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + "name": "close", + "description": "", + "item": [ { - "id": "66463fd1-bceb-466d-8abe-b02546e1eb4d", - "name": "Successful response", - "originalRequest": { + "id": "f89fcb53-4d34-4a3f-ae42-24735cbaac22", + "name": "Close", + "request": { + "name": "Close", + "description": { + "content": "Close a task, ending its workflow. Async — returns a ticketActionId on\n accept and queues the close; the task's state field is not updated\n synchronously. Poll task_service_get to observe the transition to\n TASK_STATE_CLOSED. When the task has an active provision step, close\n may no-op — finish or cancel the provision step first\n (mark_provision_complete / _errored / _cancelled) before closing.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "step-up", - "providers", - ":id" + "tasks", + ":task_id", + "action", + "close" ], "host": [ "{{baseUrl}}" @@ -45016,121 +73967,142 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "task_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" + } } ] }, "header": [ { - "key": "Accept", + "key": "Content-Type", "value": "application/json" }, { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " + "key": "Accept", + "value": "application/json" } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "cea4b546-5462-4ee0-bb5d-c05a19c5e2ea", + "name": "The TaskActionsServiceCloseResponse returns a task view with paths indicating the location of expanded items in the array.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "tasks", + ":task_id", + "action", + "close" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "task_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": null,\n \"taskActionId\": \"\",\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": null,\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": true\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": 8967\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"JIRA\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": null\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_API\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_UNSPECIFIED\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_DONE\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 3858,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_DONE\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_ACTIVE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_TIMED_OUT\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": null,\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 4216\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": null\n },\n \"key_2\": {\n \"steps\": null\n }\n },\n \"policyType\": \"POLICY_TYPE_UNSPECIFIED\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyId\": \"\",\n \"policyKey\": \"\",\n \"stepKey\": \"\"\n }\n ],\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_UNSPECIFIED\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_DENY\",\n \"revocationTargets\": null,\n \"state\": \"TASK_STATE_CLOSED\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": null,\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": null,\n \"outcome\": \"ACTION_OUTCOME_SUCCESS\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": null,\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": null\n },\n \"type\": \"TYPE_RESOURCE_ACTION\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_REMEDIATED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"stepUpProvider\": {\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"lastTestedAt\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": [\n \"\",\n \"\"\n ],\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_UNSPECIFIED\"\n },\n \"oauth2\": {\n \"acrValues\": [\n \"\",\n \"\"\n ]\n },\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, { - "id": "4d348740-3dde-4067-9f24-9fe66792e828", - "name": "Update", - "request": { - "name": "Update", - "description": { - "content": "Update modifies an existing step-up authentication provider's configuration. Use the update mask to specify which fields to change.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "step-up", - "providers", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"stepUpProvider\": {\n \"clientId\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"issuerUrl\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": [\n \"\",\n \"\"\n ],\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_UNSPECIFIED\"\n },\n \"oauth2\": {\n \"acrValues\": [\n \"\",\n \"\"\n ]\n }\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "name": "comment", + "description": "", + "item": [ { - "id": "e2b713c2-c079-40f0-a4fe-9fdb13d3cbe5", - "name": "Successful response", - "originalRequest": { + "id": "dfd28132-759a-4434-a0ab-88e3af686219", + "name": "Comment", + "request": { + "name": "Comment", + "description": { + "content": "Post a comment on a task without changing its state.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "step-up", - "providers", - ":id" + "tasks", + ":task_id", + "action", + "comment" ], "host": [ "{{baseUrl}}" @@ -45138,14 +74110,14 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "task_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" + } } ] }, @@ -45157,67 +74129,123 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"stepUpProvider\": {\n \"clientId\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"issuerUrl\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": [\n \"\",\n \"\"\n ],\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_UNSPECIFIED\"\n },\n \"oauth2\": {\n \"acrValues\": [\n \"\",\n \"\"\n ]\n }\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": null\n }\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "b44ee77d-2fe7-4a8f-ad66-b10938aa67dc", + "name": "Task actions service comment response returns the task view inluding the expanded array of items that are indicated by the expand mask on the request.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "tasks", + ":task_id", + "action", + "comment" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "task_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 2963,\n \"key_1\": \"string\",\n \"key_2\": 756.3829496484598,\n \"key_3\": 8639\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_CLOSE\"\n ],\n \"analysisId\": \"\",\n \"annotations\": null,\n \"approverIds\": null,\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": 5045,\n \"key_1\": \"string\"\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_COPILOT\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_UNSPECIFIED\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": null,\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 9904,\n \"key_1\": false\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": null\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_SENDING_NOTIFICATIONS\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_WAITING\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": null,\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 9142.633894934092,\n \"key_1\": 417.2432422995431,\n \"key_2\": 51.095793707345294\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": null\n }\n },\n \"policyType\": \"POLICY_TYPE_REVOKE\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": null,\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_DONE\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_REVIEW\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": null,\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_GRANT\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": null,\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": {\n \"key_0\": \"string\"\n },\n \"outcome\": \"ACTION_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": null,\n \"toolKind\": \"\",\n \"toolName\": \"\"\n },\n \"type\": \"TYPE_RESOURCE_ACTION\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_CERTIFIED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_REVOKED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"stepUpProvider\": {\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"lastTestedAt\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": [\n \"\",\n \"\"\n ],\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_ACRS\"\n },\n \"oauth2\": {\n \"acrValues\": [\n \"\",\n \"\"\n ]\n },\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, { - "name": "secret", + "name": "deny", "description": "", "item": [ { - "id": "fdf4aabb-70e0-453d-bb84-220b31b36fe7", - "name": "Update Secret", + "id": "bb19ecb6-eaad-4eea-b091-2c149715f17e", + "name": "Deny", "request": { - "name": "Update Secret", + "name": "Deny", "description": { - "content": "UpdateSecret rotates the client secret for a step-up authentication provider without modifying other settings.", + "content": "Deny the specified policy step on a task. In multi-step policies, this may route to fallback steps rather than finalizing the task outcome.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "step-up", - "providers", - ":id", - "secret" + "tasks", + ":task_id", + "action", + "deny" ], "host": [ "{{baseUrl}}" @@ -45227,7 +74255,7 @@ { "type": "any", "value": "", - "key": "id", + "key": "task_id", "disabled": false, "description": { "content": "(Required) ", @@ -45249,7 +74277,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"clientSecret\": \"\"\n}", + "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"policyStepId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -45261,17 +74289,17 @@ }, "response": [ { - "id": "1a42d2de-d075-4772-b3cb-2942cd69da0f", - "name": "Successful response", + "id": "6118444c-b877-4ac8-b2d2-4c971542ec98", + "name": "The TaskActionsServiceDenyResponse returns a task view with paths indicating the location of expanded items in the array.", "originalRequest": { "url": { "path": [ "api", "v1", - "step-up", - "providers", - ":id", - "secret" + "tasks", + ":task_id", + "action", + "deny" ], "host": [ "{{baseUrl}}" @@ -45286,7 +74314,7 @@ }, "type": "any", "value": "", - "key": "id" + "key": "task_id" } ] }, @@ -45311,7 +74339,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"clientSecret\": \"\"\n}", + "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"policyStepId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -45328,7 +74356,7 @@ "value": "application/json" } ], - "body": "{\n \"stepUpProvider\": {\n \"clientId\": \"\",\n \"createdAt\": \"\",\n \"displayName\": \"\",\n \"enabled\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"lastTestedAt\": \"\",\n \"microsoft\": {\n \"conditionalAccessIds\": [\n \"\",\n \"\"\n ],\n \"tenant\": \"\",\n \"validationMode\": \"MICROSOFT_VALIDATION_MODE_ACRS\"\n },\n \"oauth2\": {\n \"acrValues\": [\n \"\",\n \"\"\n ]\n },\n \"updatedAt\": \"\"\n }\n}", + "body": "{\n \"expanded\": null,\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_SKIP_STEP\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": 6729.543050922964,\n \"key_2\": false\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": null,\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_AUTOMATION\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_ERROR\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 246.19841240632434,\n \"key_1\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_EXTERNAL_TICKET\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_WAITING\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": null,\n \"next\": null,\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 1783\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": null\n },\n \"key_2\": {\n \"steps\": null\n },\n \"key_3\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_ACCESS_REQUEST\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyId\": \"\",\n \"policyKey\": \"\",\n \"stepKey\": \"\"\n }\n ],\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_PROCESSING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_REVIEW\",\n \"revocationTargets\": null,\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": null,\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": {\n \"key_0\": false,\n \"key_1\": true\n },\n \"outcome\": \"ACTION_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": {\n \"key_0\": \"string\"\n },\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": {}\n },\n \"type\": \"TYPE_MANUAL\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_DECERTIFIED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_REMEDIATED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_IN_PROGRESS\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -45341,26 +74369,26 @@ ] }, { - "name": "test", + "name": "escalate", "description": "", "item": [ { - "id": "ec47a3c5-156a-428a-a371-06f952e9a5f3", - "name": "Test", + "id": "753630c3-292a-4d2d-a800-ffe5b85b5093", + "name": "Escalate To Emergency Access", "request": { - "name": "Test", + "name": "Escalate To Emergency Access", "description": { - "content": "Test initiates a test authentication flow against a step-up provider and returns a redirect URL for the caller to complete verification.", + "content": "Escalate a grant task to use the emergency access policy, bypassing the normal approval flow. Only valid for grant tasks.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "step-up", - "providers", - ":id", - "test" + "tasks", + ":task_id", + "action", + "escalate" ], "host": [ "{{baseUrl}}" @@ -45370,7 +74398,7 @@ { "type": "any", "value": "", - "key": "id", + "key": "task_id", "disabled": false, "description": { "content": "(Required) ", @@ -45392,7 +74420,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"policyStepId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -45404,17 +74432,17 @@ }, "response": [ { - "id": "fa9304b2-f591-4bfd-bc4d-f6b5d35b050b", - "name": "Successful response", + "id": "b7624fb0-0878-4828-9f05-648a116ee069", + "name": "A generic response for task action endpoints, containing the updated task and the ID of the action that was created.", "originalRequest": { "url": { "path": [ "api", "v1", - "step-up", - "providers", - ":id", - "test" + "tasks", + ":task_id", + "action", + "escalate" ], "host": [ "{{baseUrl}}" @@ -45429,7 +74457,7 @@ }, "type": "any", "value": "", - "key": "id" + "key": "task_id" } ] }, @@ -45454,7 +74482,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"policyStepId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -45471,7 +74499,7 @@ "value": "application/json" } ], - "body": "{\n \"redirectUrl\": \"\"\n}", + "body": "{\n \"expanded\": null,\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": null,\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": true,\n \"key_2\": 9596\n }\n ],\n \"approverIds\": null,\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": null,\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": null,\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_JIRA\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_DONE\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": null,\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_UNSPECIFIED\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_ACTIVE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_UNSPECIFIED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": null,\n \"next\": null,\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": null\n }\n },\n \"policyType\": \"POLICY_TYPE_GRANT\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyId\": \"\",\n \"policyKey\": \"\",\n \"stepKey\": \"\"\n }\n ],\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_PROCESSING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_REVIEW\",\n \"revocationTargets\": null,\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": null,\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": {\n \"key_0\": \"string\"\n },\n \"outcome\": \"ACTION_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": {\n \"key_0\": \"string\",\n \"key_1\": 471.91794430024413,\n \"key_2\": \"string\"\n },\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": 8870.527176242176\n },\n \"type\": \"TYPE_UNSPECIFIED\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_REMEDIATED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -45482,75 +74510,28 @@ } } ] - } - ] - } - ] - }, - { - "name": "transactions", - "description": "", - "item": [ - { - "name": "{id}", - "description": "", - "item": [ + }, { - "id": "7cf4a713-e5e9-4f8e-947a-ba4ae617d0a7", - "name": "Get", - "request": { - "name": "Get", - "description": { - "content": "Get retrieves a specific step-up transaction by ID", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "step-up", - "transactions", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + "name": "process", + "description": "", + "item": [ { - "id": "d70c82ec-1e49-41bd-abc6-0c0b6aad84a4", - "name": "Response message containing the requested step-up transaction", - "originalRequest": { + "id": "748a2b76-f0f7-4182-9f3b-6b7a0040dc25", + "name": "Process Now", + "request": { + "name": "Process Now", + "description": { + "content": "Trigger immediate processing of a task, bypassing any scheduled wait. For tasks linked to an external system, this also attempts to sync the external state.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "step-up", - "transactions", - ":id" + "tasks", + ":task_id", + "action", + "process" ], "host": [ "{{baseUrl}}" @@ -45558,490 +74539,428 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "task_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" + } } ] }, "header": [ { - "key": "Accept", + "key": "Content-Type", "value": "application/json" }, { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " + "key": "Accept", + "value": "application/json" } ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"transaction\": {\n \"approveTask\": {\n \"policyStepId\": \"\",\n \"taskId\": \"\"\n },\n \"claims\": {\n \"key_0\": 514,\n \"key_1\": 8257.106995578479,\n \"key_2\": false,\n \"key_3\": 8853\n },\n \"createdAt\": \"\",\n \"errorMessage\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"providerId\": \"\",\n \"state\": \"STEP_UP_TRANSACTION_STATE_ERROR\",\n \"test\": {},\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - } - ] - }, - { - "name": "systemlog", - "description": "", - "item": [ - { - "name": "events", - "description": "", - "item": [ - { - "id": "9533b323-c50c-4f4d-ad52-b46053dbb8cc", - "name": "List Events", - "request": { - "name": "List Events", - "description": { - "content": "ListEvents pulls Events from the ConductorOne system.\n\n This endpoint should be used to synchronize the\n system log events to external systems.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "systemlog", - "events" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"since\": \"\",\n \"sinceEventUid\": \"\",\n \"sortDirection\": \"SORT_DIRECTION_ASC\",\n \"until\": \"\",\n \"untilEventUid\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "a251af18-42b1-4024-8dca-af16cce18a8d", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "systemlog", - "events" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"expandMask\": {\n \"paths\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"since\": \"\",\n \"sinceEventUid\": \"\",\n \"sortDirection\": \"SORT_DIRECTION_ASC\",\n \"until\": \"\",\n \"untilEventUid\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"key_0\": 9376.527259540142\n },\n {\n \"key_0\": 6013.100656198171,\n \"key_1\": true,\n \"key_2\": 8872\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "exports", - "description": "", - "item": [ - { - "id": "b43678f2-212e-40e5-9431-759f9c625404", - "name": "List", - "request": { - "name": "List", - "description": { - "content": "List Exports.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "systemlog", - "exports" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" + "auth": null }, - "key": "page_token", - "value": "" + "response": [ + { + "id": "84aa3ce8-ab66-4149-8579-d4bddc8a7b97", + "name": "The TaskActionsServiceProcessNowResponse returns the task view after triggering immediate processing.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "tasks", + ":task_id", + "action", + "process" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "task_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"expandMask\": {\n \"paths\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": null,\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": null,\n \"analysisId\": \"\",\n \"annotations\": null,\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": null,\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_UNSPECIFIED\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_UNSPECIFIED\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_WEBHOOK_WAITING\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_UNSPECIFIED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_DONE\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_DONE\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_EXTERNAL_TICKET_WAITING\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_ACTIVE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_WAITING\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": null\n },\n \"key_2\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": null\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_3\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": 9589.084114633373\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_GRANT\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": null,\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_EMERGENCY\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_PROCESSING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_UNSPECIFIED\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_GRANT\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": null,\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": {\n \"key_0\": true,\n \"key_1\": 4732\n },\n \"outcome\": \"ACTION_OUTCOME_SUCCESS\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": {\n \"key_0\": \"string\"\n },\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": null\n },\n \"type\": \"TYPE_RESOURCE_ACTION\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "variable": [] + ] }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ { - "id": "d6892fb0-de53-449e-bdfe-7a45b5d20941", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "systemlog", - "exports" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" + "name": "reassign", + "description": "", + "item": [ + { + "id": "0796ecee-3cd8-4972-9145-7a7068f46f3a", + "name": "Reassign", + "request": { + "name": "Reassign", + "description": { + "content": "Reassign a task's current policy step to a different set of users. The target step must be an approval, provision, or form step.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "tasks", + ":task_id", + "action", + "reassign" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "task_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" }, - "key": "page_size", - "value": "" + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"newStepUserIds\": null,\n \"policyStepId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } }, + "auth": null + }, + "response": [ { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" + "id": "44fa1479-0d1a-4ae9-bcab-0abe96e9902f", + "name": "The TaskActionsServiceReassignResponse returns a task view with paths indicating the location of expanded items in the array.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "tasks", + ":task_id", + "action", + "reassign" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "task_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"newStepUserIds\": null,\n \"policyStepId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, - "key": "page_token", - "value": "" + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": null,\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": null,\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": 5858\n }\n ],\n \"approverIds\": null,\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": null,\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": null,\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_JIRA\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_RUNNING\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": null,\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 5236.476126969396,\n \"key_1\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_ACCOUNT_LIFECYCLE_ACTIONS_WAITING\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_WAITING\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": null,\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": null\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": true,\n \"key_2\": 201,\n \"key_3\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 9621.999437006714,\n \"key_1\": \"string\",\n \"key_2\": 7368\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_PROVISION\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": null,\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_DONE\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_APPROVE\",\n \"revocationTargets\": null,\n \"state\": \"TASK_STATE_UNSPECIFIED\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_GRANT\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": null,\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": null,\n \"outcome\": \"ACTION_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": {\n \"key_0\": 8553.518851838418\n },\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": \"string\"\n },\n \"type\": \"TYPE_RESOURCE_ACTION\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_GZIP\",\n \"prefix\": \"\"\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"exportId\": \"\",\n \"state\": \"EXPORT_STATE_ERROR\",\n \"updatedAt\": \"\",\n \"watermarkEventId\": \"\"\n },\n {\n \"createdAt\": \"\",\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_GZIP\",\n \"prefix\": \"\"\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"exportId\": \"\",\n \"state\": \"EXPORT_STATE_WAITING\",\n \"updatedAt\": \"\",\n \"watermarkEventId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "84533e3e-f6f5-4483-8857-2427c1e62777", - "name": "Create", - "request": { - "name": "Create", - "description": { - "content": "Create a system log export.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "systemlog", - "exports" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_GZIP\",\n \"prefix\": \"\"\n },\n \"displayName\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" } - } + ] }, - "auth": null - }, - "response": [ { - "id": "0a77a09a-9801-4c6a-8a05-aba2f773f7a5", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "systemlog", - "exports" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + "name": "reset", + "description": "", + "item": [ + { + "id": "160bff54-9b46-4bf8-8e1f-56f17ff1a042", + "name": "Hard Reset", + "request": { + "name": "Hard Reset", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "Reset a task and recalculate its policy from scratch. Unlike Restart, this re-evaluates which policy applies to the task.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_GZIP\",\n \"prefix\": \"\"\n },\n \"displayName\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"exporter\": {\n \"createdAt\": \"\",\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_ZSTD\",\n \"prefix\": \"\"\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"exportId\": \"\",\n \"state\": \"EXPORT_STATE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"watermarkEventId\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{export_id}", - "description": "", - "item": [ - { - "id": "4d80ebf6-2f31-414d-83ac-7a2d127e9988", - "name": "Delete", - "request": { - "name": "Delete", - "description": { - "content": "Delete a system log export by ID.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "systemlog", - "exports", - ":export_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "export_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "url": { + "path": [ + "api", + "v1", + "tasks", + ":task_id", + "action", + "reset" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "task_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + "response": [ + { + "id": "65c9d399-78ac-45a7-ba04-63936b116a02", + "name": "The TaskActionsServiceHardResetResponse returns the updated task after a hard reset.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "tasks", + ":task_id", + "action", + "reset" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "task_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": null,\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_RESTART\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": 2411\n }\n ],\n \"approverIds\": null,\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": null,\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_PROFILE_MEMBERSHIP\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_UNSPECIFIED\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": null,\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 3362.761157176466\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_SENDING_NOTIFICATIONS\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_TIMED_OUT\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_ERROR\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": null,\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_INIT\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_ACTIVE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_UNSPECIFIED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null,\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 9785.767010632686\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": null,\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": null\n }\n },\n \"policyType\": \"POLICY_TYPE_PROVISION\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyId\": \"\",\n \"policyKey\": \"\",\n \"stepKey\": \"\"\n }\n ],\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_UNSPECIFIED\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_UNSPECIFIED\",\n \"revocationTargets\": null,\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_GRANT\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": null,\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": {\n \"key_0\": 9692.301925939248,\n \"key_1\": 3105,\n \"key_2\": true\n },\n \"outcome\": \"ACTION_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": null,\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": null\n },\n \"type\": \"TYPE_GRANT\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_GRANTED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } - }, - "auth": null - }, - "response": [ + } + ] + }, + { + "name": "restart", + "description": "", + "item": [ { - "id": "393a368c-bdd4-4723-b87b-97ad7643f655", - "name": "Successful response", - "originalRequest": { + "id": "bddae2dd-9294-4eac-8f45-f6370b808d2d", + "name": "Restart", + "request": { + "name": "Restart", + "description": { + "content": "Restart a task, returning it to the beginning of its current policy workflow.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "systemlog", - "exports", - ":export_id" + "tasks", + ":task_id", + "action", + "restart" ], "host": [ "{{baseUrl}}" @@ -46049,14 +74968,14 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "task_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "export_id" + } } ] }, @@ -46068,102 +74987,123 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "DELETE", + "method": "POST", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"policyStepId\": \"\"\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "51cdb0a4-bcc5-4750-86dd-930582ebb645", + "name": "The TaskActionsServiceRestartResponse returns the updated task after restarting.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "tasks", + ":task_id", + "action", + "restart" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "task_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"policyStepId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": true,\n \"key_2\": \"string\"\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_UPDATE_REQUEST_DATA\"\n ],\n \"analysisId\": \"\",\n \"annotations\": null,\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": 6414,\n \"key_1\": true\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": null,\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_JIRA\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_RUNNING\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": null,\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_EXTERNAL_TICKET\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_TIMED_OUT\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_ERROR\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": null\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 9277\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_SENDING_NOTIFICATIONS\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": null,\n \"reassignToUserIds\": null\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": null\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": null,\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": null,\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": null,\n \"includeDeactivated\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": false,\n \"key_2\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": null\n },\n \"key_1\": {\n \"steps\": null\n },\n \"key_2\": {\n \"steps\": null\n },\n \"key_3\": {\n \"steps\": null\n }\n },\n \"policyType\": \"POLICY_TYPE_REVOKE\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": null,\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_EMERGENCY\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_UNSPECIFIED\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_REVIEW\",\n \"revocationTargets\": null,\n \"state\": \"TASK_STATE_UNSPECIFIED\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": null,\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": {\n \"key_0\": false,\n \"key_1\": 6482.776798492087,\n \"key_2\": false\n },\n \"outcome\": \"ACTION_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": null,\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": null\n },\n \"type\": \"TYPE_UNSPECIFIED\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, { - "id": "22b35eae-0ff8-4554-a81b-8f352fdfea5a", - "name": "Get", - "request": { - "name": "Get", - "description": { - "content": "Get a system log export by ID", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "systemlog", - "exports", - ":export_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "export_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + "name": "retry-provisioning", + "description": "", + "item": [ { - "id": "ea40fc54-37dc-4e8b-b49a-0c2101560e1f", - "name": "The ExportServiceGetResponse message contains the system log exporter object.", - "originalRequest": { + "id": "c4493d2d-c991-4c03-a296-39cd2a5d0e09", + "name": "Retry Provisioning", + "request": { + "name": "Retry Provisioning", + "description": { + "content": "Retry the provisioning of a task whose connector provisioning failed. Resets the\n failed connector actions and re-drives the connector, preserving the already-collected\n approvals. Only valid when the task's current provision step ended in an error.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "systemlog", - "exports", - ":export_id" + "tasks", + ":task_id", + "action", + "retry-provisioning" ], "host": [ "{{baseUrl}}" @@ -46171,121 +75111,142 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "task_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "export_id" + } } ] }, "header": [ { - "key": "Accept", + "key": "Content-Type", "value": "application/json" }, { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " + "key": "Accept", + "value": "application/json" } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"policyStepId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "d9461c8f-70b4-4349-8e0d-466afb8ae57c", + "name": "A generic response for task action endpoints, containing the updated task and the ID of the action that was created.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "tasks", + ":task_id", + "action", + "retry-provisioning" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "task_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": null\n },\n \"policyStepId\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": null,\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": null,\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": true,\n \"key_2\": 9596\n }\n ],\n \"approverIds\": null,\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": null,\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": null,\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_JIRA\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_DONE\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": null,\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_UNSPECIFIED\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_ACTIVE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_UNSPECIFIED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": null,\n \"next\": null,\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": null\n }\n },\n \"policyType\": \"POLICY_TYPE_GRANT\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyId\": \"\",\n \"policyKey\": \"\",\n \"stepKey\": \"\"\n }\n ],\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_PROCESSING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_REVIEW\",\n \"revocationTargets\": null,\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": null,\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": {\n \"key_0\": \"string\"\n },\n \"outcome\": \"ACTION_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": {\n \"key_0\": \"string\",\n \"key_1\": 471.91794430024413,\n \"key_2\": \"string\"\n },\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": 8870.527176242176\n },\n \"type\": \"TYPE_UNSPECIFIED\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_REMEDIATED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"exporter\": {\n \"createdAt\": \"\",\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_ZSTD\",\n \"prefix\": \"\"\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"exportId\": \"\",\n \"state\": \"EXPORT_STATE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"watermarkEventId\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, { - "id": "c59f5be6-fb7f-48d5-93f0-3f0a253945ed", - "name": "Update", - "request": { - "name": "Update", - "description": { - "content": "Update a system log export by providing an export object and an update mask.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "systemlog", - "exports", - ":export_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "export_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"exporter\": {\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_ZSTD\",\n \"prefix\": \"\"\n },\n \"displayName\": \"\"\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "name": "skip-step", + "description": "", + "item": [ { - "id": "2d3b452c-6dbe-47fc-8f07-2383d2277824", - "name": "Successful response", - "originalRequest": { + "id": "8e9fad6f-7d70-4037-a0f0-4a0e6affbb24", + "name": "Skip Step", + "request": { + "name": "Skip Step", + "description": { + "content": "Skip a specific policy step in a task, advancing the task to the next step in the workflow.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "systemlog", - "exports", - ":export_id" + "tasks", + ":task_id", + "action", + "skip-step" ], "host": [ "{{baseUrl}}" @@ -46293,14 +75254,157 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "task_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"policyStepId\": \"\",\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "8229a19e-da91-49ae-9935-f6f0f328006c", + "name": "A generic response for task action endpoints, containing the updated task and the ID of the action that was created.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "tasks", + ":task_id", + "action", + "skip-step" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "task_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"policyStepId\": \"\",\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": null,\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": null,\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": true,\n \"key_2\": 9596\n }\n ],\n \"approverIds\": null,\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": null,\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": null,\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_JIRA\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_DONE\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": null,\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_UNSPECIFIED\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_ACTIVE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_UNSPECIFIED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": null,\n \"next\": null,\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": null\n }\n },\n \"policyType\": \"POLICY_TYPE_GRANT\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyId\": \"\",\n \"policyKey\": \"\",\n \"stepKey\": \"\"\n }\n ],\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_PROCESSING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_REVIEW\",\n \"revocationTargets\": null,\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": null,\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": {\n \"key_0\": \"string\"\n },\n \"outcome\": \"ACTION_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": {\n \"key_0\": \"string\",\n \"key_1\": 471.91794430024413,\n \"key_2\": \"string\"\n },\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": 8870.527176242176\n },\n \"type\": \"TYPE_UNSPECIFIED\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_REMEDIATED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "update-grant-duration", + "description": "", + "item": [ + { + "id": "b7c005eb-ac04-45f6-a277-491e2bd99a2b", + "name": "Update Grant Duration", + "request": { + "name": "Update Grant Duration", + "description": { + "content": "Update the grant duration for a task. Only applies to grant tasks with a single entitlement that are not in a provision step. The new duration must not exceed the entitlement's maximum allowed provision time.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "tasks", + ":task_id", + "action", + "update-grant-duration" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { "type": "any", "value": "", - "key": "export_id" + "key": "task_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } ] }, @@ -46312,67 +75416,123 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"exporter\": {\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_OCSF_JSON_ZSTD\",\n \"prefix\": \"\"\n },\n \"displayName\": \"\"\n },\n \"updateMask\": \"\"\n}", + "raw": "{\n \"duration\": \"\",\n \"expandMask\": {\n \"paths\": null\n }\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "bb3f4b24-42a6-4feb-942c-b8596dc331cf", + "name": "A generic response for task action endpoints, containing the updated task and the ID of the action that was created.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "tasks", + ":task_id", + "action", + "update-grant-duration" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "task_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"duration\": \"\",\n \"expandMask\": {\n \"paths\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": null,\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": null,\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": true,\n \"key_2\": 9596\n }\n ],\n \"approverIds\": null,\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": null,\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": null,\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_JIRA\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_DONE\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": null,\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_UNSPECIFIED\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_ACTIVE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_UNSPECIFIED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": null,\n \"next\": null,\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": null\n }\n },\n \"policyType\": \"POLICY_TYPE_GRANT\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyId\": \"\",\n \"policyKey\": \"\",\n \"stepKey\": \"\"\n }\n ],\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_PROCESSING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_REVIEW\",\n \"revocationTargets\": null,\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": null,\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": {\n \"key_0\": \"string\"\n },\n \"outcome\": \"ACTION_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": {\n \"key_0\": \"string\",\n \"key_1\": 471.91794430024413,\n \"key_2\": \"string\"\n },\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": 8870.527176242176\n },\n \"type\": \"TYPE_UNSPECIFIED\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_REMEDIATED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"exporter\": {\n \"createdAt\": \"\",\n \"datasource\": {\n \"datasourceId\": \"\",\n \"format\": \"EXPORT_FORMAT_UNSPECIFIED\",\n \"prefix\": \"\"\n },\n \"deletedAt\": \"\",\n \"displayName\": \"\",\n \"exportId\": \"\",\n \"state\": \"EXPORT_STATE_EXPORTING\",\n \"updatedAt\": \"\",\n \"watermarkEventId\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, { - "name": "events", + "name": "update-request-data", "description": "", "item": [ { - "id": "9320dd1c-2906-4f5f-add9-10aa85f7814f", - "name": "List Events", + "id": "f1735382-b573-4841-8bd3-da8fdd238bf6", + "name": "Update Request Data", "request": { - "name": "List Events", + "name": "Update Request Data", "description": { - "content": "List audit events belonging to a specific system log export.", + "content": "Update the request data on a task that is currently in a form step. The submitted data is validated against the form schema before being applied.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "systemlog", - "exports", - ":export_id", - "events" + "tasks", + ":task_id", + "action", + "update-request-data" ], "host": [ "{{baseUrl}}" @@ -46382,7 +75542,7 @@ { "type": "any", "value": "", - "key": "export_id", + "key": "task_id", "disabled": false, "description": { "content": "(Required) ", @@ -46404,7 +75564,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", + "raw": "{\n \"data\": null,\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -46416,17 +75576,17 @@ }, "response": [ { - "id": "e0341340-d9a0-4fd0-9716-e5e9a33d1e57", - "name": "ExportServiceListEventsResponse is the response containing audit events for an export.", + "id": "89047b1a-3d07-4c85-a052-91ced8be5f43", + "name": "A generic response for task action endpoints, containing the updated task and the ID of the action that was created.", "originalRequest": { "url": { "path": [ "api", "v1", - "systemlog", - "exports", - ":export_id", - "events" + "tasks", + ":task_id", + "action", + "update-request-data" ], "host": [ "{{baseUrl}}" @@ -46441,7 +75601,7 @@ }, "type": "any", "value": "", - "key": "export_id" + "key": "task_id" } ] }, @@ -46466,7 +75626,7 @@ "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\"\n}", + "raw": "{\n \"data\": null,\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", "options": { "raw": { "headerFamily": "json", @@ -46483,7 +75643,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"key_0\": \"string\"\n },\n {\n \"key_0\": true\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"expanded\": null,\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"principalResourcePath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": null,\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": true,\n \"key_2\": 9596\n }\n ],\n \"approverIds\": null,\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": null,\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": null,\n \"fields\": null,\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": null,\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_JIRA\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_DONE\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": null\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": null,\n \"expressions\": null,\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": null,\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": null,\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": null,\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": null,\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": null,\n \"fieldRelationships\": null,\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"readOnly\": \"\",\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"dateField\": {\n \"defaultToToday\": \"\",\n \"maxDate\": \"\",\n \"maxDaysFromToday\": \"\",\n \"minDate\": \"\",\n \"minDaysFromToday\": \"\"\n },\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": null,\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": null,\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": null,\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {\n \"excludeUserIds\": [\n \"\"\n ],\n \"includeDeactivated\": \"\",\n \"userIds\": null\n },\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": null,\n \"notIn\": null,\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": null,\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": null\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": null,\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_UNSPECIFIED\",\n \"waitingOn\": {\n \"devicePlacement\": {\n \"recipientUserId\": \"\",\n \"vaultBoundaryId\": \"\"\n },\n \"entitlementMerge\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n },\n \"fallbackAt\": \"\",\n \"startedWaitingAt\": \"\"\n },\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_ACTIVE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_UNSPECIFIED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": null,\n \"next\": null,\n \"policy\": {\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"baselinePolicyId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": null\n }\n },\n \"policyType\": \"POLICY_TYPE_GRANT\",\n \"postActions\": null,\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyId\": \"\",\n \"policyKey\": \"\",\n \"stepKey\": \"\"\n }\n ],\n \"scope\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"slot\": \"POLICY_SCOPE_SLOT_UNSPECIFIED\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_PROCESSING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_REVIEW\",\n \"revocationTargets\": null,\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"batonResourceActionRef\": {\n \"appId\": \"\",\n \"batonActionDisplayName\": \"\",\n \"batonActionName\": \"\",\n \"connectorId\": \"\",\n \"resourceTypeId\": \"\"\n },\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"createdAppEntitlementIds\": null,\n \"createdAppResourceId\": \"\",\n \"createdAppResourceTypeId\": \"\",\n \"displayName\": \"\",\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\"\n },\n \"formValues\": {\n \"key_0\": \"string\"\n },\n \"outcome\": \"ACTION_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"toolCall\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"callerKind\": \"\",\n \"connectorId\": \"\",\n \"gateId\": \"\",\n \"inputSizeBytes\": \"\",\n \"toolError\": \"\",\n \"toolId\": \"\",\n \"toolInput\": {\n \"key_0\": \"string\",\n \"key_1\": 471.91794430024413,\n \"key_2\": \"string\"\n },\n \"toolKind\": \"\",\n \"toolName\": \"\",\n \"toolOutput\": 8870.527176242176\n },\n \"type\": \"TYPE_UNSPECIFIED\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n }\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_REMEDIATED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"resource\": {\n \"appId\": \"\",\n \"appResourceTypeId\": \"\",\n \"id\": \"\"\n },\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -46502,28 +75662,28 @@ ] }, { - "name": "task", + "name": "terraform-export", "description": "", "item": [ { - "name": "audits", + "name": "schema", "description": "", "item": [ { - "id": "00c76fb6-4824-4635-b7e3-a91a6843459b", - "name": "List", + "id": "f57ed4ed-342d-41d5-bc82-97e569c3d65c", + "name": "Get Schema", "request": { - "name": "List", + "name": "Get Schema", "description": { - "content": "List audit trail events for a task.", + "content": "GetSchema returns the field-by-field Terraform mapping for one C1\n API object type. Cacheable by (object_fqn, block_kind,\n provider_version).", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "task", - "audits" + "terraform-export", + "schema" ], "host": [ "{{baseUrl}}" @@ -46532,390 +75692,26 @@ "variable": [] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"taskId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "f8d944d4-bd62-4ca5-95b5-a67918d29603", + "id": "b33f6138-950b-4f45-bcea-bb1afec32655", "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "task", - "audits" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"pageSize\": \"\",\n \"pageToken\": \"\",\n \"refs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ],\n \"taskId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"accessRequestOutcome\": {\n \"outcome\": \"ACCESS_REQUEST_OUTCOME_UNSPECIFIED\"\n },\n \"accountLifecycleActionCreated\": {\n \"batonActionDisplayName\": \"\",\n \"batonActionInvocationId\": \"\",\n \"batonActionName\": \"\",\n \"batonAppId\": \"\",\n \"batonConnectorId\": \"\"\n },\n \"accountLifecycleActionFailed\": {\n \"batonActionDisplayName\": \"\",\n \"batonActionInvocationId\": \"\",\n \"batonActionName\": \"\",\n \"batonAppId\": \"\",\n \"batonConnectorId\": \"\",\n \"error\": \"\"\n },\n \"actionInstanceCreated\": {\n \"instance\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_ERROR\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n }\n },\n \"actionInstanceFailed\": {\n \"instance\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_DONE\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n }\n },\n \"actionInstanceSucceeded\": {\n \"instance\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_UNSPECIFIED\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n }\n },\n \"actionResult\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"cancelled\": {\n \"cancelReason\": \"\"\n },\n \"connectorActionId\": \"\",\n \"connectorId\": \"\",\n \"error\": {\n \"errorCount\": \"\",\n \"errorReason\": \"\"\n },\n \"pending\": {\n \"pendingReason\": \"\"\n },\n \"success\": {\n \"annotations\": [\n {\n \"@type\": \"\"\n }\n ],\n \"successReason\": \"\"\n }\n },\n \"actionSubmitted\": {\n \"action\": {\n \"actionType\": \"TASK_ACTION_TYPE_RECALCULATE_APPROVERS_LIST\",\n \"bulkActionId\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"id\": \"\",\n \"policyStepId\": \"\",\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n },\n \"approvalAutoAcceptedByPolicy\": {},\n \"approvalAutoRejectedByPolicy\": {},\n \"approvalInstanceChange\": {\n \"instance\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_SENDING_NOTIFICATIONS\"\n }\n },\n \"approvalReassigned\": {\n \"newPolicyStepId\": \"\",\n \"newUsers\": [\n \"\"\n ],\n \"oldPolicyStepId\": \"\",\n \"users\": [\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\"\n ],\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": 3580.216349899703\n },\n \"roleIds\": [\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\"\n ]\n }\n ]\n },\n \"approvedAutomatically\": {},\n \"bulkActionError\": {\n \"error\": \"\"\n },\n \"certifyOutcome\": {\n \"outcome\": \"CERTIFY_OUTCOME_DECERTIFIED\"\n },\n \"comment\": {\n \"comment\": \"\",\n \"updatedAt\": \"\",\n \"updatedBy\": \"\"\n },\n \"conditionalPolicyExecutionResult\": {\n \"condition\": \"\",\n \"conditionMatched\": \"\",\n \"defaultCondition\": \"\",\n \"error\": \"\",\n \"policyKey\": \"\"\n },\n \"connectorActionsEnd\": {\n \"policyStepId\": \"\"\n },\n \"connectorActionsStart\": {\n \"policyStepId\": \"\"\n },\n \"created\": \"\",\n \"createdReplacementExtensionGrantTask\": {\n \"newTaskId\": \"\",\n \"newTaskNumericId\": \"\"\n },\n \"currentState\": \"TASK_STATE_CLOSED\",\n \"eventType\": \"TASK_AUDIT_EVENT_TYPE_UNSPECIFIED\",\n \"expressionPolicyStepError\": {\n \"error\": \"\"\n },\n \"externalTicketCreated\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"externalTicketProvisionerConfigName\": \"\",\n \"externalTicketUrl\": \"\"\n },\n \"externalTicketError\": {\n \"errorMessage\": \"\"\n },\n \"externalTicketProvisionStepResolved\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"externalTicketUrl\": \"\"\n },\n \"externalTicketTriggered\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"externalTicketProvisionerConfigName\": \"\"\n },\n \"formInstanceChange\": {\n \"isValid\": \"\"\n },\n \"grantDurationUpdated\": {\n \"duration\": \"\"\n },\n \"grantOutcome\": {\n \"outcome\": \"GRANT_OUTCOME_ERROR\"\n },\n \"hardReset\": {\n \"oldPolicyStepId\": \"\"\n },\n \"id\": \"\",\n \"metadata\": {\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\"\n ],\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": {\n \"key_0\": 4248.744628788916,\n \"key_1\": 4744.547731260483\n },\n \"roleIds\": [\n \"\"\n ],\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_AGENT\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\"\n ]\n }\n },\n \"policyChanged\": {\n \"newPolicyId\": \"\",\n \"oldPolicyId\": \"\"\n },\n \"policyEvaluationStep\": {\n \"stepComment\": \"\"\n },\n \"provisionCancelled\": {\n \"cancelReason\": \"\"\n },\n \"provisionError\": {\n \"error\": \"\"\n },\n \"provisionReassigned\": {\n \"newPolicyStepId\": \"\",\n \"newUsers\": [\n \"\"\n ],\n \"oldPolicyStepId\": \"\",\n \"users\": [\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\"\n ],\n \"directoryStatus\": \"ENABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\"\n },\n \"roleIds\": [\n \"\"\n ],\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\"\n ]\n }\n ]\n },\n \"reassignedToDelegate\": {\n \"delegatedAssigneeUser\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\"\n ],\n \"directoryStatus\": \"ENABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": {\n \"key_0\": false\n },\n \"roleIds\": [\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\"\n ]\n },\n \"delegatedAssigneeUserId\": \"\",\n \"originalAssigneeUser\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\"\n ],\n \"directoryStatus\": \"ENABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": {\n \"key_0\": 3386,\n \"key_1\": 5596\n },\n \"roleIds\": [\n \"\"\n ],\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_SERVICE\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\"\n ]\n },\n \"originalAssigneeUserId\": \"\"\n },\n \"reassignmentFallbackToAdmin\": {\n \"adminUserIds\": [\n \"\"\n ],\n \"adminUsers\": [\n {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\"\n ],\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": {\n \"key_0\": true,\n \"key_1\": \"string\"\n },\n \"roleIds\": [\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_HUMAN\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\"\n ]\n }\n ]\n },\n \"reassignmentListError\": {\n \"errorMessage\": \"\"\n },\n \"revokeOutcome\": {\n \"outcome\": \"REVOKE_OUTCOME_REVOKED\"\n },\n \"slaEscalation\": {\n \"message\": \"\"\n },\n \"source\": \"SOURCE_JIRA\",\n \"stateChange\": {\n \"previousState\": \"TASK_STATE_CLOSED\"\n },\n \"stepSkipped\": {\n \"skippedBy\": \"\"\n },\n \"stepUpApproval\": {\n \"stepUpTransactionId\": \"\"\n },\n \"taskCreated\": {},\n \"taskCreatedFrom\": {\n \"originalTaskId\": \"\",\n \"originalTaskNumericId\": \"\",\n \"originalTaskType\": \"\"\n },\n \"taskEscalated\": {\n \"oldPolicyId\": \"\",\n \"oldPolicyStepId\": \"\"\n },\n \"taskRestarted\": {\n \"oldPolicyStepId\": \"\"\n },\n \"ticketId\": \"\",\n \"userId\": \"\",\n \"waitStepAnalysisSuccess\": {\n \"stepId\": \"\",\n \"succeededAt\": \"\"\n },\n \"waitStepAnalysisTimedOut\": {\n \"stepId\": \"\",\n \"timedOutAt\": \"\"\n },\n \"waitStepAnalysisWaiting\": {\n \"stepId\": \"\"\n },\n \"waitStepSuccess\": {\n \"condition\": \"\",\n \"stepId\": \"\",\n \"succeededAt\": \"\"\n },\n \"waitStepTimedOut\": {\n \"condition\": \"\",\n \"stepId\": \"\",\n \"timedOutAt\": \"\"\n },\n \"waitStepUntilTime\": {\n \"stepId\": \"\",\n \"untilTime\": \"\"\n },\n \"waitStepWaiting\": {\n \"condition\": \"\",\n \"stepId\": \"\"\n },\n \"webhookApprovalAttempt\": {\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\",\n \"webhookName\": \"\",\n \"webhookUrl\": \"\"\n },\n \"webhookApprovalBadResponse\": {\n \"error\": \"\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\",\n \"webhookName\": \"\",\n \"webhookUrl\": \"\"\n },\n \"webhookApprovalFatalError\": {\n \"error\": \"\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\",\n \"webhookName\": \"\",\n \"webhookUrl\": \"\"\n },\n \"webhookApprovalSuccess\": {\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\",\n \"webhookName\": \"\",\n \"webhookUrl\": \"\"\n },\n \"webhookApprovalTriggered\": {\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\",\n \"webhookName\": \"\",\n \"webhookUrl\": \"\"\n },\n \"webhookAttempt\": {\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\",\n \"webhookName\": \"\",\n \"webhookUrl\": \"\"\n },\n \"webhookSuccess\": {\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\",\n \"webhookName\": \"\",\n \"webhookUrl\": \"\"\n },\n \"webhookTriggered\": {\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\",\n \"webhookName\": \"\",\n \"webhookUrl\": \"\"\n },\n \"workflowStep\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "grant", - "description": "", - "item": [ - { - "id": "2205c607-bab7-4ecb-9837-4d845636f76b", - "name": "Create Grant Task", - "request": { - "name": "Create Grant Task", - "description": { - "content": "Create a grant task", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "task", - "grant" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appId\": \"\",\n \"appEntitlementId\": \"\",\n \"appUserId\": \"\",\n \"description\": \"\",\n \"emergencyAccess\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"requestData\": {\n \"key_0\": 1774\n },\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "edae3161-132f-40a4-ae74-a2b9aaf9911b", - "name": "The TaskServiceCreateGrantResponse returns a task view which has a task including JSONPATHs to the expanded items in the expanded array.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "task", - "grant" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appId\": \"\",\n \"appEntitlementId\": \"\",\n \"appUserId\": \"\",\n \"description\": \"\",\n \"emergencyAccess\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"requestData\": {\n \"key_0\": 1774\n },\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_RECALCULATE_APPROVERS_LIST\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": 6536.626616718402,\n \"key_1\": false\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": 4879,\n \"key_1\": false\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_NON_USAGE_REVOKE\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_DONE\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 1173.911653054629,\n \"key_1\": \"string\"\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 5777,\n \"key_1\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_DONE\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_RUNNING\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_SENDING_NOTIFICATIONS\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 9848.437186476694,\n \"key_1\": true,\n \"key_2\": \"string\",\n \"key_3\": 8985.923612021543\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": 2015,\n \"key_2\": \"string\",\n \"key_3\": 1062.3739371933104\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_SENDING_NOTIFICATIONS\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_UNSPECIFIED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 2451.6920505510884\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 3822,\n \"key_1\": 4985.325125728277,\n \"key_2\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_UNSPECIFIED\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_UNSPECIFIED\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_REVIEW\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_GRANT\"\n },\n \"displayName\": \"\"\n },\n \"displayName\": \"\",\n \"formValues\": {\n \"key_0\": false\n },\n \"outcome\": \"ACTION_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"type\": \"TYPE_RESOURCE_ACTION\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\"\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_DONE\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "offboarding", - "description": "", - "item": [ - { - "id": "119878b4-28c9-4a44-a614-0ae380685284", - "name": "Create Offboarding Task", - "request": { - "name": "Create Offboarding Task", - "description": { - "content": "Create an offboarding task to remove a user's access across applications.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "task", - "offboarding" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"description\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"subjectUserId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "50e18dde-6ba1-4f3f-bda1-7f22d555b230", - "name": "The TaskServiceCreateOffboardingResponse returns the created offboarding task with optional expanded related objects.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "task", - "offboarding" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"description\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"subjectUserId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": 9242,\n \"key_2\": \"string\"\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_RESTART\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": 4175.035113012411,\n \"key_1\": \"string\"\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": false\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_COPILOT\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_INIT\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_INIT\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 7650,\n \"key_1\": 5660.707404835081\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_CREATE_CONNECTOR_ACTIONS_FOR_TARGET\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_ACTIVE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_UNSPECIFIED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_ERROR\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": \"string\",\n \"key_1\": 4770.501026350362\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_INIT\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_UNSPECIFIED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 1262.023470164164,\n \"key_1\": 9883.34475406832\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": 5790,\n \"key_2\": 8838.33426154025,\n \"key_3\": 355.406442774453\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_PROVISION\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_UNSPECIFIED\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_DENY\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_CLOSED\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"displayName\": \"\",\n \"formValues\": {\n \"key_0\": 5902,\n \"key_1\": \"string\",\n \"key_2\": \"string\"\n },\n \"outcome\": \"ACTION_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"type\": \"TYPE_UNSPECIFIED\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_DECERTIFIED\",\n \"outcomeTime\": \"\"\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_REMEDIATED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "revoke", - "description": "", - "item": [ - { - "id": "b4e12f17-a164-4120-8f19-b59fce0c9fef", - "name": "Create Revoke Task", - "request": { - "name": "Create Revoke Task", - "description": { - "content": "Create a revoke task", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "task", - "revoke" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appId\": \"\",\n \"appEntitlementId\": \"\",\n \"appUserId\": \"\",\n \"description\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"identityUserId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "7d4a91a7-6a68-48bd-b33d-db87f2b36edb", - "name": "The TaskServiceCreateRevokeResponse returns a task view which has a task including JSONPATHs to the expanded items in the expanded array.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "task", - "revoke" + "terraform-export", + "schema" ], "host": [ "{{baseUrl}}" @@ -46924,10 +75720,6 @@ "variable": [] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -46935,23 +75727,14 @@ { "description": { "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"appId\": \"\",\n \"appEntitlementId\": \"\",\n \"appUserId\": \"\",\n \"description\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"identityUserId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } - } + ], + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -46961,7 +75744,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 4067.582834881729,\n \"key_1\": true\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_PROVISION_COMPLETE\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": 4992\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": 4842\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"JIRA\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_TIME_REVOKE\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_INIT\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 3912.7243480596176,\n \"key_1\": false,\n \"key_2\": false,\n \"key_3\": 5562.1404936860945\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_ACCOUNT_LIFECYCLE_ACTIONS_WAITING\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_INIT\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 4081.4208274477483,\n \"key_1\": false,\n \"key_2\": 1326\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 3544\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_EXTERNAL_TICKET_WAITING\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_UNSPECIFIED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": 5875.913674480122,\n \"key_2\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_GRANT\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_WAITING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_REVIEW\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_UNSPECIFIED\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_GRANT\"\n },\n \"displayName\": \"\"\n },\n \"displayName\": \"\",\n \"formValues\": {\n \"key_0\": 3766,\n \"key_1\": \"string\",\n \"key_2\": true,\n \"key_3\": 5681\n },\n \"outcome\": \"ACTION_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"type\": \"TYPE_UNSPECIFIED\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\"\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_REMEDIATED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n }\n}", + "body": "{\n \"schema\": {\n \"dataSource\": {},\n \"fields\": [\n {\n \"c1Field\": \"\",\n \"computed\": \"\",\n \"elementTfType\": \"TF_TYPE_LIST\",\n \"enumValues\": [\n {\n \"name\": \"\",\n \"number\": \"\"\n },\n {\n \"name\": \"\",\n \"number\": \"\"\n }\n ],\n \"nestedFields\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ],\n \"oneofField\": \"\",\n \"oneofVariant\": \"\",\n \"optional\": \"\",\n \"references\": {\n \"compositeKeyFields\": null,\n \"tfTypeNames\": null\n },\n \"required\": \"\",\n \"sensitive\": \"\",\n \"tfField\": \"\",\n \"tfType\": \"TF_TYPE_BOOL\"\n },\n {\n \"c1Field\": \"\",\n \"computed\": \"\",\n \"elementTfType\": \"TF_TYPE_STRING\",\n \"enumValues\": null,\n \"nestedFields\": null,\n \"oneofField\": \"\",\n \"oneofVariant\": \"\",\n \"optional\": \"\",\n \"references\": {\n \"compositeKeyFields\": null,\n \"tfTypeNames\": [\n \"\",\n \"\"\n ]\n },\n \"required\": \"\",\n \"sensitive\": \"\",\n \"tfField\": \"\",\n \"tfType\": \"TF_TYPE_BOOL\"\n }\n ],\n \"providerVersion\": \"\",\n \"refererShapes\": null,\n \"resource\": {\n \"importId\": {\n \"composite\": {\n \"fields\": null,\n \"format\": \"FORMAT_UNDERSCORE_SEPARATED\"\n },\n \"singleString\": {}\n }\n },\n \"tfTypeName\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -46976,27 +75759,148 @@ ] }, { - "name": "tasks", + "name": "users", "description": "", "item": [ + { + "id": "468fe215-be74-4df0-ba10-3e6a27b9f2d7", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List users.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "users" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "5f8a5d11-5f61-4435-ba97-a975051dfa16", + "name": "The UserServiceListResponse message contains a list of results and a nextPageToken if applicable.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "users" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": \"string\"\n },\n {\n \"@type\": \"\",\n \"key_0\": 3747.957627338603,\n \"key_1\": 6648.52100794358\n }\n ],\n \"list\": [\n {\n \"delegatedUserPath\": \"\",\n \"directoriesPath\": \"\",\n \"managersPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n },\n \"rolesPath\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": null,\n \"directoryIds\": null,\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": null,\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": null,\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": null,\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": null,\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_HUMAN\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"userId\": \"\"\n },\n {\n \"delegatedUserPath\": \"\",\n \"directoriesPath\": \"\",\n \"managersPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"read\": \"\"\n },\n \"rolesPath\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": null,\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": null,\n \"employmentType\": \"\",\n \"employmentTypeSources\": null,\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_AGENT\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": null,\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"userId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, { "name": "{id}", "description": "", "item": [ { - "id": "85e2787d-2128-4084-9309-0cb2dd0504c4", + "id": "398270c7-c787-4e74-9029-d6a69656b274", "name": "Get", "request": { "name": "Get", "description": { - "content": "Get a task by ID", + "content": "Get a user by ID.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "tasks", + "users", ":id" ], "host": [ @@ -47028,14 +75932,14 @@ }, "response": [ { - "id": "b29cc02b-5ad5-43ca-bce2-913155334f8b", - "name": "The TaskServiceGetResponse returns a task view which has a task including JSONPATHs to the expanded items in the expanded array.", + "id": "b445f1be-3436-47a7-b962-41a0ae628036", + "name": "The UserServiceGetResponse returns a user view which has a user including JSONPATHs to the expanded items in the expanded array.", "originalRequest": { "url": { "path": [ "api", "v1", - "tasks", + "users", ":id" ], "host": [ @@ -47080,7 +75984,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_RESTART\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": 8418.18822865654\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": true,\n \"key_1\": false,\n \"key_2\": \"string\"\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_NON_USAGE_REVOKE\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_INIT\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": true,\n \"key_1\": 5882.383595006871\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": 5391.910173220693\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_SENDING_NOTIFICATIONS\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_RUNNING\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_DONE\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": \"string\",\n \"key_1\": false,\n \"key_2\": 3314.8450128708905,\n \"key_3\": 6095\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 4981.451893718807,\n \"key_2\": 2097.6185380452716\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_ACCOUNT_LIFECYCLE_ACTIONS\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_UNSPECIFIED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 2202,\n \"key_1\": 1307.4116560676475\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 2197.8682882633047,\n \"key_1\": true,\n \"key_2\": \"string\",\n \"key_3\": 7093\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 1459,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_GRANT\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_DONE\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_REVIEW\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_GRANT\"\n },\n \"displayName\": \"\"\n },\n \"displayName\": \"\",\n \"formValues\": {\n \"key_0\": true,\n \"key_1\": \"string\"\n },\n \"outcome\": \"ACTION_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"type\": \"TYPE_WORKFLOW\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_CERTIFIED\",\n \"outcomeTime\": \"\"\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_DONE\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n }\n}", + "body": "{\n \"expanded\": null,\n \"userView\": {\n \"delegatedUserPath\": \"\",\n \"directoriesPath\": \"\",\n \"managersPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"read\": \"\"\n },\n \"rolesPath\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": null,\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": null,\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": null,\n \"employmentType\": \"\",\n \"employmentTypeSources\": null,\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": null,\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_SERVICE\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"userId\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -47093,34 +75997,34 @@ ] }, { - "name": "{task_id}", + "name": "{user_id}", "description": "", "item": [ { - "name": "action", + "name": "mcp_toolsets", "description": "", "item": [ { - "name": "approve", + "name": "requestable_connectors", "description": "", "item": [ { - "id": "40086889-5bd1-4c18-9cff-93d8e77b2501", - "name": "Approve", + "id": "3cc89e3e-a014-457a-8f50-891e2def00b7", + "name": "List Requestable Connectors", "request": { - "name": "Approve", + "name": "List Requestable Connectors", "description": { - "content": "Approve the specified policy step on a task.", + "content": "ListRequestableConnectors returns the (app_id, connector_id) pairs that\n have at least one requestable toolset (access profile) for the given user.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "tasks", - ":task_id", - "action", - "approve" + "users", + ":user_id", + "mcp_toolsets", + "requestable_connectors" ], "host": [ "{{baseUrl}}" @@ -47130,7 +76034,7 @@ { "type": "any", "value": "", - "key": "task_id", + "key": "user_id", "disabled": false, "description": { "content": "(Required) ", @@ -47140,41 +76044,28 @@ ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"policyStepId\": \"\",\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, + "method": "GET", + "body": {}, "auth": null }, "response": [ { - "id": "5d8b3b0d-ad76-40a7-9e8f-366c82beb4a3", - "name": "The TaskActionsServiceApproveResponse returns a task view with paths indicating the location of expanded items in the array.", + "id": "3dacbfe8-9285-4eb2-a1de-8dd165d1ec5f", + "name": "MCPAccessProfileServiceListRequestableConnectorsResponse returns connector references\n that have requestable MCP access profiles.", "originalRequest": { "url": { "path": [ "api", "v1", - "tasks", - ":task_id", - "action", - "approve" + "users", + ":user_id", + "mcp_toolsets", + "requestable_connectors" ], "host": [ "{{baseUrl}}" @@ -47189,15 +76080,11 @@ }, "type": "any", "value": "", - "key": "task_id" + "key": "user_id" } ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" @@ -47211,17 +76098,8 @@ "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"policyStepId\": \"\",\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {} }, "status": "OK", "code": 200, @@ -47231,7 +76109,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\"\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_SKIP_STEP\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\"\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": 8260.647752393203,\n \"key_1\": \"string\"\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"JIRA\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_CASCADE_DELETE\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_DONE\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": false\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_WAITING\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_ACTIVE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_WAITING\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_UNSPECIFIED\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": \"string\",\n \"key_1\": 829,\n \"key_2\": 7236\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\",\n \"key_2\": 184\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_EXTERNAL_TICKET_WAITING\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 288.28641673795283,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_2\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": 5408,\n \"key_2\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_PROVISION\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_UNSPECIFIED\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_APPROVE\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_CLOSED\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"displayName\": \"\",\n \"formValues\": {\n \"key_0\": \"string\",\n \"key_1\": 6366\n },\n \"outcome\": \"ACTION_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"type\": \"TYPE_WORKFLOW\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_DECERTIFIED\",\n \"outcomeTime\": \"\"\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_REMEDIATED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_GRANTED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", + "body": "{\n \"connectors\": [\n {\n \"appId\": \"\",\n \"connectorId\": \"\"\n },\n {\n \"appId\": \"\",\n \"connectorId\": \"\"\n }\n ]\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -47240,173 +76118,264 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "approve-with-step-up", - "description": "", - "item": [ + }, { - "id": "1a8a92d8-a6b6-401e-90b0-66564e49966c", - "name": "Approve With Step Up", - "request": { - "name": "Approve With Step Up", - "description": { - "content": "Approve a task that requires step-up authentication. If a verified step-up transaction ID is provided, the approval is processed immediately. Otherwise, a redirect URL is returned for the caller to complete authentication first.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "approve-with-step-up" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "task_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"policyStepId\": \"\",\n \"stepUpTransactionId\": \"\",\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "name": "search", + "description": "", + "item": [ { - "id": "74a456e8-ccc7-4633-ae02-ac85110b3247", - "name": "TaskActionsServiceApproveWithStepUpResponse is the response for approving a task with step-up authentication", - "originalRequest": { + "id": "bcdd74ff-f5bf-4658-87da-dc3073adba3d", + "name": "Search Requestable Connectors", + "request": { + "name": "Search Requestable Connectors", + "description": { + "content": "SearchRequestableConnectors returns card-ready entries — one per MCP\n connector the user can browse and request tools for — with server-side\n visibility + policy filtering, grant-enrollment-status filtering, text\n search over the connector display name, and pagination. Backs the\n Requests -> AI tools connector cards. Held connectors are surfaced even\n when no longer requestable so \"My tools\" reflects what the user actually\n holds.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "tasks", - ":task_id", - "action", - "approve-with-step-up" + "users", + ":user_id", + "mcp_toolsets", + "requestable_connectors", + "search" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [ + "query": [ { "disabled": false, "description": { - "content": "(Required) ", + "content": " (This can only be one of GRANT_ENROLLMENT_STATUS_UNSPECIFIED,GRANT_ENROLLMENT_STATUS_FULLY_GRANTED,GRANT_ENROLLMENT_STATUS_NOT_GRANTED,GRANT_ENROLLMENT_STATUS_PARTIALLY_GRANTED)", + "type": "text/plain" + }, + "key": "grant_enrollment_status", + "value": "GRANT_ENROLLMENT_STATUS_UNSPECIFIED" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", "type": "text/plain" }, + "key": "query", + "value": "" + } + ], + "variable": [ + { "type": "any", "value": "", - "key": "task_id" + "key": "user_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"policyStepId\": \"\",\n \"stepUpTransactionId\": \"\",\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "method": "GET", + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "18c7881a-b350-4a9a-9d61-2bc88a2b9884", + "name": "MCPAccessProfileServiceSearchRequestableConnectorsResponse returns one page\n of card-ready requestable-connector entries.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "users", + ":user_id", + "mcp_toolsets", + "requestable_connectors", + "search" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": " (This can only be one of GRANT_ENROLLMENT_STATUS_UNSPECIFIED,GRANT_ENROLLMENT_STATUS_FULLY_GRANTED,GRANT_ENROLLMENT_STATUS_NOT_GRANTED,GRANT_ENROLLMENT_STATUS_PARTIALLY_GRANTED)", + "type": "text/plain" + }, + "key": "grant_enrollment_status", + "value": "GRANT_ENROLLMENT_STATUS_UNSPECIFIED" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "query", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "user_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n }\n ],\n \"redirectUrl\": \"\",\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_RECALCULATE_DENIAL_FROM_BASE_POLICY_DECISIONS\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": 3989.0240145975063\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": 5628.399609091983,\n \"key_1\": \"string\"\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_PROFILE_MEMBERSHIP_MANUAL\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_RUNNING\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": true,\n \"key_1\": true,\n \"key_2\": \"string\"\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 8256\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_WEBHOOK_WAITING\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_TIMED_OUT\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_UNSPECIFIED\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 8993.313679776935\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_EXTERNAL_TICKET_WAITING\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_WAITING\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 1718.6974023116686,\n \"key_1\": true,\n \"key_2\": \"string\",\n \"key_3\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 2157\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_PROVISION\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_PROCESSING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_UNSPECIFIED\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_CLOSED\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_GRANT\"\n },\n \"displayName\": \"\"\n },\n \"displayName\": \"\",\n \"formValues\": {\n \"key_0\": 7612.684792779914,\n \"key_1\": 8174\n },\n \"outcome\": \"ACTION_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"type\": \"TYPE_WORKFLOW\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\"\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] } ] - }, + } + ] + }, + { + "name": "profile-types", + "description": "", + "item": [ { - "name": "close", - "description": "", - "item": [ + "id": "246aeb91-12c9-406e-b130-a27d72117de3", + "name": "Get User Profile Types", + "request": { + "name": "Get User Profile Types", + "description": { + "content": "Retrieve the profile types associated with a user across their connected apps.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "users", + ":user_id", + "profile-types" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "user_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ { - "id": "6bf4ee64-a183-4889-8ded-0ca528402e68", - "name": "Close", - "request": { - "name": "Close", - "description": { - "content": "Close a task, ending its workflow.", - "type": "text/plain" - }, + "id": "c91f303f-0c5f-4fc9-b8a1-e020c7d05c54", + "name": "GetUserProfileTypesResponse is the response containing the profile types for a user.", + "originalRequest": { "url": { "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "close" + "api", + "v1", + "users", + ":user_id", + "profile-types" ], "host": [ "{{baseUrl}}" @@ -47414,142 +76383,127 @@ "query": [], "variable": [ { - "type": "any", - "value": "", - "key": "task_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - } + }, + "type": "any", + "value": "", + "key": "user_id" } ] }, "header": [ { - "key": "Content-Type", + "key": "Accept", "value": "application/json" }, { - "key": "Accept", - "value": "application/json" + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null + "method": "GET", + "body": {} }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "2d366cc0-b240-4c72-8bb0-506d649e4bd0", - "name": "The TaskActionsServiceCloseResponse returns a task view with paths indicating the location of expanded items in the array.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "close" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "task_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\"\n }\n ],\n \"taskActionId\": \"\",\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_APPROVE_WITH_STEP_UP\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": true,\n \"key_1\": false,\n \"key_2\": \"string\"\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"JIRA\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_PROFILE_MEMBERSHIP_AUTOMATION\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_DONE\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": \"string\",\n \"key_1\": 3080.708752732213\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_SENDING_NOTIFICATIONS\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_WAITING\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_ERROR\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_INIT\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": true,\n \"key_1\": \"string\",\n \"key_2\": 1492\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 9597.296079998658,\n \"key_2\": 6660\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_INIT\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_WAITING\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 8723,\n \"key_2\": 3164.117303344689\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 4623.46755232957,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_CERTIFY\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_DONE\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_REVIEW\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_GRANT\"\n },\n \"displayName\": \"\"\n },\n \"displayName\": \"\",\n \"formValues\": {\n \"key_0\": 3955.1460616592494,\n \"key_1\": false\n },\n \"outcome\": \"ACTION_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"type\": \"TYPE_UNSPECIFIED\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\"\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_DONE\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "body": "{\n \"profileTypes\": null\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] - }, + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + }, + { + "name": "set-delegation-by-admin", + "description": "", + "item": [ { - "name": "comment", - "description": "", - "item": [ + "id": "fa163463-b2da-427a-8493-dc8f30752abf", + "name": "Set Expiring User Delegation Binding By Admin", + "request": { + "name": "Set Expiring User Delegation Binding By Admin", + "description": { + "content": "Set or update an expiring delegation binding for a user, allowing an admin to designate a temporary delegate.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "users", + ":user_id", + "set-delegation-by-admin" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "user_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"delegatedUserId\": \"\",\n \"delegationExpireAt\": \"\",\n \"delegationStartAt\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ { - "id": "de3094a7-5d3c-4d30-8d3b-01c2b7e67a5e", - "name": "Comment", - "request": { - "name": "Comment", - "description": { - "content": "Post a comment on a task without changing its state.", - "type": "text/plain" - }, + "id": "9238ca7f-a77b-4195-98e3-9cb4dd83b477", + "name": "SetExpiringUserDelegationBindingByAdminResponse is the response containing the created or updated delegation binding.", + "originalRequest": { "url": { "path": [ "api", "v1", - "tasks", - ":task_id", - "action", - "comment" + "users", + ":user_id", + "set-delegation-by-admin" ], "host": [ "{{baseUrl}}" @@ -47557,14 +76511,14 @@ "query": [], "variable": [ { - "type": "any", - "value": "", - "key": "task_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - } + }, + "type": "any", + "value": "", + "key": "user_id" } ] }, @@ -47576,1267 +76530,1347 @@ { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", + "raw": "{\n \"delegatedUserId\": \"\",\n \"delegationExpireAt\": \"\",\n \"delegationStartAt\": \"\"\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - }, - "auth": null + } }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "f74a2116-e2d3-4d0e-853b-cc6f4e2253fd", - "name": "Task actions service comment response returns the task view inluding the expanded array of items that are indicated by the expand mask on the request.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "comment" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "task_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 7871,\n \"key_1\": 5885.55610743551\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_ESCALATE_TO_EMERGENCY_ACCESS\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": true\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": 5392,\n \"key_1\": \"string\"\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_TIME_REVOKE\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_DONE\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 4200,\n \"key_1\": \"string\"\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_SENDING_NOTIFICATIONS\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_ACTIVE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_DONE\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_DONE\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 2596.706179442163,\n \"key_1\": 9543.403804127178,\n \"key_2\": \"string\"\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 5155,\n \"key_1\": 1441\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_EXTERNAL_TICKET_WAITING\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_UNSPECIFIED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 910.4505992864053\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\",\n \"key_2\": 1920\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_2\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 4601\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_CERTIFY\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_WAITING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_REVIEW\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"displayName\": \"\",\n \"formValues\": {\n \"key_0\": 3132,\n \"key_1\": \"string\"\n },\n \"outcome\": \"ACTION_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"type\": \"TYPE_UNSPECIFIED\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\"\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_REMEDIATED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true + "body": "{\n \"item\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"expirationAt\": \"\",\n \"startAt\": \"\",\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "introspect", + "description": "", + "item": [ + { + "id": "1d39894b-c1fb-4a43-805e-413f886644d4", + "name": "Introspect", + "request": { + "name": "Introspect", + "description": { + "content": "Introspect returns the calling user's full UserView (profile, manager, attributes)\n resolved from the passport on the request.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "users", + "introspect" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"expandMask\": {\n \"paths\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "bf9acf61-fa21-41e8-97ab-e2560c80d257", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "users", + "introspect" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"expandMask\": {\n \"paths\": null\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"expanded\": null,\n \"userView\": {\n \"delegatedUserPath\": \"\",\n \"directoriesPath\": \"\",\n \"managersPath\": \"\",\n \"objectPermissions\": {\n \"delete\": \"\",\n \"edit\": \"\",\n \"extra\": {\n \"key_0\": \"\"\n },\n \"read\": \"\"\n },\n \"rolesPath\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": null,\n \"employmentType\": \"\",\n \"employmentTypeSources\": null,\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": null,\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": null,\n \"roleIds\": null,\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": null,\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"userId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "vaults", + "description": "", + "item": [ + { + "id": "ca9fe4fd-e877-41f3-bedb-f33665d9c72f", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create provisions a new external secret storage vault and returns it.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "vaults" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"description\": \"\",\n \"groupAuthzVault\": {},\n \"magicVault\": {\n \"allowUnauthedViews\": \"\",\n \"allowedViews\": \"\"\n },\n \"ownerIds\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "6dbdc2d5-3ff9-4168-a895-1066514934dc", + "name": "VaultServiceCreateResponse is the response message for creating a new vault.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "vaults" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"description\": \"\",\n \"groupAuthzVault\": {},\n \"magicVault\": {\n \"allowUnauthedViews\": \"\",\n \"allowedViews\": \"\"\n },\n \"ownerIds\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"vault\": {\n \"createdAt\": \"\",\n \"credentialExpirationDuration\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"groupAuthzVault\": {},\n \"id\": \"\",\n \"magicVault\": {\n \"allowUnauthedViews\": \"\",\n \"allowedViews\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "0432657c-3dea-4d85-98dc-b25ade1ab401", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete a vault by its ID. Active connectors using this vault will no longer be able to access their stored credentials.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "vaults", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" } } ] }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ { - "name": "deny", - "description": "", - "item": [ - { - "id": "1c6d6f8f-9f88-402e-9ef5-221b6aa44fde", - "name": "Deny", - "request": { - "name": "Deny", + "id": "db07e869-155b-4cb1-851b-1ec03031cfe2", + "name": "Empty response body. Status code indicates success.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "vaults", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { "description": { - "content": "Deny the specified policy step on a task. In multi-step policies, this may route to fallback steps rather than finalizing the task outcome.", + "content": "Added as a part of security scheme: bearer", "type": "text/plain" }, - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "deny" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "task_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"policyStepId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "193e209d-f91e-464a-9782-cc56af1fff7b", - "name": "The TaskActionsServiceDenyResponse returns a task view with paths indicating the location of expanded items in the array.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "deny" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "task_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"policyStepId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 2441.3279116728727,\n \"key_1\": 3603.1992771020073\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_PROVISION_APP_USER_TARGET_CREATED\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": 3015.2049572620876,\n \"key_1\": false\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": 1439\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"JIRA\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_UNSPECIFIED\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_RUNNING\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 7856,\n \"key_1\": true,\n \"key_2\": false,\n \"key_3\": \"string\"\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 4048.044552311514,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_ACCOUNT_LIFECYCLE_ACTIONS\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_UNSPECIFIED\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_DONE\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 1817.6773870693075\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_EXTERNAL_TICKET\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_WAITING\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 6849.168292696652,\n \"key_1\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": \"string\",\n \"key_2\": 3229.689808369014\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_2\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 1278.3941264453947,\n \"key_1\": 7573\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_3\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 9944\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_PROVISION\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_WAITING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_REVIEW\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"displayName\": \"\",\n \"formValues\": {\n \"key_0\": 4740.400933125202,\n \"key_1\": false\n },\n \"outcome\": \"ACTION_OUTCOME_SUCCESS\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"type\": \"TYPE_UNSPECIFIED\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_CERTIFIED\",\n \"outcomeTime\": \"\"\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "1ef7b742-4c70-4f79-8d3b-790d134e1b98", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get returns a single vault by its ID.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "vaults", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" } } ] }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ { - "name": "escalate", - "description": "", - "item": [ - { - "id": "8a869377-6cd3-463d-a54a-ac435bf8a5b8", - "name": "Escalate To Emergency Access", - "request": { - "name": "Escalate To Emergency Access", - "description": { - "content": "Escalate a grant task to use the emergency access policy, bypassing the normal approval flow. Only valid for grant tasks.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "escalate" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "task_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"policyStepId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "id": "6964faf7-c7cf-4654-a15b-4b3b48f0c86e", + "name": "VaultServiceGetResponse is the response message containing the requested vault.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "vaults", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ { - "id": "5db8c7ec-4d0c-46c8-b3b3-b2bf7f27a959", - "name": "A generic response for task action endpoints, containing the updated task and the ID of the action that was created.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "escalate" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "task_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"policyStepId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 8331,\n \"key_1\": 8206,\n \"key_2\": 5047.980418626467\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_DENY\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": 3935,\n \"key_1\": 1437.5783677465547\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": true\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_WEBAPP\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_RUNNING\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_DONE\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\"\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 1615.4329605031048\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_CREATE_CONNECTOR_ACTIONS_FOR_TARGET\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_WAITING\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_ERROR\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": false\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_ACCOUNT_LIFECYCLE_ACTIONS_WAITING\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 63.072931032839286\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 8591.566249218828\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_CERTIFY\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_WAITING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_DENY\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"displayName\": \"\",\n \"formValues\": {\n \"key_0\": false,\n \"key_1\": 9641.416783036277\n },\n \"outcome\": \"ACTION_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"type\": \"TYPE_GRANT\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_DECERTIFIED\",\n \"outcomeTime\": \"\"\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_REVOKED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "type": "any", + "value": "", + "key": "id" } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"vault\": {\n \"createdAt\": \"\",\n \"credentialExpirationDuration\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"groupAuthzVault\": {},\n \"id\": \"\",\n \"magicVault\": {\n \"allowUnauthedViews\": \"\",\n \"allowedViews\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "32d2d756-4dd0-43b1-890d-bf2834419d2f", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update modifies an existing vault's properties using a field mask.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "vaults", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" } } ] }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"updateMask\": \"\",\n \"vault\": {\n \"credentialExpirationDuration\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"groupAuthzVault\": {},\n \"id\": \"\",\n \"magicVault\": {\n \"allowUnauthedViews\": \"\",\n \"allowedViews\": \"\"\n }\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ { - "name": "process", - "description": "", - "item": [ - { - "id": "09d458cf-b667-4690-aeaf-c273ca4eb90c", - "name": "Process Now", - "request": { - "name": "Process Now", + "id": "c80d5190-908f-43a4-976c-1d00a4d5a366", + "name": "VaultServiceUpdateResponse is the response message containing the updated vault.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "vaults", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { "description": { - "content": "Trigger immediate processing of a task, bypassing any scheduled wait. For tasks linked to an external system, this also attempts to sync the external state.", + "content": "Added as a part of security scheme: bearer", "type": "text/plain" }, - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "process" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "task_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "02bd8819-f32b-48c7-b920-73d18e0a4663", - "name": "The TaskActionsServiceProcessNowResponse returns the task view after triggering immediate processing.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "process" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "task_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": false,\n \"key_1\": \"string\",\n \"key_2\": 1371.3250000427536\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_PROVISION_ERRORED\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": 4878.308118622969,\n \"key_1\": 3867.1796129965696,\n \"key_2\": false\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"JIRA\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_SLACK\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_INIT\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 9454.186977702848\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": 2573.9984344651502,\n \"key_2\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_WEBHOOK\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_INIT\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_INIT\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 8082.084326711376\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 4670.1349607952825,\n \"key_1\": 8146.85892049345,\n \"key_2\": 8821\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_SENDING_NOTIFICATIONS\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 2185,\n \"key_1\": 5123.214602772397,\n \"key_2\": \"string\",\n \"key_3\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": false,\n \"key_2\": 6487.648344715153\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_2\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_3\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_UNSPECIFIED\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_PROCESSING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_REVIEW\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_CLOSED\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_GRANT\"\n },\n \"displayName\": \"\"\n },\n \"displayName\": \"\",\n \"formValues\": {\n \"key_0\": true\n },\n \"outcome\": \"ACTION_OUTCOME_SUCCESS\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"type\": \"TYPE_UNSPECIFIED\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_ERROR\",\n \"outcomeTime\": \"\"\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_REVOKED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"updateMask\": \"\",\n \"vault\": {\n \"credentialExpirationDuration\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"groupAuthzVault\": {},\n \"id\": \"\",\n \"magicVault\": {\n \"allowUnauthedViews\": \"\",\n \"allowedViews\": \"\"\n }\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true } } - ] + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"vault\": {\n \"createdAt\": \"\",\n \"credentialExpirationDuration\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"groupAuthzVault\": {},\n \"id\": \"\",\n \"magicVault\": {\n \"allowUnauthedViews\": \"\",\n \"allowedViews\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "webhooks", + "description": "", + "item": [ + { + "id": "bfca6fe1-6723-4c10-8a0a-ffe4bd16bfd3", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List all webhook subscriptions in the tenant, with pagination.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "webhooks" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "ceaa403a-5b2e-41bd-83f6-c706ed6fa89b", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "webhooks" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"callbackTimeout\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"url\": \"\"\n },\n {\n \"callbackTimeout\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"url\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "d5604f05-1197-480f-8758-17c27142bfba", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create a new webhook subscription to receive event notifications at the specified URL.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "webhooks" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"url\": \"\",\n \"callbackTimeout\": \"\",\n \"description\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "c6c4747e-a3e5-4b06-b84e-5b3c9f2de729", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "webhooks" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"displayName\": \"\",\n \"url\": \"\",\n \"callbackTimeout\": \"\",\n \"description\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"webhook\": {\n \"callbackTimeout\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"url\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{id}", + "description": "", + "item": [ + { + "id": "93cc940a-5cd1-48d6-901f-a23332820244", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete a webhook subscription, stopping all future event deliveries to its URL.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "webhooks", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } }, + "auth": null + }, + "response": [ { - "name": "reassign", - "description": "", - "item": [ - { - "id": "59e803a4-97e0-40e6-8706-7ad4e78e0b48", - "name": "Reassign", - "request": { - "name": "Reassign", - "description": { - "content": "Reassign a task's current policy step to a different set of users. The target step must be an approval, provision, or form step.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "reassign" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "task_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"newStepUserIds\": [\n \"\",\n \"\"\n ],\n \"policyStepId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "id": "13cd0e81-0de8-491d-8bda-338752aa089e", + "name": "Empty response body. Status code indicates success.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "webhooks", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ { - "id": "55c3a5fd-3d17-4d43-b8ae-ba100559873b", - "name": "The TaskActionsServiceReassignResponse returns a task view with paths indicating the location of expanded items in the array.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "reassign" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "task_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"newStepUserIds\": [\n \"\",\n \"\"\n ],\n \"policyStepId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 8413,\n \"key_1\": false\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_UNSPECIFIED\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": true,\n \"key_1\": true\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_PROFILE_MEMBERSHIP\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_DONE\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_INIT\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 8909,\n \"key_1\": \"string\"\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 9852.308886683915,\n \"key_2\": 8278.616868420435\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_WEBHOOK_WAITING\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_TIMED_OUT\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_RUNNING\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_SENDING_NOTIFICATIONS\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": \"string\",\n \"key_1\": 6943\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 2643,\n \"key_1\": false,\n \"key_2\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_WEBHOOK_WAITING\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_TIMED_OUT\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 4297,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_2\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 4610,\n \"key_1\": 2864.499495462294\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_3\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 2508\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_CERTIFY\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_PROCESSING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_APPROVE\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_CLOSED\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"displayName\": \"\",\n \"formValues\": {\n \"key_0\": 7973.000396373893,\n \"key_1\": \"string\",\n \"key_2\": 5160\n },\n \"outcome\": \"ACTION_OUTCOME_SUCCESS\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"type\": \"TYPE_RESOURCE_ACTION\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_DECERTIFIED\",\n \"outcomeTime\": \"\"\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "type": "any", + "value": "", + "key": "id" } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "reset", - "description": "", - "item": [ - { - "id": "d183fa53-476b-4e4f-8e46-a45076c84c9c", - "name": "Hard Reset", - "request": { - "name": "Hard Reset", + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { "description": { - "content": "Reset a task and recalculate its policy from scratch. Unlike Restart, this re-evaluates which policy applies to the task.", + "content": "Added as a part of security scheme: bearer", "type": "text/plain" }, - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "reset" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "task_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "bc25cdff-0901-4c72-bf6e-23d0f6dd7f1b", - "name": "The TaskActionsServiceHardResetResponse returns the updated task after a hard reset.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "reset" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "task_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 249.49393893874517\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_DENY\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": true,\n \"key_1\": 4711.536618568737\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": true,\n \"key_1\": 4371,\n \"key_2\": false\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_ACCESS_REVIEW\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_DONE\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_DONE\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 3149\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_WEBHOOK_WAITING\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_TIMED_OUT\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_RUNNING\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_INIT\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": 3714,\n \"key_1\": \"string\",\n \"key_2\": 3076\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_WAITING\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 8924\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_ACCOUNT_LIFECYCLE_ACTIONS_WAITING\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_ACTIVE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_UNSPECIFIED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 217\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 5892.166690679251\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_GRANT\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_UNSPECIFIED\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_UNSPECIFIED\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_UNSPECIFIED\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"displayName\": \"\",\n \"formValues\": {\n \"key_0\": true,\n \"key_1\": 899,\n \"key_2\": 7387.735070749586,\n \"key_3\": \"string\"\n },\n \"outcome\": \"ACTION_OUTCOME_ERROR\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"type\": \"TYPE_RESOURCE_ACTION\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_CERTIFIED\",\n \"outcomeTime\": \"\"\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_DONE\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true } } - ] + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "4c2834b9-afe7-46c6-9403-b83121813aaa", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Retrieve a single webhook by its ID.", + "type": "text/plain" }, - { - "name": "restart", - "description": "", - "item": [ + "url": { + "path": [ + "api", + "v1", + "webhooks", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ { - "id": "473950e2-237e-4930-8d49-f527d20594f0", - "name": "Restart", - "request": { - "name": "Restart", - "description": { - "content": "Restart a task, returning it to the beginning of its current policy workflow.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "restart" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "task_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"policyStepId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "3770ed0a-a329-4ef9-b6ea-fc7edd1e374a", - "name": "The TaskActionsServiceRestartResponse returns the updated task after restarting.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "restart" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "task_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n },\n \"policyStepId\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\"\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_SET_INSIGHTS_AND_RECOMMENDATION\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\"\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": 6183.806210169536,\n \"key_1\": 3965.347121142195\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_PROFILE_MEMBERSHIP_AUTOMATION\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_UNSPECIFIED\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_DONE\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": \"string\"\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_DONE\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_INIT\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_UNSPECIFIED\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_SENDING_NOTIFICATIONS\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": true,\n \"key_1\": 1770.0156199528717,\n \"key_2\": \"string\"\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_DONE\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": true,\n \"key_2\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_ACCOUNT_LIFECYCLE_ACTIONS_WAITING\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_TIMED_OUT\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 2759\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_FULL_CONTROL\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_BUTTONS\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n },\n \"key_1\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 9953.294236361678,\n \"key_1\": 1211.284628958047,\n \"key_2\": 6091.9680410860865\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_UNSPECIFIED\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_PROCESSING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_DENY\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_UNSPECIFIED\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_GRANT\"\n },\n \"displayName\": \"\"\n },\n \"displayName\": \"\",\n \"formValues\": {\n \"key_0\": 6792\n },\n \"outcome\": \"ACTION_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"type\": \"TYPE_GRANT\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_ERROR\",\n \"outcomeTime\": \"\"\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_REMEDIATED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_WAIT_TIMED_OUT\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_IN_PROGRESS\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" } } ] }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ { - "name": "skip-step", - "description": "", - "item": [ - { - "id": "e245c5cc-282c-4ce9-b8f0-cd20f601e2aa", - "name": "Skip Step", - "request": { - "name": "Skip Step", - "description": { - "content": "Skip a specific policy step in a task, advancing the task to the next step in the workflow.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "skip-step" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "task_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"policyStepId\": \"\",\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "id": "f69fd008-4a91-45e4-8f74-0b781869def4", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "webhooks", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ { - "id": "0de6fa1a-35db-405d-b57e-3ff2d5d19e22", - "name": "A generic response for task action endpoints, containing the updated task and the ID of the action that was created.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "skip-step" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "task_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"policyStepId\": \"\",\n \"comment\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 8331,\n \"key_1\": 8206,\n \"key_2\": 5047.980418626467\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_DENY\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": 3935,\n \"key_1\": 1437.5783677465547\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": true\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_WEBAPP\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_RUNNING\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_DONE\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\"\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 1615.4329605031048\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_CREATE_CONNECTOR_ACTIONS_FOR_TARGET\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_WAITING\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_ERROR\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": false\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_ACCOUNT_LIFECYCLE_ACTIONS_WAITING\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 63.072931032839286\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 8591.566249218828\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_CERTIFY\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_WAITING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_DENY\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"displayName\": \"\",\n \"formValues\": {\n \"key_0\": false,\n \"key_1\": 9641.416783036277\n },\n \"outcome\": \"ACTION_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"type\": \"TYPE_GRANT\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_DECERTIFIED\",\n \"outcomeTime\": \"\"\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_REVOKED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "type": "any", + "value": "", + "key": "id" } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"webhook\": {\n \"callbackTimeout\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"url\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "3b21e4ce-c18d-491e-bba6-cab2c6b23b16", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update an existing webhook subscription's properties, such as its URL or display name.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "webhooks", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" } } ] }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"updateMask\": \"\",\n \"webhook\": {\n \"callbackTimeout\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"url\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ { - "name": "update-grant-duration", - "description": "", - "item": [ - { - "id": "d5db3f90-8fb5-445b-8b9c-a236889900ee", - "name": "Update Grant Duration", - "request": { - "name": "Update Grant Duration", + "id": "ac6bf143-8dce-4823-b011-e7f92baa5c12", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "webhooks", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { "description": { - "content": "Update the grant duration for a task. Only applies to grant tasks with a single entitlement that are not in a provision step. The new duration must not exceed the entitlement's maximum allowed provision time.", + "content": "Added as a part of security scheme: bearer", "type": "text/plain" }, - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "update-grant-duration" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "task_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"duration\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "046687aa-f89a-46e8-9f4b-817d5efa7704", - "name": "A generic response for task action endpoints, containing the updated task and the ID of the action that was created.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "update-grant-duration" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "task_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"duration\": \"\",\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 8331,\n \"key_1\": 8206,\n \"key_2\": 5047.980418626467\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_DENY\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": 3935,\n \"key_1\": 1437.5783677465547\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": true\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_WEBAPP\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_RUNNING\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_DONE\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\"\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 1615.4329605031048\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_CREATE_CONNECTOR_ACTIONS_FOR_TARGET\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_WAITING\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_ERROR\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": false\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_ACCOUNT_LIFECYCLE_ACTIONS_WAITING\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 63.072931032839286\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 8591.566249218828\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_CERTIFY\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_WAITING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_DENY\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"displayName\": \"\",\n \"formValues\": {\n \"key_0\": false,\n \"key_1\": 9641.416783036277\n },\n \"outcome\": \"ACTION_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"type\": \"TYPE_GRANT\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_DECERTIFIED\",\n \"outcomeTime\": \"\"\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_REVOKED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"updateMask\": \"\",\n \"webhook\": {\n \"callbackTimeout\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"url\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true } } - ] - }, + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"webhook\": {\n \"callbackTimeout\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"url\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "test", + "description": "", + "item": [ { - "name": "update-request-data", - "description": "", - "item": [ + "id": "adee451c-e143-44e3-a1f4-27943cbda756", + "name": "Test", + "request": { + "name": "Test", + "description": { + "content": "Send a sample event to the webhook URL to verify that the endpoint is reachable and responding correctly.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "webhooks", + ":id", + "test" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ { - "id": "eef3216f-9236-42f5-b63b-ea2bdbfa2cd9", - "name": "Update Request Data", - "request": { - "name": "Update Request Data", - "description": { - "content": "Update the request data on a task that is currently in a form step. The submitted data is validated against the form schema before being applied.", - "type": "text/plain" - }, + "id": "9dd45628-31af-4f1d-bd21-c29616c6602b", + "name": "Successful response", + "originalRequest": { "url": { "path": [ "api", "v1", - "tasks", - ":task_id", - "action", - "update-request-data" + "webhooks", + ":id", + "test" ], "host": [ "{{baseUrl}}" @@ -48844,14 +77878,14 @@ "query": [], "variable": [ { - "type": "any", - "value": "", - "key": "task_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - } + }, + "type": "any", + "value": "", + "key": "id" } ] }, @@ -48863,101 +77897,45 @@ { "key": "Accept", "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"data\": {\n \"key_0\": 1245.0090896871725\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", + "raw": "{}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - }, - "auth": null + } }, - "response": [ + "status": "OK", + "code": 200, + "header": [ { - "id": "ee093bf2-7e18-48bb-9275-5141ffe6a848", - "name": "A generic response for task action endpoints, containing the updated task and the ID of the action that was created.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "tasks", - ":task_id", - "action", - "update-request-data" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "task_id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"data\": {\n \"key_0\": 1245.0090896871725\n },\n \"expandMask\": {\n \"paths\": [\n \"\",\n \"\"\n ]\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 8331,\n \"key_1\": 8206,\n \"key_2\": 5047.980418626467\n }\n ],\n \"taskView\": {\n \"accessReviewPath\": \"\",\n \"appPath\": \"\",\n \"appUserLastUsagePath\": \"\",\n \"appUserPath\": \"\",\n \"approversPath\": \"\",\n \"createdByUserPath\": \"\",\n \"entitlementsPath\": \"\",\n \"identityUserPath\": \"\",\n \"insightsPath\": \"\",\n \"resourceBindingsPath\": \"\",\n \"roleResourcePath\": \"\",\n \"scopeResourcePath\": \"\",\n \"stepApproversPath\": \"\",\n \"task\": {\n \"actions\": [\n \"TASK_ACTION_TYPE_DENY\"\n ],\n \"analysisId\": \"\",\n \"annotations\": [\n {\n \"@type\": \"\",\n \"key_0\": 3935,\n \"key_1\": 1437.5783677465547\n }\n ],\n \"approverIds\": [\n \"\"\n ],\n \"commentCount\": \"\",\n \"createdAt\": \"\",\n \"createdByUserId\": \"\",\n \"data\": {\n \"key_0\": true\n },\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"emergencyAccess\": \"\",\n \"externalRefs\": [\n {\n \"externalRefSource\": \"UNSPECIFIED\",\n \"name\": \"\",\n \"url\": \"\"\n }\n ],\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"id\": \"\",\n \"insightIds\": [\n \"\"\n ],\n \"numericId\": \"\",\n \"origin\": \"TASK_ORIGIN_WEBAPP\",\n \"policy\": {\n \"current\": {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_RUNNING\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_DONE\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\"\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_UNSPECIFIED\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 1615.4329605031048\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_CREATE_CONNECTOR_ACTIONS_FOR_TARGET\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_UNSPECIFIED\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_WAITING\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n },\n \"history\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"automation\": {\n \"automationExecutionId\": \"\"\n },\n \"batonResourceActionInstance\": {\n \"batonActionInvocationId\": \"\"\n },\n \"cancelled\": {\n \"outcomeTime\": \"\"\n },\n \"clientIdApprovalInstance\": {\n \"clientIdUrl\": \"\"\n },\n \"denied\": {\n \"outcomeTime\": \"\"\n },\n \"error\": {\n \"errorCode\": \"\",\n \"errorMessage\": \"\",\n \"outcomeTime\": \"\"\n },\n \"state\": \"ACTION_INSTANCE_STATE_ERROR\",\n \"success\": {\n \"outcomeTime\": \"\"\n }\n },\n \"approval\": {\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"approved\": {\n \"approvedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"stepUpTransactionId\": \"\",\n \"userId\": \"\"\n },\n \"assignedAt\": \"\",\n \"denied\": {\n \"deniedAt\": \"\",\n \"userId\": \"\"\n },\n \"escalationInstance\": {\n \"alreadyEscalated\": \"\",\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiresAt\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"APPROVAL_INSTANCE_STATE_WAITING\"\n },\n \"form\": {\n \"completed\": {\n \"completedAt\": \"\",\n \"userId\": \"\"\n },\n \"data\": {\n \"key_0\": false\n },\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n },\n \"reassigned\": {\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\",\n \"userId\": \"\"\n },\n \"restarted\": {\n \"oldPolicyStepId\": \"\",\n \"restartedAt\": \"\",\n \"userId\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"FORM_INSTANCE_STATE_UNSPECIFIED\"\n },\n \"id\": \"\",\n \"policyGenerationId\": \"\",\n \"provision\": {\n \"batonActionInvocationId\": \"\",\n \"cancelled\": {\n \"cancelledAt\": \"\",\n \"cancelledByUserId\": \"\"\n },\n \"completed\": {\n \"completedAt\": \"\",\n \"entitlements\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"userId\": \"\"\n },\n \"errored\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"erroredAt\": \"\"\n },\n \"externalTicketId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"notificationId\": \"\",\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reassignedByError\": {\n \"description\": \"\",\n \"errorCode\": \"\",\n \"errorUserId\": \"\",\n \"erroredAt\": \"\",\n \"newPolicyStepId\": \"\",\n \"reassignedAt\": \"\"\n },\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"state\": \"PROVISION_INSTANCE_STATE_ACCOUNT_LIFECYCLE_ACTIONS_WAITING\",\n \"webhookId\": \"\",\n \"webhookInstanceId\": \"\"\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"state\": \"POLICY_STEP_STATE_DONE\",\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"name\": \"\",\n \"skipped\": {\n \"newPolicyStepId\": \"\",\n \"skippedAt\": \"\",\n \"userId\": \"\"\n },\n \"startedWaitingAt\": \"\",\n \"state\": \"WAIT_INSTANCE_STATE_COMPLETED\",\n \"succeeded\": {\n \"succeededAt\": \"\"\n },\n \"timedOut\": {\n \"timedOutAt\": \"\"\n },\n \"timeout\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"durationIfExists\": \"\",\n \"untilTime\": \"\"\n }\n }\n }\n ],\n \"next\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"UNKNOWN\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_DROPDOWN\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": 63.072931032839286\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ],\n \"policy\": {\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"policySteps\": {\n \"key_0\": {\n \"steps\": [\n {\n \"accept\": {\n \"acceptMessage\": \"\"\n },\n \"action\": {\n \"automation\": {\n \"automationTemplateId\": \"\"\n },\n \"batonResourceAction\": {\n \"batonResourceActionId\": \"\"\n },\n \"clientIdApproval\": {}\n },\n \"approval\": {\n \"agent\": {\n \"agentFailureAction\": \"APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS\",\n \"agentMode\": \"APPROVAL_AGENT_MODE_COMMENT_ONLY\",\n \"agentUserId\": \"\",\n \"instructions\": \"\",\n \"policyIds\": [\n \"\"\n ],\n \"reassignToUserIds\": [\n \"\"\n ]\n },\n \"allowDelegation\": \"\",\n \"allowReassignment\": \"\",\n \"allowedReassignees\": [\n \"\"\n ],\n \"appOwners\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"assigned\": \"\",\n \"entitlementOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"escalation\": {\n \"cancelTicket\": {},\n \"escalationComment\": \"\",\n \"expiration\": \"\",\n \"reassignToApprovers\": {\n \"approverIds\": [\n \"\"\n ]\n },\n \"replacePolicy\": {\n \"policyId\": \"\"\n },\n \"skipStep\": {}\n },\n \"escalationEnabled\": \"\",\n \"expression\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"expressions\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"group\": {\n \"allowSelfApproval\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"manager\": {\n \"allowSelfApproval\": \"\",\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"requireApprovalReason\": \"\",\n \"requireDenialReason\": \"\",\n \"requireReassignmentReason\": \"\",\n \"requiresStepUpProviderId\": \"\",\n \"resourceOwners\": {\n \"allowSelfApproval\": \"\",\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\",\n \"requireDistinctApprovers\": \"\"\n },\n \"self\": {\n \"assignedUserIds\": [\n \"\"\n ],\n \"fallback\": \"\",\n \"fallbackGroupIds\": [\n {\n \"appEntitlementId\": \"\",\n \"appId\": \"\"\n }\n ],\n \"fallbackUserIds\": [\n \"\"\n ],\n \"isGroupFallbackEnabled\": \"\"\n },\n \"users\": {\n \"allowSelfApproval\": \"\",\n \"requireDistinctApprovers\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"form\": {\n \"form\": {\n \"description\": \"\",\n \"displayName\": \"\",\n \"fieldGroups\": [\n {\n \"default\": \"\",\n \"displayName\": \"\",\n \"fields\": [\n \"\"\n ],\n \"helpText\": \"\",\n \"name\": \"\"\n }\n ],\n \"fieldRelationships\": [\n {\n \"atLeastOne\": {},\n \"dependentOn\": {\n \"dependencyFieldNames\": [\n \"\"\n ]\n },\n \"fieldNames\": [\n \"\"\n ],\n \"mutuallyExclusive\": {},\n \"requiredTogether\": {}\n }\n ],\n \"fields\": [\n {\n \"adminConfig\": {\n \"defaultValueCel\": \"\",\n \"showToUser\": \"\"\n },\n \"boolField\": {\n \"checkboxField\": {},\n \"defaultValue\": \"\",\n \"rules\": {\n \"const\": \"\"\n },\n \"toggleField\": {}\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"fileField\": {\n \"acceptedFileTypes\": [\n \"\"\n ],\n \"fileInputField\": {},\n \"maxFileSize\": \"\"\n },\n \"int64Field\": {\n \"defaultValue\": \"\",\n \"numberField\": {\n \"maxValue\": \"\",\n \"minValue\": \"\",\n \"step\": \"\"\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"name\": \"\",\n \"oauth2Field\": {\n \"oauth2FieldView\": {}\n },\n \"required\": \"\",\n \"sharedConfig\": {\n \"defaultValueCel\": \"\",\n \"inputTransformationCel\": \"\",\n \"lockDefaultValues\": \"\"\n },\n \"stringField\": {\n \"defaultValue\": \"\",\n \"passwordField\": {},\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_VALUE\"\n },\n \"selectField\": {\n \"options\": [\n {\n \"description\": \"\",\n \"displayName\": \"\",\n \"value\": \"\"\n }\n ],\n \"type\": \"SELECT_TYPE_RADIO\"\n },\n \"textField\": {\n \"multiline\": \"\",\n \"suffix\": \"\"\n }\n },\n \"stringMapField\": {\n \"defaultValue\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"rules\": {\n \"isRequired\": \"\",\n \"validateEmpty\": \"\"\n }\n },\n \"stringSliceField\": {\n \"chipsField\": {},\n \"defaultValues\": [\n \"\"\n ],\n \"pickerField\": {\n \"appUserPicker\": {\n \"appId\": \"\"\n },\n \"c1UserPicker\": {},\n \"resourcePicker\": {\n \"appId\": \"\",\n \"resourceTypeId\": \"\"\n }\n },\n \"placeholder\": \"\",\n \"rules\": {\n \"ignoreEmpty\": \"\",\n \"items\": {\n \"any\": {\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"bool\": {\n \"const\": \"\"\n },\n \"bytes\": {\n \"const\": \"\",\n \"contains\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"maxLen\": \"\",\n \"minLen\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"suffix\": \"\"\n },\n \"double\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"duration\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"required\": \"\"\n },\n \"enum\": {\n \"const\": \"\",\n \"definedOnly\": \"\",\n \"in\": [\n \"\"\n ],\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"fixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"float\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"int64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"map\": {\n \"ignoreEmpty\": \"\",\n \"keys\": {\n \"value\": \"\"\n },\n \"maxPairs\": \"\",\n \"minPairs\": \"\",\n \"noSparse\": \"\",\n \"values\": {\n \"value\": \"\"\n }\n },\n \"message\": {\n \"required\": \"\",\n \"skip\": \"\"\n },\n \"repeated\": {\n \"value\": \"\"\n },\n \"sfixed32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sfixed64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"sint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"string\": {\n \"address\": \"\",\n \"const\": \"\",\n \"contains\": \"\",\n \"email\": \"\",\n \"hostname\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"ip\": \"\",\n \"ipv4\": \"\",\n \"ipv6\": \"\",\n \"len\": \"\",\n \"lenBytes\": \"\",\n \"maxBytes\": \"\",\n \"maxLen\": \"\",\n \"minBytes\": \"\",\n \"minLen\": \"\",\n \"notContains\": \"\",\n \"notIn\": [\n \"\"\n ],\n \"pattern\": \"\",\n \"prefix\": \"\",\n \"strict\": \"\",\n \"suffix\": \"\",\n \"uri\": \"\",\n \"uriRef\": \"\",\n \"uuid\": \"\",\n \"wellKnownRegex\": \"HTTP_HEADER_NAME\"\n },\n \"timestamp\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gtNow\": \"\",\n \"gte\": \"\",\n \"lt\": \"\",\n \"ltNow\": \"\",\n \"lte\": \"\",\n \"required\": \"\",\n \"within\": \"\"\n },\n \"uint32\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n },\n \"uint64\": {\n \"const\": \"\",\n \"gt\": \"\",\n \"gte\": \"\",\n \"ignoreEmpty\": \"\",\n \"in\": [\n \"\"\n ],\n \"lt\": \"\",\n \"lte\": \"\",\n \"notIn\": [\n \"\"\n ]\n }\n },\n \"maxItems\": \"\",\n \"minItems\": \"\",\n \"unique\": \"\"\n }\n },\n \"userConfig\": {\n \"inputTransformationCel\": \"\"\n }\n }\n ],\n \"id\": \"\"\n }\n },\n \"provision\": {\n \"assigned\": \"\",\n \"provisionPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 8591.566249218828\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"provisionTarget\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\"\n }\n },\n \"reject\": {\n \"rejectMessage\": \"\"\n },\n \"wait\": {\n \"commentOnFirstWait\": \"\",\n \"commentOnTimeout\": \"\",\n \"condition\": {\n \"condition\": \"\"\n },\n \"duration\": {\n \"duration\": \"\"\n },\n \"name\": \"\",\n \"timeoutDuration\": \"\",\n \"untilTime\": {\n \"hours\": \"\",\n \"minutes\": \"\",\n \"timezone\": \"\"\n }\n }\n }\n ]\n }\n },\n \"policyType\": \"POLICY_TYPE_CERTIFY\",\n \"postActions\": [\n {\n \"certifyRemediateImmediately\": \"\"\n }\n ],\n \"reassignTasksToDelegates\": \"\",\n \"rules\": [\n {\n \"condition\": \"\",\n \"policyKey\": \"\"\n }\n ],\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\"\n }\n },\n \"policyGenerationId\": \"\",\n \"processing\": \"TASK_PROCESSING_TYPE_WAITING\",\n \"recommendation\": \"INSIGHT_RECOMMENDATION_DENY\",\n \"revocationTargets\": [\n {\n \"entitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n }\n ],\n \"state\": \"TASK_STATE_OPEN\",\n \"stepApproverIds\": [\n \"\"\n ],\n \"type\": {\n \"action\": {\n \"actionId\": \"\",\n \"actionInstance\": {\n \"connectorActionRef\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"operation\": \"OPERATION_UNSPECIFIED\"\n },\n \"displayName\": \"\"\n },\n \"displayName\": \"\",\n \"formValues\": {\n \"key_0\": false,\n \"key_1\": 9641.416783036277\n },\n \"outcome\": \"ACTION_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"scopeRole\": {\n \"appId\": \"\",\n \"grantDuration\": \"\",\n \"roleResourceId\": \"\",\n \"roleResourceTypeId\": \"\",\n \"scopeResourceId\": \"\",\n \"scopeResourceTypeId\": \"\"\n },\n \"type\": \"TYPE_GRANT\"\n },\n \"certify\": {\n \"accessReviewId\": \"\",\n \"accessReviewSelection\": \"\",\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"CERTIFY_OUTCOME_DECERTIFIED\",\n \"outcomeTime\": \"\"\n },\n \"finding\": {\n \"findingId\": \"\",\n \"findingType\": \"\",\n \"outcome\": \"FINDING_TASK_OUTCOME_CANCELLED\",\n \"outcomeTime\": \"\"\n },\n \"grant\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"grantDuration\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"GRANT_OUTCOME_DENIED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"conversationId\": \"\",\n \"externalUrl\": \"\",\n \"integrationId\": \"\",\n \"isExtension\": \"\",\n \"requestId\": \"\"\n }\n },\n \"offboarding\": {\n \"outcome\": \"OFFBOARDING_OUTCOME_UNSPECIFIED\",\n \"outcomeTime\": \"\",\n \"subjectUserId\": \"\"\n },\n \"revoke\": {\n \"appEntitlementId\": \"\",\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"identityUserId\": \"\",\n \"outcome\": \"REVOKE_OUTCOME_REVOKED\",\n \"outcomeTime\": \"\",\n \"source\": {\n \"expired\": {\n \"expiredAt\": \"\"\n },\n \"nonUsage\": {\n \"expiresAt\": \"\",\n \"lastLogin\": \"\"\n },\n \"request\": {\n \"requestUserId\": \"\"\n },\n \"review\": {\n \"accessReviewId\": \"\",\n \"certTicketId\": \"\"\n }\n }\n }\n },\n \"updatedAt\": \"\",\n \"userId\": \"\"\n },\n \"userPath\": \"\"\n },\n \"ticketActionId\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" + "key": "Content-Type", + "value": "application/json" } ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + "body": "{\n \"webhook\": {\n \"attempts\": \"\",\n \"completedAt\": \"\",\n \"createdAt\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"lastAttemptedAt\": \"\",\n \"source\": {\n \"approvalStep\": {\n \"ticketId\": \"\"\n },\n \"policyPostAction\": {\n \"ticketId\": \"\"\n },\n \"provisionStep\": {\n \"ticketId\": \"\"\n },\n \"test\": {},\n \"workflowStep\": {\n \"workflowExecutionId\": \"\",\n \"workflowStepId\": \"\"\n }\n },\n \"spec\": {\n \"destination\": \"\"\n },\n \"state\": \"WEBHOOK_STATE_PROCESS_RESPONSE\",\n \"updatedAt\": \"\",\n \"webhookId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } - ] + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } ] } @@ -48966,207 +77944,166 @@ ] }, { - "name": "users", + "name": "workload_federation", "description": "", "item": [ { - "id": "b32c7d9b-df04-4677-85d1-064fc09eb457", - "name": "List", - "request": { - "name": "List", - "description": { - "content": "List users.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "users" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + "name": "providers", + "description": "", + "item": [ { - "id": "ea0e80dd-ae0d-44ea-85b3-2082c6ce8bf9", - "name": "The UserServiceListResponse message contains a list of results and a nextPageToken if applicable.", - "originalRequest": { + "id": "bacee4b7-324c-4791-99ee-4d0b3f3936db", + "name": "List Providers", + "request": { + "name": "List Providers", + "description": { + "content": "ListProviders lists all providers for the tenant.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "users" + "workload_federation", + "providers" ], "host": [ "{{baseUrl}}" ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], + "query": [], "variable": [] }, "header": [ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], "method": "GET", - "body": {} + "body": {}, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "b3313d2d-cab7-4222-9c7e-e12527c7a613", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "workload_federation", + "providers" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"oidc\": {},\n \"spiffe\": {\n \"bundleEndpointUrl\": \"\"\n },\n \"updatedAt\": \"\",\n \"wellKnownProvider\": \"WELL_KNOWN_WORKLOAD_PROVIDER_HCP_TERRAFORM\"\n },\n {\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"oidc\": {},\n \"spiffe\": {\n \"bundleEndpointUrl\": \"\"\n },\n \"updatedAt\": \"\",\n \"wellKnownProvider\": \"WELL_KNOWN_WORKLOAD_PROVIDER_HCP_TERRAFORM\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": 9367\n },\n {\n \"@type\": \"\",\n \"key_0\": 711,\n \"key_1\": \"string\",\n \"key_2\": 5533.336815930829,\n \"key_3\": \"string\"\n }\n ],\n \"list\": [\n {\n \"delegatedUserPath\": \"\",\n \"directoriesPath\": \"\",\n \"managersPath\": \"\",\n \"rolesPath\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": 9082.827976539043\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n },\n {\n \"delegatedUserPath\": \"\",\n \"directoriesPath\": \"\",\n \"managersPath\": \"\",\n \"rolesPath\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": {\n \"key_0\": 6577\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{id}", - "description": "", - "item": [ + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, { - "id": "0ce6bfd5-3ef4-4029-885b-e10f5a5dfbc5", - "name": "Get", + "id": "f37620a5-88d3-4567-8333-17a1f095a082", + "name": "Create Provider", "request": { - "name": "Get", + "name": "Create Provider", "description": { - "content": "Get a user by ID.", + "content": "CreateProvider registers a new external OIDC issuer for the tenant.\n Validates the issuer URL via OIDC discovery synchronously.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "users", - ":id" + "workload_federation", + "providers" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" } ], - "method": "GET", - "body": {}, + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"description\": \"\",\n \"displayName\": \"\",\n \"issuerUrl\": \"\",\n \"oidc\": {},\n \"spiffe\": {\n \"bundleEndpointUrl\": \"\"\n },\n \"wellKnownProvider\": \"WELL_KNOWN_WORKLOAD_PROVIDER_UNSPECIFIED\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, "auth": null }, "response": [ { - "id": "2b77a909-d7de-4ab2-a1fd-ef57ea111d12", - "name": "The UserServiceGetResponse returns a user view which has a user including JSONPATHs to the expanded items in the expanded array.", + "id": "d49a8e2a-4e00-440f-b035-ad7848a67618", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "users", - ":id" + "workload_federation", + "providers" ], "host": [ "{{baseUrl}}" ], "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] + "variable": [] }, "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, { "key": "Accept", "value": "application/json" @@ -49180,8 +78117,17 @@ "value": "Bearer " } ], - "method": "GET", - "body": {} + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"description\": \"\",\n \"displayName\": \"\",\n \"issuerUrl\": \"\",\n \"oidc\": {},\n \"spiffe\": {\n \"bundleEndpointUrl\": \"\"\n },\n \"wellKnownProvider\": \"WELL_KNOWN_WORKLOAD_PROVIDER_UNSPECIFIED\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, "status": "OK", "code": 200, @@ -49191,7 +78137,7 @@ "value": "application/json" } ], - "body": "{\n \"expanded\": [\n {\n \"@type\": \"\",\n \"key_0\": \"string\",\n \"key_1\": 8919\n },\n {\n \"@type\": \"\",\n \"key_0\": \"string\"\n }\n ],\n \"userView\": {\n \"delegatedUserPath\": \"\",\n \"directoriesPath\": \"\",\n \"managersPath\": \"\",\n \"rolesPath\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": {\n \"key_0\": false,\n \"key_1\": false\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n}", + "body": "{\n \"provider\": {\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"oidc\": {},\n \"spiffe\": {\n \"bundleEndpointUrl\": \"\"\n },\n \"updatedAt\": \"\",\n \"wellKnownProvider\": \"WELL_KNOWN_WORKLOAD_PROVIDER_CUSTOM\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -49200,33 +78146,162 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "{user_id}", - "description": "", - "item": [ + }, { - "name": "profile-types", + "name": "{id}", "description": "", "item": [ { - "id": "4cdfcf09-5b79-426b-84b3-c5ecac9b627b", - "name": "Get User Profile Types", + "id": "3cead46d-d018-4172-9d8d-34039495c594", + "name": "Delete Provider", "request": { - "name": "Get User Profile Types", + "name": "Delete Provider", "description": { - "content": "Retrieve the profile types associated with a user across their connected apps.", + "content": "DeleteProvider deletes a provider. Fails if active trusts reference it.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "users", - ":user_id", - "profile-types" + "workload_federation", + "providers", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "9d386ffe-b226-4d7b-9aad-4d0173f7629c", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "workload_federation", + "providers", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "f0cf44c2-67d8-4328-8e04-94fdfce832d3", + "name": "Get Provider", + "request": { + "name": "Get Provider", + "description": { + "content": "GetProvider returns a provider by ID.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "workload_federation", + "providers", + ":id" ], "host": [ "{{baseUrl}}" @@ -49236,7 +78311,7 @@ { "type": "any", "value": "", - "key": "user_id", + "key": "id", "disabled": false, "description": { "content": "(Required) ", @@ -49257,16 +78332,16 @@ }, "response": [ { - "id": "28eefa56-796d-40ba-bcaf-160cae1f4760", - "name": "GetUserProfileTypesResponse is the response containing the profile types for a user.", + "id": "fb21e170-c202-4821-a41f-eff91a6b08ea", + "name": "Successful response", "originalRequest": { "url": { "path": [ "api", "v1", - "users", - ":user_id", - "profile-types" + "workload_federation", + "providers", + ":id" ], "host": [ "{{baseUrl}}" @@ -49281,7 +78356,7 @@ }, "type": "any", "value": "", - "key": "user_id" + "key": "id" } ] }, @@ -49310,7 +78385,7 @@ "value": "application/json" } ], - "body": "{\n \"profileTypes\": [\n {\n \"description\": \"\",\n \"displayToUser\": \"\",\n \"iconUrl\": \"\",\n \"id\": \"\",\n \"name\": \"\",\n \"priority\": \"\",\n \"sizes\": [\n \"\",\n \"\"\n ],\n \"slug\": \"\"\n },\n {\n \"description\": \"\",\n \"displayToUser\": \"\",\n \"iconUrl\": \"\",\n \"id\": \"\",\n \"name\": \"\",\n \"priority\": \"\",\n \"sizes\": [\n \"\",\n \"\"\n ],\n \"slug\": \"\"\n }\n ]\n}", + "body": "{\n \"provider\": {\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"oidc\": {},\n \"spiffe\": {\n \"bundleEndpointUrl\": \"\"\n },\n \"updatedAt\": \"\",\n \"wellKnownProvider\": \"WELL_KNOWN_WORKLOAD_PROVIDER_CUSTOM\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -49319,29 +78394,23 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - }, - { - "name": "set-delegation-by-admin", - "description": "", - "item": [ + }, { - "id": "de179318-2769-4c8c-80b6-ca311841cc10", - "name": "Set Expiring User Delegation Binding By Admin", + "id": "642bd88a-47bc-4ac3-a5ce-e79c1b90a25a", + "name": "Update Provider", "request": { - "name": "Set Expiring User Delegation Binding By Admin", + "name": "Update Provider", "description": { - "content": "Set or update an expiring delegation binding for a user, allowing an admin to designate a temporary delegate.", + "content": "UpdateProvider updates a provider's mutable fields (display_name, description, disabled).\n The issuer_url is immutable after creation.", "type": "text/plain" }, "url": { "path": [ "api", "v1", - "users", - ":user_id", - "set-delegation-by-admin" + "workload_federation", + "providers", + ":id" ], "host": [ "{{baseUrl}}" @@ -49351,7 +78420,7 @@ { "type": "any", "value": "", - "key": "user_id", + "key": "id", "disabled": false, "description": { "content": "(Required) ", @@ -49370,10 +78439,10 @@ "value": "application/json" } ], - "method": "POST", + "method": "PATCH", "body": { "mode": "raw", - "raw": "{\n \"delegatedUserId\": \"\",\n \"delegationExpireAt\": \"\",\n \"delegationStartAt\": \"\"\n}", + "raw": "{\n \"provider\": {\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"oidc\": {},\n \"spiffe\": {\n \"bundleEndpointUrl\": \"\"\n }\n },\n \"updateMask\": \"\"\n}", "options": { "raw": { "headerFamily": "json", @@ -49385,16 +78454,544 @@ }, "response": [ { - "id": "b3715bec-9a44-46f2-9a92-f5e50f13922a", - "name": "SetExpiringUserDelegationBindingByAdminResponse is the response containing the created or updated delegation binding.", - "originalRequest": { + "id": "cf51894e-6ef9-4718-9aeb-e4d92dcdfe7f", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "workload_federation", + "providers", + ":id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "PATCH", + "body": { + "mode": "raw", + "raw": "{\n \"provider\": {\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"oidc\": {},\n \"spiffe\": {\n \"bundleEndpointUrl\": \"\"\n }\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"provider\": {\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"oidc\": {},\n \"spiffe\": {\n \"bundleEndpointUrl\": \"\"\n },\n \"updatedAt\": \"\",\n \"wellKnownProvider\": \"WELL_KNOWN_WORKLOAD_PROVIDER_GITLAB_CI\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "test-cel", + "description": "", + "item": [ + { + "id": "357d730a-3334-4ea2-86bb-79bda5c0b9ae", + "name": "Test Cel", + "request": { + "name": "Test Cel", + "description": { + "content": "TestCEL evaluates a CEL expression against provided claims without\n requiring a JWT, provider, or trust. Used for expression authoring.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "workload_federation", + "test-cel" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"claimsJson\": \"\",\n \"expression\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "c66a1c67-1537-4360-b90d-2ad52fe74e9e", + "name": "Successful response", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "workload_federation", + "test-cel" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"claimsJson\": \"\",\n \"expression\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"error\": \"\",\n \"expression\": \"\",\n \"matched\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + }, + { + "name": "xaa", + "description": "", + "item": [ + { + "name": "resource_servers", + "description": "", + "item": [ + { + "name": "{client_audience_mapping_xaa_resource_server_id}", + "description": "", + "item": [ + { + "name": "client_audience_mappings", + "description": "", + "item": [ + { + "name": "update", + "description": "", + "item": [ + { + "id": "56d5c1de-f40e-41a0-ac76-a45a5b108151", + "name": "Update", + "request": { + "name": "Update", + "description": { + "content": "Update a mapping's editable fields via update_mask. The resource server\n and client key identify the mapping and are immutable. Editable paths:\n audience_client_id, disabled.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "xaa", + "resource_servers", + ":client_audience_mapping_xaa_resource_server_id", + "client_audience_mappings", + "update" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "client_audience_mapping_xaa_resource_server_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"clientAudienceMapping\": {\n \"audienceClientId\": \"\",\n \"clientKey\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disabled\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "e9b19e28-fc0a-4014-82a1-7126ae33c9d9", + "name": "XAAClientAudienceMappingServiceUpdateResponse returns the updated mapping.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "xaa", + "resource_servers", + ":client_audience_mapping_xaa_resource_server_id", + "client_audience_mappings", + "update" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "client_audience_mapping_xaa_resource_server_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"clientAudienceMapping\": {\n \"audienceClientId\": \"\",\n \"clientKey\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disabled\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n },\n \"updateMask\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"clientAudienceMapping\": {\n \"audienceClientId\": \"\",\n \"clientKey\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disabled\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + }, + { + "name": "{xaa_resource_server_id}", + "description": "", + "item": [ + { + "name": "client_audience_mappings", + "description": "", + "item": [ + { + "id": "ec59d7e6-0202-4982-ac0e-d63b5ad89380", + "name": "List", + "request": { + "name": "List", + "description": { + "content": "List the client audience mappings for a resource server, one page at a\n time.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "xaa", + "resource_servers", + ":xaa_resource_server_id", + "client_audience_mappings" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "xaa_resource_server_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "dfe4a705-fc11-4c48-ad20-aef9df73765c", + "name": "XAAClientAudienceMappingServiceListResponse returns a page of mappings.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "xaa", + "resource_servers", + ":xaa_resource_server_id", + "client_audience_mappings" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "xaa_resource_server_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"clientAudienceMappings\": [\n {\n \"audienceClientId\": \"\",\n \"clientKey\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disabled\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n },\n {\n \"audienceClientId\": \"\",\n \"clientKey\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disabled\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "96897c57-be60-4835-8293-bb9623fa7ec0", + "name": "Create", + "request": { + "name": "Create", + "description": { + "content": "Create a client audience mapping under a resource server.", + "type": "text/plain" + }, "url": { "path": [ "api", "v1", - "users", - ":user_id", - "set-delegation-by-admin" + "xaa", + "resource_servers", + ":xaa_resource_server_id", + "client_audience_mappings" ], "host": [ "{{baseUrl}}" @@ -49402,14 +78999,14 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "xaa_resource_server_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "user_id" + } } ] }, @@ -49421,1177 +79018,4291 @@ { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], "method": "POST", "body": { "mode": "raw", - "raw": "{\n \"delegatedUserId\": \"\",\n \"delegationExpireAt\": \"\",\n \"delegationStartAt\": \"\"\n}", + "raw": "{\n \"audienceClientId\": \"\",\n \"clientKey\": \"\",\n \"disabled\": \"\"\n}", "options": { "raw": { "headerFamily": "json", "language": "json" } } - } + }, + "auth": null }, - "status": "OK", - "code": 200, - "header": [ + "response": [ { - "key": "Content-Type", - "value": "application/json" + "id": "40b25e7d-2fbd-42a0-9737-b02562477cb4", + "name": "XAAClientAudienceMappingServiceCreateResponse returns the created mapping.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "xaa", + "resource_servers", + ":xaa_resource_server_id", + "client_audience_mappings" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "xaa_resource_server_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"audienceClientId\": \"\",\n \"clientKey\": \"\",\n \"disabled\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"clientAudienceMapping\": {\n \"audienceClientId\": \"\",\n \"clientKey\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disabled\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{\n \"item\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"expirationAt\": \"\",\n \"startAt\": \"\",\n \"updatedAt\": \"\",\n \"userId\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - } - ] - }, - { - "name": "vaults", - "description": "", - "item": [ - { - "id": "2a909db7-6516-4f6a-a2a2-35730427bba0", - "name": "Create", - "request": { - "name": "Create", - "description": { - "content": "Create provisions a new external secret storage vault and returns it.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "vaults" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"description\": \"\",\n \"groupAuthzVault\": {},\n \"magicVault\": {\n \"allowUnauthedViews\": \"\",\n \"allowedViews\": \"\"\n },\n \"ownerIds\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "ea6984e1-a0f7-4ab9-809d-4e4396644b1c", - "name": "VaultServiceCreateResponse is the response message for creating a new vault.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "vaults" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"description\": \"\",\n \"groupAuthzVault\": {},\n \"magicVault\": {\n \"allowUnauthedViews\": \"\",\n \"allowedViews\": \"\"\n },\n \"ownerIds\": [\n \"\",\n \"\"\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"vault\": {\n \"createdAt\": \"\",\n \"credentialExpirationDuration\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"groupAuthzVault\": {},\n \"id\": \"\",\n \"magicVault\": {\n \"allowUnauthedViews\": \"\",\n \"allowedViews\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{id}", - "description": "", - "item": [ - { - "id": "a5c608ab-ddd2-46f0-8f93-2ce30ac7ee85", - "name": "Delete", - "request": { - "name": "Delete", - "description": { - "content": "Delete a vault by its ID. Active connectors using this vault will no longer be able to access their stored credentials.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "vaults", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "c316b591-5ae6-4342-b99f-ff7e30e54da9", - "name": "Empty response body. Status code indicates success.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "vaults", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" - } - ] }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "aeb69930-2f8b-421b-be24-7612b1ef2035", - "name": "Get", - "request": { - "name": "Get", - "description": { - "content": "Get returns a single vault by its ID.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "vaults", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "8f687a63-34ea-4432-ac62-833a6c6f32d6", - "name": "VaultServiceGetResponse is the response message containing the requested vault.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "vaults", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ + "name": "by_client_key", + "description": "", + "item": [ { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "id": "482d9de7-76fd-40b6-856c-7e33d91d95c2", + "name": "Get", + "request": { + "name": "Get", + "description": { + "content": "Get a client audience mapping by resource server + client key. The client\n key is passed as a query parameter because it may be a URL.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "xaa", + "resource_servers", + ":xaa_resource_server_id", + "client_audience_mappings", + "by_client_key" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "client_key", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "xaa_resource_server_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null }, - "type": "any", - "value": "", - "key": "id" + "response": [ + { + "id": "530a72d3-a55e-45e7-b03c-47772d10022b", + "name": "XAAClientAudienceMappingServiceGetResponse returns a single mapping.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "xaa", + "resource_servers", + ":xaa_resource_server_id", + "client_audience_mappings", + "by_client_key" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "client_key", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "xaa_resource_server_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"clientAudienceMapping\": {\n \"audienceClientId\": \"\",\n \"clientKey\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"disabled\": \"\",\n \"updatedAt\": \"\",\n \"xaaResourceServerId\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } ] }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"vault\": {\n \"createdAt\": \"\",\n \"credentialExpirationDuration\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"groupAuthzVault\": {},\n \"id\": \"\",\n \"magicVault\": {\n \"allowUnauthedViews\": \"\",\n \"allowedViews\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "c6eb4264-1520-4a09-835b-ce51385518b5", - "name": "Update", - "request": { - "name": "Update", - "description": { - "content": "Update modifies an existing vault's properties using a field mask.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "vaults", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"updateMask\": \"\",\n \"vault\": {\n \"credentialExpirationDuration\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"groupAuthzVault\": {},\n \"id\": \"\",\n \"magicVault\": {\n \"allowUnauthedViews\": \"\",\n \"allowedViews\": \"\"\n }\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "232857da-a5d0-4924-a926-1b88896003e4", - "name": "VaultServiceUpdateResponse is the response message containing the updated vault.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "vaults", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ + "name": "delete", + "description": "", + "item": [ { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "id": "3b165265-04fd-4aad-a7dc-2adf1b4f17d0", + "name": "Delete", + "request": { + "name": "Delete", + "description": { + "content": "Delete a mapping (soft delete). Uses a POST .../delete action route\n because the client key travels in the request body, which HTTP DELETE does\n not reliably support.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "xaa", + "resource_servers", + ":xaa_resource_server_id", + "client_audience_mappings", + "delete" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "xaa_resource_server_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"clientKey\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null }, - "type": "any", - "value": "", - "key": "id" + "response": [ + { + "id": "cce93cf3-197f-4658-8197-41de1c33cc1a", + "name": "XAAClientAudienceMappingServiceDeleteResponse confirms deletion.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "xaa", + "resource_servers", + ":xaa_resource_server_id", + "client_audience_mappings", + "delete" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "xaa_resource_server_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"clientKey\": \"\"\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } ] }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"updateMask\": \"\",\n \"vault\": {\n \"credentialExpirationDuration\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"groupAuthzVault\": {},\n \"id\": \"\",\n \"magicVault\": {\n \"allowUnauthedViews\": \"\",\n \"allowedViews\": \"\"\n }\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"vault\": {\n \"createdAt\": \"\",\n \"credentialExpirationDuration\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"groupAuthzVault\": {},\n \"id\": \"\",\n \"magicVault\": {\n \"allowUnauthedViews\": \"\",\n \"allowedViews\": \"\"\n },\n \"updatedAt\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - }, - { - "name": "webhooks", - "description": "", - "item": [ - { - "id": "5b7c39ac-d16e-45be-869b-10b8b561ad0b", - "name": "List", - "request": { - "name": "List", - "description": { - "content": "List all webhook subscriptions in the tenant, with pagination.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "webhooks" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "764bc0d0-6780-41e8-9416-c20e3183877f", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "webhooks" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - } - ], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"callbackTimeout\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"url\": \"\"\n },\n {\n \"callbackTimeout\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"url\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "328db378-c0e1-48f0-9879-72d3492b3e1b", - "name": "Create", - "request": { - "name": "Create", - "description": { - "content": "Create a new webhook subscription to receive event notifications at the specified URL.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "webhooks" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"url\": \"\",\n \"callbackTimeout\": \"\",\n \"description\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "1df60955-e106-449d-b448-edcdf3fb1c30", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "webhooks" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"displayName\": \"\",\n \"url\": \"\",\n \"callbackTimeout\": \"\",\n \"description\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + "name": "history", + "description": "", + "item": [ + { + "id": "0281a60d-9e82-4b6b-80fd-9d0ff6f0cbc0", + "name": "List History", + "request": { + "name": "List History", + "description": { + "content": "ListHistory returns the change history (newest first) for a single client\n audience mapping — each entry is a snapshot plus who/when metadata. The\n client key is passed as a query parameter because it may be a URL.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v1", + "xaa", + "resource_servers", + ":xaa_resource_server_id", + "client_audience_mappings", + "history" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "client_key", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "xaa_resource_server_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "b51f2332-0396-48b1-93e5-10333bd4d3be", + "name": "XAAClientAudienceMappingServiceListHistoryResponse returns client audience\n mapping history entries.", + "originalRequest": { + "url": { + "path": [ + "api", + "v1", + "xaa", + "resource_servers", + ":xaa_resource_server_id", + "client_audience_mappings", + "history" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "client_key", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "xaa_resource_server_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" + ] } - ], - "body": "{\n \"webhook\": {\n \"callbackTimeout\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"url\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" + ] } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, + ] + } + ] + } + ] + }, + { + "name": "v2", + "description": "", + "item": [ + { + "name": "apps", + "description": "", + "item": [ { - "name": "{id}", + "name": "{app_id}", "description": "", "item": [ { - "id": "8a8fa47d-a7ac-45d0-9c40-4f16aaf82690", - "name": "Delete", - "request": { - "name": "Delete", - "description": { - "content": "Delete a webhook subscription, stopping all future event deliveries to its URL.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "webhooks", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ + "name": "connectors", + "description": "", + "item": [ { - "id": "eb1af94a-b1ed-4b1c-870b-86375b939387", - "name": "Empty response body. Status code indicates success.", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "webhooks", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ + "name": "{connector_id}", + "description": "", + "item": [ + { + "name": "owners", + "description": "", + "item": [ { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "id": "89d7038c-ccb7-443b-baf1-0ea03e6394ce", + "name": "Set", + "request": { + "name": "Set", + "description": { + "content": "Set replaces all owners for a given connector and role.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "connectors", + ":connector_id", + "owners" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRefs\": null,\n \"roleSlug\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" + "response": [ + { + "id": "a0c5144d-b8cf-4889-8cb7-8d3afe61da71", + "name": "SetConnectorOwnersV2Response is the empty response for setting connector owners.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "connectors", + ":connector_id", + "owners" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRefs\": null,\n \"roleSlug\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "entitlements", + "description": "", + "item": [ + { + "id": "87bd9922-daff-4c4c-9daf-517f758c3eb6", + "name": "Search Entitlement Owners", + "request": { + "name": "Search Entitlement Owners", + "description": { + "content": "SearchEntitlementOwners searches for entitlement ownership sources for a connector.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "connectors", + ":connector_id", + "owners", + "entitlements" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "role_slug", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "3afd9e83-3d2a-4800-b5fd-931c9043a3b0", + "name": "SearchConnectorEntitlementOwnersResponse is the response for searching entitlement ownership sources on a connector.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "connectors", + ":connector_id", + "owners", + "entitlements" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "role_slug", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": null,\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 8719,\n \"key_1\": \"string\",\n \"key_2\": \"string\",\n \"key_3\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 1158.001127467725,\n \"key_1\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\"\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 6376,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{role_slug}", + "description": "", + "item": [ + { + "name": "{app_entitlement_ref_app_id}", + "description": "", + "item": [ + { + "name": "{app_entitlement_ref_id}", + "description": "", + "item": [ + { + "id": "121d55fb-6084-4909-b21f-e1ce89e68e01", + "name": "Delete Entitlement Owner", + "request": { + "name": "Delete Entitlement Owner", + "description": { + "content": "DeleteEntitlementOwner deletes an entitlement ownership source for a connector.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "connectors", + ":connector_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "d16309e5-5d31-4d7c-9e54-71b12415cd8d", + "name": "DeleteConnectorEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source on a connector.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "connectors", + ":connector_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "1f5dbe1e-6ec7-49ec-b057-a2598169d7ce", + "name": "Get Entitlement Owner", + "request": { + "name": "Get Entitlement Owner", + "description": { + "content": "GetEntitlementOwner gets an entitlement ownership source for a connector.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "connectors", + ":connector_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "f4979f1c-b069-4037-9fba-af44b4df475d", + "name": "GetConnectorEntitlementOwnerResponse is the response for getting an entitlement ownership source on a connector.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "connectors", + ":connector_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"connectorOwnerEntitlement\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": null,\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "b8b8bb7a-1a96-4407-a9ef-53d00e20ce41", + "name": "Create Entitlement Owner", + "request": { + "name": "Create Entitlement Owner", + "description": { + "content": "CreateEntitlementOwner creates an entitlement ownership source for a connector.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "connectors", + ":connector_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "794e31c3-1c5e-4336-ab12-415b08888a5a", + "name": "CreateConnectorEntitlementOwnerResponse is the response for creating an entitlement ownership source on a connector.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "connectors", + ":connector_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"connectorOwnerEntitlement\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": null,\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 2412\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + } + ] }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" + { + "name": "users", + "description": "", + "item": [ + { + "id": "ff5aa3a2-b20a-44af-8faf-d35bff76b6ce", + "name": "Search User Owners", + "request": { + "name": "Search User Owners", + "description": { + "content": "SearchUserOwners searches for user ownership sources for a connector.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "connectors", + ":connector_id", + "owners", + "users" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "role_slug", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "e07e69f1-c979-408d-a170-136db1f2d1ea", + "name": "SearchConnectorUserOwnersResponse is the response for searching user ownership sources on a connector.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "connectors", + ":connector_id", + "owners", + "users" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "role_slug", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": null,\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": null,\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": null,\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": null,\n \"managerIds\": null,\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": 3358.965560428213,\n \"key_1\": 4070.9962955596234\n },\n \"roleIds\": null,\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_AGENT\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": null,\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n },\n {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": null,\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"ENABLED\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": null,\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": null,\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": null,\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": {\n \"key_0\": \"string\",\n \"key_1\": 7814.986998947177\n },\n \"roleIds\": null,\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_SERVICE\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": null\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{role_slug}", + "description": "", + "item": [ + { + "name": "{user_ref_id}", + "description": "", + "item": [ + { + "id": "2d3c5a24-17a1-4916-abfd-67b196a770ee", + "name": "Delete User Owner", + "request": { + "name": "Delete User Owner", + "description": { + "content": "DeleteUserOwner deletes a user ownership source for a connector.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "connectors", + ":connector_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "user_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"userRef\": {\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "513d2adc-c251-4a82-99ff-bda6050f8043", + "name": "DeleteConnectorUserOwnerResponse is the empty response for deleting a user ownership source on a connector.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "connectors", + ":connector_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "user_ref_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"userRef\": {\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "92919814-8bd5-4034-a68d-f48bb564d268", + "name": "Get User Owner", + "request": { + "name": "Get User Owner", + "description": { + "content": "GetUserOwner gets a user ownership source for a connector.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "connectors", + ":connector_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "user_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "ad03980f-6019-4ca7-b0c3-fa2e9ab4f59e", + "name": "GetConnectorUserOwnerResponse is the response for getting a user ownership source on a connector.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "connectors", + ":connector_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "user_ref_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"connectorOwnerUser\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": null,\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": null,\n \"employeeIdSources\": null,\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": null,\n \"employmentType\": \"\",\n \"employmentTypeSources\": null,\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": null,\n \"managerIds\": null,\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": null,\n \"usernames\": null\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "3d7d1dad-e64f-4b85-97db-a1c77e0cb26f", + "name": "Create User Owner", + "request": { + "name": "Create User Owner", + "description": { + "content": "CreateUserOwner creates a user ownership source for a connector.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "connectors", + ":connector_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "connector_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "user_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"userRef\": {\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "95270fb9-3c54-4cc7-88bf-320e3cabaa68", + "name": "CreateConnectorUserOwnerResponse is the response for creating a user ownership source on a connector.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "connectors", + ":connector_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "connector_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "user_ref_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"userRef\": {\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"connectorOwnerUser\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": null,\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": null,\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": null,\n \"managerIds\": null,\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": true,\n \"key_1\": 1146\n },\n \"roleIds\": null,\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": null\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + } + ] } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" + ] } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, { - "id": "5dc8bc8c-087b-4ba2-a9a9-61201943c4e5", - "name": "Get", - "request": { - "name": "Get", - "description": { - "content": "Retrieve a single webhook by its ID.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "webhooks", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + "name": "entitlements", + "description": "", + "item": [ { - "id": "7293e8ba-7c95-4a6a-8e69-466aba2ea878", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "webhooks", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ + "name": "{entitlement_id}", + "description": "", + "item": [ + { + "name": "owners", + "description": "", + "item": [ { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "id": "7f4689e3-fab8-4e54-9299-8ba5449bc2d0", + "name": "Set", + "request": { + "name": "Set", + "description": { + "content": "Set replaces all owners for a given app entitlement and role.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"roleSlug\": \"\",\n \"userRefs\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" + "response": [ + { + "id": "5163a0b2-141e-4c29-83f0-2950f014b350", + "name": "SetAppEntitlementOwnersResponse is the empty response for setting app entitlement owners.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "entitlement_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"roleSlug\": \"\",\n \"userRefs\": null\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "entitlements", + "description": "", + "item": [ + { + "id": "b2e2c8b9-cbf4-487b-ba50-c08cf29a8f0b", + "name": "Search Entitlement Owners", + "request": { + "name": "Search Entitlement Owners", + "description": { + "content": "SearchEntitlementOwners searches for entitlement ownership sources for an app entitlement.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners", + "entitlements" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "role_slug", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "5be206d7-99bf-4a7d-9752-aeca94dc23ab", + "name": "SearchAppEntitlementEntitlementOwnersResponse is the response for searching entitlement ownership sources on an entitlement.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners", + "entitlements" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "role_slug", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "entitlement_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 4039\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"entitlementId\": \"\",\n \"roleSlug\": \"\"\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": \"string\",\n \"key_2\": 3968.2591575016036\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"entitlementId\": \"\",\n \"roleSlug\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{role_slug}", + "description": "", + "item": [ + { + "name": "{app_entitlement_ref_app_id}", + "description": "", + "item": [ + { + "name": "{app_entitlement_ref_id}", + "description": "", + "item": [ + { + "id": "5ffe4c12-f406-4b4b-8e10-b8ea1ddd131a", + "name": "Delete Entitlement Owner", + "request": { + "name": "Delete Entitlement Owner", + "description": { + "content": "DeleteEntitlementOwner deletes an entitlement ownership source for an app entitlement.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "bcffd6e5-8616-457c-a120-f9a05cee5ea7", + "name": "DeleteAppEntitlementEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source on an entitlement.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "entitlement_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "8c816c0a-cb25-4235-8622-2ece2e778fa3", + "name": "Get Entitlement Owner", + "request": { + "name": "Get Entitlement Owner", + "description": { + "content": "GetEntitlementOwner gets an entitlement ownership source for an app entitlement.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "d3f65e7a-0098-4ee1-b246-73ef4013ca24", + "name": "GetAppEntitlementEntitlementOwnerResponse is the response for getting an entitlement ownership source on an entitlement.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "entitlement_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appEntitlementOwnerEntitlement\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": null,\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 3721,\n \"key_1\": 5204.2816608208905,\n \"key_2\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"entitlementId\": \"\",\n \"roleSlug\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "e49f6a79-1291-4e8e-a5cd-c451aa10faba", + "name": "Create Entitlement Owner", + "request": { + "name": "Create Entitlement Owner", + "description": { + "content": "CreateEntitlementOwner creates an entitlement ownership source for an app entitlement.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "d566a8f9-8cf9-42e3-8f0e-5f53c2d5de66", + "name": "CreateAppEntitlementEntitlementOwnerResponse is the response for creating an entitlement ownership source on an entitlement.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "entitlement_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appEntitlementOwnerEntitlement\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": null,\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"entitlementId\": \"\",\n \"roleSlug\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] + } + ] }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"webhook\": {\n \"callbackTimeout\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"url\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "a40e0cf0-e5e1-4906-a990-e1a81bbbd8bb", - "name": "Update", - "request": { - "name": "Update", - "description": { - "content": "Update an existing webhook subscription's properties, such as its URL or display name.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "webhooks", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"updateMask\": \"\",\n \"webhook\": {\n \"callbackTimeout\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"url\": \"\"\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "9960d924-b213-480d-bfcf-afa4eeebc4c7", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "webhooks", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "id" + "name": "users", + "description": "", + "item": [ + { + "id": "28a7b20e-c31b-4c35-b5e8-4e66447495b2", + "name": "Search User Owners", + "request": { + "name": "Search User Owners", + "description": { + "content": "SearchUserOwners searches for user ownership sources of this app entitlement.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners", + "users" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "role_slug", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "34e2a7c6-2f0d-43b6-a0e5-b376388083a6", + "name": "SearchAppEntitlementUserOwnersResponse is the response for searching user ownership sources on an entitlement.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners", + "users" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "role_slug", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "entitlement_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{role_slug}", + "description": "", + "item": [ + { + "name": "{user_ref_id}", + "description": "", + "item": [ + { + "id": "a0680b14-1ab0-4a31-bbb5-79338a1b173c", + "name": "Delete User Owner", + "request": { + "name": "Delete User Owner", + "description": { + "content": "DeleteUserOwner deletes a user ownership source for an app entitlement.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "user_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"userRef\": {\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "0823729e-52a3-46bc-b65a-ac3fda91fc74", + "name": "DeleteAppEntitlementUserOwnerResponse is the empty response for deleting a user ownership source on an entitlement.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "entitlement_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "user_ref_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"userRef\": {\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "e5e29d75-2d1d-490f-bd5a-e94a0b10864c", + "name": "Get User Owner", + "request": { + "name": "Get User Owner", + "description": { + "content": "GetUserOwner gets a user ownership source for an app entitlement.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "user_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "c6e4ea1d-3930-4493-9ba9-bb5075bcf186", + "name": "GetAppEntitlementUserOwnerResponse is the response for getting a user ownership source on an entitlement.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "entitlement_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "user_ref_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appEntitlementOwnerUser\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"entitlementId\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": null,\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": null,\n \"employmentType\": \"\",\n \"employmentTypeSources\": null,\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": null,\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_SERVICE\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "dd3b9596-3927-405f-9e1b-bdc693d594e4", + "name": "Create User Owner", + "request": { + "name": "Create User Owner", + "description": { + "content": "CreateUserOwner creates a user ownership source for an app entitlement.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "entitlement_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "user_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"userRef\": {\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "092f6ec2-6302-4bc4-88cc-683a37bbedf2", + "name": "CreateAppEntitlementUserOwnerResponse is the response for creating a user ownership source on an entitlement.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "entitlements", + ":entitlement_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "entitlement_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "user_ref_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"userRef\": {\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appEntitlementOwnerUser\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"entitlementId\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": null,\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": null,\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": null,\n \"roleIds\": null,\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_SERVICE\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": null,\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] } ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"updateMask\": \"\",\n \"webhook\": {\n \"callbackTimeout\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"url\": \"\"\n }\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" } - ], - "body": "{\n \"webhook\": {\n \"callbackTimeout\": \"\",\n \"createdAt\": \"\",\n \"deletedAt\": \"\",\n \"description\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"updatedAt\": \"\",\n \"url\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] + } + ] }, { - "name": "test", + "name": "owners", "description": "", "item": [ { - "id": "04a9bbc6-baf3-4051-bc95-3a90b96f7a44", - "name": "Test", + "id": "d4754718-7278-4086-a416-c41ad8813413", + "name": "Set", "request": { - "name": "Test", + "name": "Set", "description": { - "content": "Send a sample event to the webhook URL to verify that the endpoint is reachable and responding correctly.", + "content": "Set replaces all user owners for a given app and role.", "type": "text/plain" }, "url": { "path": [ "api", - "v1", - "webhooks", - ":id", - "test" + "v2", + "apps", + ":app_id", + "owners" ], "host": [ "{{baseUrl}}" @@ -50601,7 +83312,7 @@ { "type": "any", "value": "", - "key": "id", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", @@ -50620,10 +83331,10 @@ "value": "application/json" } ], - "method": "POST", + "method": "PUT", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"roleSlug\": \"\",\n \"userRefs\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -50635,16 +83346,16 @@ }, "response": [ { - "id": "1e547e5b-4222-4b22-81cc-d3eb47c0f9ed", - "name": "Successful response", + "id": "f1bcf5db-3a91-4a2e-b22c-0a789d972b60", + "name": "SetAppOwnersResponse is the empty response for setting app owners.", "originalRequest": { "url": { "path": [ "api", - "v1", - "webhooks", - ":id", - "test" + "v2", + "apps", + ":app_id", + "owners" ], "host": [ "{{baseUrl}}" @@ -50659,7 +83370,7 @@ }, "type": "any", "value": "", - "key": "id" + "key": "app_id" } ] }, @@ -50681,10 +83392,10 @@ "value": "Bearer " } ], - "method": "POST", + "method": "PUT", "body": { "mode": "raw", - "raw": "{}", + "raw": "{\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"roleSlug\": \"\",\n \"userRefs\": null\n}", "options": { "raw": { "headerFamily": "json", @@ -50701,7 +83412,7 @@ "value": "application/json" } ], - "body": "{\n \"webhook\": {\n \"attempts\": \"\",\n \"completedAt\": \"\",\n \"createdAt\": \"\",\n \"expiresAt\": \"\",\n \"id\": \"\",\n \"lastAttemptedAt\": \"\",\n \"source\": {\n \"approvalStep\": {\n \"ticketId\": \"\"\n },\n \"policyPostAction\": {\n \"ticketId\": \"\"\n },\n \"provisionStep\": {\n \"ticketId\": \"\"\n },\n \"test\": {},\n \"workflowStep\": {\n \"workflowExecutionId\": \"\",\n \"workflowStepId\": \"\"\n }\n },\n \"spec\": {\n \"destination\": \"\"\n },\n \"state\": \"WEBHOOK_STATE_ERROR\",\n \"updatedAt\": \"\",\n \"webhookId\": \"\"\n }\n}", + "body": "{}", "cookie": [], "_postman_previewlanguage": "json" } @@ -50710,832 +83421,1160 @@ "protocolProfileBehavior": { "disableBodyPruning": true } - } - ] - } - ] - } - ] - }, - { - "name": "workload_federation", - "description": "", - "item": [ - { - "name": "providers", - "description": "", - "item": [ - { - "id": "60df4ab3-627d-42a9-9256-ed5fd4fe4b22", - "name": "List Providers", - "request": { - "name": "List Providers", - "description": { - "content": "ListProviders lists all providers for the tenant.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "workload_federation", - "providers" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ { - "id": "6861f100-245a-4b91-8bad-f1f1433d3597", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "workload_federation", - "providers" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ + "name": "entitlements", + "description": "", + "item": [ { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"oidc\": {},\n \"spiffe\": {\n \"bundleEndpointUrl\": \"\"\n },\n \"updatedAt\": \"\",\n \"wellKnownProvider\": \"WELL_KNOWN_WORKLOAD_PROVIDER_HCP_TERRAFORM\"\n },\n {\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"oidc\": {},\n \"spiffe\": {\n \"bundleEndpointUrl\": \"\"\n },\n \"updatedAt\": \"\",\n \"wellKnownProvider\": \"WELL_KNOWN_WORKLOAD_PROVIDER_CUSTOM\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "25ffadd3-4bf5-4cac-8daf-f548abeac6d0", - "name": "Create Provider", - "request": { - "name": "Create Provider", - "description": { - "content": "CreateProvider registers a new external OIDC issuer for the tenant.\n Validates the issuer URL via OIDC discovery synchronously.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "workload_federation", - "providers" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"description\": \"\",\n \"displayName\": \"\",\n \"issuerUrl\": \"\",\n \"oidc\": {},\n \"spiffe\": {\n \"bundleEndpointUrl\": \"\"\n },\n \"wellKnownProvider\": \"WELL_KNOWN_WORKLOAD_PROVIDER_AWS_IAM_OUTBOUND\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "de1121b2-b9c7-4596-bc1d-c1bac0bbcc73", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "workload_federation", - "providers" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { + "id": "b55bc3e5-bc67-410d-ab37-b15080ea3040", + "name": "Search Entitlement Owners", + "request": { + "name": "Search Entitlement Owners", "description": { - "content": "Added as a part of security scheme: bearer", + "content": "SearchEntitlementOwners searches for entitlement ownership sources for an app.", "type": "text/plain" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"description\": \"\",\n \"displayName\": \"\",\n \"issuerUrl\": \"\",\n \"oidc\": {},\n \"spiffe\": {\n \"bundleEndpointUrl\": \"\"\n },\n \"wellKnownProvider\": \"WELL_KNOWN_WORKLOAD_PROVIDER_AWS_IAM_OUTBOUND\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"provider\": {\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"oidc\": {},\n \"spiffe\": {\n \"bundleEndpointUrl\": \"\"\n },\n \"updatedAt\": \"\",\n \"wellKnownProvider\": \"WELL_KNOWN_WORKLOAD_PROVIDER_GITHUB_ACTIONS\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "name": "{id}", - "description": "", - "item": [ - { - "id": "9835e10d-d36a-4b10-8ecc-7413995c3525", - "name": "Delete Provider", - "request": { - "name": "Delete Provider", - "description": { - "content": "DeleteProvider deletes a provider. Fails if active trusts reference it.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "workload_federation", - "providers", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "c31a7a8c-794b-40f9-8de6-d938c29c4416", - "name": "Successful response", - "originalRequest": { "url": { "path": [ "api", - "v1", - "workload_federation", - "providers", - ":id" + "v2", + "apps", + ":app_id", + "owners", + "entitlements" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [ + "query": [ { "disabled": false, "description": { - "content": "(Required) ", + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", "type": "text/plain" }, + "key": "role_slug", + "value": "" + } + ], + "variable": [ + { "type": "any", "value": "", - "key": "id" + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "35c93b58-90e2-497c-97c7-c11320c7a216", + "name": "SearchEntitlementOwnersResponse is the response for searching entitlement ownership sources.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "owners", + "entitlements" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "role_slug", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 8818,\n \"key_1\": 2213.0364632827204,\n \"key_2\": 7466,\n \"key_3\": 5611.874504171781,\n \"key_4\": 7254\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\"\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 2316,\n \"key_1\": 5007.632978626831,\n \"key_2\": 8747,\n \"key_3\": 1649\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{role_slug}", + "description": "", + "item": [ + { + "name": "{app_entitlement_ref_app_id}", + "description": "", + "item": [ + { + "name": "{app_entitlement_ref_id}", + "description": "", + "item": [ + { + "id": "b95fc5f8-60e2-480b-8de8-e99f03fd816a", + "name": "Delete Entitlement Owner", + "request": { + "name": "Delete Entitlement Owner", + "description": { + "content": "DeleteEntitlementOwner deletes an entitlement ownership source for an app.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "5ef399d6-aedb-477f-8de5-50e914f1116c", + "name": "DeleteEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "2b20bb23-b049-4105-9eb2-f39503551e57", + "name": "Get Entitlement Owner", + "request": { + "name": "Get Entitlement Owner", + "description": { + "content": "GetEntitlementOwner gets an entitlement ownership source for an app.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "53d233a6-5b7d-467e-973c-a7b148a1d71a", + "name": "GetEntitlementOwnerResponse is the response for getting an entitlement ownership source.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appOwnerEntitlement\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "ef903a40-3c75-4ccf-92bb-8c27420acc98", + "name": "Create Entitlement Owner", + "request": { + "name": "Create Entitlement Owner", + "description": { + "content": "CreateEntitlementOwner creates an entitlement ownership source for an app.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "85a4fbff-5f99-4efd-b574-95a9acec4045", + "name": "CreateEntitlementOwnerResponse is the response for creating an entitlement ownership source.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appOwnerEntitlement\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 7880,\n \"key_1\": 939,\n \"key_2\": 5512.559278783151\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] } ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "DELETE", - "body": { - "mode": "raw", - "raw": "{}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" } - ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" + ] } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] }, { - "id": "7ba73776-0a1a-46dc-accb-8667174949ea", - "name": "Get Provider", - "request": { - "name": "Get Provider", - "description": { - "content": "GetProvider returns a provider by ID.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "workload_federation", - "providers", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ + "name": "users", + "description": "", + "item": [ { - "id": "9b7ee525-2cf6-4f0d-ae36-5ff44c7ff328", - "name": "Successful response", - "originalRequest": { + "id": "88589e3b-82fd-48c4-beb2-25fd3ac263b7", + "name": "Search User Owners", + "request": { + "name": "Search User Owners", + "description": { + "content": "SearchUserOwners searches for user ownership sources for an app.", + "type": "text/plain" + }, "url": { "path": [ "api", - "v1", - "workload_federation", - "providers", - ":id" + "v2", + "apps", + ":app_id", + "owners", + "users" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [ + "query": [ { "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" }, - "type": "any", - "value": "", - "key": "id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" + "key": "page_size", + "value": "" }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"provider\": {\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"oidc\": {},\n \"spiffe\": {\n \"bundleEndpointUrl\": \"\"\n },\n \"updatedAt\": \"\",\n \"wellKnownProvider\": \"WELL_KNOWN_WORKLOAD_PROVIDER_HCP_TERRAFORM\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "ff275e1e-6a6a-42f5-b707-01ddb0c4f147", - "name": "Update Provider", - "request": { - "name": "Update Provider", - "description": { - "content": "UpdateProvider updates a provider's mutable fields (display_name, description, disabled).\n The issuer_url is immutable after creation.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "workload_federation", - "providers", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "PATCH", - "body": { - "mode": "raw", - "raw": "{\n \"provider\": {\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"oidc\": {},\n \"spiffe\": {\n \"bundleEndpointUrl\": \"\"\n }\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "f7f7f151-c828-41a3-bc25-3c62bc038861", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "workload_federation", - "providers", - ":id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ { "disabled": false, "description": { - "content": "(Required) ", + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", "type": "text/plain" }, + "key": "role_slug", + "value": "" + } + ], + "variable": [ + { "type": "any", "value": "", - "key": "id" + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } ] }, "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, { "key": "Accept", "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " } ], - "method": "PATCH", - "body": { - "mode": "raw", - "raw": "{\n \"provider\": {\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"oidc\": {},\n \"spiffe\": {\n \"bundleEndpointUrl\": \"\"\n }\n },\n \"updateMask\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"provider\": {\n \"createdAt\": \"\",\n \"description\": \"\",\n \"disabled\": \"\",\n \"displayName\": \"\",\n \"id\": \"\",\n \"issuerUrl\": \"\",\n \"oidc\": {},\n \"spiffe\": {\n \"bundleEndpointUrl\": \"\"\n },\n \"updatedAt\": \"\",\n \"wellKnownProvider\": \"WELL_KNOWN_WORKLOAD_PROVIDER_CUSTOM\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - }, - { - "name": "test-cel", - "description": "", - "item": [ - { - "id": "ef0dd192-5052-4727-8288-41fae202c3e3", - "name": "Test Cel", - "request": { - "name": "Test Cel", - "description": { - "content": "TestCEL evaluates a CEL expression against provided claims without\n requiring a JWT, provider, or trust. Used for expression authoring.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v1", - "workload_federation", - "test-cel" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"claimsJson\": \"\",\n \"expression\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - }, - "auth": null - }, - "response": [ - { - "id": "d09399da-8b72-4c4d-adae-591e2d232bd4", - "name": "Successful response", - "originalRequest": { - "url": { - "path": [ - "api", - "v1", - "workload_federation", - "test-cel" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [] - }, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - }, - { - "key": "Accept", - "value": "application/json" + "method": "GET", + "body": {}, + "auth": null }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "POST", - "body": { - "mode": "raw", - "raw": "{\n \"claimsJson\": \"\",\n \"expression\": \"\"\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" - } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"error\": \"\",\n \"expression\": \"\",\n \"matched\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - } - ] - } - ] - }, - { - "name": "v2", - "description": "", - "item": [ - { - "name": "apps", - "description": "", - "item": [ - { - "name": "{app_id}", - "description": "", - "item": [ - { - "name": "connectors", - "description": "", - "item": [ - { - "name": "{connector_id}", - "description": "", - "item": [ - { - "name": "owners", - "description": "", - "item": [ + "response": [ { - "id": "89463cbc-cbbb-4eb4-917d-cae8f967a43f", - "name": "Set", - "request": { - "name": "Set", - "description": { - "content": "Set replaces all owners for a given connector and role.", - "type": "text/plain" - }, + "id": "2038b070-0339-4f90-aa7b-09967ef2ca93", + "name": "SearchUserOwnersResponse is the response for searching user ownership sources.", + "originalRequest": { "url": { "path": [ "api", "v2", "apps", ":app_id", - "connectors", - ":connector_id", - "owners" + "owners", + "users" ], "host": [ "{{baseUrl}}" ], - "query": [], - "variable": [ + "query": [ { - "type": "any", - "value": "", - "key": "app_id", "disabled": false, "description": { - "content": "(Required) ", + "content": "", "type": "text/plain" - } + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" }, { - "type": "any", - "value": "", - "key": "connector_id", + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "role_slug", + "value": "" + } + ], + "variable": [ + { "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - } + }, + "type": "any", + "value": "", + "key": "app_id" } ] }, "header": [ { - "key": "Content-Type", + "key": "Accept", "value": "application/json" }, { - "key": "Accept", - "value": "application/json" + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " } ], - "method": "PUT", - "body": { - "mode": "raw", - "raw": "{\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"roleSlug\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{role_slug}", + "description": "", + "item": [ + { + "name": "{user_ref_id}", + "description": "", + "item": [ + { + "id": "742d3fd3-0710-4344-8271-fb34b417c16d", + "name": "Delete User Owner", + "request": { + "name": "Delete User Owner", + "description": { + "content": "DeleteUserOwner deletes a user ownership source for an app.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "user_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"userRef\": {\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "3c2adac0-9cb0-4ead-b774-a7da8d54299b", + "name": "DeleteUserOwnerResponse is the empty response for deleting a user ownership source.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "user_ref_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"userRef\": {\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } }, - "auth": null - }, - "response": [ { - "id": "85ed7d2f-3b19-42d9-b421-3168a11dad39", - "name": "SetConnectorOwnersV2Response is the empty response for setting connector owners.", - "originalRequest": { + "id": "adde9323-bb8f-4018-aa2d-b89cef0106f5", + "name": "Get User Owner", + "request": { + "name": "Get User Owner", + "description": { + "content": "GetUserOwner gets a user ownership source for an app.", + "type": "text/plain" + }, "url": { "path": [ "api", "v2", "apps", ":app_id", - "connectors", - ":connector_id", - "owners" + "owners", + "users", + ":role_slug", + ":user_ref_id" ], "host": [ "{{baseUrl}}" @@ -51543,24 +84582,189 @@ "query": [], "variable": [ { + "type": "any", + "value": "", + "key": "app_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" - }, + } + }, + { "type": "any", "value": "", - "key": "app_id" + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } }, { + "type": "any", + "value": "", + "key": "user_ref_id", "disabled": false, "description": { "content": "(Required) ", "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "afe07b36-53da-44ea-8d17-0da722a56e3b", + "name": "GetUserOwnerResponse is the response for getting a user ownership source.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "user_ref_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appOwnerUser\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": null,\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": null,\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": null,\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": null,\n \"roleIds\": null,\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_HUMAN\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": null\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "11a50e23-55db-4c79-ab86-9c4bf0b34450", + "name": "Create User Owner", + "request": { + "name": "Create User Owner", + "description": { + "content": "CreateUserOwner creates a user ownership source for an app.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { "type": "any", "value": "", - "key": "connector_id" + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "user_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } } ] }, @@ -51572,437 +84776,2194 @@ { "key": "Accept", "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"userRef\": {\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "489d09e6-e93b-486a-9f3c-4d316970770e", + "name": "CreateUserOwnerResponse is the response for creating a user ownership source.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "user_ref_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"userRef\": {\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "PUT", - "body": { - "mode": "raw", - "raw": "{\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"roleSlug\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", - "options": { - "raw": { - "headerFamily": "json", - "language": "json" + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" } - } - } - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" + ], + "body": "{\n \"appOwnerUser\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": null,\n \"employeeIdSources\": null,\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": null,\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": null,\n \"roleIds\": null,\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": null,\n \"usernames\": null\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "body": "{}", - "cookie": [], - "_postman_previewlanguage": "json" + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, + ] + } + ] + } + ] + } + ] + }, + { + "name": "resource_types", + "description": "", + "item": [ + { + "name": "{resource_type_id}", + "description": "", + "item": [ + { + "name": "resources", + "description": "", + "item": [ { - "name": "entitlements", + "name": "{resource_id}", "description": "", "item": [ { - "id": "8fa1c594-156c-41cc-aff0-b9e99813e3cb", - "name": "Search Entitlement Owners", - "request": { - "name": "Search Entitlement Owners", - "description": { - "content": "SearchEntitlementOwners searches for the entitlement ownership for a connector.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v2", - "apps", - ":app_id", - "connectors", - ":connector_id", - "owners", - "entitlements" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" + "name": "owners", + "description": "", + "item": [ + { + "id": "dde6baed-c659-4989-8c8c-0292abb76d52", + "name": "Set", + "request": { + "name": "Set", + "description": { + "content": "Set replaces all owners for a given app resource and role.", + "type": "text/plain" }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resources", + ":resource_id", + "owners" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" }, - "key": "page_token", - "value": "" + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRefs\": null,\n \"roleSlug\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } }, + "auth": null + }, + "response": [ { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" + "id": "f09c34fd-7cc3-4c0a-9410-073e94d9c32a", + "name": "SetAppResourceOwnersV2Response is the empty response for setting app resource owners.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resources", + ":resource_id", + "owners" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "PUT", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRefs\": null,\n \"roleSlug\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } }, - "key": "role_slug", - "value": "" + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "variable": [ + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "entitlements", + "description": "", + "item": [ { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" + "id": "0d5ea772-163c-4f54-8f6a-8835a1eb0bc5", + "name": "Search Entitlement Owners", + "request": { + "name": "Search Entitlement Owners", + "description": { + "content": "SearchEntitlementOwners searches for entitlement ownership sources of this app resource.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resources", + ":resource_id", + "owners", + "entitlements" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "role_slug", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "2e74ce05-b987-4cf3-bdd2-f1e9f5dcc5c3", + "name": "SearchAppResourceEntitlementOwnersResponse is the response for searching entitlement ownership sources on a resource.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resources", + ":resource_id", + "owners", + "entitlements" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "role_slug", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"resourceId\": \"\",\n \"resourceTypeId\": \"\",\n \"roleSlug\": \"\"\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 4096.223586268404\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"resourceId\": \"\",\n \"resourceTypeId\": \"\",\n \"roleSlug\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true } }, { - "type": "any", - "value": "", - "key": "connector_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } + "name": "{role_slug}", + "description": "", + "item": [ + { + "name": "{app_entitlement_ref_app_id}", + "description": "", + "item": [ + { + "name": "{app_entitlement_ref_id}", + "description": "", + "item": [ + { + "id": "0331cbaf-2bc2-4f76-b871-0738ef75a087", + "name": "Delete Entitlement Owner", + "request": { + "name": "Delete Entitlement Owner", + "description": { + "content": "DeleteEntitlementOwner deletes an entitlement ownership source for an app resource.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resources", + ":resource_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "65d8534c-66fa-45fe-84ec-9f516eff75e8", + "name": "DeleteAppResourceEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source on a resource.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resources", + ":resource_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "7033d4ce-30d6-4b9d-8331-67ecbc69a119", + "name": "Get Entitlement Owner", + "request": { + "name": "Get Entitlement Owner", + "description": { + "content": "GetEntitlementOwner gets an entitlement ownership source for an app resource.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resources", + ":resource_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "9bea81a0-fc5b-4ae6-9297-8a186a1d09c9", + "name": "GetAppResourceEntitlementOwnerResponse is the response for getting an entitlement ownership source on a resource.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resources", + ":resource_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appResourceOwnerEntitlement\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 9582,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"resourceId\": \"\",\n \"resourceTypeId\": \"\",\n \"roleSlug\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "28aa0e16-49b1-4bda-9ac6-95b581c379ff", + "name": "Create Entitlement Owner", + "request": { + "name": "Create Entitlement Owner", + "description": { + "content": "CreateEntitlementOwner creates an entitlement ownership source for an app resource.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resources", + ":resource_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "app_entitlement_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "d9518e2d-92f4-4a0d-a333-9840ee0ab87e", + "name": "CreateAppResourceEntitlementOwnerResponse is the response for creating an entitlement ownership source on a resource.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resources", + ":resource_id", + "owners", + "entitlements", + ":role_slug", + ":app_entitlement_ref_app_id", + ":app_entitlement_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_entitlement_ref_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"appEntitlementRef\": {\n \"appId\": \"\",\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appResourceOwnerEntitlement\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": null,\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 8174\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"resourceId\": \"\",\n \"resourceTypeId\": \"\",\n \"roleSlug\": \"\"\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] + } + ] + } + ] } ] }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ { - "id": "352e45b6-2e7e-46b0-9ecb-5cb15949a77c", - "name": "SearchConnectorEntitlementOwnersResponse is the response for searching entitlement ownership sources on a connector.", - "originalRequest": { - "url": { - "path": [ - "api", - "v2", - "apps", - ":app_id", - "connectors", - ":connector_id", - "owners", - "entitlements" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" + "name": "users", + "description": "", + "item": [ + { + "id": "51b92b72-d4db-49c9-9168-c4eb70f68e2e", + "name": "Search User Owners", + "request": { + "name": "Search User Owners", + "description": { + "content": "SearchUserOwners searches for user ownership sources of this app resource.", + "type": "text/plain" }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resources", + ":resource_id", + "owners", + "users" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "role_slug", + "value": "" + } + ], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" + "id": "38b878f4-fd38-4920-815e-648c48d9331a", + "name": "SearchAppResourceUserOwnersResponse is the response for searching user ownership sources on a resource.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resources", + ":resource_id", + "owners", + "users" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [ + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_size", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "page_token", + "value": "" + }, + { + "disabled": false, + "description": { + "content": "", + "type": "text/plain" + }, + "key": "role_slug", + "value": "" + } + ], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} }, - "key": "role_slug", - "value": "" + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", + "cookie": [], + "_postman_previewlanguage": "json" } ], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - }, + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "name": "{role_slug}", + "description": "", + "item": [ { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "connector_id" + "name": "{user_ref_id}", + "description": "", + "item": [ + { + "id": "8a30b432-e7c1-4183-b722-c5862a31f644", + "name": "Delete User Owner", + "request": { + "name": "Delete User Owner", + "description": { + "content": "DeleteUserOwner deletes a user ownership source for an app resource.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resources", + ":resource_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "user_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"userRef\": {\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "60b1ed0a-5620-4968-9592-a72cda6a4024", + "name": "DeleteAppResourceUserOwnerResponse is the empty response for deleting a user ownership source on a resource.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resources", + ":resource_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "user_ref_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "DELETE", + "body": { + "mode": "raw", + "raw": "{\n \"userRef\": {\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "80ff7a90-9fa8-41a1-9965-33d58889987d", + "name": "Get User Owner", + "request": { + "name": "Get User Owner", + "description": { + "content": "GetUserOwner gets a user ownership source for an app resource.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resources", + ":resource_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "user_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "GET", + "body": {}, + "auth": null + }, + "response": [ + { + "id": "463f6f72-d266-4101-8929-3a50be1bc728", + "name": "GetAppResourceUserOwnerResponse is the response for getting a user ownership source on a resource.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resources", + ":resource_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "user_ref_id" + } + ] + }, + "header": [ + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "GET", + "body": {} + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appResourceOwnerUser\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"resourceId\": \"\",\n \"resourceTypeId\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": null,\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": null,\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_HUMAN\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + }, + { + "id": "b38218c8-5abf-4687-ba73-9e18ab31dc7a", + "name": "Create User Owner", + "request": { + "name": "Create User Owner", + "description": { + "content": "CreateUserOwner creates a user ownership source for an app resource.", + "type": "text/plain" + }, + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resources", + ":resource_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "type": "any", + "value": "", + "key": "app_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_type_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "resource_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "role_slug", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + }, + { + "type": "any", + "value": "", + "key": "user_ref_id", + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + } + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"userRef\": {\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + }, + "auth": null + }, + "response": [ + { + "id": "b9f4b3af-414f-4ef5-b62f-564dc2c15e7a", + "name": "CreateAppResourceUserOwnerResponse is the response for creating a user ownership source on a resource.", + "originalRequest": { + "url": { + "path": [ + "api", + "v2", + "apps", + ":app_id", + "resource_types", + ":resource_type_id", + "resources", + ":resource_id", + "owners", + "users", + ":role_slug", + ":user_ref_id" + ], + "host": [ + "{{baseUrl}}" + ], + "query": [], + "variable": [ + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "app_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_type_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "resource_id" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "role_slug" + }, + { + "disabled": false, + "description": { + "content": "(Required) ", + "type": "text/plain" + }, + "type": "any", + "value": "", + "key": "user_ref_id" + } + ] + }, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + }, + { + "key": "Accept", + "value": "application/json" + }, + { + "description": { + "content": "Added as a part of security scheme: bearer", + "type": "text/plain" + }, + "key": "Authorization", + "value": "Bearer " + } + ], + "method": "POST", + "body": { + "mode": "raw", + "raw": "{\n \"userRef\": {\n \"id\": \"\"\n }\n}", + "options": { + "raw": { + "headerFamily": "json", + "language": "json" + } + } + } + }, + "status": "OK", + "code": 200, + "header": [ + { + "key": "Content-Type", + "value": "application/json" + } + ], + "body": "{\n \"appResourceOwnerUser\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"resourceId\": \"\",\n \"resourceTypeId\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"ENABLED\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": null,\n \"employeeIdSources\": null,\n \"employeeIds\": null,\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": null,\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": null,\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_AGENT\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n}", + "cookie": [], + "_postman_previewlanguage": "json" + } + ], + "event": [], + "protocolProfileBehavior": { + "disableBodyPruning": true + } + } + ] } ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true,\n \"key_1\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 2472\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"createdAt\": \"\",\n \"roleSlug\": \"\"\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 8535.345403080579\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": 2761.9925862987584\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"createdAt\": \"\",\n \"roleSlug\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - } - ] - }, - { - "name": "users", - "description": "", - "item": [ - { - "id": "7d443ffd-1f6b-4939-9376-0cc8c4243439", - "name": "Search User Owners", - "request": { - "name": "Search User Owners", - "description": { - "content": "SearchUserOwners searches for users who are owners of this connector.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v2", - "apps", - ":app_id", - "connectors", - ":connector_id", - "owners", - "users" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "role_slug", - "value": "" - } - ], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "connector_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } } ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "fa694497-a71b-41ae-86dc-79e908d5b91c", - "name": "SearchConnectorUserOwnersResponse is the response for searching user ownership sources on a connector.", - "originalRequest": { - "url": { - "path": [ - "api", - "v2", - "apps", - ":app_id", - "connectors", - ":connector_id", - "owners", - "users" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [ - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_size", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "page_token", - "value": "" - }, - { - "disabled": false, - "description": { - "content": "", - "type": "text/plain" - }, - "key": "role_slug", - "value": "" - } - ], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "connector_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": {\n \"key_0\": 3799,\n \"key_1\": 7304.816091911206\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n },\n {\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": {\n \"key_0\": 3264.382476825145\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", - "cookie": [], - "_postman_previewlanguage": "json" } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } + ] } ] } @@ -52013,11 +86974,11 @@ ] }, { - "name": "entitlements", + "name": "users", "description": "", "item": [ { - "name": "{entitlement_id}", + "name": "{user_id}", "description": "", "item": [ { @@ -52025,12 +86986,12 @@ "description": "", "item": [ { - "id": "c0119abf-3a79-4d74-ad4b-53e1340c3572", + "id": "ce515e52-2756-4c91-b91a-21ec211f8573", "name": "Set", "request": { "name": "Set", "description": { - "content": "Set replaces all owners for a given app entitlement and role.", + "content": "Set replaces all owners for a given app user and role.", "type": "text/plain" }, "url": { @@ -52039,8 +87000,8 @@ "v2", "apps", ":app_id", - "entitlements", - ":entitlement_id", + "users", + ":user_id", "owners" ], "host": [ @@ -52061,7 +87022,7 @@ { "type": "any", "value": "", - "key": "entitlement_id", + "key": "user_id", "disabled": false, "description": { "content": "(Required) ", @@ -52095,8 +87056,8 @@ }, "response": [ { - "id": "41755d03-6bd5-4476-9088-811d93ac47be", - "name": "SetAppEntitlementOwnersResponse is the empty response for setting app entitlement owners.", + "id": "e8d857d9-0e39-42e9-a99e-0f7cbf60fc83", + "name": "SetAppUserOwnersV2Response is the empty response for setting app user owners.", "originalRequest": { "url": { "path": [ @@ -52104,8 +87065,8 @@ "v2", "apps", ":app_id", - "entitlements", - ":entitlement_id", + "users", + ":user_id", "owners" ], "host": [ @@ -52131,7 +87092,7 @@ }, "type": "any", "value": "", - "key": "entitlement_id" + "key": "user_id" } ] }, @@ -52188,12 +87149,12 @@ "description": "", "item": [ { - "id": "c9a02875-6e03-4223-a3e3-c5c12c035566", + "id": "d356a4d3-23b0-4c56-8fdc-966c42cf15e7", "name": "Search Entitlement Owners", "request": { "name": "Search Entitlement Owners", "description": { - "content": "SearchEntitlementOwners searches for entitlement ownership sources for an app entitlement.", + "content": "SearchEntitlementOwners searches for entitlement ownership sources of this app user.", "type": "text/plain" }, "url": { @@ -52202,8 +87163,8 @@ "v2", "apps", ":app_id", - "entitlements", - ":entitlement_id", + "users", + ":user_id", "owners", "entitlements" ], @@ -52253,7 +87214,7 @@ { "type": "any", "value": "", - "key": "entitlement_id", + "key": "user_id", "disabled": false, "description": { "content": "(Required) ", @@ -52274,8 +87235,8 @@ }, "response": [ { - "id": "e057e354-1ba5-4d67-a41e-f559dceb64c9", - "name": "SearchAppEntitlementEntitlementOwnersResponse is the response for searching entitlement ownership sources on an entitlement.", + "id": "b1af9461-3c08-401c-94bf-2f52daccd43d", + "name": "SearchAppUserEntitlementOwnersResponse is the response for searching entitlement ownership sources on an app user.", "originalRequest": { "url": { "path": [ @@ -52283,8 +87244,8 @@ "v2", "apps", ":app_id", - "entitlements", - ":entitlement_id", + "users", + ":user_id", "owners", "entitlements" ], @@ -52339,7 +87300,7 @@ }, "type": "any", "value": "", - "key": "entitlement_id" + "key": "user_id" } ] }, @@ -52368,7 +87329,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 8756.503131393365\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 2991.4075560092756,\n \"key_1\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"entitlementId\": \"\",\n \"roleSlug\": \"\"\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": true\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": \"string\",\n \"key_1\": 8337\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"entitlementId\": \"\",\n \"roleSlug\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -52391,12 +87352,12 @@ "description": "", "item": [ { - "id": "894c02c5-1ebe-44bd-a712-c1c67fc661a5", + "id": "0aa1be20-41cf-4ff5-9399-c323a95b3a25", "name": "Delete Entitlement Owner", "request": { "name": "Delete Entitlement Owner", "description": { - "content": "DeleteEntitlementOwner deletes an entitlement ownership source for an app entitlement.", + "content": "DeleteEntitlementOwner deletes an entitlement ownership source for an app user.", "type": "text/plain" }, "url": { @@ -52405,8 +87366,8 @@ "v2", "apps", ":app_id", - "entitlements", - ":entitlement_id", + "users", + ":user_id", "owners", "entitlements", ":role_slug", @@ -52431,7 +87392,7 @@ { "type": "any", "value": "", - "key": "entitlement_id", + "key": "user_id", "disabled": false, "description": { "content": "(Required) ", @@ -52495,8 +87456,8 @@ }, "response": [ { - "id": "81639099-fd1c-4c14-8cec-75bb02563fcb", - "name": "DeleteAppEntitlementEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source on an entitlement.", + "id": "b1706892-2afe-4f56-9834-d382a1f73862", + "name": "DeleteAppUserEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source on an app user.", "originalRequest": { "url": { "path": [ @@ -52504,8 +87465,8 @@ "v2", "apps", ":app_id", - "entitlements", - ":entitlement_id", + "users", + ":user_id", "owners", "entitlements", ":role_slug", @@ -52535,7 +87496,7 @@ }, "type": "any", "value": "", - "key": "entitlement_id" + "key": "user_id" }, { "disabled": false, @@ -52618,213 +87579,12 @@ } }, { - "id": "97fc8449-4306-49e7-b045-abc2d9566dcb", - "name": "Get Entitlement Owner", - "request": { - "name": "Get Entitlement Owner", - "description": { - "content": "GetEntitlementOwner gets an entitlement ownership source for an app entitlement.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v2", - "apps", - ":app_id", - "entitlements", - ":entitlement_id", - "owners", - "entitlements", - ":role_slug", - ":app_entitlement_ref_app_id", - ":app_entitlement_ref_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "role_slug", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "app_entitlement_ref_app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "app_entitlement_ref_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "4fe30a88-8301-409c-b64a-5b7a5edded04", - "name": "GetAppEntitlementEntitlementOwnerResponse is the response for getting an entitlement ownership source on an entitlement.", - "originalRequest": { - "url": { - "path": [ - "api", - "v2", - "apps", - ":app_id", - "entitlements", - ":entitlement_id", - "owners", - "entitlements", - ":role_slug", - ":app_entitlement_ref_app_id", - ":app_entitlement_ref_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "entitlement_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "role_slug" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_entitlement_ref_app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_entitlement_ref_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"appEntitlementOwnerEntitlement\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 3702.5900422736127,\n \"key_1\": false,\n \"key_2\": 6138.32269303221,\n \"key_3\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"entitlementId\": \"\",\n \"roleSlug\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "b136e0b3-f25e-4783-8bfb-f94635ae333f", + "id": "059a2b64-b10a-493a-9e0c-65a52b1346f9", "name": "Create Entitlement Owner", "request": { "name": "Create Entitlement Owner", "description": { - "content": "CreateEntitlementOwner creates an entitlement ownership source for an app entitlement.", + "content": "CreateEntitlementOwner creates an entitlement ownership source for an app user.", "type": "text/plain" }, "url": { @@ -52833,8 +87593,8 @@ "v2", "apps", ":app_id", - "entitlements", - ":entitlement_id", + "users", + ":user_id", "owners", "entitlements", ":role_slug", @@ -52859,7 +87619,7 @@ { "type": "any", "value": "", - "key": "entitlement_id", + "key": "user_id", "disabled": false, "description": { "content": "(Required) ", @@ -52923,8 +87683,8 @@ }, "response": [ { - "id": "7b3d828a-5b6e-4706-8172-1c8c9a7969ec", - "name": "CreateAppEntitlementEntitlementOwnerResponse is the response for creating an entitlement ownership source on an entitlement.", + "id": "1158a34e-9298-43c6-aab5-d0976c59aa67", + "name": "CreateAppUserEntitlementOwnerResponse is the response for creating an entitlement ownership source on an app user.", "originalRequest": { "url": { "path": [ @@ -52932,8 +87692,8 @@ "v2", "apps", ":app_id", - "entitlements", - ":entitlement_id", + "users", + ":user_id", "owners", "entitlements", ":role_slug", @@ -52963,7 +87723,7 @@ }, "type": "any", "value": "", - "key": "entitlement_id" + "key": "user_id" }, { "disabled": false, @@ -53035,7 +87795,7 @@ "value": "application/json" } ], - "body": "{\n \"appEntitlementOwnerEntitlement\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 1852.5627035854586,\n \"key_1\": \"string\",\n \"key_2\": \"string\",\n \"key_3\": 7103\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 6803.890417258775\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"entitlementId\": \"\",\n \"roleSlug\": \"\"\n }\n}", + "body": "{\n \"appUserOwnerEntitlement\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": null,\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"userId\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -53058,12 +87818,12 @@ "description": "", "item": [ { - "id": "bbd43996-b7a5-4e92-82fe-858da10435f4", + "id": "843b7038-f3b4-4c28-9584-014d1150656a", "name": "Search User Owners", "request": { "name": "Search User Owners", "description": { - "content": "SearchUserOwners searches for user ownership sources of this app entitlement.", + "content": "SearchUserOwners searches for user ownership sources of this app user.", "type": "text/plain" }, "url": { @@ -53072,8 +87832,8 @@ "v2", "apps", ":app_id", - "entitlements", - ":entitlement_id", + "users", + ":user_id", "owners", "users" ], @@ -53123,7 +87883,7 @@ { "type": "any", "value": "", - "key": "entitlement_id", + "key": "user_id", "disabled": false, "description": { "content": "(Required) ", @@ -53144,8 +87904,8 @@ }, "response": [ { - "id": "c5820b95-20c0-4f32-8234-df8cea8a33cf", - "name": "SearchAppEntitlementUserOwnersResponse is the response for searching user ownership sources on an entitlement.", + "id": "f422a349-c087-438a-9ba2-289616b6dcdd", + "name": "SearchAppUserUserOwnersResponse is the response for searching user ownership sources on an app user.", "originalRequest": { "url": { "path": [ @@ -53153,8 +87913,8 @@ "v2", "apps", ":app_id", - "entitlements", - ":entitlement_id", + "users", + ":user_id", "owners", "users" ], @@ -53209,7 +87969,7 @@ }, "type": "any", "value": "", - "key": "entitlement_id" + "key": "user_id" } ] }, @@ -53238,7 +87998,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"entitlementId\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": \"string\"\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_SERVICE\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n },\n {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"entitlementId\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": {\n \"key_0\": \"string\",\n \"key_1\": 4254.35548517525\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"list\": [\n {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": null,\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": null,\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_HUMAN\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": null\n },\n \"userId\": \"\"\n },\n {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": null,\n \"directoryIds\": null,\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": null,\n \"employeeIdSources\": null,\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": null,\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": null,\n \"roleIds\": null,\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": null,\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"userId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -53257,12 +88017,12 @@ "description": "", "item": [ { - "id": "4e66448a-1bd2-4c09-9a00-f8d3400a730c", + "id": "706e8db8-b072-4657-9a37-62708703669f", "name": "Delete User Owner", "request": { "name": "Delete User Owner", "description": { - "content": "DeleteUserOwner deletes a user ownership source for an app entitlement.", + "content": "DeleteUserOwner deletes a user ownership source for an app user.", "type": "text/plain" }, "url": { @@ -53271,8 +88031,8 @@ "v2", "apps", ":app_id", - "entitlements", - ":entitlement_id", + "users", + ":user_id", "owners", "users", ":role_slug", @@ -53296,7 +88056,7 @@ { "type": "any", "value": "", - "key": "entitlement_id", + "key": "user_id", "disabled": false, "description": { "content": "(Required) ", @@ -53350,8 +88110,8 @@ }, "response": [ { - "id": "a838feed-ec5e-4219-bf38-bdd97e880fa1", - "name": "DeleteAppEntitlementUserOwnerResponse is the empty response for deleting a user ownership source on an entitlement.", + "id": "d58cf861-075b-41b2-977d-7676d26a8580", + "name": "DeleteAppUserUserOwnerResponse is the empty response for deleting a user ownership source on an app user.", "originalRequest": { "url": { "path": [ @@ -53359,8 +88119,8 @@ "v2", "apps", ":app_id", - "entitlements", - ":entitlement_id", + "users", + ":user_id", "owners", "users", ":role_slug", @@ -53389,7 +88149,7 @@ }, "type": "any", "value": "", - "key": "entitlement_id" + "key": "user_id" }, { "disabled": false, @@ -53462,191 +88222,12 @@ } }, { - "id": "60c6ec6c-2276-415d-8d03-f941d1180c37", - "name": "Get User Owner", - "request": { - "name": "Get User Owner", - "description": { - "content": "GetUserOwner gets a user ownership source for an app entitlement.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v2", - "apps", - ":app_id", - "entitlements", - ":entitlement_id", - "owners", - "users", - ":role_slug", - ":user_ref_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "entitlement_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "role_slug", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "user_ref_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "938a2657-244f-44fa-ac17-6d517c591e6e", - "name": "GetAppEntitlementUserOwnerResponse is the response for getting a user ownership source on an entitlement.", - "originalRequest": { - "url": { - "path": [ - "api", - "v2", - "apps", - ":app_id", - "entitlements", - ":entitlement_id", - "owners", - "users", - ":role_slug", - ":user_ref_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "entitlement_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "role_slug" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "user_ref_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"appEntitlementOwnerUser\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"entitlementId\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"ENABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": {\n \"key_0\": \"string\",\n \"key_1\": 8216,\n \"key_2\": false,\n \"key_3\": true,\n \"key_4\": 8319\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "c9f5856b-3118-4728-ae6e-53b0de8d7fcb", + "id": "b4d59958-7387-4768-b362-6f57f5bc0317", "name": "Create User Owner", "request": { "name": "Create User Owner", "description": { - "content": "CreateUserOwner creates a user ownership source for an app entitlement.", + "content": "CreateUserOwner creates a user ownership source for an app user.", "type": "text/plain" }, "url": { @@ -53655,8 +88236,8 @@ "v2", "apps", ":app_id", - "entitlements", - ":entitlement_id", + "users", + ":user_id", "owners", "users", ":role_slug", @@ -53680,7 +88261,7 @@ { "type": "any", "value": "", - "key": "entitlement_id", + "key": "user_id", "disabled": false, "description": { "content": "(Required) ", @@ -53734,8 +88315,8 @@ }, "response": [ { - "id": "9e492c2d-25d4-4ef6-9b59-2ee50a101221", - "name": "CreateAppEntitlementUserOwnerResponse is the response for creating a user ownership source on an entitlement.", + "id": "be3bb600-bf81-4b1f-818a-937ca4989c3e", + "name": "CreateAppUserUserOwnerResponse is the response for creating a user ownership source on an app user.", "originalRequest": { "url": { "path": [ @@ -53743,8 +88324,8 @@ "v2", "apps", ":app_id", - "entitlements", - ":entitlement_id", + "users", + ":user_id", "owners", "users", ":role_slug", @@ -53773,7 +88354,7 @@ }, "type": "any", "value": "", - "key": "entitlement_id" + "key": "user_id" }, { "disabled": false, @@ -53835,7 +88416,7 @@ "value": "application/json" } ], - "body": "{\n \"appEntitlementOwnerUser\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"entitlementId\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": {\n \"key_0\": true,\n \"key_1\": false,\n \"key_2\": \"string\"\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_AGENT\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n}", + "body": "{\n \"appUserOwnerUser\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": null,\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DELETED\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": null,\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_AGENT\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": null,\n \"usernames\": null\n },\n \"userId\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -53856,26 +88437,38 @@ ] } ] - }, + } + ] + } + ] + }, + { + "name": "users", + "description": "", + "item": [ + { + "name": "{user_id}", + "description": "", + "item": [ { "name": "owners", "description": "", "item": [ { - "id": "9afdaeed-e74a-48c0-8781-77e0d4eb96fd", + "id": "222cea19-a8d9-47e0-8463-0e92d0cad750", "name": "Set", "request": { "name": "Set", "description": { - "content": "Set replaces all user owners for a given app and role.", + "content": "Set replaces all owners for a given user (service account) and role.", "type": "text/plain" }, "url": { "path": [ "api", "v2", - "apps", - ":app_id", + "users", + ":user_id", "owners" ], "host": [ @@ -53886,7 +88479,7 @@ { "type": "any", "value": "", - "key": "app_id", + "key": "user_id", "disabled": false, "description": { "content": "(Required) ", @@ -53908,7 +88501,7 @@ "method": "PUT", "body": { "mode": "raw", - "raw": "{\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"roleSlug\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "raw": "{\n \"appEntitlementRefs\": null,\n \"roleSlug\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", "options": { "raw": { "headerFamily": "json", @@ -53920,15 +88513,15 @@ }, "response": [ { - "id": "5b340f64-14ab-4c58-a46d-b31ba3ab0352", - "name": "SetAppOwnersResponse is the empty response for setting app owners.", + "id": "0c964ecf-1d1e-469d-99cd-955fcc911ba1", + "name": "SetUserOwnersV2Response is the empty response for setting user owners.", "originalRequest": { "url": { "path": [ "api", "v2", - "apps", - ":app_id", + "users", + ":user_id", "owners" ], "host": [ @@ -53944,7 +88537,7 @@ }, "type": "any", "value": "", - "key": "app_id" + "key": "user_id" } ] }, @@ -53969,7 +88562,7 @@ "method": "PUT", "body": { "mode": "raw", - "raw": "{\n \"appEntitlementRefs\": [\n {\n \"appId\": \"\",\n \"id\": \"\"\n },\n {\n \"appId\": \"\",\n \"id\": \"\"\n }\n ],\n \"roleSlug\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", + "raw": "{\n \"appEntitlementRefs\": null,\n \"roleSlug\": \"\",\n \"userRefs\": [\n {\n \"id\": \"\"\n },\n {\n \"id\": \"\"\n }\n ]\n}", "options": { "raw": { "headerFamily": "json", @@ -54001,20 +88594,20 @@ "description": "", "item": [ { - "id": "895d5f3a-c72d-4667-bb0a-ad04d6633998", + "id": "4e9abdff-1a38-4699-88c2-2efb8743e75e", "name": "Search Entitlement Owners", "request": { "name": "Search Entitlement Owners", "description": { - "content": "SearchEntitlementOwners searches for entitlement ownership sources for an app.", + "content": "SearchEntitlementOwners searches for entitlement ownership sources of this user (service account).", "type": "text/plain" }, "url": { "path": [ "api", "v2", - "apps", - ":app_id", + "users", + ":user_id", "owners", "entitlements" ], @@ -54054,7 +88647,7 @@ { "type": "any", "value": "", - "key": "app_id", + "key": "user_id", "disabled": false, "description": { "content": "(Required) ", @@ -54075,15 +88668,15 @@ }, "response": [ { - "id": "1a599c18-c9a1-41f2-a4a1-4f298da955e6", - "name": "SearchEntitlementOwnersResponse is the response for searching entitlement ownership sources.", + "id": "e359a466-03d7-420c-a964-d5f67daf2144", + "name": "SearchUserEntitlementOwnersResponse is the response for searching entitlement ownership sources on a user (service account).", "originalRequest": { "url": { "path": [ "api", "v2", - "apps", - ":app_id", + "users", + ":user_id", "owners", "entitlements" ], @@ -54128,7 +88721,7 @@ }, "type": "any", "value": "", - "key": "app_id" + "key": "user_id" } ] }, @@ -54157,7 +88750,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 487,\n \"key_1\": 5576.565657115411\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 7171\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\"\n },\n {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 3878,\n \"key_1\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\",\n \"key_2\": \"\",\n \"key_3\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"list\": null,\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -54180,20 +88773,20 @@ "description": "", "item": [ { - "id": "2cd00101-8e97-4bd9-93fb-9c73e74fd250", + "id": "fd4bebff-e114-46a8-92cb-2a2b6cb32d8d", "name": "Delete Entitlement Owner", "request": { "name": "Delete Entitlement Owner", "description": { - "content": "DeleteEntitlementOwner deletes an entitlement ownership source for an app.", + "content": "DeleteEntitlementOwner deletes an entitlement ownership source for a user (service account).", "type": "text/plain" }, "url": { "path": [ "api", "v2", - "apps", - ":app_id", + "users", + ":user_id", "owners", "entitlements", ":role_slug", @@ -54208,7 +88801,7 @@ { "type": "any", "value": "", - "key": "app_id", + "key": "user_id", "disabled": false, "description": { "content": "(Required) ", @@ -54272,15 +88865,15 @@ }, "response": [ { - "id": "8dd54934-d3bc-4e62-b06e-157767557ccd", - "name": "DeleteEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source.", + "id": "b496003c-e4c0-4b9d-b3cd-bac42fb4a874", + "name": "DeleteUserEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source on a user (service account).", "originalRequest": { "url": { "path": [ "api", "v2", - "apps", - ":app_id", + "users", + ":user_id", "owners", "entitlements", ":role_slug", @@ -54300,7 +88893,7 @@ }, "type": "any", "value": "", - "key": "app_id" + "key": "user_id" }, { "disabled": false, @@ -54383,197 +88976,20 @@ } }, { - "id": "f88b701f-0757-40a8-8075-9a8d7445439c", - "name": "Get Entitlement Owner", - "request": { - "name": "Get Entitlement Owner", - "description": { - "content": "GetEntitlementOwner gets an entitlement ownership source for an app.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v2", - "apps", - ":app_id", - "owners", - "entitlements", - ":role_slug", - ":app_entitlement_ref_app_id", - ":app_entitlement_ref_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "role_slug", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "app_entitlement_ref_app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "app_entitlement_ref_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "be1b4deb-e863-4b9c-889a-03fa5dccb3ef", - "name": "GetEntitlementOwnerResponse is the response for getting an entitlement ownership source.", - "originalRequest": { - "url": { - "path": [ - "api", - "v2", - "apps", - ":app_id", - "owners", - "entitlements", - ":role_slug", - ":app_entitlement_ref_app_id", - ":app_entitlement_ref_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "role_slug" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_entitlement_ref_app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_entitlement_ref_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"appOwnerEntitlement\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 8193,\n \"key_1\": 894,\n \"key_2\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 3544.7004755723024,\n \"key_1\": 4413.684894148048\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\"\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "8eb1eeef-7b86-4aab-baa8-7cc5d8ec507e", + "id": "94a6c33d-4b6c-45d5-be41-c5658ce7315d", "name": "Create Entitlement Owner", "request": { "name": "Create Entitlement Owner", "description": { - "content": "CreateEntitlementOwner creates an entitlement ownership source for an app.", + "content": "CreateEntitlementOwner creates an entitlement ownership source for a user (service account).", "type": "text/plain" }, "url": { "path": [ "api", "v2", - "apps", - ":app_id", + "users", + ":user_id", "owners", "entitlements", ":role_slug", @@ -54588,7 +89004,7 @@ { "type": "any", "value": "", - "key": "app_id", + "key": "user_id", "disabled": false, "description": { "content": "(Required) ", @@ -54652,15 +89068,15 @@ }, "response": [ { - "id": "ac64db70-dfa1-4d2d-b915-a85d62149dd0", - "name": "CreateEntitlementOwnerResponse is the response for creating an entitlement ownership source.", + "id": "3419b340-3c7e-46f6-99ab-ffc84ae8371f", + "name": "CreateUserEntitlementOwnerResponse is the response for creating an entitlement ownership source on a user (service account).", "originalRequest": { "url": { "path": [ "api", "v2", - "apps", - ":app_id", + "users", + ":user_id", "owners", "entitlements", ":role_slug", @@ -54680,7 +89096,7 @@ }, "type": "any", "value": "", - "key": "app_id" + "key": "user_id" }, { "disabled": false, @@ -54752,7 +89168,7 @@ "value": "application/json" } ], - "body": "{\n \"appOwnerEntitlement\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": [\n \"\",\n \"\"\n ],\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": false,\n \"key_1\": false,\n \"key_2\": 7881.058172928981,\n \"key_3\": 4352.252033083277,\n \"key_4\": \"string\"\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 6473.339680092867,\n \"key_1\": \"string\",\n \"key_2\": 3106\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": [\n \"\",\n \"\"\n ],\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n }\n },\n \"instructions\": \"\",\n \"userIds\": [\n \"\",\n \"\"\n ]\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\"\n }\n}", + "body": "{\n \"userOwnerEntitlement\": {\n \"appEntitlement\": {\n \"alias\": \"\",\n \"annotations\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"appId\": \"\",\n \"appResourceId\": \"\",\n \"appResourceTypeId\": \"\",\n \"certifyPolicyId\": \"\",\n \"complianceFrameworkValueIds\": null,\n \"createdAt\": \"\",\n \"defaultValuesApplied\": \"\",\n \"deletedAt\": \"\",\n \"deprovisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": {\n \"key_0\": 1694,\n \"key_1\": 4929.45882765145\n },\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": [\n \"\",\n \"\"\n ]\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": null\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": null\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"description\": \"\",\n \"displayName\": \"\",\n \"durationGrant\": \"\",\n \"durationUnset\": {},\n \"emergencyGrantEnabled\": \"\",\n \"emergencyGrantPolicyId\": \"\",\n \"externalId\": \"\",\n \"grantCount\": \"\",\n \"grantPolicyId\": \"\",\n \"id\": \"\",\n \"isAutomationEnabled\": \"\",\n \"isManuallyManaged\": \"\",\n \"matchBatonId\": \"\",\n \"overrideAccessRequestsDefaults\": \"\",\n \"provisionerPolicy\": {\n \"action\": {\n \"actionName\": \"\",\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"displayName\": \"\"\n },\n \"connector\": {\n \"account\": {\n \"config\": null,\n \"connectorId\": \"\",\n \"doNotSave\": {},\n \"saveToVault\": {\n \"vaultIds\": null\n },\n \"schemaId\": \"\"\n },\n \"defaultBehavior\": {\n \"connectorId\": \"\"\n },\n \"deleteAccount\": {\n \"connectorId\": \"\"\n }\n },\n \"delegated\": {\n \"appId\": \"\",\n \"entitlementId\": \"\",\n \"implicit\": \"\"\n },\n \"devicePlacement\": {\n \"vaultBoundaryId\": \"\"\n },\n \"externalTicket\": {\n \"appId\": \"\",\n \"connectorId\": \"\",\n \"externalTicketProvisionerConfigId\": \"\",\n \"instructions\": \"\"\n },\n \"manual\": {\n \"assignee\": {\n \"appOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": null\n },\n \"entitlementOwners\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"expression\": {\n \"allowReassignment\": \"\",\n \"expressions\": null,\n \"fallbackUserIds\": null\n },\n \"group\": {\n \"allowReassignment\": \"\",\n \"appGroupId\": \"\",\n \"appId\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"manager\": {\n \"allowReassignment\": \"\",\n \"fallbackUserIds\": [\n \"\",\n \"\"\n ]\n },\n \"users\": {\n \"allowReassignment\": \"\",\n \"userIds\": null\n }\n },\n \"instructions\": \"\",\n \"userIds\": null\n },\n \"multiStep\": {\n \"provisionSteps\": [\n {\n \"value\": \"\"\n },\n {\n \"value\": \"\"\n }\n ]\n },\n \"unconfigured\": {},\n \"webhook\": {\n \"webhookId\": \"\"\n }\n },\n \"purpose\": \"APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED\",\n \"requestSchemaId\": \"\",\n \"revokePolicyId\": \"\",\n \"riskLevelValueId\": \"\",\n \"slug\": \"\",\n \"sourceConnectorIds\": {\n \"key_0\": \"\",\n \"key_1\": \"\"\n },\n \"systemBuiltin\": \"\",\n \"updatedAt\": \"\",\n \"userEditedMask\": \"\"\n },\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"userId\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -54775,20 +89191,20 @@ "description": "", "item": [ { - "id": "e7b19874-5234-4803-8335-2f304116555e", + "id": "8e0e420f-34b2-45e7-b115-0a8f58176b62", "name": "Search User Owners", "request": { "name": "Search User Owners", "description": { - "content": "SearchUserOwners searches for user ownership sources for an app.", + "content": "SearchUserOwners searches for user ownership sources of this user (service account).", "type": "text/plain" }, "url": { "path": [ "api", "v2", - "apps", - ":app_id", + "users", + ":user_id", "owners", "users" ], @@ -54828,7 +89244,7 @@ { "type": "any", "value": "", - "key": "app_id", + "key": "user_id", "disabled": false, "description": { "content": "(Required) ", @@ -54849,15 +89265,15 @@ }, "response": [ { - "id": "a547d922-25c8-4b30-9c51-f62e1a7a2552", - "name": "SearchUserOwnersResponse is the response for searching user ownership sources.", + "id": "871db325-fe87-422f-b7d6-5354f35dfb09", + "name": "SearchUserOwnersResponse is the response for searching user ownership sources on a user (service account).", "originalRequest": { "url": { "path": [ "api", "v2", - "apps", - ":app_id", + "users", + ":user_id", "owners", "users" ], @@ -54902,7 +89318,7 @@ }, "type": "any", "value": "", - "key": "app_id" + "key": "user_id" } ] }, @@ -54931,7 +89347,7 @@ "value": "application/json" } ], - "body": "{\n \"list\": [\n {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"ENABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_SYSTEM\",\n \"profile\": {\n \"key_0\": false,\n \"key_1\": true,\n \"key_2\": true\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"ENABLED\",\n \"type\": \"USER_TYPE_AGENT\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n },\n {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": 79.84950323161488\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_UNSPECIFIED\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n ],\n \"nextPageToken\": \"\"\n}", + "body": "{\n \"list\": [\n {\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": null,\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": null,\n \"employeeIdSources\": null,\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": null,\n \"employmentType\": \"\",\n \"employmentTypeSources\": null,\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": null,\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": null,\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_HUMAN\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": null\n },\n \"userId\": \"\"\n },\n {\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": null,\n \"directoryStatus\": \"ENABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": null,\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": null,\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_LOCAL\",\n \"profile\": null,\n \"roleIds\": null,\n \"status\": \"DISABLED\",\n \"type\": \"USER_TYPE_SYSTEM\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"userId\": \"\"\n }\n ],\n \"nextPageToken\": \"\"\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -54950,20 +89366,20 @@ "description": "", "item": [ { - "id": "01f67949-2e62-497e-bfee-cbe1bd307f27", + "id": "0023f56a-2ec2-4280-977e-1f2c7e3d258f", "name": "Delete User Owner", "request": { "name": "Delete User Owner", "description": { - "content": "DeleteUserOwner deletes a user ownership source for an app.", + "content": "DeleteUserOwner deletes a user ownership source for a user (service account).", "type": "text/plain" }, "url": { "path": [ "api", "v2", - "apps", - ":app_id", + "users", + ":user_id", "owners", "users", ":role_slug", @@ -54977,7 +89393,7 @@ { "type": "any", "value": "", - "key": "app_id", + "key": "user_id", "disabled": false, "description": { "content": "(Required) ", @@ -55031,15 +89447,15 @@ }, "response": [ { - "id": "808d2845-cd39-4ebb-8c58-cf002c3eb038", - "name": "DeleteUserOwnerResponse is the empty response for deleting a user ownership source.", + "id": "61f68172-12ab-4b7c-b3e1-833f95f1950f", + "name": "DeleteUserUserOwnerResponse is the empty response for deleting a user ownership source on a user (service account).", "originalRequest": { "url": { "path": [ "api", "v2", - "apps", - ":app_id", + "users", + ":user_id", "owners", "users", ":role_slug", @@ -55058,7 +89474,7 @@ }, "type": "any", "value": "", - "key": "app_id" + "key": "user_id" }, { "disabled": false, @@ -55131,175 +89547,20 @@ } }, { - "id": "b2e2e334-757b-4602-ac39-eeb08afbf658", - "name": "Get User Owner", - "request": { - "name": "Get User Owner", - "description": { - "content": "GetUserOwner gets a user ownership source for an app.", - "type": "text/plain" - }, - "url": { - "path": [ - "api", - "v2", - "apps", - ":app_id", - "owners", - "users", - ":role_slug", - ":user_ref_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "type": "any", - "value": "", - "key": "app_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "role_slug", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - }, - { - "type": "any", - "value": "", - "key": "user_ref_id", - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - } - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - } - ], - "method": "GET", - "body": {}, - "auth": null - }, - "response": [ - { - "id": "e227e62b-a800-49e4-82f6-2c5959392398", - "name": "GetUserOwnerResponse is the response for getting a user ownership source.", - "originalRequest": { - "url": { - "path": [ - "api", - "v2", - "apps", - ":app_id", - "owners", - "users", - ":role_slug", - ":user_ref_id" - ], - "host": [ - "{{baseUrl}}" - ], - "query": [], - "variable": [ - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "app_id" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "role_slug" - }, - { - "disabled": false, - "description": { - "content": "(Required) ", - "type": "text/plain" - }, - "type": "any", - "value": "", - "key": "user_ref_id" - } - ] - }, - "header": [ - { - "key": "Accept", - "value": "application/json" - }, - { - "description": { - "content": "Added as a part of security scheme: bearer", - "type": "text/plain" - }, - "key": "Authorization", - "value": "Bearer " - } - ], - "method": "GET", - "body": {} - }, - "status": "OK", - "code": 200, - "header": [ - { - "key": "Content-Type", - "value": "application/json" - } - ], - "body": "{\n \"appOwnerUser\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"DISABLED\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": 690.8533744816725\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_HUMAN\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n}", - "cookie": [], - "_postman_previewlanguage": "json" - } - ], - "event": [], - "protocolProfileBehavior": { - "disableBodyPruning": true - } - }, - { - "id": "9b1cc5f9-e64f-4c92-ae76-63797f37a256", + "id": "4da98c58-43fb-4bda-aea4-7f9c17d3da57", "name": "Create User Owner", "request": { "name": "Create User Owner", "description": { - "content": "CreateUserOwner creates a user ownership source for an app.", + "content": "CreateUserOwner creates a user ownership source for a user (service account).", "type": "text/plain" }, "url": { "path": [ "api", "v2", - "apps", - ":app_id", + "users", + ":user_id", "owners", "users", ":role_slug", @@ -55313,7 +89574,7 @@ { "type": "any", "value": "", - "key": "app_id", + "key": "user_id", "disabled": false, "description": { "content": "(Required) ", @@ -55367,15 +89628,15 @@ }, "response": [ { - "id": "4547dbea-de49-4bf7-9278-67469573ed0d", - "name": "CreateUserOwnerResponse is the response for creating a user ownership source.", + "id": "63b943dd-bc3b-46ac-97f0-d5bda8c0f7b4", + "name": "CreateUserUserOwnerResponse is the response for creating a user ownership source on a user (service account).", "originalRequest": { "url": { "path": [ "api", "v2", - "apps", - ":app_id", + "users", + ":user_id", "owners", "users", ":role_slug", @@ -55394,7 +89655,7 @@ }, "type": "any", "value": "", - "key": "app_id" + "key": "user_id" }, { "disabled": false, @@ -55456,7 +89717,7 @@ "value": "application/json" } ], - "body": "{\n \"appOwnerUser\": {\n \"appId\": \"\",\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"emails\": [\n \"\",\n \"\"\n ],\n \"employeeIdSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"employmentType\": \"\",\n \"employmentTypeSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"origin\": \"USER_ORIGIN_DIRECTORY\",\n \"profile\": {\n \"key_0\": true\n },\n \"roleIds\": [\n \"\",\n \"\"\n ],\n \"status\": \"UNKNOWN\",\n \"type\": \"USER_TYPE_AGENT\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"usernames\": [\n \"\",\n \"\"\n ]\n }\n }\n}", + "body": "{\n \"userOwnerUser\": {\n \"createdAt\": \"\",\n \"roleSlug\": \"\",\n \"user\": {\n \"createdAt\": \"\",\n \"delegatedUserId\": \"\",\n \"deletedAt\": \"\",\n \"department\": \"\",\n \"departmentSources\": [\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n },\n {\n \"appId\": \"\",\n \"appUserId\": \"\",\n \"appUserProfileAttributeKey\": \"\",\n \"priority\": \"\",\n \"userAttributeMappingId\": \"\",\n \"value\": \"\"\n }\n ],\n \"directoryIds\": [\n \"\",\n \"\"\n ],\n \"directoryStatus\": \"UNKNOWN\",\n \"directoryStatusSources\": null,\n \"displayName\": \"\",\n \"email\": \"\",\n \"emailSources\": null,\n \"emails\": null,\n \"employeeIdSources\": null,\n \"employeeIds\": [\n \"\",\n \"\"\n ],\n \"employmentStatus\": \"\",\n \"employmentStatusSources\": null,\n \"employmentType\": \"\",\n \"employmentTypeSources\": null,\n \"id\": \"\",\n \"jobTitle\": \"\",\n \"jobTitleSources\": null,\n \"managerIds\": [\n \"\",\n \"\"\n ],\n \"managerSources\": null,\n \"origin\": \"USER_ORIGIN_UNSPECIFIED\",\n \"profile\": {\n \"key_0\": 3547.4490659174808,\n \"key_1\": \"string\",\n \"key_2\": \"string\"\n },\n \"roleIds\": null,\n \"status\": \"DELETED\",\n \"type\": \"USER_TYPE_AGENT\",\n \"updatedAt\": \"\",\n \"username\": \"\",\n \"usernameSources\": null,\n \"usernames\": [\n \"\",\n \"\"\n ]\n },\n \"userId\": \"\"\n }\n}", "cookie": [], "_postman_previewlanguage": "json" } @@ -55505,7 +89766,7 @@ } ], "info": { - "_postman_id": "8c851607-86bd-4549-913f-94b101ef43bb", + "_postman_id": "f0618350-23a5-42b7-b093-f17739fcdeb4", "name": "C1 API", "schema": "https://schema.getpostman.com/json/collection/v2.1.0/collection.json", "description": { diff --git a/specs/openapi.yaml b/specs/openapi.yaml index 5c58934..afd7a40 100644 --- a/specs/openapi.yaml +++ b/specs/openapi.yaml @@ -30,73 +30,302 @@ components: - c1OnboardingWelcome - c1OnboardingPlan - c1ConnectorSyncDetail + - c1Chart + - c1MetricCards + - c1Table properties: button: - $ref: '#/components/schemas/c1.api.a2ui.v1.ButtonComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.ButtonComponent' + - type: "null" + c1Chart: + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.C1ChartComponent' + - type: "null" c1CodeBlock: - $ref: '#/components/schemas/c1.api.a2ui.v1.C1CodeBlockComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.C1CodeBlockComponent' + - type: "null" c1ConnectorConfigForm: - $ref: '#/components/schemas/c1.api.a2ui.v1.C1ConnectorConfigFormComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.C1ConnectorConfigFormComponent' + - type: "null" c1ConnectorSyncDetail: - $ref: '#/components/schemas/c1.api.a2ui.v1.C1ConnectorSyncDetailComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.C1ConnectorSyncDetailComponent' + - type: "null" c1ConnectorSyncProgress: - $ref: '#/components/schemas/c1.api.a2ui.v1.C1ConnectorSyncProgressComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.C1ConnectorSyncProgressComponent' + - type: "null" c1DurationPicker: - $ref: '#/components/schemas/c1.api.a2ui.v1.C1DurationPickerComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.C1DurationPickerComponent' + - type: "null" + c1MetricCards: + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.C1MetricCardsComponent' + - type: "null" c1MsTeamsNotifications: - $ref: '#/components/schemas/c1.api.a2ui.v1.C1MSTeamsNotificationsComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.C1MSTeamsNotificationsComponent' + - type: "null" c1OnboardingPlan: - $ref: '#/components/schemas/c1.api.a2ui.v1.C1OnboardingPlanComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.C1OnboardingPlanComponent' + - type: "null" c1OnboardingWelcome: - $ref: '#/components/schemas/c1.api.a2ui.v1.C1OnboardingWelcomeComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.C1OnboardingWelcomeComponent' + - type: "null" c1ResourcePicker: - $ref: '#/components/schemas/c1.api.a2ui.v1.C1ResourcePickerComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.C1ResourcePickerComponent' + - type: "null" c1SlackNotifications: - $ref: '#/components/schemas/c1.api.a2ui.v1.C1SlackNotificationsComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.C1SlackNotificationsComponent' + - type: "null" c1StatusIndicator: - $ref: '#/components/schemas/c1.api.a2ui.v1.C1StatusIndicatorComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.C1StatusIndicatorComponent' + - type: "null" + c1Table: + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.C1TableComponent' + - type: "null" c1TodoList: - $ref: '#/components/schemas/c1.api.a2ui.v1.C1TodoListComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.C1TodoListComponent' + - type: "null" card: - $ref: '#/components/schemas/c1.api.a2ui.v1.CardComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.CardComponent' + - type: "null" checkBox: - $ref: '#/components/schemas/c1.api.a2ui.v1.CheckBoxComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.CheckBoxComponent' + - type: "null" choicePicker: - $ref: '#/components/schemas/c1.api.a2ui.v1.ChoicePickerComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.ChoicePickerComponent' + - type: "null" column: - $ref: '#/components/schemas/c1.api.a2ui.v1.ColumnComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.ColumnComponent' + - type: "null" dateTimeInput: - $ref: '#/components/schemas/c1.api.a2ui.v1.DateTimeInputComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DateTimeInputComponent' + - type: "null" divider: - $ref: '#/components/schemas/c1.api.a2ui.v1.DividerComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DividerComponent' + - type: "null" id: description: The id field. - readOnly: false type: string progressBar: - $ref: '#/components/schemas/c1.api.a2ui.v1.ProgressBarComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.ProgressBarComponent' + - type: "null" row: - $ref: '#/components/schemas/c1.api.a2ui.v1.RowComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.RowComponent' + - type: "null" slider: - $ref: '#/components/schemas/c1.api.a2ui.v1.SliderComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.SliderComponent' + - type: "null" text: - $ref: '#/components/schemas/c1.api.a2ui.v1.TextComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.TextComponent' + - type: "null" textField: - $ref: '#/components/schemas/c1.api.a2ui.v1.TextFieldComponent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.TextFieldComponent' + - type: "null" weight: description: The weight field. format: int32 - readOnly: false type: integer title: A 2 Ui Component type: object x-speakeasy-name-override: A2UIComponent + c1.api.a2ui.v1.A2UIProvenanceObject: + description: A2UIProvenanceObject names one record a step referred to by id. + properties: + displayName: + description: |- + Empty when the record's type has no name to resolve, or the record is + gone. The id then stands alone rather than the whole row being dropped. + type: string + id: + description: The id field. + type: string + recordType: + description: |- + Not always the step's own type: a step over grants can be narrowed to one + app, and the app is the record worth naming. + enum: + - A2UI_PROVENANCE_RECORD_TYPE_UNSPECIFIED + - A2UI_PROVENANCE_RECORD_TYPE_APP + - A2UI_PROVENANCE_RECORD_TYPE_USER + - A2UI_PROVENANCE_RECORD_TYPE_GRANT + - A2UI_PROVENANCE_RECORD_TYPE_APP_ENTITLEMENT + - A2UI_PROVENANCE_RECORD_TYPE_APP_USER + - A2UI_PROVENANCE_RECORD_TYPE_APP_RESOURCE + - A2UI_PROVENANCE_RECORD_TYPE_APP_RESOURCE_TYPE + - A2UI_PROVENANCE_RECORD_TYPE_TASK + - A2UI_PROVENANCE_RECORD_TYPE_POLICY + - A2UI_PROVENANCE_RECORD_TYPE_CONNECTOR + - A2UI_PROVENANCE_RECORD_TYPE_ACCESS_REVIEW + - A2UI_PROVENANCE_RECORD_TYPE_ACCESS_REVIEW_TEMPLATE + - A2UI_PROVENANCE_RECORD_TYPE_ACCESS_REVIEW_SELECTION + - A2UI_PROVENANCE_RECORD_TYPE_CONFLICT_MONITOR + - A2UI_PROVENANCE_RECORD_TYPE_ACCESS_VIOLATION + - A2UI_PROVENANCE_RECORD_TYPE_REQUEST_CATALOG + - A2UI_PROVENANCE_RECORD_TYPE_WEBHOOK + - A2UI_PROVENANCE_RECORD_TYPE_DIRECTORY + - A2UI_PROVENANCE_RECORD_TYPE_PROFILE_TYPE + - A2UI_PROVENANCE_RECORD_TYPE_ROLE_BINDING + - A2UI_PROVENANCE_RECORD_TYPE_AUTOMATION_EXECUTION + - A2UI_PROVENANCE_RECORD_TYPE_AUTOMATION_EXECUTION_STEP + - A2UI_PROVENANCE_RECORD_TYPE_FINDING + - A2UI_PROVENANCE_RECORD_TYPE_METRIC + - A2UI_PROVENANCE_RECORD_TYPE_AUTOMATION + - A2UI_PROVENANCE_RECORD_TYPE_GRANT_HISTORY + - A2UI_PROVENANCE_RECORD_TYPE_GRANT_REASON + - A2UI_PROVENANCE_RECORD_TYPE_APP_OWNER + type: string + x-speakeasy-unknown-values: allow + title: A 2 Ui Provenance Object + type: object + x-speakeasy-name-override: A2UIProvenanceObject + c1.api.a2ui.v1.A2UIProvenanceSource: + description: |- + A2UIProvenanceSource is one self-reported source from a reporting component: + what a chart or table says it was drawn from, and how many rows fed it. + properties: + componentId: + description: The componentId field. + type: string + count: + description: The count field. + format: int64 + type: string + kind: + description: The kind field. + type: string + label: + description: The label field. + type: string + matchedToolCall: + deprecated: true + description: 'Deprecated: always empty. See verified.' + type: string + ref: + description: The ref field. + type: string + verified: + deprecated: true + description: |- + Deprecated: always false. Superseded by + A2UIServiceGetSurfaceProvenanceResponse.steps, which reports what the + program did rather than judging it. + type: boolean + title: A 2 Ui Provenance Source + type: object + x-speakeasy-name-override: A2UIProvenanceSource + c1.api.a2ui.v1.A2UIProvenanceStep: + description: |- + A2UIProvenanceStep is one thing the report's program did. Steps are returned + in the order the program performs them. + properties: + objects: + description: |- + The specific records this step named. Empty when the step names none, and + withheld wholesale when step_objects_visible is false. + items: + $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIProvenanceObject' + type: + - array + - "null" + operation: + description: The operation field. + enum: + - A2UI_PROVENANCE_OPERATION_UNSPECIFIED + - A2UI_PROVENANCE_OPERATION_LOOKED_UP + - A2UI_PROVENANCE_OPERATION_COUNTED + - A2UI_PROVENANCE_OPERATION_FETCHED_RECORD + - A2UI_PROVENANCE_OPERATION_SEARCHED + - A2UI_PROVENANCE_OPERATION_READ_TREND + - A2UI_PROVENANCE_OPERATION_CREATED + - A2UI_PROVENANCE_OPERATION_UPDATED + - A2UI_PROVENANCE_OPERATION_DELETED + - A2UI_PROVENANCE_OPERATION_RAN_PROGRAM + - A2UI_PROVENANCE_OPERATION_BUILT_REPORT + type: string + x-speakeasy-unknown-values: allow + recordType: + description: The recordType field. + enum: + - A2UI_PROVENANCE_RECORD_TYPE_UNSPECIFIED + - A2UI_PROVENANCE_RECORD_TYPE_APP + - A2UI_PROVENANCE_RECORD_TYPE_USER + - A2UI_PROVENANCE_RECORD_TYPE_GRANT + - A2UI_PROVENANCE_RECORD_TYPE_APP_ENTITLEMENT + - A2UI_PROVENANCE_RECORD_TYPE_APP_USER + - A2UI_PROVENANCE_RECORD_TYPE_APP_RESOURCE + - A2UI_PROVENANCE_RECORD_TYPE_APP_RESOURCE_TYPE + - A2UI_PROVENANCE_RECORD_TYPE_TASK + - A2UI_PROVENANCE_RECORD_TYPE_POLICY + - A2UI_PROVENANCE_RECORD_TYPE_CONNECTOR + - A2UI_PROVENANCE_RECORD_TYPE_ACCESS_REVIEW + - A2UI_PROVENANCE_RECORD_TYPE_ACCESS_REVIEW_TEMPLATE + - A2UI_PROVENANCE_RECORD_TYPE_ACCESS_REVIEW_SELECTION + - A2UI_PROVENANCE_RECORD_TYPE_CONFLICT_MONITOR + - A2UI_PROVENANCE_RECORD_TYPE_ACCESS_VIOLATION + - A2UI_PROVENANCE_RECORD_TYPE_REQUEST_CATALOG + - A2UI_PROVENANCE_RECORD_TYPE_WEBHOOK + - A2UI_PROVENANCE_RECORD_TYPE_DIRECTORY + - A2UI_PROVENANCE_RECORD_TYPE_PROFILE_TYPE + - A2UI_PROVENANCE_RECORD_TYPE_ROLE_BINDING + - A2UI_PROVENANCE_RECORD_TYPE_AUTOMATION_EXECUTION + - A2UI_PROVENANCE_RECORD_TYPE_AUTOMATION_EXECUTION_STEP + - A2UI_PROVENANCE_RECORD_TYPE_FINDING + - A2UI_PROVENANCE_RECORD_TYPE_METRIC + - A2UI_PROVENANCE_RECORD_TYPE_AUTOMATION + - A2UI_PROVENANCE_RECORD_TYPE_GRANT_HISTORY + - A2UI_PROVENANCE_RECORD_TYPE_GRANT_REASON + - A2UI_PROVENANCE_RECORD_TYPE_APP_OWNER + type: string + x-speakeasy-unknown-values: allow + title: A 2 Ui Provenance Step + type: object + x-speakeasy-name-override: A2UIProvenanceStep + c1.api.a2ui.v1.A2UIProvenanceToolCall: + description: A2UIProvenanceToolCall is one tool call extracted from the transcript. + properties: + calledAt: + format: date-time + type: + - string + - "null" + inputDigest: + description: Leading characters of the tool input, whitespace-collapsed. + type: string + toolName: + description: The toolName field. + type: string + title: A 2 Ui Provenance Tool Call + type: object + x-speakeasy-name-override: A2UIProvenanceToolCall c1.api.a2ui.v1.A2UIServiceCreateSurfaceFeedbackRequestInput: description: A2UIServiceCreateSurfaceFeedbackRequest creates feedback for a surface. properties: conversationId: description: The conversationId field. - readOnly: false type: string sentiment: description: The sentiment field. @@ -104,12 +333,10 @@ components: - A2UI_SURFACE_FEEDBACK_SENTIMENT_UNSPECIFIED - A2UI_SURFACE_FEEDBACK_SENTIMENT_POSITIVE - A2UI_SURFACE_FEEDBACK_SENTIMENT_NEGATIVE - readOnly: false type: string x-speakeasy-unknown-values: allow text: description: The text field. - readOnly: false type: string title: A 2 Ui Service Create Surface Feedback Request type: object @@ -118,10 +345,86 @@ components: description: A2UIServiceCreateSurfaceFeedbackResponse returns the created feedback. properties: feedback: - $ref: '#/components/schemas/c1.api.a2ui.v1.A2UISurfaceFeedback' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.A2UISurfaceFeedback' + - type: "null" title: A 2 Ui Service Create Surface Feedback Response type: object x-speakeasy-name-override: A2UIServiceCreateSurfaceFeedbackResponse + c1.api.a2ui.v1.A2UIServiceGetSurfaceProvenanceResponse: + description: |- + A2UIServiceGetSurfaceProvenanceResponse returns what a surface was built + from: the steps its program ran, and the sources its components report. + properties: + programCommitId: + description: |- + The program's identity: code mode invokes by explicit commit, so the commit + — not the function — is what a refresh re-executes. + type: string + programFunctionId: + description: |- + The program that produced a reporting surface. Flat rather than a nested + ref: these five fields are read together by one drawer and nothing else, + and a saved report's ProgramRef is the type worth converging on later. + All empty for a surface carrying no report components, and for reports + emitted before the report-program requirement was enabled for the tenant. + type: string + programInput: + description: |- + The JSON parameters the program ran with. Empty when the invocation has aged + out of retention. + type: string + programInvocationId: + description: The run that produced this surface. + type: string + programSource: + description: |- + The program's source, read from the pinned commit. Empty when the commit has + aged out of code-mode retention — the report still renders, but what + produced it is no longer recoverable. + type: string + sources: + description: The sources field. + items: + $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIProvenanceSource' + type: + - array + - "null" + stepObjectsVisible: + description: |- + Whether the caller may see the ids each step named. False withholds every + A2UIProvenanceStep.objects on the same boundary that withholds + program_source: those ids are the program's parameters by another name. + type: boolean + steps: + description: Everything the surface's program did, in the order it does it. + items: + $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIProvenanceStep' + type: + - array + - "null" + stepsAvailable: + description: |- + False when neither the pinned program nor the conversation transcript could + be read, so no record of what was looked at survives. Distinguishes that + from a record that was read and genuinely contains no steps. + type: boolean + toolCalls: + deprecated: true + description: |- + Deprecated: raw tool names, superseded by steps. Still populated for + clients on the previous shape. + items: + $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIProvenanceToolCall' + type: + - array + - "null" + transcriptAvailable: + description: False when the backing session or its transcript steps are gone. + type: boolean + title: A 2 Ui Service Get Surface Provenance Response + type: object + x-speakeasy-name-override: A2UIServiceGetSurfaceProvenanceResponse c1.api.a2ui.v1.A2UIServiceListSurfaceFeedbackResponse: description: A2UIServiceListSurfaceFeedbackResponse returns feedback for a surface. properties: @@ -129,9 +432,9 @@ components: description: The feedback field. items: $ref: '#/components/schemas/c1.api.a2ui.v1.A2UISurfaceFeedback' - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: A 2 Ui Service List Surface Feedback Response type: object x-speakeasy-name-override: A2UIServiceListSurfaceFeedbackResponse @@ -142,9 +445,9 @@ components: description: The surfaces field. items: $ref: '#/components/schemas/c1.api.a2ui.v1.A2UISurface' - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: A 2 Ui Service List Surfaces Response type: object x-speakeasy-name-override: A2UIServiceListSurfacesResponse @@ -153,29 +456,25 @@ components: properties: actionName: description: The actionName field. - readOnly: false type: string clientTimestamp: format: date-time - readOnly: false - type: string + type: + - string + - "null" context: additionalProperties: type: string description: The context field. - readOnly: false type: object conversationId: description: The conversationId field. - readOnly: false type: string dataModelJson: description: The dataModelJson field. - readOnly: false type: string sourceComponentId: description: The sourceComponentId field. - readOnly: false type: string title: A 2 Ui Service Submit Action Request type: object @@ -185,11 +484,9 @@ components: properties: accepted: description: The accepted field. - readOnly: false type: boolean errorMessage: description: The errorMessage field. - readOnly: false type: string title: A 2 Ui Service Submit Action Response type: object @@ -199,39 +496,45 @@ components: properties: catalogId: description: The catalogId field. - readOnly: false type: string components: description: The components field. items: $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIComponent' - nullable: true - readOnly: false - type: array + type: + - array + - "null" conversationId: description: The conversationId field. - readOnly: false type: string createdAt: format: date-time - readOnly: false - type: string + type: + - string + - "null" dataModelJson: description: The dataModelJson field. - readOnly: false type: string deletedAt: format: date-time - readOnly: false + type: + - string + - "null" + role: + description: The role field. + enum: + - SURFACE_ROLE_UNSPECIFIED + - SURFACE_ROLE_PRIMARY + - SURFACE_ROLE_STATUS + - SURFACE_ROLE_PROMPT type: string + x-speakeasy-unknown-values: allow schemaVersion: description: The schemaVersion field. format: int64 - readOnly: false type: string sendDataModel: description: The sendDataModel field. - readOnly: false type: boolean state: description: The state field. @@ -240,21 +543,19 @@ components: - SURFACE_LIFECYCLE_STATE_ACTIVE - SURFACE_LIFECYCLE_STATE_COMPLETE - SURFACE_LIFECYCLE_STATE_DELETED - readOnly: false type: string x-speakeasy-unknown-values: allow surfaceId: description: The surfaceId field. - readOnly: false type: string tenantId: description: The tenantId field. - readOnly: false type: string updatedAt: format: date-time - readOnly: false - type: string + type: + - string + - "null" title: A 2 Ui Surface type: object x-speakeasy-name-override: A2UISurface @@ -263,32 +564,27 @@ components: properties: actionName: description: The actionName field. - readOnly: false type: string componentsSnapshot: description: The componentsSnapshot field. - readOnly: false type: string conversationId: description: The conversationId field. - readOnly: false type: string createdAt: format: date-time - readOnly: false - type: string + type: + - string + - "null" dataModelSnapshot: description: The dataModelSnapshot field. - readOnly: false type: string id: description: The id field. - readOnly: false type: string schemaVersion: description: The schemaVersion field. format: int64 - readOnly: false type: string sentiment: description: The sentiment field. @@ -296,16 +592,13 @@ components: - A2UI_SURFACE_FEEDBACK_SENTIMENT_UNSPECIFIED - A2UI_SURFACE_FEEDBACK_SENTIMENT_POSITIVE - A2UI_SURFACE_FEEDBACK_SENTIMENT_NEGATIVE - readOnly: false type: string x-speakeasy-unknown-values: allow surfaceId: description: The surfaceId field. - readOnly: false type: string text: description: The text field. - readOnly: false type: string title: A 2 Ui Surface Feedback type: object @@ -319,43 +612,51 @@ components: - functionCall properties: event: - $ref: '#/components/schemas/c1.api.a2ui.v1.ServerEvent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.ServerEvent' + - type: "null" functionCall: - $ref: '#/components/schemas/c1.api.a2ui.v1.FunctionCall' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.FunctionCall' + - type: "null" title: Action type: object x-speakeasy-name-override: A2UIAction c1.api.a2ui.v1.AndCheck: description: AndCheck requires all checks to pass. - nullable: true properties: checks: description: The checks field. items: $ref: '#/components/schemas/c1.api.a2ui.v1.ValidationCheck' - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: And Check type: object x-speakeasy-name-override: AndCheck c1.api.a2ui.v1.ButtonComponent: description: ButtonComponent triggers actions. - nullable: true properties: action: - $ref: '#/components/schemas/c1.api.a2ui.v1.Action' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.Action' + - type: "null" checks: description: The checks field. items: $ref: '#/components/schemas/c1.api.a2ui.v1.ValidationCheck' - nullable: true - readOnly: false - type: array + type: + - array + - "null" disabled: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicBool' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicBool' + - type: "null" label: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" variant: description: The variant field. enum: @@ -363,26 +664,197 @@ components: - BUTTON_VARIANT_PRIMARY - BUTTON_VARIANT_SECONDARY - BUTTON_VARIANT_TEXT - readOnly: false type: string x-speakeasy-unknown-values: allow title: Button Component type: object x-speakeasy-name-override: ButtonComponent + c1.api.a2ui.v1.C1ChartCategoricalData: + description: C1ChartCategoricalData is (label, value) slices for part-to-whole charts. + properties: + slices: + description: The slices field. + items: + $ref: '#/components/schemas/c1.api.a2ui.v1.C1ChartSlice' + type: + - array + - "null" + style: + description: The style field. + enum: + - C1_CHART_CATEGORICAL_STYLE_UNSPECIFIED + - C1_CHART_CATEGORICAL_STYLE_PIE + - C1_CHART_CATEGORICAL_STYLE_DONUT + type: string + x-speakeasy-unknown-values: allow + title: C 1 Chart Categorical Data + type: object + x-speakeasy-name-override: C1ChartCategoricalData + c1.api.a2ui.v1.C1ChartComponent: + description: | + C1ChartComponent renders a chart from typed data. The data oneof is keyed by + shape — each shape carries its own style enum, so an invalid combination + (e.g. a pie chart with a time axis) is unrepresentable. + + This message contains a oneof named data. Only a single field of the following list may be set at a time: + - timeSeries + - categorical + properties: + artifactUrl: + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" + categorical: + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.C1ChartCategoricalData' + - type: "null" + sources: + description: 'Provenance: the queries the producing function ran.' + items: + $ref: '#/components/schemas/c1.api.a2ui.v1.C1ChartSource' + type: + - array + - "null" + timeSeries: + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.C1ChartTimeSeriesData' + - type: "null" + title: + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" + title: C 1 Chart Component + type: object + x-speakeasy-name-override: C1ChartComponent + c1.api.a2ui.v1.C1ChartPoint: + description: C1ChartPoint is a single (timestamp, value) observation. + properties: + ts: + format: date-time + type: + - string + - "null" + value: + description: 'Bounds double as a NaN/Inf rejection: NaN fails every comparison.' + type: number + title: C 1 Chart Point + type: object + x-speakeasy-name-override: C1ChartPoint + c1.api.a2ui.v1.C1ChartSeries: + description: C1ChartSeries is one named line/bar series. + properties: + displayName: + description: The displayName field. + type: string + key: + description: The key field. + type: string + points: + description: The points field. + items: + $ref: '#/components/schemas/c1.api.a2ui.v1.C1ChartPoint' + type: + - array + - "null" + title: C 1 Chart Series + type: object + x-speakeasy-name-override: C1ChartSeries + c1.api.a2ui.v1.C1ChartSlice: + description: C1ChartSlice is a single categorical slice. + properties: + label: + description: The label field. + type: string + value: + description: The value field. + type: number + title: C 1 Chart Slice + type: object + x-speakeasy-name-override: C1ChartSlice + c1.api.a2ui.v1.C1ChartSource: + description: |- + C1ChartSource records one query the producing function ran, for the + provenance chips rendered under the chart. + properties: + count: + description: The count field. + format: int64 + type: string + kind: + description: The kind field. + type: string + label: + description: The label field. + type: string + ref: + description: The ref field. + type: string + title: C 1 Chart Source + type: object + x-speakeasy-name-override: C1ChartSource + c1.api.a2ui.v1.C1ChartTimeRange: + description: C1ChartTimeRange is the window the series cover, with a display label. + properties: + end: + format: date-time + type: + - string + - "null" + label: + description: The label field. + type: string + start: + format: date-time + type: + - string + - "null" + title: C 1 Chart Time Range + type: object + x-speakeasy-name-override: C1ChartTimeRange + c1.api.a2ui.v1.C1ChartTimeSeriesData: + description: C1ChartTimeSeriesData is named series of (timestamp, value) points. + properties: + range: + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.C1ChartTimeRange' + - type: "null" + series: + description: The series field. + items: + $ref: '#/components/schemas/c1.api.a2ui.v1.C1ChartSeries' + type: + - array + - "null" + style: + description: The style field. + enum: + - C1_CHART_TIME_SERIES_STYLE_UNSPECIFIED + - C1_CHART_TIME_SERIES_STYLE_LINE + - C1_CHART_TIME_SERIES_STYLE_STACKED_BAR + - C1_CHART_TIME_SERIES_STYLE_STACKED_AREA + type: string + x-speakeasy-unknown-values: allow + title: C 1 Chart Time Series Data + type: object + x-speakeasy-name-override: C1ChartTimeSeriesData c1.api.a2ui.v1.C1CodeBlockComponent: description: C1CodeBlockComponent displays code with syntax highlighting. - nullable: true properties: code: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" copyable: description: The copyable field. - readOnly: false type: boolean language: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" title: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" title: C 1 Code Block Component type: object x-speakeasy-name-override: C1CodeBlockComponent @@ -392,23 +864,18 @@ components: A2UI surface. The frontend resolves the catalog, connector, and config schema itself from the ids below, keeping the configuration field values out of the agent's data model — the agent never receives API keys, passwords, or other secrets entered by the user. - nullable: true properties: appId: description: The appId field. - readOnly: false type: string connectorId: description: The connectorId field. - readOnly: false type: string skipActionName: description: The skipActionName field. - readOnly: false type: string submitActionName: description: The submitActionName field. - readOnly: false type: string title: C 1 Connector Config Form Component type: object @@ -421,19 +888,15 @@ components: paint. Intended for message-body placement — emit one after each `submit_app_config` so the transcript carries a clear "this is what just happened" receipt for the connector the user just connected. - nullable: true properties: appId: description: The appId field. - readOnly: false type: string connectorId: description: The connectorId field. - readOnly: false type: string title: description: The title field. - readOnly: false type: string title: C 1 Connector Sync Detail Component type: object @@ -442,19 +905,15 @@ components: description: |- C1ConnectorSyncProgressComponent renders a live connector sync status card. Subscribes to WebSocket updates for real-time sync lifecycle status. - nullable: true properties: appId: description: The appId field. - readOnly: false type: string connectorId: description: The connectorId field. - readOnly: false type: string title: description: The title field. - readOnly: false type: string title: C 1 Connector Sync Progress Component type: object @@ -463,14 +922,19 @@ components: description: |- C1DurationPickerComponent is the access-request duration picker (presets + custom with number/unit). Value is duration in seconds bound to the given path. - nullable: true properties: label: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" maxDurationSeconds: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + - type: "null" value: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + - type: "null" title: C 1 Duration Picker Component type: object x-speakeasy-name-override: C1DurationPickerComponent @@ -478,27 +942,81 @@ components: description: |- C1MSTeamsNotificationsComponent renders a self-contained Microsoft Teams integration card. Fetches status and consent URLs via frontend API calls. - nullable: true title: C 1 Ms Teams Notifications Component type: object x-speakeasy-name-override: C1MSTeamsNotificationsComponent + c1.api.a2ui.v1.C1MetricCard: + description: |- + C1MetricCard is one aggregate stat: label, formatted value, optional delta + and sparkline trend. + properties: + delta: + description: The delta field. + type: string + deltaSentiment: + description: The deltaSentiment field. + enum: + - C1_METRIC_DELTA_SENTIMENT_UNSPECIFIED + - C1_METRIC_DELTA_SENTIMENT_POSITIVE + - C1_METRIC_DELTA_SENTIMENT_NEGATIVE + - C1_METRIC_DELTA_SENTIMENT_NEUTRAL + type: string + x-speakeasy-unknown-values: allow + label: + description: The label field. + type: string + sparkline: + description: Optional trend values, oldest first. Bounds double as NaN/Inf rejection. + items: + type: number + type: + - array + - "null" + value: + description: The value field. + type: string + title: C 1 Metric Card + type: object + x-speakeasy-name-override: C1MetricCard + c1.api.a2ui.v1.C1MetricCardsComponent: + description: C1MetricCardsComponent renders a row of aggregate stat cards. + properties: + cards: + description: The cards field. + items: + $ref: '#/components/schemas/c1.api.a2ui.v1.C1MetricCard' + type: + - array + - "null" + sources: + description: 'Provenance: the queries the producing function ran.' + items: + $ref: '#/components/schemas/c1.api.a2ui.v1.C1ChartSource' + type: + - array + - "null" + title: + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" + title: C 1 Metric Cards Component + type: object + x-speakeasy-name-override: C1MetricCardsComponent c1.api.a2ui.v1.C1OnboardingPlanCategory: description: C1OnboardingPlanCategory groups related plan steps under a section heading. properties: id: description: The id field. - readOnly: false type: string steps: description: The steps field. items: $ref: '#/components/schemas/c1.api.a2ui.v1.C1OnboardingPlanStep' - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: description: The title field. - readOnly: false type: string title: C 1 Onboarding Plan Category type: object @@ -507,15 +1025,14 @@ components: description: |- C1OnboardingPlanComponent renders a personalized onboarding plan with categorized steps. The agent dynamically populates categories and steps based on user intent and context. - nullable: true properties: categories: description: The categories field. items: $ref: '#/components/schemas/c1.api.a2ui.v1.C1OnboardingPlanCategory' - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: C 1 Onboarding Plan Component type: object x-speakeasy-name-override: C1OnboardingPlanComponent @@ -524,19 +1041,15 @@ components: properties: agentAssisted: description: The agentAssisted field. - readOnly: false type: boolean description: description: The description field. - readOnly: false type: string id: description: The id field. - readOnly: false type: string title: description: The title field. - readOnly: false type: string title: C 1 Onboarding Plan Step type: object @@ -546,35 +1059,46 @@ components: C1OnboardingWelcomeComponent renders the onboarding welcome screen with org context and intent collection. Backend pre-populates recommended_catalog_id / recommended_display_name from detected IDP. Frontend detects auth backend via introspect for contextual UI text. - nullable: true properties: recommendedCatalogId: description: The recommendedCatalogId field. - readOnly: false type: string recommendedDisplayName: description: The recommendedDisplayName field. - readOnly: false type: string title: C 1 Onboarding Welcome Component type: object x-speakeasy-name-override: C1OnboardingWelcomeComponent c1.api.a2ui.v1.C1ResourcePickerComponent: description: C1ResourcePickerComponent allows selecting C1 resources. - nullable: true properties: + appId: + description: |- + Scoping for resource_type "mcp_tool": the app and connector whose tools the + paginated picker searches, and an optional tool-state filter (the + MCPToolState enum name, e.g. "MCP_TOOL_STATE_PENDING_REVIEW"; empty = no + filter). Ignored by other resource types. + type: string + connectorId: + description: The connectorId field. + type: string label: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" + mcpToolState: + description: The mcpToolState field. + type: string multiSelect: description: The multiSelect field. - readOnly: false type: boolean resourceType: description: The resourceType field. - readOnly: false type: string value: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" title: C 1 Resource Picker Component type: object x-speakeasy-name-override: C1ResourcePickerComponent @@ -582,84 +1106,160 @@ components: description: |- C1SlackNotificationsComponent renders a self-contained Slack integration card. Fetches status and OAuth URLs via frontend API calls. - nullable: true title: C 1 Slack Notifications Component type: object x-speakeasy-name-override: C1SlackNotificationsComponent c1.api.a2ui.v1.C1StatusIndicatorComponent: description: C1StatusIndicatorComponent shows agent progress status. - nullable: true properties: message: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" showSpinner: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicBool' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicBool' + - type: "null" status: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" toolName: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" title: C 1 Status Indicator Component type: object x-speakeasy-name-override: C1StatusIndicatorComponent + c1.api.a2ui.v1.C1TableComponent: + description: |- + C1TableComponent renders a tabular view: typed columns + rows, capped and + paginated client-side; the full data set lives behind the artifact link. + properties: + artifactUrl: + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" + columns: + description: The columns field. + items: + type: string + type: + - array + - "null" + pageSize: + description: Rows per page for client-side pagination; 0 shows all rows on one page. + format: int32 + type: integer + rows: + description: The rows field. + items: + $ref: '#/components/schemas/c1.api.a2ui.v1.C1TableRow' + type: + - array + - "null" + sources: + description: 'Provenance: the queries the producing function ran.' + items: + $ref: '#/components/schemas/c1.api.a2ui.v1.C1ChartSource' + type: + - array + - "null" + title: + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" + totalRows: + description: Full count when rows are truncated. + format: int64 + type: string + title: C 1 Table Component + type: object + x-speakeasy-name-override: C1TableComponent + c1.api.a2ui.v1.C1TableRow: + description: |- + C1TableRow is one row; cells align 1:1 with columns (enforced at the + parse boundary). + properties: + cells: + description: The cells field. + items: + type: string + type: + - array + - "null" + title: C 1 Table Row + type: object + x-speakeasy-name-override: C1TableRow c1.api.a2ui.v1.C1TodoItem: description: The C1TodoItem message. properties: description: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" id: description: The id field. - readOnly: false type: string label: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" section: description: The section field. - readOnly: false type: string status: description: The status field. - readOnly: false type: string trailingAction: - $ref: '#/components/schemas/c1.api.a2ui.v1.ServerEvent' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.ServerEvent' + - type: "null" trailingActionLabel: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" title: C 1 Todo Item type: object x-speakeasy-name-override: C1TodoItem c1.api.a2ui.v1.C1TodoListComponent: description: C1TodoListComponent renders a phase/step checklist with progress tracking. - nullable: true properties: items: description: The items field. items: $ref: '#/components/schemas/c1.api.a2ui.v1.C1TodoItem' - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" title: C 1 Todo List Component type: object x-speakeasy-name-override: C1TodoListComponent c1.api.a2ui.v1.CardComponent: description: CardComponent is a container with styling. - nullable: true properties: children: - $ref: '#/components/schemas/c1.api.a2ui.v1.ChildList' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.ChildList' + - type: "null" title: Card Component type: object x-speakeasy-name-override: CardComponent c1.api.a2ui.v1.CheckBoxComponent: description: CheckBoxComponent is a boolean checkbox. - nullable: true properties: label: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" value: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicBool' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicBool' + - type: "null" title: Check Box Component type: object x-speakeasy-name-override: CheckBoxComponent @@ -670,9 +1270,9 @@ components: description: The ids field. items: type: string - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: Child List type: object x-speakeasy-name-override: ChildList @@ -680,72 +1280,75 @@ components: description: Choice represents a single option in a choice picker. properties: description: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" id: description: The id field. - readOnly: false type: string label: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" title: Choice type: object x-speakeasy-name-override: Choice c1.api.a2ui.v1.ChoicePickerComponent: description: ChoicePickerComponent allows selection from predefined choices. - nullable: true properties: choices: description: The choices field. items: $ref: '#/components/schemas/c1.api.a2ui.v1.Choice' - nullable: true - readOnly: false - type: array + type: + - array + - "null" hideLabel: description: |- When true, the label slot is omitted entirely (no label text, no "(optional)" suffix, no reserved space). Use when the picker sits under or beside another control that already names the field — e.g. stacked under a check_box in a per-attribute mapping row. - readOnly: false type: boolean label: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" multiSelect: description: The multiSelect field. - readOnly: false type: boolean required: description: The required field. - readOnly: false type: boolean value: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" title: Choice Picker Component type: object x-speakeasy-name-override: ChoicePickerComponent c1.api.a2ui.v1.ColumnComponent: description: ColumnComponent arranges children vertically. - nullable: true properties: alignment: description: The alignment field. - readOnly: false type: string children: - $ref: '#/components/schemas/c1.api.a2ui.v1.ChildList' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.ChildList' + - type: "null" distribution: description: The distribution field. - readOnly: false type: string gap: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + - type: "null" title: Column Component type: object x-speakeasy-name-override: ColumnComponent c1.api.a2ui.v1.DateTimeInputComponent: description: DateTimeInputComponent for date/time selection. - nullable: true properties: inputType: description: The inputType field. @@ -754,27 +1357,32 @@ components: - DATE_TIME_INPUT_TYPE_DATE - DATE_TIME_INPUT_TYPE_TIME - DATE_TIME_INPUT_TYPE_DATE_TIME - readOnly: false type: string x-speakeasy-unknown-values: allow label: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" max: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" min: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" value: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" title: Date Time Input Component type: object x-speakeasy-name-override: DateTimeInputComponent c1.api.a2ui.v1.DividerComponent: description: DividerComponent is a visual separator. - nullable: true properties: orientation: description: The orientation field. - readOnly: false type: string title: Divider Component type: object @@ -789,23 +1397,25 @@ components: - call properties: call: - $ref: '#/components/schemas/c1.api.a2ui.v1.FunctionCall' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.FunctionCall' + - type: "null" literal: description: |- The literal field. This field is part of the `value` oneof. See the documentation for `c1.api.a2ui.v1.DynamicBool` for more details. - nullable: true - readOnly: false - type: boolean + type: + - boolean + - "null" path: description: |- The path field. This field is part of the `value` oneof. See the documentation for `c1.api.a2ui.v1.DynamicBool` for more details. - nullable: true - readOnly: false - type: string + type: + - string + - "null" title: Dynamic Bool type: object x-speakeasy-name-override: DynamicBool @@ -819,23 +1429,25 @@ components: - call properties: call: - $ref: '#/components/schemas/c1.api.a2ui.v1.FunctionCall' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.FunctionCall' + - type: "null" literal: description: |- The literal field. This field is part of the `value` oneof. See the documentation for `c1.api.a2ui.v1.DynamicNumber` for more details. - nullable: true - readOnly: false - type: number + type: + - number + - "null" path: description: |- The path field. This field is part of the `value` oneof. See the documentation for `c1.api.a2ui.v1.DynamicNumber` for more details. - nullable: true - readOnly: false - type: string + type: + - string + - "null" title: Dynamic Number type: object x-speakeasy-name-override: DynamicNumber @@ -849,161 +1461,179 @@ components: - call properties: call: - $ref: '#/components/schemas/c1.api.a2ui.v1.FunctionCall' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.FunctionCall' + - type: "null" literal: description: |- The literal field. This field is part of the `value` oneof. See the documentation for `c1.api.a2ui.v1.DynamicString` for more details. - nullable: true - readOnly: false - type: string + type: + - string + - "null" path: description: |- The path field. This field is part of the `value` oneof. See the documentation for `c1.api.a2ui.v1.DynamicString` for more details. - nullable: true - readOnly: false - type: string + type: + - string + - "null" title: Dynamic String type: object x-speakeasy-name-override: DynamicString c1.api.a2ui.v1.FunctionCall: description: FunctionCall represents a client-side function invocation. - nullable: true properties: args: additionalProperties: type: string description: The args field. - readOnly: false type: object call: description: The call field. - readOnly: false type: string message: description: The message field. - readOnly: false type: string title: Function Call type: object x-speakeasy-name-override: FunctionCall c1.api.a2ui.v1.OrCheck: description: OrCheck requires at least one check to pass. - nullable: true properties: checks: description: The checks field. items: $ref: '#/components/schemas/c1.api.a2ui.v1.ValidationCheck' - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: Or Check type: object x-speakeasy-name-override: OrCheck c1.api.a2ui.v1.ProgressBarComponent: description: ProgressBarComponent shows a read-only progress bar (label, value %, min/max). - nullable: true properties: label: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" max: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + - type: "null" min: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + - type: "null" step: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + - type: "null" value: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + - type: "null" title: Progress Bar Component type: object x-speakeasy-name-override: ProgressBarComponent c1.api.a2ui.v1.RowComponent: description: RowComponent arranges children horizontally. - nullable: true properties: alignment: description: The alignment field. - readOnly: false type: string children: - $ref: '#/components/schemas/c1.api.a2ui.v1.ChildList' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.ChildList' + - type: "null" distribution: description: The distribution field. - readOnly: false type: string gap: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + - type: "null" title: Row Component type: object x-speakeasy-name-override: RowComponent c1.api.a2ui.v1.ServerEvent: description: ServerEvent triggers a server-side action. - nullable: true properties: context: additionalProperties: type: string description: The context field. - readOnly: false type: object name: description: The name field. - readOnly: false type: string title: Server Event type: object x-speakeasy-name-override: ServerEvent c1.api.a2ui.v1.SliderComponent: description: SliderComponent is an interactive numeric range input (e.g. for forms). - nullable: true properties: label: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" max: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + - type: "null" min: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + - type: "null" step: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + - type: "null" value: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicNumber' + - type: "null" title: Slider Component type: object x-speakeasy-name-override: SliderComponent c1.api.a2ui.v1.TextComponent: description: TextComponent displays text content. - nullable: true properties: markdown: description: The markdown field. - readOnly: false type: boolean text: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" title: Text Component type: object x-speakeasy-name-override: TextComponent c1.api.a2ui.v1.TextFieldComponent: description: TextFieldComponent is a text input field. - nullable: true properties: checks: description: The checks field. items: $ref: '#/components/schemas/c1.api.a2ui.v1.FunctionCall' - nullable: true - readOnly: false - type: array + type: + - array + - "null" label: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" placeholder: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" value: - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.DynamicString' + - type: "null" variant: description: The variant field. enum: @@ -1012,7 +1642,6 @@ components: - TEXT_FIELD_VARIANT_LONG_TEXT - TEXT_FIELD_VARIANT_NUMBER - TEXT_FIELD_VARIANT_OBSCURED - readOnly: false type: string x-speakeasy-unknown-values: allow title: Text Field Component @@ -1028,11 +1657,17 @@ components: - or properties: and: - $ref: '#/components/schemas/c1.api.a2ui.v1.AndCheck' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.AndCheck' + - type: "null" call: - $ref: '#/components/schemas/c1.api.a2ui.v1.FunctionCall' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.FunctionCall' + - type: "null" or: - $ref: '#/components/schemas/c1.api.a2ui.v1.OrCheck' + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.OrCheck' + - type: "null" title: Validation Check type: object x-speakeasy-name-override: ValidationCheck @@ -1041,37 +1676,36 @@ components: properties: appEntitlementId: description: The unique identifier of the bound app entitlement. - readOnly: false type: string appId: description: The unique identifier of the application containing the entitlement. - readOnly: false type: string createdAt: format: date-time - readOnly: false - type: string + type: + - string + - "null" deletedAt: format: date-time - readOnly: false - type: string + type: + - string + - "null" entitlementGroup: description: Which side of the conflict monitor (A or B) this entitlement is assigned to. enum: - ENTITLEMENT_GROUP_UNSPECIFIED - ENTITLEMENT_GROUP_A - ENTITLEMENT_GROUP_B - readOnly: false type: string x-speakeasy-unknown-values: allow monitorId: description: The unique identifier of the conflict monitor this binding belongs to. - readOnly: false type: string updatedAt: format: date-time - readOnly: false - type: string + type: + - string + - "null" title: App Entitlement Monitor Binding type: object x-speakeasy-name-override: AppEntitlementMonitorBinding @@ -1082,42 +1716,46 @@ components: properties: createdAt: format: date-time - readOnly: false - type: string + type: + - string + - "null" deletedAt: format: date-time - readOnly: false - type: string + type: + - string + - "null" description: description: A description explaining the purpose of this Separation of Duty rule. - readOnly: false type: string displayName: description: The human-readable name of the conflict monitor. - readOnly: false type: string enabled: description: Whether the conflict monitor is actively scanning for violations. - readOnly: false type: boolean entitlementSetAId: description: The identifier of entitlement set A in the conflict rule. - readOnly: false type: string entitlementSetBId: description: The identifier of entitlement set B in the conflict rule. - readOnly: false type: string id: description: The unique identifier of this conflict monitor. - readOnly: false type: string + negateGroupB: + description: |- + When true, the rule flags users who are in set A but NOT in set B ("is not + in"), instead of the default A-and-B intersection. + type: boolean notificationConfig: - $ref: '#/components/schemas/c1.api.accessconflict.v1.NotificationConfig' + oneOf: + - $ref: '#/components/schemas/c1.api.accessconflict.v1.NotificationConfig' + - type: "null" updatedAt: format: date-time - readOnly: false - type: string + type: + - string + - "null" title: Conflict Monitor type: object x-speakeasy-name-override: ConflictMonitor @@ -1126,14 +1764,14 @@ components: properties: description: description: An optional description explaining the purpose of this Separation of Duty rule. - readOnly: false type: string displayName: description: The human-readable name for the conflict monitor. - readOnly: false type: string notificationConfig: - $ref: '#/components/schemas/c1.api.accessconflict.v1.NotificationConfig' + oneOf: + - $ref: '#/components/schemas/c1.api.accessconflict.v1.NotificationConfig' + - type: "null" required: - displayName title: Conflict Monitor Create Request @@ -1154,7 +1792,6 @@ components: properties: id: description: The id field. - readOnly: false type: string title: Conflict Monitor Ref type: object @@ -1164,14 +1801,19 @@ components: properties: description: description: The updated description for the conflict monitor. - readOnly: false type: string displayName: description: The updated human-readable name for the conflict monitor. - readOnly: false type: string + negateGroupB: + description: |- + When true, the rule flags users who are in set A but NOT in set B ("is not + in"), instead of the default A-and-B intersection. + type: boolean notificationConfig: - $ref: '#/components/schemas/c1.api.accessconflict.v1.NotificationConfig' + oneOf: + - $ref: '#/components/schemas/c1.api.accessconflict.v1.NotificationConfig' + - type: "null" title: Conflict Monitor Update Request type: object x-speakeasy-name-override: ConflictMonitorUpdateRequest @@ -1180,11 +1822,9 @@ components: properties: appEntitlementId: description: The unique identifier of the app entitlement to bind. - readOnly: false type: string appId: description: The unique identifier of the application containing the entitlement. - readOnly: false type: string entitlementGroup: description: Which side of the conflict monitor (A or B) to place this entitlement in. @@ -1192,12 +1832,10 @@ components: - ENTITLEMENT_GROUP_UNSPECIFIED - ENTITLEMENT_GROUP_A - ENTITLEMENT_GROUP_B - readOnly: false type: string x-speakeasy-unknown-values: allow monitorId: description: The unique identifier of the conflict monitor to bind the entitlement to. - readOnly: false type: string title: Create App Entitlement Monitor Binding Request type: object @@ -1207,11 +1845,9 @@ components: properties: appEntitlementId: description: The unique identifier of the app entitlement to unbind. - readOnly: false type: string appId: description: The unique identifier of the application containing the entitlement. - readOnly: false type: string entitlementGroup: description: Which side of the conflict monitor (A or B) the binding belongs to. @@ -1219,12 +1855,10 @@ components: - ENTITLEMENT_GROUP_UNSPECIFIED - ENTITLEMENT_GROUP_A - ENTITLEMENT_GROUP_B - readOnly: false type: string x-speakeasy-unknown-values: allow monitorId: description: The unique identifier of the conflict monitor. - readOnly: false type: string title: Delete App Entitlement Monitor Binding Request type: object @@ -1239,15 +1873,14 @@ components: properties: enabled: description: The enabled field. - readOnly: false type: boolean identityUserIds: description: The identityUserIds field. items: type: string - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: Email Notifications type: object x-speakeasy-name-override: EmailNotifications @@ -1256,11 +1889,9 @@ components: properties: appEntitlementId: description: The unique identifier of the app entitlement bound to the monitor. - readOnly: false type: string appId: description: The unique identifier of the application containing the entitlement. - readOnly: false type: string entitlementGroup: description: Which side of the conflict monitor (A or B) this binding belongs to. @@ -1268,12 +1899,10 @@ components: - ENTITLEMENT_GROUP_UNSPECIFIED - ENTITLEMENT_GROUP_A - ENTITLEMENT_GROUP_B - readOnly: false type: string x-speakeasy-unknown-values: allow monitorId: description: The unique identifier of the conflict monitor. - readOnly: false type: string title: Get App Entitlement Monitor Binding Request type: object @@ -1282,9 +1911,13 @@ components: description: The NotificationConfig message. properties: emailNotifications: - $ref: '#/components/schemas/c1.api.accessconflict.v1.EmailNotifications' + oneOf: + - $ref: '#/components/schemas/c1.api.accessconflict.v1.EmailNotifications' + - type: "null" slackNotifications: - $ref: '#/components/schemas/c1.api.accessconflict.v1.SlackNotifications' + oneOf: + - $ref: '#/components/schemas/c1.api.accessconflict.v1.SlackNotifications' + - type: "null" title: Notification Config type: object x-speakeasy-name-override: AccessConflictNotificationConfig @@ -1293,15 +1926,12 @@ components: properties: channelId: description: The channelId field. - readOnly: false type: string channelName: description: The channelName field. - readOnly: false type: string enabled: description: The enabled field. - readOnly: false type: boolean title: Slack Notifications type: object @@ -1317,7 +1947,6 @@ components: properties: accessReviewTemplateId: description: The ID of the template if the campaign was created from one - readOnly: false type: string accuracyIssueAction: description: The accuracyIssueAction field. @@ -1325,14 +1954,12 @@ components: - ACCURACY_ISSUE_ACTION_UNSPECIFIED - ACCURACY_ISSUE_ACTION_CONTINUE - ACCURACY_ISSUE_ACTION_WAIT - readOnly: false type: string x-speakeasy-unknown-values: allow autoCloseCampaign: description: |- Auto-close configuration completion_date is used as the scheduled close date - readOnly: false type: boolean autoCloseDecision: description: The autoCloseDecision field. @@ -1341,48 +1968,56 @@ components: - CLOSE_DECISION_REVOKED - CLOSE_DECISION_SKIP - CLOSE_DECISION_NO_ACTION - readOnly: false type: string x-speakeasy-unknown-values: allow autoGenerateReport: description: The autoGenerateReport field. - readOnly: false type: boolean autoResolve: description: When true, selections are automatically resolved if the entitlement grant no longer exists. - readOnly: false type: boolean autoStartCampaign: description: Auto-start configuration - readOnly: false type: boolean bindings: - $ref: '#/components/schemas/c1.api.accessreview.v1.BindingObjectSetup' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.BindingObjectSetup' + - type: "null" campaignHealth: - $ref: '#/components/schemas/c1.api.accessreview.v1.CampaignHealthSnapshot' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.CampaignHealthSnapshot' + - type: "null" campaignInsights: - $ref: '#/components/schemas/c1.api.accessreview.v1.CampaignInsights' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.CampaignInsights' + - type: "null" closedAt: format: date-time - readOnly: false - type: string + type: + - string + - "null" columnConfig: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewColumnConfig' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewColumnConfig' + - type: "null" completionDate: format: date-time - readOnly: false - type: string + type: + - string + - "null" connectorSourcesFrozenAt: format: date-time - readOnly: false - type: string + type: + - string + - "null" createdAt: format: date-time readOnly: true - type: string + type: + - string + - "null" createdById: description: The ID of the user who created this campaign. - readOnly: false type: string defaultView: description: the default view that reviewers will see when they complete their access reviews @@ -1392,16 +2027,13 @@ components: - ACCESS_REVIEW_VIEW_TYPE_BY_USER - ACCESS_REVIEW_VIEW_TYPE_UNSTRUCTURED - ACCESS_REVIEW_VIEW_TYPE_BY_RESOURCE - readOnly: false type: string x-speakeasy-unknown-values: allow description: description: An optional description providing context about this campaign. - readOnly: false type: string displayName: description: The human-readable name of this campaign. - readOnly: false type: string errorState: description: |- @@ -1414,44 +2046,53 @@ components: type: string x-speakeasy-unknown-values: allow exclusionScope: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewExclusionScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewExclusionScope' + - type: "null" exemptCertifiedAccessConflicts: description: this setting is used for access conflict type scope - readOnly: false type: boolean expectedTicketCount: description: The estimated number of review tasks that will be generated when the campaign starts. format: int32 - readOnly: false type: integer hasAccuracySupport: description: Whether the connectors in this campaign support accuracy checking. - readOnly: false type: boolean id: description: The unique identifier of this access review campaign. - readOnly: false type: string inclusionScope: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewInclusionScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewInclusionScope' + - type: "null" multiApp: - $ref: '#/components/schemas/c1.api.accessreview.v1.MultiAppSetup' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.MultiAppSetup' + - type: "null" notificationConfig: - $ref: '#/components/schemas/c1.api.accessreview.v1.NotificationConfig' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.NotificationConfig' + - type: "null" policyId: description: The ID of the review policy that governs how review tasks are assigned and resolved. - readOnly: false type: string reviewInstructions: description: Optional instructions displayed to reviewers when completing their review tasks. - readOnly: false type: string + reviewerAttributeConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.ReviewerAttributeConfig' + - type: "null" scheduledStartDate: format: date-time - readOnly: false - type: string + type: + - string + - "null" scope: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScope' + - type: "null" scopeType: description: this sets the scope type for the access review enum: @@ -1460,24 +2101,30 @@ components: - ACCESS_REVIEW_SCOPE_TYPE_BY_ACCESS_CONFLICTS - ACCESS_REVIEW_SCOPE_TYPE_BY_RESOURCE - ACCESS_REVIEW_SCOPE_TYPE_BY_INHERITANCE - readOnly: false + - ACCESS_REVIEW_SCOPE_TYPE_BY_USERS type: string x-speakeasy-unknown-values: allow scopeV2: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + - type: "null" scopingVersion: description: Internal version counter incremented when the campaign scope changes. format: int64 - readOnly: false type: string signatureConfig: - $ref: '#/components/schemas/c1.api.accessreview.v1.ReviewSignatureConfig' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.ReviewSignatureConfig' + - type: "null" singleApp: - $ref: '#/components/schemas/c1.api.accessreview.v1.SingleAppSetup' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.SingleAppSetup' + - type: "null" startedAt: format: date-time - readOnly: false - type: string + type: + - string + - "null" state: description: The current lifecycle state of the campaign (e.g., draft, open, closed). enum: @@ -1494,30 +2141,59 @@ components: - ACCESS_REVIEW_STATE_RESETTING_POLICIES - ACCESS_REVIEW_STATE_COPYING_SETUP_ENTITLEMENTS - ACCESS_REVIEW_STATE_COPYING_RESOURCE_TYPE_SELECTIONS - readOnly: false type: string x-speakeasy-unknown-values: allow updatedAt: format: date-time readOnly: true - type: string + type: + - string + - "null" usePolicyOverride: description: |- Determines the policy applied to the campaign. Default is false, using the campaign policy. If true, the order of precedence is entitlement → app → campaign policy. - readOnly: false type: boolean title: Access Review type: object x-speakeasy-entity: Access Review x-speakeasy-name-override: AccessReview + c1.api.accessreview.v1.AccessReviewActionsServiceGenerateReportRequestInput: + description: The AccessReviewActionsServiceGenerateReportRequest message. + properties: + format: + description: |- + Output format for the report. When unspecified, programmatic public-API + callers (REST gateway and MCP) get JSON and the in-app UI gets XLSX. JSON + and CSV return the per-decision certification rows; XLSX returns the full + multi-sheet Excel workbook. + enum: + - ACCESS_REVIEW_REPORT_FORMAT_UNSPECIFIED + - ACCESS_REVIEW_REPORT_FORMAT_XLSX + - ACCESS_REVIEW_REPORT_FORMAT_JSON + - ACCESS_REVIEW_REPORT_FORMAT_CSV + type: string + x-speakeasy-unknown-values: allow + reportColumnConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewReportColumnConfig' + - type: "null" + title: Access Review Actions Service Generate Report Request + type: object + x-speakeasy-name-override: AccessReviewActionsServiceGenerateReportRequest + c1.api.accessreview.v1.AccessReviewActionsServiceGenerateReportResponse: + description: The AccessReviewActionsServiceGenerateReportResponse message. + title: Access Review Actions Service Generate Report Response + type: object + x-speakeasy-name-override: AccessReviewActionsServiceGenerateReportResponse c1.api.accessreview.v1.AccessReviewColumnConfig: description: Configuration for which columns are visible in the reviewer task list. properties: columns: + deprecated: true description: |- - Ordered list of columns visible to reviewers. - If empty, the default column set for the campaign's default_view is used. + Deprecated: use `ordered_columns`, which can also include app user + attribute columns. items: enum: - ACCESS_REVIEW_TASK_COLUMN_UNSPECIFIED @@ -1547,11 +2223,25 @@ components: - ACCESS_REVIEW_TASK_COLUMN_LAST_LOGIN - ACCESS_REVIEW_TASK_COLUMN_RESOURCE_PARENT - ACCESS_REVIEW_TASK_COLUMN_RESOURCE_CHILDREN + - ACCESS_REVIEW_TASK_COLUMN_APP_USER_USERNAME + - ACCESS_REVIEW_TASK_COLUMN_ACCESS_HOLDER_TYPE + - ACCESS_REVIEW_TASK_COLUMN_RISK_LEVEL + - ACCESS_REVIEW_TASK_COLUMN_COMPLIANCE_FRAMEWORK type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array + type: + - array + - "null" + orderedColumns: + description: |- + Ordered columns visible to reviewers, built-ins and attributes + interleaved. Falls back to `columns`, then to the default set for the + campaign's default_view. + items: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTaskColumnRef' + type: + - array + - "null" title: Access Review Column Config type: object x-speakeasy-name-override: AccessReviewColumnConfig @@ -1568,9 +2258,9 @@ components: - APP_USER_STATUS_DELETED type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array + type: + - array + - "null" appUserTypes: description: The appUserTypes field. items: @@ -1581,9 +2271,9 @@ components: - APP_USER_TYPE_SYSTEM_ACCOUNT type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: Access Review Exclusion Scope type: object x-speakeasy-name-override: AccessReviewExclusionScope @@ -1594,9 +2284,9 @@ components: description: The paths field. items: type: string - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: Access Review Expand Mask type: object x-speakeasy-name-override: AccessReviewExpandMask @@ -1613,9 +2303,9 @@ components: - APP_USER_STATUS_DELETED type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array + type: + - array + - "null" appUserTypes: description: The appUserTypes field. items: @@ -1626,33 +2316,31 @@ components: - APP_USER_TYPE_SYSTEM_ACCOUNT type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array + type: + - array + - "null" managerIds: description: The managerIds field. items: type: string - nullable: true - readOnly: false - type: array + type: + - array + - "null" multiUserProfileAttributes: additionalProperties: $ref: '#/components/schemas/c1.api.accessreview.v1.IncludedUserAttributeValues' description: The multiUserProfileAttributes field. - readOnly: false type: object noAccountOwners: description: The noAccountOwners field. - readOnly: false type: boolean userIds: description: The userIds field. items: type: string - nullable: true - readOnly: false - type: array + type: + - array + - "null" userStatuses: description: The userStatuses field. items: @@ -1663,12 +2351,121 @@ components: - USER_DELETED type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: Access Review Inclusion Scope type: object x-speakeasy-name-override: AccessReviewInclusionScope + c1.api.accessreview.v1.AccessReviewReport: + description: The AccessReviewReport message. + properties: + accessReviewId: + description: The accessReviewId field. + type: string + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + downloadUrl: + description: The downloadUrl field. + type: string + format: + description: Output format of the generated file (XLSX / JSON / CSV). + enum: + - ACCESS_REVIEW_REPORT_FORMAT_UNSPECIFIED + - ACCESS_REVIEW_REPORT_FORMAT_XLSX + - ACCESS_REVIEW_REPORT_FORMAT_JSON + - ACCESS_REVIEW_REPORT_FORMAT_CSV + type: string + x-speakeasy-unknown-values: allow + hashes: + additionalProperties: + type: string + description: The hashes field. + type: object + id: + description: The id field. + type: string + state: + description: The state field. + enum: + - REPORT_STATE_UNSPECIFIED + - REPORT_STATE_PENDING + - REPORT_STATE_OK + - REPORT_STATE_ERROR + type: string + x-speakeasy-unknown-values: allow + title: Access Review Report + type: object + x-speakeasy-name-override: AccessReviewReport + c1.api.accessreview.v1.AccessReviewReportColumnConfig: + description: Configuration for columns in the generated access review Excel report. + properties: + columns: + description: |- + Ordered list of columns to include in the report's "Access Reviews" sheet. + When non-empty, the report renders exactly these columns in the order given. + When empty, the default column set is used (the original 19 columns without + Employee ID or other user-attribute extras). + items: + enum: + - ACCESS_REVIEW_REPORT_COLUMN_UNSPECIFIED + - ACCESS_REVIEW_REPORT_COLUMN_EMPLOYEE_ID + - ACCESS_REVIEW_REPORT_COLUMN_JOB_TITLE + - ACCESS_REVIEW_REPORT_COLUMN_DEPARTMENT + - ACCESS_REVIEW_REPORT_COLUMN_EMPLOYMENT_STATUS + - ACCESS_REVIEW_REPORT_COLUMN_EMPLOYMENT_TYPE + - ACCESS_REVIEW_REPORT_COLUMN_MANAGER + - ACCESS_REVIEW_REPORT_COLUMN_TASK + - ACCESS_REVIEW_REPORT_COLUMN_ACCOUNT + - ACCESS_REVIEW_REPORT_COLUMN_USER_NAME + - ACCESS_REVIEW_REPORT_COLUMN_IDENTITY_TYPE + - ACCESS_REVIEW_REPORT_COLUMN_ACCOUNT_OWNER + - ACCESS_REVIEW_REPORT_COLUMN_ACCOUNT_OWNER_EMAIL + - ACCESS_REVIEW_REPORT_COLUMN_APPLICATION + - ACCESS_REVIEW_REPORT_COLUMN_RESOURCE + - ACCESS_REVIEW_REPORT_COLUMN_RESOURCE_TYPE + - ACCESS_REVIEW_REPORT_COLUMN_ENTITLEMENT + - ACCESS_REVIEW_REPORT_COLUMN_DESCRIPTION + - ACCESS_REVIEW_REPORT_COLUMN_CERTIFICATION_POLICY + - ACCESS_REVIEW_REPORT_COLUMN_ASSIGNED_TO + - ACCESS_REVIEW_REPORT_COLUMN_REASSIGNMENTS + - ACCESS_REVIEW_REPORT_COLUMN_CERTIFIERS + - ACCESS_REVIEW_REPORT_COLUMN_DECISIONS + - ACCESS_REVIEW_REPORT_COLUMN_RESOLVED_ON + - ACCESS_REVIEW_REPORT_COLUMN_COMMENTS + - ACCESS_REVIEW_REPORT_COLUMN_LAST_LOGIN + - ACCESS_REVIEW_REPORT_COLUMN_SUBMISSIONS + - ACCESS_REVIEW_REPORT_COLUMN_EXTERNAL_TICKET + - ACCESS_REVIEW_REPORT_COLUMN_EXTERNAL_TICKET_STATUS + - ACCESS_REVIEW_REPORT_COLUMN_SUBJECT_USERNAME + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + title: Access Review Report Column Config + type: object + x-speakeasy-name-override: AccessReviewReportColumnConfig + c1.api.accessreview.v1.AccessReviewReportServiceListResponse: + description: The AccessReviewReportServiceListResponse message. + properties: + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewReport' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. + type: string + title: Access Review Report Service List Response + type: object + x-speakeasy-name-override: AccessReviewReportServiceListResponse c1.api.accessreview.v1.AccessReviewScope: description: The AccessReviewScope message. properties: @@ -1682,9 +2479,9 @@ components: - APP_USER_STATUS_DELETED type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array + type: + - array + - "null" appUserTypes: description: The appUserTypes field. items: @@ -1695,9 +2492,9 @@ components: - APP_USER_TYPE_SYSTEM_ACCOUNT type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: Access Review Scope type: object x-speakeasy-name-override: AccessReviewScope @@ -1737,39 +2534,97 @@ components: This message contains a oneof named resource_scope. Only a single field of the following list may be set at a time: - resourceSelection + + + This message contains a oneof named excluded_apps_and_resources_scope. Only a single field of the following list may be set at a time: + - excludedSpecificResources + - excludedResourceTypeSelections properties: accountCelExpression: - $ref: '#/components/schemas/c1.api.accessreview.v1.CelExpressionScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.CelExpressionScope' + - type: "null" accountCriteria: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccountCriteriaScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccountCriteriaScope' + - type: "null" allAccessConflicts: - $ref: '#/components/schemas/c1.api.accessreview.v1.AllAccessConflictsScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AllAccessConflictsScope' + - type: "null" allAccounts: - $ref: '#/components/schemas/c1.api.accessreview.v1.AllAccountsScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AllAccountsScope' + - type: "null" allGrants: - $ref: '#/components/schemas/c1.api.accessreview.v1.AllGrantsScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AllGrantsScope' + - type: "null" allUsers: - $ref: '#/components/schemas/c1.api.accessreview.v1.AllUsersScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AllUsersScope' + - type: "null" appAccess: - $ref: '#/components/schemas/c1.api.accessreview.v1.ApplicationAccessScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.ApplicationAccessScope' + - type: "null" appSelectionCriteria: - $ref: '#/components/schemas/c1.api.accessreview.v1.AppSelectionCriteriaScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AppSelectionCriteriaScope' + - type: "null" celExpression: - $ref: '#/components/schemas/c1.api.accessreview.v1.CelExpressionScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.CelExpressionScope' + - type: "null" + excludedResourceTypeSelections: + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.ResourceTypeSelectionScope' + - type: "null" + excludedSpecificResources: + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.SpecificResourcesScope' + - type: "null" grantsByCriteria: - $ref: '#/components/schemas/c1.api.accessreview.v1.GrantsByCriteriaScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.GrantsByCriteriaScope' + - type: "null" + principalTypeFilter: + description: Filters principals included in the scope. Unspecified is treated as users. + enum: + - PRINCIPAL_TYPE_FILTER_UNSPECIFIED + - PRINCIPAL_TYPE_FILTER_USERS + - PRINCIPAL_TYPE_FILTER_RESOURCES + - PRINCIPAL_TYPE_FILTER_USERS_AND_RESOURCES + type: string + x-speakeasy-unknown-values: allow resourceSelection: - $ref: '#/components/schemas/c1.api.accessreview.v1.ResourceSelectionScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.ResourceSelectionScope' + - type: "null" resourceTypeSelections: - $ref: '#/components/schemas/c1.api.accessreview.v1.ResourceTypeSelectionScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.ResourceTypeSelectionScope' + - type: "null" + scopeRoleSelection: + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.ScopeRoleSelectionScope' + - type: "null" selectedUsers: - $ref: '#/components/schemas/c1.api.accessreview.v1.SelectedUsersScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.SelectedUsersScope' + - type: "null" specificAccessConflicts: - $ref: '#/components/schemas/c1.api.accessreview.v1.SpecificAccessConflictsScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.SpecificAccessConflictsScope' + - type: "null" specificResources: - $ref: '#/components/schemas/c1.api.accessreview.v1.SpecificResourcesScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.SpecificResourcesScope' + - type: "null" userCriteria: - $ref: '#/components/schemas/c1.api.accessreview.v1.UserCriteriaScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.UserCriteriaScope' + - type: "null" title: Access Review Scope V 2 type: object x-speakeasy-name-override: AccessReviewScopeV2 @@ -1778,34 +2633,35 @@ components: properties: completionDate: format: date-time - readOnly: false - type: string + type: + - string + - "null" description: description: An optional description providing context about the campaign. - readOnly: false type: string displayName: description: The display name for the new campaign. - readOnly: false type: string duplicateFrom: description: The ID of an existing campaign to copy scope and entitlement configuration from. Optional. - readOnly: false type: string expandMask: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewExpandMask' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewExpandMask' + - type: "null" notificationConfig: - $ref: '#/components/schemas/c1.api.accessreview.v1.NotificationConfig' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.NotificationConfig' + - type: "null" ownerIds: description: The IDs of the users who own and manage this campaign. At least one owner is required. items: type: string - nullable: true - readOnly: false - type: array + type: + - array + - "null" policyId: description: The ID of the review policy that governs task assignment and resolution. - readOnly: false type: string scopeType: description: The type of scoping method for the campaign (e.g., by entitlements, by access conflicts, or by resource). @@ -1815,11 +2671,13 @@ components: - ACCESS_REVIEW_SCOPE_TYPE_BY_ACCESS_CONFLICTS - ACCESS_REVIEW_SCOPE_TYPE_BY_RESOURCE - ACCESS_REVIEW_SCOPE_TYPE_BY_INHERITANCE - readOnly: false + - ACCESS_REVIEW_SCOPE_TYPE_BY_USERS type: string x-speakeasy-unknown-values: allow scopeV2: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + - type: "null" title: Access Review Service Create Request type: object x-speakeasy-name-override: AccessReviewServiceCreateRequest @@ -1827,7 +2685,9 @@ components: description: The AccessReviewServiceCreateResponse message. properties: accessReview: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewView' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewView' + - type: "null" expanded: description: Related objects requested via the expand mask. items: @@ -1837,11 +2697,10 @@ components: '@type': description: The type of the serialized message. type: string - readOnly: false type: object - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: Access Review Service Create Response type: object x-speakeasy-name-override: AccessReviewServiceCreateResponse @@ -1859,7 +2718,9 @@ components: description: The AccessReviewServiceGetResponse message. properties: accessReview: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewView' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewView' + - type: "null" expanded: description: Related objects requested via the expand mask. items: @@ -1869,11 +2730,10 @@ components: '@type': description: The type of the serialized message. type: string - readOnly: false type: object - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: Access Review Service Get Response type: object x-speakeasy-name-override: AccessReviewServiceGetResponse @@ -1889,21 +2749,19 @@ components: '@type': description: The type of the serialized message. type: string - readOnly: false type: object - nullable: true - readOnly: false - type: array + type: + - array + - "null" list: description: The list of access review campaigns for the current page. items: $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewView' - nullable: true - readOnly: false - type: array + type: + - array + - "null" nextPageToken: description: Token to retrieve the next page, or empty if there are no more results. - readOnly: false type: string title: Access Review Service List Response type: object @@ -1912,13 +2770,17 @@ components: description: The AccessReviewServiceUpdateRequest message. properties: accessReview: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReview' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReview' + - type: "null" expandMask: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewExpandMask' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewExpandMask' + - type: "null" updateMask: - nullable: true - readOnly: false - type: string + type: + - string + - "null" title: Access Review Service Update Request type: object x-speakeasy-name-override: AccessReviewServiceUpdateRequest @@ -1926,7 +2788,9 @@ components: description: The AccessReviewServiceUpdateResponse message. properties: accessReview: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewView' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewView' + - type: "null" expanded: description: Related objects requested via the expand mask. items: @@ -1936,11 +2800,10 @@ components: '@type': description: The type of the serialized message. type: string - readOnly: false type: object - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: Access Review Service Update Response type: object x-speakeasy-name-override: AccessReviewServiceUpdateResponse @@ -1951,11 +2814,13 @@ components: description: The resource types to include in the campaign scope. Replaces all previously selected resource types. items: $ref: '#/components/schemas/c1.api.accessreview.v1.ResourceTypeIdRef' - nullable: true - readOnly: false - type: array + type: + - array + - "null" scopeV2: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + - type: "null" title: Access Review Set Scope By Resource Type Request type: object x-speakeasy-name-override: AccessReviewSetScopeByResourceTypeRequest @@ -1969,48 +2834,46 @@ components: properties: accessReviewId: description: The ID of the access review campaign this entitlement belongs to. - readOnly: false type: string appEntitlementId: description: The ID of the entitlement being reviewed. - readOnly: false type: string appId: description: The ID of the application that owns the entitlement. - readOnly: false type: string appResourceId: description: The ID of the specific resource associated with this entitlement, if applicable. - readOnly: false type: string appResourceTypeId: description: The ID of the resource type associated with this entitlement, if applicable. - readOnly: false type: string createdAt: format: date-time readOnly: true - type: string + type: + - string + - "null" customPolicyId: description: An override policy ID for this specific entitlement. Populated when use_policy_override is enabled on the campaign. - readOnly: false type: string deletedAt: format: date-time readOnly: true - type: string + type: + - string + - "null" policyId: description: The ID of the review policy applied to this entitlement. Defaults to the campaign policy. - readOnly: false type: string tenantId: description: The tenant that owns this setup entitlement. - readOnly: false type: string updatedAt: format: date-time readOnly: true - type: string + type: + - string + - "null" title: Access Review Setup Entitlement type: object x-speakeasy-name-override: AccessReviewSetupEntitlement @@ -2021,13 +2884,17 @@ components: description: The entitlements to include in the campaign. Replaces all previously selected entitlements. items: $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewSetupEntitlementInput' - nullable: true - readOnly: false - type: array + type: + - array + - "null" expandMask: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewSetupEntitlementExpandMask' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewSetupEntitlementExpandMask' + - type: "null" scopeV2: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + - type: "null" title: Access Review Setup Entitlement And Scope Service Set Request type: object x-speakeasy-name-override: AccessReviewSetupEntitlementAndScopeServiceSetRequest @@ -2043,20 +2910,21 @@ components: '@type': description: The type of the serialized message. type: string - readOnly: false type: object - nullable: true - readOnly: false - type: array + type: + - array + - "null" list: description: The current list of setup entitlements for the campaign. items: $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewSetupEntitlementView' - nullable: true - readOnly: false - type: array + type: + - array + - "null" scopeV2: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + - type: "null" title: Access Review Setup Entitlement And Scope Service Set Response type: object x-speakeasy-name-override: AccessReviewSetupEntitlementAndScopeServiceSetResponse @@ -2067,9 +2935,9 @@ components: description: The paths field. items: type: string - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: Access Review Setup Entitlement Expand Mask type: object x-speakeasy-name-override: AccessReviewSetupEntitlementExpandMask @@ -2078,11 +2946,9 @@ components: properties: appEntitlementId: description: The ID of the entitlement. - readOnly: false type: string appId: description: The ID of the application that owns the entitlement. - readOnly: false type: string title: Access Review Setup Entitlement Input type: object @@ -2091,22 +2957,84 @@ components: description: The AccessReviewSetupEntitlementView message. properties: accessReviewEntitlement: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewSetupEntitlement' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewSetupEntitlement' + - type: "null" appPath: description: The appPath field. - readOnly: false type: string entitlementPath: description: The entitlementPath field. - readOnly: false type: string policyPath: description: The policyPath field. - readOnly: false type: string title: Access Review Setup Entitlement View type: object x-speakeasy-name-override: AccessReviewSetupEntitlementView + c1.api.accessreview.v1.AccessReviewTaskColumnRef: + description: | + One column in the reviewer task list: a built-in column, or an app user + profile attribute. An attribute only renders for apps whose + reviewer_attribute_config permits it — that config is the authorization, + this is the view preference. + + This message contains a oneof named column. Only a single field of the following list may be set at a time: + - builtin + - appUserAttributeKey + properties: + appUserAttributeKey: + description: |- + The appUserAttributeKey field. + This field is part of the `column` oneof. + See the documentation for `c1.api.accessreview.v1.AccessReviewTaskColumnRef` for more details. + type: + - string + - "null" + builtin: + description: |- + The builtin field. + This field is part of the `column` oneof. + See the documentation for `c1.api.accessreview.v1.AccessReviewTaskColumnRef` for more details. + enum: + - ACCESS_REVIEW_TASK_COLUMN_UNSPECIFIED + - ACCESS_REVIEW_TASK_COLUMN_VIEW_LINK + - ACCESS_REVIEW_TASK_COLUMN_CURRENT_STATE + - ACCESS_REVIEW_TASK_COLUMN_ACCOUNT + - ACCESS_REVIEW_TASK_COLUMN_ACCOUNT_OWNER + - ACCESS_REVIEW_TASK_COLUMN_ENTITLEMENT + - ACCESS_REVIEW_TASK_COLUMN_ENTITLEMENT_DESCRIPTION + - ACCESS_REVIEW_TASK_COLUMN_RESOURCE + - ACCESS_REVIEW_TASK_COLUMN_RESOURCE_TYPE + - ACCESS_REVIEW_TASK_COLUMN_INSIGHTS + - ACCESS_REVIEW_TASK_COLUMN_RECOMMENDATION + - ACCESS_REVIEW_TASK_COLUMN_ASSIGNED_TO + - ACCESS_REVIEW_TASK_COLUMN_STATUS + - ACCESS_REVIEW_TASK_COLUMN_APP + - ACCESS_REVIEW_TASK_COLUMN_DUE + - ACCESS_REVIEW_TASK_COLUMN_PROJECT + - ACCESS_REVIEW_TASK_COLUMN_CREATED_ON + - ACCESS_REVIEW_TASK_COLUMN_TASK_AGE + - ACCESS_REVIEW_TASK_COLUMN_RESOLVED_ON + - ACCESS_REVIEW_TASK_COLUMN_ENROLLMENT_STATUS + - ACCESS_REVIEW_TASK_COLUMN_INHERITED_FROM + - ACCESS_REVIEW_TASK_COLUMN_DEPARTMENT + - ACCESS_REVIEW_TASK_COLUMN_JOB_TITLE + - ACCESS_REVIEW_TASK_COLUMN_CREATED_BY + - ACCESS_REVIEW_TASK_COLUMN_LAST_LOGIN + - ACCESS_REVIEW_TASK_COLUMN_RESOURCE_PARENT + - ACCESS_REVIEW_TASK_COLUMN_RESOURCE_CHILDREN + - ACCESS_REVIEW_TASK_COLUMN_APP_USER_USERNAME + - ACCESS_REVIEW_TASK_COLUMN_ACCESS_HOLDER_TYPE + - ACCESS_REVIEW_TASK_COLUMN_RISK_LEVEL + - ACCESS_REVIEW_TASK_COLUMN_COMPLIANCE_FRAMEWORK + type: + - string + - "null" + x-speakeasy-unknown-values: allow + title: Access Review Task Column Ref + type: object + x-speakeasy-name-override: AccessReviewTaskColumnRef c1.api.accessreview.v1.AccessReviewTemplate: description: | A reusable template that defines the configuration for creating access review campaigns. @@ -2114,25 +3042,42 @@ components: This message contains a oneof named slack_channel_details. Only a single field of the following list may be set at a time: - slackChannel + - msTeamsChannel properties: accessReviewDuration: format: duration - readOnly: false - type: string + type: + - string + - "null" accuracyIssueAction: description: The accuracyIssueAction field. enum: - ACCURACY_ISSUE_ACTION_UNSPECIFIED - ACCURACY_ISSUE_ACTION_CONTINUE - ACCURACY_ISSUE_ACTION_WAIT - readOnly: false type: string x-speakeasy-unknown-values: allow + annotations: + additionalProperties: + type: string + description: |- + Key/value metadata. Up to 16 entries; keys 1-128 chars; values 0-256 + chars; URL-safe ASCII. Keys starting with `c1/` are reserved. + + Updates have PATCH semantics: keys absent from the request are + preserved; an empty value deletes the key. + + Well-known keys: `managed_by`, `iac_workspace`, + `iac_resource_address`, `iac_tool_version`. + type: object + x-speakeasy-terraform-plan-modifier: + imports: + - github.com/conductorone/terraform-provider-conductorone/internal/annotations + schemaDefinition: annotations.PlanModifier() autoCloseCampaign: description: |- Auto-close configuration start date and access_review_duration will be used to calculate the scheduled close date - readOnly: false type: boolean autoCloseDecision: description: The autoCloseDecision field. @@ -2141,25 +3086,26 @@ components: - CLOSE_DECISION_REVOKED - CLOSE_DECISION_SKIP - CLOSE_DECISION_NO_ACTION - readOnly: false type: string x-speakeasy-unknown-values: allow autoGenerateReport: description: auto generate report when campaign is closed - readOnly: false type: boolean autoStartCampaign: description: |- Auto-start configuration next_scheduled_campaign_at will be used as the scheduled start date - readOnly: false type: boolean columnConfig: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewColumnConfig' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewColumnConfig' + - type: "null" createdAt: format: date-time readOnly: true - type: string + type: + - string + - "null" defaultView: description: The defaultView field. enum: @@ -2168,58 +3114,68 @@ components: - ACCESS_REVIEW_VIEW_TYPE_BY_USER - ACCESS_REVIEW_VIEW_TYPE_UNSTRUCTURED - ACCESS_REVIEW_VIEW_TYPE_BY_RESOURCE - readOnly: false type: string x-speakeasy-unknown-values: allow deletedAt: format: date-time readOnly: true - type: string + type: + - string + - "null" description: description: An optional description providing context about this template. - readOnly: false type: string displayName: description: The human-readable name of this template. - readOnly: false type: string exemptCertifiedAccessConflicts: description: The exemptCertifiedAccessConflicts field. - readOnly: false type: boolean id: description: The unique identifier of this template. - readOnly: false type: string inclusionScope: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewInclusionScope' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewInclusionScope' + - type: "null" isCampaignScheduleEnabled: description: Whether automatic campaign creation on the recurrence schedule is enabled. - readOnly: false type: boolean + msTeamsChannel: + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.MSTeamsChannel' + - type: "null" nextScheduledCampaignAt: format: date-time - readOnly: false - type: string + type: + - string + - "null" notificationConfig: - $ref: '#/components/schemas/c1.api.accessreview.v1.NotificationConfig' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.NotificationConfig' + - type: "null" occurrences: description: The number of campaigns that have been created from this template. format: int32 - readOnly: false type: integer policyId: description: The ID of the default review policy applied to campaigns created from this template. - readOnly: false type: string recurrenceRule: - $ref: '#/components/schemas/c1.api.accessreview.v1.RecurrenceRule' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.RecurrenceRule' + - type: "null" reviewInstructions: description: The reviewInstructions field. - readOnly: false type: string + reviewerAttributeConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.ReviewerAttributeConfig' + - type: "null" scope: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + - type: "null" scopeType: description: The scopeType field. enum: @@ -2228,20 +3184,25 @@ components: - ACCESS_REVIEW_SCOPE_TYPE_BY_ACCESS_CONFLICTS - ACCESS_REVIEW_SCOPE_TYPE_BY_RESOURCE - ACCESS_REVIEW_SCOPE_TYPE_BY_INHERITANCE - readOnly: false + - ACCESS_REVIEW_SCOPE_TYPE_BY_USERS type: string x-speakeasy-unknown-values: allow signatureConfig: - $ref: '#/components/schemas/c1.api.accessreview.v1.ReviewSignatureConfig' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.ReviewSignatureConfig' + - type: "null" slackChannel: - $ref: '#/components/schemas/c1.api.accessreview.v1.SlackChannel' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.SlackChannel' + - type: "null" updatedAt: format: date-time readOnly: true - type: string + type: + - string + - "null" usePolicyOverride: description: The usePolicyOverride field. - readOnly: false type: boolean title: Access Review Template type: object @@ -2252,20 +3213,36 @@ components: properties: accessReviewDuration: format: duration - readOnly: false - type: string + type: + - string + - "null" accuracyIssueAction: description: The accuracyIssueAction field. enum: - ACCURACY_ISSUE_ACTION_UNSPECIFIED - ACCURACY_ISSUE_ACTION_CONTINUE - ACCURACY_ISSUE_ACTION_WAIT - readOnly: false type: string x-speakeasy-unknown-values: allow + annotations: + additionalProperties: + type: string + description: |- + Bounded key/value metadata bag for IaC marking and customer tags. + See .rfcs/object-annotations.md §2. Limits: ≤16 entries; keys 1–128 + chars matching ^[A-Za-z][A-Za-z0-9._/-]{0,127}$; values 0–256 chars + matching URL-safe ASCII; total serialized ≤4096 bytes. Keys starting + with `c1/` are reserved for server-managed use and rejected on write. + + Well-known keys: `managed_by`, `iac_workspace`, + `iac_resource_address`, `iac_tool_version`. + type: object + x-speakeasy-terraform-plan-modifier: + imports: + - github.com/conductorone/terraform-provider-conductorone/internal/annotations + schemaDefinition: annotations.PlanModifier() autoCloseCampaign: description: The autoCloseCampaign field. - readOnly: false type: boolean autoCloseDecision: description: The autoCloseDecision field. @@ -2274,19 +3251,18 @@ components: - CLOSE_DECISION_REVOKED - CLOSE_DECISION_SKIP - CLOSE_DECISION_NO_ACTION - readOnly: false type: string x-speakeasy-unknown-values: allow autoGenerateReport: description: auto generate report when campaign is closed - readOnly: false type: boolean autoStartCampaign: description: The autoStartCampaign field. - readOnly: false type: boolean columnConfig: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewColumnConfig' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewColumnConfig' + - type: "null" defaultView: description: The defaultView field. enum: @@ -2295,46 +3271,49 @@ components: - ACCESS_REVIEW_VIEW_TYPE_BY_USER - ACCESS_REVIEW_VIEW_TYPE_UNSTRUCTURED - ACCESS_REVIEW_VIEW_TYPE_BY_RESOURCE - readOnly: false type: string x-speakeasy-unknown-values: allow description: description: An optional description providing context about the template. - readOnly: false type: string displayName: description: The display name for the new template. - readOnly: false type: string exemptCertifiedAccessConflicts: description: The exemptCertifiedAccessConflicts field. - readOnly: false type: boolean isCampaignScheduleEnabled: description: The isCampaignScheduleEnabled field. - readOnly: false type: boolean notificationConfig: - $ref: '#/components/schemas/c1.api.accessreview.v1.NotificationConfig' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.NotificationConfig' + - type: "null" ownerIds: description: The IDs of the users who own this template. At least one owner is required. items: type: string - nullable: true - readOnly: false - type: array + type: + - array + - "null" policyId: description: The ID of the default review policy for campaigns created from this template. - readOnly: false type: string recurrenceRule: - $ref: '#/components/schemas/c1.api.accessreview.v1.RecurrenceRule' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.RecurrenceRule' + - type: "null" reviewInstructions: description: The reviewInstructions field. - readOnly: false type: string + reviewerAttributeConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.ReviewerAttributeConfig' + - type: "null" scope: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + - type: "null" scopeType: description: The scopeType field. enum: @@ -2343,14 +3322,15 @@ components: - ACCESS_REVIEW_SCOPE_TYPE_BY_ACCESS_CONFLICTS - ACCESS_REVIEW_SCOPE_TYPE_BY_RESOURCE - ACCESS_REVIEW_SCOPE_TYPE_BY_INHERITANCE - readOnly: false + - ACCESS_REVIEW_SCOPE_TYPE_BY_USERS type: string x-speakeasy-unknown-values: allow signatureConfig: - $ref: '#/components/schemas/c1.api.accessreview.v1.ReviewSignatureConfig' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.ReviewSignatureConfig' + - type: "null" usePolicyOverride: description: The usePolicyOverride field. - readOnly: false type: boolean title: Access Review Template Service Create Request type: object @@ -2359,7 +3339,9 @@ components: description: The AccessReviewTemplateServiceCreateResponse message. properties: accessReviewTemplate: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplate' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplate' + - type: "null" title: Access Review Template Service Create Response type: object x-speakeasy-name-override: AccessReviewTemplateServiceCreateResponse @@ -2377,7 +3359,9 @@ components: description: The AccessReviewTemplateServiceGetResponse message. properties: accessReviewTemplate: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplate' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplate' + - type: "null" title: Access Review Template Service Get Response type: object x-speakeasy-name-override: AccessReviewTemplateServiceGetResponse @@ -2385,11 +3369,13 @@ components: description: The AccessReviewTemplateServiceUpdateRequest message. properties: accessReviewTemplate: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplate' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplate' + - type: "null" updateMask: - nullable: true - readOnly: false - type: string + type: + - string + - "null" title: Access Review Template Service Update Request type: object x-speakeasy-name-override: AccessReviewTemplateServiceUpdateRequest @@ -2397,7 +3383,9 @@ components: description: The AccessReviewTemplateServiceUpdateResponse message. properties: accessReviewTemplate: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplate' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplate' + - type: "null" title: Access Review Template Service Update Response type: object x-speakeasy-name-override: AccessReviewTemplateServiceUpdateResponse @@ -2408,11 +3396,13 @@ components: description: The resource types to include in the template scope. Replaces all previously selected resource types. items: $ref: '#/components/schemas/c1.api.accessreview.v1.ResourceTypeIdRef' - nullable: true - readOnly: false - type: array + type: + - array + - "null" scope: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + - type: "null" title: Access Review Template Set Scope By Resource Type Request type: object x-speakeasy-name-override: AccessReviewTemplateSetScopeByResourceTypeRequest @@ -2426,48 +3416,46 @@ components: properties: accessReviewTemplateId: description: The ID of the access review template this entitlement belongs to. - readOnly: false type: string appEntitlementId: description: The ID of the entitlement to be reviewed. - readOnly: false type: string appId: description: The ID of the application that owns the entitlement. - readOnly: false type: string appResourceId: description: The ID of the specific resource associated with this entitlement, if applicable. - readOnly: false type: string appResourceTypeId: description: The ID of the resource type associated with this entitlement, if applicable. - readOnly: false type: string createdAt: format: date-time readOnly: true - type: string + type: + - string + - "null" customPolicyId: description: An override policy ID for this specific entitlement. Populated when use_policy_override is enabled on the template. - readOnly: false type: string deletedAt: format: date-time readOnly: true - type: string + type: + - string + - "null" policyId: description: The ID of the review policy applied to this entitlement. Defaults to the template policy. - readOnly: false type: string tenantId: description: The tenant that owns this setup entitlement. - readOnly: false type: string updatedAt: format: date-time readOnly: true - type: string + type: + - string + - "null" title: Access Review Template Setup Entitlement type: object x-speakeasy-name-override: AccessReviewTemplateSetupEntitlement @@ -2478,9 +3466,9 @@ components: description: The paths field. items: type: string - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: Access Review Template Setup Entitlement Expand Mask type: object x-speakeasy-name-override: AccessReviewTemplateSetupEntitlementExpandMask @@ -2489,11 +3477,9 @@ components: properties: appEntitlementId: description: The ID of the entitlement. - readOnly: false type: string appId: description: The ID of the application that owns the entitlement. - readOnly: false type: string title: Access Review Template Setup Entitlement Input type: object @@ -2505,13 +3491,17 @@ components: description: The entitlements to include in the template. Replaces all previously selected entitlements. items: $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateSetupEntitlementInput' - nullable: true - readOnly: false - type: array + type: + - array + - "null" expandMask: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateSetupEntitlementExpandMask' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateSetupEntitlementExpandMask' + - type: "null" scope: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + - type: "null" title: Access Review Template Setup Entitlement Service Set Request type: object x-speakeasy-name-override: AccessReviewTemplateSetupEntitlementServiceSetRequest @@ -2527,20 +3517,21 @@ components: '@type': description: The type of the serialized message. type: string - readOnly: false type: object - nullable: true - readOnly: false - type: array + type: + - array + - "null" list: description: The current list of setup entitlements for the template. items: $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateSetupEntitlementView' - nullable: true - readOnly: false - type: array + type: + - array + - "null" scope: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewScopeV2' + - type: "null" title: Access Review Template Setup Entitlement Service Set Response type: object x-speakeasy-name-override: AccessReviewTemplateSetupEntitlementServiceSetResponse @@ -2548,18 +3539,17 @@ components: description: The AccessReviewTemplateSetupEntitlementView message. properties: accessReviewTemplateEntitlement: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateSetupEntitlement' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateSetupEntitlement' + - type: "null" appPath: description: The appPath field. - readOnly: false type: string entitlementPath: description: The entitlementPath field. - readOnly: false type: string policyPath: description: The policyPath field. - readOnly: false type: string title: Access Review Template Setup Entitlement View type: object @@ -2568,23 +3558,24 @@ components: description: The AccessReviewView message. properties: accessReview: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReview' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReview' + - type: "null" createdByUserPath: description: The createdByUserPath field. - readOnly: false type: string objectPermissions: - $ref: '#/components/schemas/c1.api.iam.v1.ActorObjectPermissions' + oneOf: + - $ref: '#/components/schemas/c1.api.iam.v1.ActorObjectPermissions' + - type: "null" policyPath: description: The policyPath field. - readOnly: false type: string title: Access Review View type: object x-speakeasy-name-override: AccessReviewView c1.api.accessreview.v1.AccountCriteriaScope: description: The AccountCriteriaScope message. - nullable: true properties: accountDomain: description: The accountDomain field. @@ -2592,7 +3583,6 @@ components: - APP_USER_DOMAIN_UNSPECIFIED - APP_USER_DOMAIN_EXTERNAL - APP_USER_DOMAIN_TRUSTED - readOnly: false type: string x-speakeasy-unknown-values: allow accountTypes: @@ -2605,9 +3595,9 @@ components: - APP_USER_TYPE_SYSTEM_ACCOUNT type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array + type: + - array + - "null" appUserStatuses: description: The appUserStatuses field. items: @@ -2618,70 +3608,62 @@ components: - APP_USER_STATUS_DELETED type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array + type: + - array + - "null" noAccountOwner: description: The noAccountOwner field. - readOnly: false type: boolean title: Account Criteria Scope type: object x-speakeasy-name-override: AccountCriteriaScope c1.api.accessreview.v1.AllAccessConflictsScope: description: The AllAccessConflictsScope message. - nullable: true title: All Access Conflicts Scope type: object x-speakeasy-name-override: AllAccessConflictsScope c1.api.accessreview.v1.AllAccountsScope: description: The AllAccountsScope message. - nullable: true title: All Accounts Scope type: object x-speakeasy-name-override: AllAccountsScope c1.api.accessreview.v1.AllGrantsScope: description: The AllGrantsScope message. - nullable: true title: All Grants Scope type: object x-speakeasy-name-override: AllGrantsScope c1.api.accessreview.v1.AllUsersScope: description: The AllUsersScope message. - nullable: true title: All Users Scope type: object x-speakeasy-name-override: AllUsersScope c1.api.accessreview.v1.AppSelectionCriteriaScope: description: The AppSelectionCriteriaScope message. - nullable: true properties: complianceFrameworkAttributeValueIds: description: The complianceFrameworkAttributeValueIds field. items: type: string - nullable: true - readOnly: false - type: array + type: + - array + - "null" riskLevelAttributeValueIds: description: The riskLevelAttributeValueIds field. items: type: string - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: App Selection Criteria Scope type: object x-speakeasy-name-override: AppSelectionCriteriaScope c1.api.accessreview.v1.ApplicationAccessScope: description: The ApplicationAccessScope message. - nullable: true title: Application Access Scope type: object x-speakeasy-name-override: ApplicationAccessScope c1.api.accessreview.v1.BindingObjectSetup: description: The BindingObjectSetup message. - nullable: true title: Binding Object Setup type: object x-speakeasy-name-override: BindingObjectSetup @@ -2690,15 +3672,12 @@ components: properties: appId: description: The appId field. - readOnly: false type: string entitlementId: description: The entitlementId field. - readOnly: false type: string policyId: description: The policyId field. - readOnly: false type: string title: Campaign Entitlement Details type: object @@ -2708,12 +3687,12 @@ components: properties: checkedAt: format: date-time - readOnly: false - type: string + type: + - string + - "null" phantomLockedCount: description: Number of pending actions locked by terminal (dead) submissions. format: int32 - readOnly: false type: integer title: Campaign Health Snapshot type: object @@ -2723,18 +3702,15 @@ components: properties: markdown: description: The markdown field. - readOnly: false type: string title: Campaign Insights type: object x-speakeasy-name-override: CampaignInsights c1.api.accessreview.v1.CelExpressionScope: description: The CelExpressionScope message. - nullable: true properties: expression: description: The expression field. - readOnly: false type: string title: Cel Expression Scope type: object @@ -2746,7 +3722,6 @@ components: additionalProperties: $ref: '#/components/schemas/c1.api.accessreview.v1.CampaignEntitlementDetails' description: The entitlementDetails field. - readOnly: false type: object title: Entitlement To Details type: object @@ -2761,9 +3736,9 @@ components: Max 32 profile IDs items: type: string - nullable: true - readOnly: false - type: array + type: + - array + - "null" filterType: description: The filterType field. enum: @@ -2772,7 +3747,6 @@ components: - ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_ALL - ACCESS_PROFILE_FILTER_TYPE_EXCLUDE_SPECIFIC - ACCESS_PROFILE_FILTER_TYPE_INCLUDE_SPECIFIC - readOnly: false type: string x-speakeasy-unknown-values: allow includedAccessProfileIds: @@ -2782,24 +3756,25 @@ components: Max 32 profile IDs items: type: string - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: Grant Access Profile Filter type: object x-speakeasy-name-override: GrantAccessProfileFilter c1.api.accessreview.v1.GrantsAddedBetween: description: The GrantsAddedBetween message. - nullable: true properties: endDate: format: date-time - readOnly: false - type: string + type: + - string + - "null" startDate: format: date-time - readOnly: false - type: string + type: + - string + - "null" title: Grants Added Between type: object x-speakeasy-name-override: GrantsAddedBetween @@ -2811,31 +3786,36 @@ components: - daysSinceAdded - daysSinceReviewed - grantsAddedBetween - nullable: true properties: accessProfileFilter: - $ref: '#/components/schemas/c1.api.accessreview.v1.GrantAccessProfileFilter' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.GrantAccessProfileFilter' + - type: "null" daysSinceAdded: format: duration - readOnly: false - type: string + type: + - string + - "null" daysSinceLastUsed: format: duration - readOnly: false - type: string + type: + - string + - "null" daysSinceReviewed: format: duration - readOnly: false - type: string + type: + - string + - "null" grantsAddedBetween: - $ref: '#/components/schemas/c1.api.accessreview.v1.GrantsAddedBetween' + oneOf: + - $ref: '#/components/schemas/c1.api.accessreview.v1.GrantsAddedBetween' + - type: "null" sourceFilter: description: The sourceFilter field. enum: - GRANT_SOURCE_FILTER_UNSPECIFIED - GRANT_SOURCE_FILTER_DIRECT - GRANT_SOURCE_FILTER_INHERITED - readOnly: false type: string x-speakeasy-unknown-values: allow typeFilter: @@ -2844,7 +3824,6 @@ components: - GRANT_FILTER_TYPE_UNSPECIFIED - GRANT_FILTER_TYPE_PERMANENT - GRANT_FILTER_TYPE_TEMPORARY - readOnly: false type: string x-speakeasy-unknown-values: allow title: Grants By Criteria Scope @@ -2855,7 +3834,6 @@ components: properties: value: description: The value field. - readOnly: false type: string title: Included User Attribute Value type: object @@ -2867,44 +3845,52 @@ components: description: The values field. items: $ref: '#/components/schemas/c1.api.accessreview.v1.IncludedUserAttributeValue' - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: Included User Attribute Values type: object x-speakeasy-name-override: IncludedUserAttributeValues + c1.api.accessreview.v1.MSTeamsChannel: + description: The MSTeamsChannel message. + properties: + channelName: + description: The channelName field. + type: string + externalDirectoryId: + description: The externalDirectoryId field. + type: string + title: Ms Teams Channel + type: object + x-speakeasy-name-override: MSTeamsChannel c1.api.accessreview.v1.MultiAppEntitlement: description: The MultiAppEntitlement message. properties: appId: description: The appId field. - readOnly: false type: string entitlementIds: description: The entitlementIds field. items: type: string - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: Multi App Entitlement type: object x-speakeasy-name-override: MultiAppEntitlement c1.api.accessreview.v1.MultiAppSetup: description: The MultiAppSetup message. - nullable: true properties: appEntitlementDetails: additionalProperties: $ref: '#/components/schemas/c1.api.accessreview.v1.EntitlementToDetails' description: The appEntitlementDetails field. - readOnly: false type: object appEntitlements: additionalProperties: $ref: '#/components/schemas/c1.api.accessreview.v1.MultiAppEntitlement' description: The appEntitlements field. - readOnly: false type: object title: Multi App Setup type: object @@ -2914,15 +3900,12 @@ components: properties: sendClose: description: Whether to send a notification when the campaign is closed. - readOnly: false type: boolean sendKickoff: description: Whether to send a notification when the campaign is started. - readOnly: false type: boolean sendReminders: description: Whether to send periodic reminder emails to reviewers with outstanding tasks. - readOnly: false type: boolean title: Notification Config type: object @@ -2937,10 +3920,13 @@ components: properties: endDate: format: date-time - readOnly: false - type: string + type: + - string + - "null" frequency: - description: The frequency field. + description: |- + Frequency of the recurrence: FREQUENCY_DAILY, FREQUENCY_WEEKLY, FREQUENCY_MONTHLY, or FREQUENCY_YEARLY. + Use FREQUENCY_NONE for a non-recurring schedule. enum: - FREQUENCY_UNSPECIFIED - FREQUENCY_NONE @@ -2948,13 +3934,11 @@ components: - FREQUENCY_WEEKLY - FREQUENCY_MONTHLY - FREQUENCY_YEARLY - readOnly: false type: string x-speakeasy-unknown-values: allow interval: description: The interval field. format: int32 - readOnly: false type: integer occurrences: description: |- @@ -2962,19 +3946,21 @@ components: This field is part of the `end_condition` oneof. See the documentation for `c1.api.accessreview.v1.RecurrenceRule` for more details. format: int32 - nullable: true - readOnly: false - type: integer + type: + - integer + - "null" startDate: format: date-time - readOnly: false - type: string + type: + - string + - "null" + required: + - frequency title: Recurrence Rule type: object x-speakeasy-name-override: RecurrenceRule c1.api.accessreview.v1.ResourceSelectionScope: description: The ResourceSelectionScope message. - nullable: true title: Resource Selection Scope type: object x-speakeasy-name-override: ResourceSelectionScope @@ -2983,18 +3969,15 @@ components: properties: appId: description: The ID of the application that owns the resource type. - readOnly: false type: string resourceTypeId: description: The ID of the resource type. - readOnly: false type: string title: Resource Type Id Ref type: object x-speakeasy-name-override: ResourceTypeIdRef c1.api.accessreview.v1.ResourceTypeSelectionScope: description: The ResourceTypeSelectionScope message. - nullable: true title: Resource Type Selection Scope type: object x-speakeasy-name-override: ResourceTypeSelectionScope @@ -3003,98 +3986,130 @@ components: properties: meaningOfSignature: description: The meaningOfSignature field. - readOnly: false type: string requireSignature: description: The requireSignature field. - readOnly: false type: boolean stepUpProviderId: description: The stepUpProviderId field. - readOnly: false type: string tspUrl: description: The tspUrl field. - readOnly: false type: string title: Review Signature Config type: object x-speakeasy-name-override: ReviewSignatureConfig + c1.api.accessreview.v1.ReviewerAttributeBinding: + description: Pair of an app and one of that app's user profile attribute keys. + properties: + appId: + description: The appId field. + type: string + attributeKey: + description: The attributeKey field. + type: string + title: Reviewer Attribute Binding + type: object + x-speakeasy-name-override: ReviewerAttributeBinding + c1.api.accessreview.v1.ReviewerAttributeConfig: + description: |- + Allowlist of AppUser.profile keys visible to reviewers, scoped per app. + Empty = reviewers see no profile attributes in the AppUser tooltip. + properties: + bindings: + description: The bindings field. + items: + $ref: '#/components/schemas/c1.api.accessreview.v1.ReviewerAttributeBinding' + type: + - array + - "null" + title: Reviewer Attribute Config + type: object + x-speakeasy-name-override: ReviewerAttributeConfig + c1.api.accessreview.v1.ScopeRoleSelectionScope: + description: |- + Empty marker for scope+role pair scoping on IaaS-type apps. + Actual selections stored in AccessReviewScopeRoleSelection rows. + May coexist with ResourceSelectionScope on the same campaign; prepare unions both. + title: Scope Role Selection Scope + type: object + x-speakeasy-name-override: ScopeRoleSelectionScope c1.api.accessreview.v1.SelectedUsersScope: description: The SelectedUsersScope message. - nullable: true properties: userIds: description: The userIds field. items: type: string - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: Selected Users Scope type: object x-speakeasy-name-override: SelectedUsersScope c1.api.accessreview.v1.SingleAppSetup: description: The SingleAppSetup message. - nullable: true properties: appId: description: The appId field. - readOnly: false type: string title: Single App Setup type: object x-speakeasy-name-override: SingleAppSetup c1.api.accessreview.v1.SlackChannel: description: The SlackChannel message. - nullable: true properties: + channelId: + description: |- + Existing Slack channel ID (e.g. "C0123ABCD"). Set with is_channel_id=true to + target an existing channel instead of creating one by name. + type: string description: description: The description field. - readOnly: false type: string + isChannelId: + description: |- + When true, channel_id identifies an existing channel to use as-is: the + backend resolves it by ID (conversations.info) and fails if it is missing or + the bot cannot access it. It never creates or searches by name. + type: boolean name: - description: The name field. - readOnly: false + description: Channel name to create/resolve. Required unless is_channel_id is true. type: string title: Slack Channel type: object x-speakeasy-name-override: SlackChannel c1.api.accessreview.v1.SpecificAccessConflictsScope: description: The SpecificAccessConflictsScope message. - nullable: true title: Specific Access Conflicts Scope type: object x-speakeasy-name-override: SpecificAccessConflictsScope c1.api.accessreview.v1.SpecificResourcesScope: description: The SpecificResourcesScope message. - nullable: true title: Specific Resources Scope type: object x-speakeasy-name-override: SpecificResourcesScope c1.api.accessreview.v1.UserCriteriaScope: description: The UserCriteriaScope message. - nullable: true properties: groupAppEntitlementsRef: description: The groupAppEntitlementsRef field. items: $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array + type: + - array + - "null" managerUserIds: description: The managerUserIds field. items: type: string - nullable: true - readOnly: false - type: array + type: + - array + - "null" multiUserProfileAttributes: additionalProperties: $ref: '#/components/schemas/c1.api.accessreview.v1.IncludedUserAttributeValues' description: The multiUserProfileAttributes field. - readOnly: false type: object userStatus: description: The userStatus field. @@ -3106,2641 +4121,3914 @@ components: - DELETED type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array + type: + - array + - "null" title: User Criteria Scope type: object x-speakeasy-name-override: UserCriteriaScope - c1.api.app.v1.AddAppEntitlementOwnerRequestInput: - description: The request message for adding an app entitlement owner. + c1.api.ai_governance.v1.AIGovernanceSettings: + description: |- + AIGovernanceSettings holds the tenant-wide AI governance policy that controls + MCP client access, tool approval, classification defaults, audit detail, and + automatic tool discovery. There is one settings object per tenant. properties: - userId: - description: The user_id field for the user to add as an owner of the app entitlement. - readOnly: false + allowedClientTypes: + description: MCP client types permitted to connect. An empty list allows all types. + items: + enum: + - MCP_CLIENT_TYPE_UNSPECIFIED + - MCP_CLIENT_TYPE_PERSONAL + - MCP_CLIENT_TYPE_SHARED + - MCP_CLIENT_TYPE_SERVICE + - MCP_CLIENT_TYPE_EPHEMERAL + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + auditVerbosity: + description: How much detail is captured in the audit log for MCP tool calls. + enum: + - AUDIT_VERBOSITY_UNSPECIFIED + - AUDIT_VERBOSITY_MINIMAL + - AUDIT_VERBOSITY_STANDARD + - AUDIT_VERBOSITY_FULL type: string - title: Add App Entitlement Owner Request - type: object - x-speakeasy-name-override: AddAppEntitlementOwnerRequest - c1.api.app.v1.AddAppEntitlementOwnerResponse: - description: The empty response message for adding an app entitlement owner. - title: Add App Entitlement Owner Response - type: object - x-speakeasy-name-override: AddAppEntitlementOwnerResponse - c1.api.app.v1.AddAppOwnerRequestInput: - description: Empty request body. Just placeholder for the add app owner request which uses URL values for input. - title: Add App Owner Request - type: object - x-speakeasy-name-override: AddAppOwnerRequest - c1.api.app.v1.AddAppOwnerResponse: - description: Empty response with a status code indicating success - title: Add App Owner Response - type: object - x-speakeasy-name-override: AddAppOwnerResponse - c1.api.app.v1.AddAppResourceOwnerRequestInput: - description: The request message for adding an owner to an app resource. - properties: - userId: - description: The C1 user ID to add as an owner. - readOnly: false + x-speakeasy-unknown-values: allow + autoDiscoveryEnabled: + description: |- + When true, C1 periodically re-discovers tools from registered MCP servers + on the discovery_interval schedule. + type: boolean + c1awAutospillDisabled: + deprecated: true + description: |- + Deprecated. Set QUOTA_REF_TENANT_C1AW_AUTOSPILL_THRESHOLD_KB to 0 to + disable C1AW autospill. + type: boolean + c1awAutospillThresholdBytes: + deprecated: true + description: |- + Deprecated. C1AW autospill is configured with + QUOTA_REF_TENANT_C1AW_AUTOSPILL_THRESHOLD_KB. + format: uint32 + type: integer + codeModeConcurrency: + description: |- + Number of pre-warmed Lambda instances for the per-tenant code-mode + function. 0 (default) leaves the Lambda cold-started on first call; + > 0 keeps that many execution environments warm via AWS Lambda + provisioned concurrency, redeploying the function on change. + format: int32 + type: integer + createdAt: + format: date-time + type: + - string + - "null" + defaultClientLifecycle: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPClientLifecycleConfig' + - type: "null" + defaultToolClassification: + description: |- + Classification assigned to newly discovered tools that do not declare their + own classification (for example, read, write, or destructive). + enum: + - TOOL_CLASSIFICATION_UNSPECIFIED + - TOOL_CLASSIFICATION_READ + - TOOL_CLASSIFICATION_WRITE + - TOOL_CLASSIFICATION_DESTRUCTIVE + - TOOL_CLASSIFICATION_SENSITIVE + - TOOL_CLASSIFICATION_DANGEROUS type: string - title: Add App Resource Owner Request - type: object - x-speakeasy-name-override: AddAppResourceOwnerRequest - c1.api.app.v1.AddAppResourceOwnerResponse: - description: The empty response message for adding an owner to an app resource. - title: Add App Resource Owner Response + x-speakeasy-unknown-values: allow + discoveryInterval: + format: duration + type: + - string + - "null" + enabled: + deprecated: true + description: Legacy master switch. + type: boolean + preferCodeModeOverDirectTools: + description: |- + When true, the MCP server hides direct tool listings from capable clients + whenever the code-mode entrypoints (describe + execute) are registered, so + agents discover and invoke MCP tools through TypeScript code mode instead + of direct tool calls. A small allowlist of high-traffic direct tools + remains exposed. Incapable clients (e.g. SERVICE, EPHEMERAL) see the + normal tool set regardless. Defaults to false. + type: boolean + requireToolApproval: + description: |- + When true, newly discovered tools start in a pending state and must be + approved by an admin before they can be granted or invoked. + type: boolean + surfaceRequestableTools: + description: |- + When true, MCP discovery surfaces tools the caller could request (no + active grant, but reachable through a request catalog) alongside granted + tools — both on the classic tools/list path and inside the code-mode + describe entrypoint. Invoking such a tool opens (or reuses) an + access-request ticket and returns a request_created envelope instead of + executing. Defaults to true. + type: boolean + untrustedJudgeDisable: + description: |- + When true, the A2 (untrusted-content) judge is skipped and the untrusted + dimension always scores LOW. When false (the default), the judge scores + agent turn input and tool output for prompt-injection risk on every turn. + + Defaults to false, so the judge runs by default. + type: boolean + updatedAt: + format: date-time + type: + - string + - "null" + title: Ai Governance Settings type: object - x-speakeasy-name-override: AddAppResourceOwnerResponse - c1.api.app.v1.AddAutomationExclusionRequestInput: - description: The AddAutomationExclusionRequest message. + x-speakeasy-name-override: AIGovernanceSettings + c1.api.ai_governance.v1.AIGovernanceSettingsHistoryEntry: + description: |- + AIGovernanceSettingsHistoryEntry is a single change-history record capturing a + snapshot of the settings and who changed them. properties: - userIds: - description: The IDs of users to add to the automation exclusion list. - items: - type: string - nullable: true - readOnly: false - type: array - title: Add Automation Exclusion Request - type: object - x-speakeasy-name-override: AddAutomationExclusionRequest - c1.api.app.v1.AddAutomationExclusionResponse: - description: Empty response with a status code indicating success. - title: Add Automation Exclusion Response + metadata: + oneOf: + - $ref: '#/components/schemas/c1.api.history.v1.HistoryEntryMetadata' + - type: "null" + snapshot: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.AIGovernanceSettings' + - type: "null" + title: Ai Governance Settings History Entry + type: object + x-speakeasy-name-override: AIGovernanceSettingsHistoryEntry + c1.api.ai_governance.v1.AccessProfilesForTool: + description: AccessProfilesForTool groups access profiles by the MCP tool they are bound to. + properties: + accessProfiles: + description: Access profiles bound to this tool. + items: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfile' + type: + - array + - "null" + mcpToolId: + description: The MCP tool identifier. + type: string + title: Access Profiles For Tool + type: object + x-speakeasy-name-override: AccessProfilesForTool + c1.api.ai_governance.v1.GetAIGovernanceSettingsResponse: + description: GetAIGovernanceSettingsResponse contains the tenant's AI governance settings. + properties: + aiGovernanceSettings: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.AIGovernanceSettings' + - type: "null" + title: Get Ai Governance Settings Response + type: object + x-speakeasy-name-override: GetAIGovernanceSettingsResponse + c1.api.ai_governance.v1.GetTenantDefaultsResponse: + description: |- + GetTenantDefaultsResponse contains the tenant-default subset of AI governance + settings applied to newly registered MCP servers and tools. + properties: + requireToolApproval: + description: |- + Whether newly discovered tools require admin approval before they can be + granted or invoked. + type: boolean + title: Get Tenant Defaults Response type: object - x-speakeasy-name-override: AddAutomationExclusionResponse - c1.api.app.v1.AddManuallyManagedUsersRequestInput: - description: The AddManuallyManagedUsersRequest message. + x-speakeasy-name-override: GetTenantDefaultsResponse + c1.api.ai_governance.v1.ListAIGovernanceSettingsHistoryResponse: + description: |- + ListAIGovernanceSettingsHistoryResponse contains a page of AI governance + settings change-history entries, newest first. properties: - userIds: - description: The IDs of users to add as manually managed members. + list: + description: The page of history entries, newest first. items: - type: string - nullable: true - readOnly: false - type: array - title: Add Manually Managed Users Request + $ref: '#/components/schemas/c1.api.ai_governance.v1.AIGovernanceSettingsHistoryEntry' + type: + - array + - "null" + nextPageToken: + description: Pagination token for the next page, or empty if there are no more results. + type: string + title: List Ai Governance Settings History Response type: object - x-speakeasy-name-override: AddManuallyManagedUsersRequest - c1.api.app.v1.App: - description: The App object provides all of the details for an app, as well as some configuration. + x-speakeasy-name-override: ListAIGovernanceSettingsHistoryResponse + c1.api.ai_governance.v1.MCPAccessProfile: + description: MCPAccessProfile represents an admin-curated grouping of MCP tools. properties: - accessModel: - description: |- - How this app models access. Derived during uplift from the app's resource type traits. - Sparse ACL feature. - enum: - - APP_ACCESS_MODEL_UNSPECIFIED - - APP_ACCESS_MODEL_CLASSIC - - APP_ACCESS_MODEL_HYBRID - - APP_ACCESS_MODEL_SPARSE - readOnly: false + appEntitlementId: + description: The ID of the AppEntitlement created for this profile. type: string - x-speakeasy-unknown-values: allow - appAccountId: - description: The ID of the Account named by AccountName. - readOnly: true + appId: + description: App identifier (app that owns the connector). type: string - appAccountName: - description: The AccountName of the app. For example, AWS is AccountID, Github is Org Name, and Okta is Okta Subdomain. + connectorDisplayName: + description: |- + Display name of the connector this toolset belongs to. Computed read-only; + populated on every read. The + auto-maintained default toolsets share a display name across connectors, so + this is what tells two of them apart. readOnly: true type: string - appOwners: - description: The owners of the app. - items: - $ref: '#/components/schemas/c1.api.user.v1.User' - nullable: true - readOnly: true - type: array - appUserMapper: - $ref: '#/components/schemas/c1.api.app.v1.AppUserMapper' - certifyPolicyId: - description: The ID of the Certify Policy associated with this App. - readOnly: false + connectorId: + description: Connector identifier. type: string - connectorVersion: - description: The connectorVersion field. - format: uint32 - readOnly: false - type: integer createdAt: format: date-time - readOnly: true - type: string - defaultRequestCatalogId: - description: The ID for the default request catalog for this app. - readOnly: false - type: string + type: + - string + - "null" deletedAt: format: date-time - readOnly: true - type: string + type: + - string + - "null" description: - description: The app's description. - readOnly: false + description: Description of what access this profile grants. type: string displayName: - description: The app's display name. - readOnly: false - type: string - enableConnectorSourcedOwnership: - description: When enabled, resource ownership is sourced from the connector. - readOnly: false - type: boolean - fieldMask: - nullable: true - readOnly: true - type: string - grantPolicyId: - description: The ID of the Grant Policy associated with this App. - readOnly: false - type: string - iconUrl: - description: The URL of an icon to display for the app. - readOnly: false + description: Display name for the profile. type: string id: - description: The ID of the app. - readOnly: true - type: string - identityMatching: - description: The identityMatching field. - enum: - - APP_USER_IDENTITY_MATCHING_UNSPECIFIED - - APP_USER_IDENTITY_MATCHING_STRICT - - APP_USER_IDENTITY_MATCHING_DISPLAY_NAME - - APP_USER_IDENTITY_MATCHING_CUSTOM - readOnly: false - type: string - x-speakeasy-unknown-values: allow - instructions: - description: If you add instructions here, they will be shown to users in the access request form when requesting access for this app. - readOnly: false + description: Unique identifier for this access profile. type: string - isDirectory: - description: Specifies if the app is a directory. + requestable: + description: |- + Whether this toolset's backing entitlement is exposed in at least one + request catalog (i.e. can be requested). Computed read-only; populated on List. readOnly: true type: boolean - isManuallyManaged: - description: The isManuallyManaged field. - readOnly: false - type: boolean - logoUri: - description: The URL of a logo to display for the app. - readOnly: true - type: string - monthlyCostUsd: - description: The cost of an app per-seat, so that total cost can be calculated by the grant count. + toolCount: + description: The number of tools currently bound to this profile. format: int32 - readOnly: false type: integer - parentAppId: - description: The ID of the app that created this app, if any. - readOnly: true - type: string - revokePolicyId: - description: The ID of the Revoke Policy associated with this App. - readOnly: false - type: string - strictAccessEntitlementProvisioning: - description: The strictAccessEntitlementProvisioning field. - readOnly: false - type: boolean updatedAt: format: date-time - readOnly: true + type: + - string + - "null" + title: Mcp Access Profile + type: object + x-speakeasy-name-override: MCPAccessProfile + c1.api.ai_governance.v1.MCPAccessProfileServiceCreateRequestInput: + description: MCPAccessProfileServiceCreateRequest creates a new MCP access profile. + properties: + description: + description: Description of what access this profile grants. type: string - userCount: - description: The number of users with grants to this app. - format: int64 - readOnly: true + displayName: + description: Display name for the profile. type: string - title: App + title: Mcp Access Profile Service Create Request type: object - x-speakeasy-entity: App - x-speakeasy-name-override: App - c1.api.app.v1.AppAccessRequestDefaults: - description: | - The AppAccessRequestDefaults message. - - This message contains a oneof named max_grant_duration. Only a single field of the following list may be set at a time: - - durationUnset - - durationGrant + x-speakeasy-name-override: MCPAccessProfileServiceCreateRequest + c1.api.ai_governance.v1.MCPAccessProfileServiceCreateResponse: + description: MCPAccessProfileServiceCreateResponse returns the created MCP access profile. properties: - appId: - description: The app id for the app access request rule - readOnly: false + profile: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfile' + - type: "null" + title: Mcp Access Profile Service Create Response + type: object + x-speakeasy-name-override: MCPAccessProfileServiceCreateResponse + c1.api.ai_governance.v1.MCPAccessProfileServiceDeleteRequestInput: + description: MCPAccessProfileServiceDeleteRequest deletes an MCP access profile (soft delete). + title: Mcp Access Profile Service Delete Request + type: object + x-speakeasy-name-override: MCPAccessProfileServiceDeleteRequest + c1.api.ai_governance.v1.MCPAccessProfileServiceDeleteResponse: + description: MCPAccessProfileServiceDeleteResponse confirms deletion. + title: Mcp Access Profile Service Delete Response + type: object + x-speakeasy-name-override: MCPAccessProfileServiceDeleteResponse + c1.api.ai_governance.v1.MCPAccessProfileServiceGetByAppEntitlementIdResponse: + description: MCPAccessProfileServiceGetByAppEntitlementIdResponse returns the matched profile. + properties: + profile: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfile' + - type: "null" + title: Mcp Access Profile Service Get By App Entitlement Id Response + type: object + x-speakeasy-name-override: MCPAccessProfileServiceGetByAppEntitlementIdResponse + c1.api.ai_governance.v1.MCPAccessProfileServiceGetResponse: + description: MCPAccessProfileServiceGetResponse returns a single MCP access profile. + properties: + profile: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfile' + - type: "null" + title: Mcp Access Profile Service Get Response + type: object + x-speakeasy-name-override: MCPAccessProfileServiceGetResponse + c1.api.ai_governance.v1.MCPAccessProfileServiceListRequestableConnectorsResponse: + description: |- + MCPAccessProfileServiceListRequestableConnectorsResponse returns connector references + that have requestable MCP access profiles. + properties: + connectors: + description: List of connectors with requestable MCP access profiles. + items: + $ref: '#/components/schemas/c1.api.ai_governance.v1.RequestableConnector' + type: + - array + - "null" + title: Mcp Access Profile Service List Requestable Connectors Response + type: object + x-speakeasy-name-override: MCPAccessProfileServiceListRequestableConnectorsResponse + c1.api.ai_governance.v1.MCPAccessProfileServiceListResponse: + description: MCPAccessProfileServiceListResponse returns a list of MCP access profiles. + properties: + nextPageToken: + description: Token for next page. type: string - catalogIds: - description: The request catalog ids for the app access request rule. + profiles: + description: List of MCP access profiles. items: - type: string - nullable: true - readOnly: false - type: array - defaultsEnabled: - description: If true the app level request configuration will be applied to specified resource types. - readOnly: false - type: boolean - durationGrant: - format: duration - readOnly: false + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfile' + type: + - array + - "null" + title: Mcp Access Profile Service List Response + type: object + x-speakeasy-name-override: MCPAccessProfileServiceListResponse + c1.api.ai_governance.v1.MCPAccessProfileServiceSearchAccessProfilesResponse: + description: |- + MCPAccessProfileServiceSearchAccessProfilesResponse returns one page of + tenant-wide MCP access profiles. + properties: + nextPageToken: + description: Token for next page. type: string - durationUnset: - nullable: true - readOnly: false - type: object - emergencyGrantEnabled: - description: If emergency grants are enabled for this app access request rule. - readOnly: false - type: boolean - emergencyGrantPolicyId: - description: The policy id for the emergency grant policy. - readOnly: false + profiles: + description: The page of matching MCP access profiles. + items: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfile' + type: + - array + - "null" + title: Mcp Access Profile Service Search Access Profiles Response + type: object + x-speakeasy-name-override: MCPAccessProfileServiceSearchAccessProfilesResponse + c1.api.ai_governance.v1.MCPAccessProfileServiceSearchRequestableConnectorsResponse: + description: |- + MCPAccessProfileServiceSearchRequestableConnectorsResponse returns one page + of card-ready requestable-connector entries. + properties: + list: + description: The page of connector cards. + items: + $ref: '#/components/schemas/c1.api.ai_governance.v1.RequestableConnectorView' + type: + - array + - "null" + nextPageToken: + description: Token for next page. type: string - requestPolicyId: - description: The ID of the request policy to apply to entitlements matching this rule. - readOnly: false + title: Mcp Access Profile Service Search Requestable Connectors Response + type: object + x-speakeasy-name-override: MCPAccessProfileServiceSearchRequestableConnectorsResponse + c1.api.ai_governance.v1.MCPAccessProfileServiceUpdateRequestInput: + description: MCPAccessProfileServiceUpdateRequest updates an existing MCP access profile. + properties: + profile: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfile' + - type: "null" + updateMask: + type: + - string + - "null" + title: Mcp Access Profile Service Update Request + type: object + x-speakeasy-name-override: MCPAccessProfileServiceUpdateRequest + c1.api.ai_governance.v1.MCPAccessProfileServiceUpdateResponse: + description: MCPAccessProfileServiceUpdateResponse returns the updated MCP access profile. + properties: + profile: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfile' + - type: "null" + title: Mcp Access Profile Service Update Response + type: object + x-speakeasy-name-override: MCPAccessProfileServiceUpdateResponse + c1.api.ai_governance.v1.MCPAccessProfileToolBinding: + description: MCPAccessProfileToolBinding represents a binding between an access profile and a tool. + properties: + accessProfileId: + description: Access profile identifier. type: string - requestSchemaId: - description: The ID of the request schema to apply to entitlements matching this rule. - readOnly: false + appId: + description: App identifier. type: string - resourceTypeIds: - description: The app resource type ids for which the app access request defaults are applied. + connectorId: + description: Connector identifier. + type: string + createdAt: + format: date-time + type: + - string + - "null" + deletedAt: + format: date-time + type: + - string + - "null" + mcpToolId: + description: MCP tool identifier. + type: string + updatedAt: + format: date-time + type: + - string + - "null" + title: Mcp Access Profile Tool Binding + type: object + x-speakeasy-name-override: MCPAccessProfileToolBinding + c1.api.ai_governance.v1.MCPAccessProfileToolBindingHistoryEntry: + description: |- + MCPAccessProfileToolBindingHistoryEntry is a single change-history record + capturing the tool bindings added or removed in one transaction. + properties: + items: + description: The bindings added or removed in this change. items: - type: string - nullable: true - readOnly: false - type: array - state: - description: The last applied state of the app access request defaults. + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileToolBindingHistoryItem' + type: + - array + - "null" + metadata: + oneOf: + - $ref: '#/components/schemas/c1.api.history.v1.ListHistoryEntryMetadata' + - type: "null" + title: Mcp Access Profile Tool Binding History Entry + type: object + x-speakeasy-name-override: MCPAccessProfileToolBindingHistoryEntry + c1.api.ai_governance.v1.MCPAccessProfileToolBindingHistoryItem: + description: |- + MCPAccessProfileToolBindingHistoryItem is a single binding added or removed in + a transaction. + properties: + changeKind: + description: Whether this binding was added or removed. enum: - - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_UNSPECIFIED - - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_RUNNING - - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_SUCCESS - - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_FAILED - - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_CANCELING - - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_CANCEL_SUCCESS - - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_CANCEL_ERROR - readOnly: false + - LIST_CHANGE_KIND_UNSPECIFIED + - LIST_CHANGE_KIND_ADDED + - LIST_CHANGE_KIND_REMOVED type: string x-speakeasy-unknown-values: allow - title: App Access Request Defaults + listIndex: + description: |- + The identifier of the other side of the binding: the tool ID when viewing a + toolset's history, or the toolset ID when viewing a tool's history. + type: string + title: Mcp Access Profile Tool Binding History Item type: object - x-speakeasy-name-override: AppAccessRequestDefaults - c1.api.app.v1.AppAccessRequestDefaultsInput: - description: | - The AppAccessRequestDefaults message. - - This message contains a oneof named max_grant_duration. Only a single field of the following list may be set at a time: - - durationUnset - - durationGrant + x-speakeasy-name-override: MCPAccessProfileToolBindingHistoryItem + c1.api.ai_governance.v1.MCPAccessProfileToolBindingServiceCreateRequestInput: + description: MCPAccessProfileToolBindingServiceCreateRequest creates tool bindings. properties: - catalogIds: - description: The request catalog ids for the app access request rule. + mcpToolIds: + description: MCP tool IDs to bind to the access profile. items: type: string - nullable: true - readOnly: false - type: array - defaultsEnabled: - description: If true the app level request configuration will be applied to specified resource types. - readOnly: false - type: boolean - durationGrant: + type: + - array + - "null" + title: Mcp Access Profile Tool Binding Service Create Request + type: object + x-speakeasy-name-override: MCPAccessProfileToolBindingServiceCreateRequest + c1.api.ai_governance.v1.MCPAccessProfileToolBindingServiceCreateResponse: + description: MCPAccessProfileToolBindingServiceCreateResponse returns created bindings. + properties: + bindings: + description: Created tool bindings. + items: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileToolBinding' + type: + - array + - "null" + title: Mcp Access Profile Tool Binding Service Create Response + type: object + x-speakeasy-name-override: MCPAccessProfileToolBindingServiceCreateResponse + c1.api.ai_governance.v1.MCPAccessProfileToolBindingServiceDeleteRequestInput: + description: MCPAccessProfileToolBindingServiceDeleteRequest deletes tool bindings. + properties: + mcpToolIds: + description: MCP tool IDs to unbind from the access profile. + items: + type: string + type: + - array + - "null" + title: Mcp Access Profile Tool Binding Service Delete Request + type: object + x-speakeasy-name-override: MCPAccessProfileToolBindingServiceDeleteRequest + c1.api.ai_governance.v1.MCPAccessProfileToolBindingServiceDeleteResponse: + description: MCPAccessProfileToolBindingServiceDeleteResponse confirms deletion. + title: Mcp Access Profile Tool Binding Service Delete Response + type: object + x-speakeasy-name-override: MCPAccessProfileToolBindingServiceDeleteResponse + c1.api.ai_governance.v1.MCPAccessProfileToolBindingServiceGetAccessProfilesForToolsRequestInput: + description: |- + MCPAccessProfileToolBindingServiceGetAccessProfilesForToolsRequest requests + the access profiles bound to a batch of MCP tools. + properties: + mcpToolIds: + description: MCP tool IDs to look up. Sized to match frontend MultiGet batch size. + items: + type: string + type: + - array + - "null" + title: Mcp Access Profile Tool Binding Service Get Access Profiles For Tools Request + type: object + x-speakeasy-name-override: MCPAccessProfileToolBindingServiceGetAccessProfilesForToolsRequest + c1.api.ai_governance.v1.MCPAccessProfileToolBindingServiceGetAccessProfilesForToolsResponse: + description: |- + MCPAccessProfileToolBindingServiceGetAccessProfilesForToolsResponse returns + access profiles grouped by MCP tool. + properties: + accessProfilesForTools: + description: |- + One entry per requested MCP tool. Tools with no bindings are still + included with an empty access_profiles list, so callers can distinguish + "no bindings" from "tool not requested" in the multi-get cache. + items: + $ref: '#/components/schemas/c1.api.ai_governance.v1.AccessProfilesForTool' + type: + - array + - "null" + title: Mcp Access Profile Tool Binding Service Get Access Profiles For Tools Response + type: object + x-speakeasy-name-override: MCPAccessProfileToolBindingServiceGetAccessProfilesForToolsResponse + c1.api.ai_governance.v1.MCPAccessProfileToolBindingServiceListProfilesByToolHistoryResponse: + description: |- + Contains a page of change-history entries for the toolsets one tool has belonged to, + sorted newest first. + properties: + list: + description: The page of history entries, newest first. + items: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileToolBindingHistoryEntry' + type: + - array + - "null" + nextPageToken: + description: Pagination token for the next page, or empty if there are no more results. + type: string + title: Mcp Access Profile Tool Binding Service List Profiles By Tool History Response + type: object + x-speakeasy-name-override: MCPAccessProfileToolBindingServiceListProfilesByToolHistoryResponse + c1.api.ai_governance.v1.MCPAccessProfileToolBindingServiceListResponse: + description: MCPAccessProfileToolBindingServiceListResponse returns tool bindings. + properties: + bindings: + description: List of tool bindings. + items: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileToolBinding' + type: + - array + - "null" + nextPageToken: + description: Token for next page. + type: string + title: Mcp Access Profile Tool Binding Service List Response + type: object + x-speakeasy-name-override: MCPAccessProfileToolBindingServiceListResponse + c1.api.ai_governance.v1.MCPAccessProfileToolBindingServiceListToolsByProfileHistoryResponse: + description: |- + Contains a page of change-history entries for the tools bound to one toolset + sorted newest first. + properties: + list: + description: The page of history entries, newest first. + items: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileToolBindingHistoryEntry' + type: + - array + - "null" + nextPageToken: + description: Pagination token for the next page, or empty if there are no more results. + type: string + title: Mcp Access Profile Tool Binding Service List Tools By Profile History Response + type: object + x-speakeasy-name-override: MCPAccessProfileToolBindingServiceListToolsByProfileHistoryResponse + c1.api.ai_governance.v1.MCPClientLifecycleConfig: + description: |- + MCPClientLifecycleConfig controls how long inactive MCP clients remain + visible, when their access is closed, and when their records are removed. + Durations are measured from the client's last activity. Any duration left at + zero disables that transition. + properties: + inactivityCloseAfter: + format: duration + type: + - string + - "null" + inactivityHideAfter: + format: duration + type: + - string + - "null" + retentionDeleteAfter: format: duration - readOnly: false + type: + - string + - "null" + title: Mcp Client Lifecycle Config + type: object + x-speakeasy-name-override: MCPClientLifecycleConfig + c1.api.ai_governance.v1.MCPConnectionView: + description: |- + MCPConnectionView is the user-facing representation of a per-user MCP + server, including whether the calling user has an active credential. + Covers both OAuth2 authorization-code passthrough (where the user + connects via an IdP redirect) and bearer-token / custom-header + passthrough (where the user submits a value via SubmitUserCredential). + The frontend branches on auth_method to decide which flow to drive. + properties: + appId: + description: App that owns this MCP server. type: string - durationUnset: - nullable: true - readOnly: false - type: object - emergencyGrantEnabled: - description: If emergency grants are enabled for this app access request rule. - readOnly: false + authMethod: + description: |- + Auth method on the connector. Drives the FE connect-flow choice: + OAUTH2 → redirect via CreateAuthorizeURL; BEARER_TOKEN / CUSTOM_HEADER + → form dialog via SubmitUserCredential. + enum: + - MCP_SERVER_AUTH_METHOD_UNSPECIFIED + - MCP_SERVER_AUTH_METHOD_NONE + - MCP_SERVER_AUTH_METHOD_BEARER_TOKEN + - MCP_SERVER_AUTH_METHOD_OAUTH2 + - MCP_SERVER_AUTH_METHOD_CUSTOM_HEADER + - MCP_SERVER_AUTH_METHOD_AWS_SIGV4 + - MCP_SERVER_AUTH_METHOD_BASIC_AUTH + type: string + x-speakeasy-unknown-values: allow + authorizedAsEmail: + description: |- + Email of the external identity (from OAuth ID token). Empty for + non-OAuth connections (no upstream identity to surface). + type: string + authorizedAsName: + description: |- + Display name of the external identity (from OAuth ID token). Empty + for non-OAuth connections. + type: string + connected: + description: Whether the calling user has an active credential. type: boolean - emergencyGrantPolicyId: - description: The policy id for the emergency grant policy. - readOnly: false + connectedAt: + format: date-time + type: + - string + - "null" + connectorId: + description: MCP server connector ID. type: string - requestPolicyId: - description: The ID of the request policy to apply to entitlements matching this rule. - readOnly: false + description: + description: Description of the MCP server. type: string - requestSchemaId: - description: The ID of the request schema to apply to entitlements matching this rule. - readOnly: false + displayName: + description: Display name of the MCP server. type: string - resourceTypeIds: - description: The app resource type ids for which the app access request defaults are applied. - items: - type: string - nullable: true - readOnly: false - type: array - state: - description: The last applied state of the app access request defaults. + serverType: + description: Server type (hosted or external). enum: - - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_UNSPECIFIED - - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_RUNNING - - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_SUCCESS - - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_FAILED - - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_CANCELING - - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_CANCEL_SUCCESS - - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_CANCEL_ERROR - readOnly: false + - MCP_SERVER_TYPE_UNSPECIFIED + - MCP_SERVER_TYPE_HOSTED + - MCP_SERVER_TYPE_EXTERNAL type: string x-speakeasy-unknown-values: allow - title: App Access Request Defaults + title: Mcp Connection View type: object - x-speakeasy-name-override: AppAccessRequestDefaults - c1.api.app.v1.AppActionsServiceGenerateReportRequestInput: - description: Empty request body. Just placeholder for the generate app report request which uses URL values for input. - title: App Actions Service Generate Report Request - type: object - x-speakeasy-name-override: AppActionsServiceGenerateReportRequest - c1.api.app.v1.AppActionsServiceGenerateReportResponse: - description: Empty response body. Status code indicates success. - title: App Actions Service Generate Report Response - type: object - x-speakeasy-name-override: AppActionsServiceGenerateReportResponse - c1.api.app.v1.AppEntitlement: - description: | - The app entitlement represents one permission in a downstream App (SAAS) that can be granted. For example, GitHub Read vs GitHub Write. - - This message contains a oneof named max_grant_duration. Only a single field of the following list may be set at a time: - - durationUnset - - durationGrant + x-speakeasy-name-override: MCPConnectionView + c1.api.ai_governance.v1.MCPResource: + description: MCPResource represents metadata about an individual resource discovered from an MCP server. properties: - alias: - description: The alias of the app entitlement used by Cone. Also exact-match queryable. - readOnly: false + appEntitlementId: + description: Bound AppEntitlement created during sync. type: string appId: - description: The ID of the app that is associated with the app entitlement. - readOnly: false - type: string - appResourceId: - description: The ID of the app resource that is associated with the app entitlement - readOnly: false - type: string - appResourceTypeId: - description: The ID of the app resource type that is associated with the app entitlement - readOnly: false + description: App identifier (app that owns the connector). type: string - certifyPolicyId: - description: The ID of the policy that will be used for certify tickets related to the app entitlement. - readOnly: false + connectorId: + description: Connector identifier. type: string - complianceFrameworkValueIds: - description: The IDs of different compliance frameworks associated with this app entitlement ex (SOX, HIPAA, PCI, etc.) - items: - type: string - nullable: true - readOnly: false - type: array createdAt: format: date-time - readOnly: true - type: string - defaultValuesApplied: - description: Flag to indicate if app-level access request defaults have been applied to the entitlement - readOnly: false - type: boolean + type: + - string + - "null" deletedAt: format: date-time - readOnly: true - type: string - deprovisionerPolicy: - $ref: '#/components/schemas/c1.api.policy.v1.ProvisionPolicy' + type: + - string + - "null" description: - description: The description of the app entitlement. - readOnly: false - type: string - displayName: - description: The display name of the app entitlement. - readOnly: false - type: string - durationGrant: - format: duration - readOnly: false + description: Description from the MCP resource spec. type: string - durationUnset: - nullable: true - readOnly: false - type: object - emergencyGrantEnabled: - description: This enables tasks to be created in an emergency and use a selected emergency access policy. - readOnly: false - type: boolean - emergencyGrantPolicyId: - description: The ID of the policy that will be used for emergency access grant tasks. - readOnly: false + discoveryHash: + description: Hash of resource definition for change detection. type: string - externalId: + entitlementActive: description: |- - The upstream product's native external ID for this entitlement (e.g. an Okta group ID). - Populated from the connector's external ID during sync. + Whether the bound app entitlement exists and is not deleted. Computed + read-only; populated on Search only when the request had + include_grant_status = true; ignored on write. readOnly: true - type: string + type: boolean grantCount: - description: The amount of grants open for this entitlement + description: |- + Number of active grants on the bound app entitlement. Computed read-only; + populated on Search only when the request had include_grant_status = true; + ignored on write. format: int64 readOnly: true type: string - grantPolicyId: - description: The ID of the policy that will be used for grant tickets related to the app entitlement. - readOnly: false - type: string id: - description: The unique ID for the App Entitlement. - readOnly: true - type: string - isAutomationEnabled: - description: Flag to indicate whether automation (for adding users to entitlement based on rules) has been enabled. - readOnly: true - type: boolean - isManuallyManaged: - description: Flag to indicate if the app entitlement is manually managed. - readOnly: false - type: boolean - matchBatonId: - description: An identifier used to match this entitlement to a connector-synced entitlement during sync. - readOnly: false + description: Unique identifier for this MCP resource record. type: string - overrideAccessRequestsDefaults: - description: Flag to indicate if the app-level access request settings have been overridden for the entitlement - readOnly: false - type: boolean - provisionerPolicy: - $ref: '#/components/schemas/c1.api.policy.v1.ProvisionPolicy' - purpose: - description: The purpose of this entitlement (e.g., assignment, permission, ownership). + kind: + description: Whether this is a static resource or a URI template. enum: - - APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED - - APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT - - APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION - - APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP - readOnly: false + - MCP_RESOURCE_KIND_UNSPECIFIED + - MCP_RESOURCE_KIND_STATIC + - MCP_RESOURCE_KIND_TEMPLATE type: string x-speakeasy-unknown-values: allow - requestSchemaId: - description: The ID of the request schema associated with this app entitlement. - readOnly: false + lastDiscoveredAt: + format: date-time + type: + - string + - "null" + mimeType: + description: MIME type of the resource content, when known. type: string - revokePolicyId: - description: The ID of the policy that will be used for revoke tickets related to the app entitlement - readOnly: false + name: + description: Native MCP resource name (unique within an MCP server). type: string - riskLevelValueId: - description: The ID of the risk level assigned to this entitlement. - readOnly: false + state: + description: Resource approval/lifecycle state. + enum: + - MCP_RESOURCE_STATE_UNSPECIFIED + - MCP_RESOURCE_STATE_PENDING_REVIEW + - MCP_RESOURCE_STATE_APPROVED + - MCP_RESOURCE_STATE_DISABLED + - MCP_RESOURCE_STATE_REMOVED type: string - slug: - description: The slug is displayed as an oval next to the name in the frontend of C1, it tells you what permission the entitlement grants. See https://www.conductorone.com/docs/product/admin/entitlements/ - readOnly: false + x-speakeasy-unknown-values: allow + title: + description: Human-readable title from the MCP resource spec. type: string - sourceConnectorIds: - additionalProperties: - type: string - description: Map to tell us which connector the entitlement came from. - readOnly: false - type: object - systemBuiltin: - description: This field indicates if this is a system builtin entitlement. - readOnly: true - type: boolean updatedAt: format: date-time - readOnly: true + type: + - string + - "null" + uri: + description: Raw resource URI from MCP discovery (set for STATIC resources). type: string - userEditedMask: - nullable: true - readOnly: false + uriTemplate: + description: Raw RFC 6570 URI template from MCP discovery (set for TEMPLATE resources). type: string - title: App Entitlement + title: Mcp Resource type: object - x-speakeasy-entity: Custom App Entitlement - x-speakeasy-name-override: AppEntitlement - c1.api.app.v1.AppEntitlementAutomation: - description: | - The AppEntitlementAutomation message. - - This message contains a oneof named conditions. Only a single field of the following list may be set at a time: - - none - - entitlements - - cel - - basic + x-speakeasy-name-override: MCPResource + c1.api.ai_governance.v1.MCPResourceHistoryEntry: + description: MCPResourceHistoryEntry is one version of an MCP resource and its history metadata. properties: - appEntitlementId: - description: The unique ID for the App Entitlement. - readOnly: true + metadata: + oneOf: + - $ref: '#/components/schemas/c1.api.history.v1.HistoryEntryMetadata' + - type: "null" + snapshot: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPResource' + - type: "null" + title: Mcp Resource History Entry + type: object + x-speakeasy-name-override: MCPResourceHistoryEntry + c1.api.ai_governance.v1.MCPResourceServiceGetResponse: + description: MCPResourceServiceGetResponse returns a single MCP resource. + properties: + resource: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPResource' + - type: "null" + title: Mcp Resource Service Get Response + type: object + x-speakeasy-name-override: MCPResourceServiceGetResponse + c1.api.ai_governance.v1.MCPResourceServiceListHistoryResponse: + description: MCPResourceServiceListHistoryResponse returns MCP resource history entries. + properties: + list: + description: The page of history entries, newest first. + items: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPResourceHistoryEntry' + type: + - array + - "null" + nextPageToken: + description: Pagination token for the next page, or empty if there are no more results. type: string - appId: - description: The ID of the app that is associated with the app entitlement. - readOnly: true + title: Mcp Resource Service List History Response + type: object + x-speakeasy-name-override: MCPResourceServiceListHistoryResponse + c1.api.ai_governance.v1.MCPResourceServiceListResponse: + description: MCPResourceServiceListResponse returns a list of MCP resources. + properties: + nextPageToken: + description: Token for next page. type: string - basic: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomationRuleBasic' - cel: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomationRuleCEL' - createdAt: - format: date-time - readOnly: true + resources: + description: List of MCP resources. + items: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPResource' + type: + - array + - "null" + title: Mcp Resource Service List Response + type: object + x-speakeasy-name-override: MCPResourceServiceListResponse + c1.api.ai_governance.v1.MCPResourceServiceSearchRequestInput: + description: MCPResourceServiceSearchRequest searches MCP resources with filters. + properties: + includeGrantStatus: + description: |- + When true, the server populates the computed entitlement_active and + grant_count fields on each returned row (an extra batched entitlement + lookup per page). Off by default so callers that don't render grant + status don't pay for it. + type: boolean + kindFilter: + description: Optional filter by resource kind. An empty list means no filter. + items: + enum: + - MCP_RESOURCE_KIND_UNSPECIFIED + - MCP_RESOURCE_KIND_STATIC + - MCP_RESOURCE_KIND_TEMPLATE + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + pageSize: + description: Page size (max 100). + format: int32 + type: integer + pageToken: + description: Page token for pagination. type: string - deletedAt: - format: date-time - readOnly: true + query: + description: Optional text query matched against name, title, description, and uri. type: string - description: - description: The description of the app entitlement. - readOnly: false + sortBy: + description: Sort order for results. UNSPECIFIED sorts by resource name ascending. + enum: + - MCP_RESOURCE_SORT_BY_UNSPECIFIED + - MCP_RESOURCE_SORT_BY_NAME + - MCP_RESOURCE_SORT_BY_URI + - MCP_RESOURCE_SORT_BY_STATE + - MCP_RESOURCE_SORT_BY_UPDATED_AT type: string - displayName: - description: The display name of the app entitlement. - readOnly: false + x-speakeasy-unknown-values: allow + sortDirection: + description: Direction for sort_by. UNSPECIFIED means ascending. + enum: + - SORT_DIRECTION_UNSPECIFIED + - SORT_DIRECTION_ASC + - SORT_DIRECTION_DESC type: string - entitlements: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomationRuleEntitlement' - lastRunStatus: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomationLastRunStatus' - managedByRequestCatalogId: + x-speakeasy-unknown-values: allow + stateFilter: description: |- - When set, this automation is managed by an access profile's bundle automation. - Read-only. Not settable via this API. - readOnly: true - type: string - none: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomationRuleNone' - updatedAt: - format: date-time - readOnly: true + Optional filter by resource state. An empty list defaults to + PENDING_REVIEW, APPROVED, and DISABLED (REMOVED is hidden unless + explicitly requested). + items: + enum: + - MCP_RESOURCE_STATE_UNSPECIFIED + - MCP_RESOURCE_STATE_PENDING_REVIEW + - MCP_RESOURCE_STATE_APPROVED + - MCP_RESOURCE_STATE_DISABLED + - MCP_RESOURCE_STATE_REMOVED + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + title: Mcp Resource Service Search Request + type: object + x-speakeasy-name-override: MCPResourceServiceSearchRequest + c1.api.ai_governance.v1.MCPResourceServiceSearchResponse: + description: MCPResourceServiceSearchResponse returns matching MCP resources. + properties: + list: + description: Matching MCP resources. + items: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPResource' + type: + - array + - "null" + nextPageToken: + description: Token for next page. type: string - title: App Entitlement Automation + title: Mcp Resource Service Search Response type: object - x-speakeasy-entity: App Entitlement Automation - x-speakeasy-name-override: AppEntitlementAutomation - c1.api.app.v1.AppEntitlementAutomationLastRunStatus: - description: The AppEntitlementAutomationLastRunStatus message. + x-speakeasy-name-override: MCPResourceServiceSearchResponse + c1.api.ai_governance.v1.MCPResourceServiceUpdateRequestInput: + description: MCPResourceServiceUpdateRequest updates an existing MCP resource. properties: - errorMessage: - description: The errorMessage field. - readOnly: true + resource: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPResource' + - type: "null" + updateMask: + type: + - string + - "null" + title: Mcp Resource Service Update Request + type: object + x-speakeasy-name-override: MCPResourceServiceUpdateRequest + c1.api.ai_governance.v1.MCPResourceServiceUpdateResponse: + description: MCPResourceServiceUpdateResponse returns the updated MCP resource. + properties: + resource: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPResource' + - type: "null" + title: Mcp Resource Service Update Response + type: object + x-speakeasy-name-override: MCPResourceServiceUpdateResponse + c1.api.ai_governance.v1.MCPServerAuthAWSSigV4: + description: |- + MCPServerAuthAWSSigV4 provides AWS Signature Version 4 authentication. + Used for hosted MCP servers backed by AWS service impls (the + amazonaws_com_* catalog entries). Outbound requests from the gateway are + signed per-request with the supplied access key + secret, against the + service+region scope sourced from the impl bundle's connect.auth. + + Only the SHARED token-sharing model is supported — every caller in the + tenant signs with the same admin-configured credentials. Per-user AWS + (STS / Web Identity / IAM Identity Center) is a separate future surface. + properties: + accessKeyId: + description: |- + AWS access key ID (the IAM user / role's public identifier, e.g. + "AKIAIOSFODNN7EXAMPLE"). Persisted in plaintext form; the secret half + is sealed. type: string - lastCompletedAt: - format: date-time - readOnly: true + secretAccessKey: + description: |- + AWS secret access key. Sealed by the backend on write; never returned on + read. type: string - status: - description: The status field. - enum: - - APP_ENTITLEMENT_AUTOMATION_RUN_STATUS_UNSPECIFIED - - APP_ENTITLEMENT_AUTOMATION_RUN_STATUS_SUCCESS - - APP_ENTITLEMENT_AUTOMATION_RUN_STATUS_FAILED - - APP_ENTITLEMENT_AUTOMATION_RUN_STATUS_IN_PROGRESS - readOnly: true + sessionToken: + description: |- + Optional AWS session token. Set only when the credential is a + short-lived STS temporary credential. Static IAM-user keys leave this + empty. type: string - x-speakeasy-unknown-values: allow - title: App Entitlement Automation Last Run Status + title: Mcp Server Auth Aws Sig V 4 type: object - x-speakeasy-name-override: AppEntitlementAutomationLastRunStatus - c1.api.app.v1.AppEntitlementAutomationRuleBasic: - description: The AppEntitlementAutomationRuleBasic message. - nullable: true + x-speakeasy-name-override: MCPServerAuthAWSSigV4 + c1.api.ai_governance.v1.MCPServerAuthBasicAuth: + description: |- + MCPServerAuthBasicAuth provides HTTP Basic authentication (RFC 7617). + The gateway encodes `username:password` as base64 and sends it as + `Authorization: Basic ` on every outbound request. properties: - expression: - description: The expression field. - readOnly: false + password: + description: |- + Password. Sealed before storage; never returned on read. + ignore_empty for the same PER_USER reason as username above. type: string - title: App Entitlement Automation Rule Basic + username: + description: |- + Username. Sent in plaintext over TLS; stored unsealed on the + connector config (mirrors how MCPAuthOAuth2.client_id is plaintext). + ignore_empty mirrors MCPServerAuthBearerToken.token — PER_USER admin + submits don't carry a username; the handler enforces non-empty for + SHARED. + type: string + title: Mcp Server Auth Basic Auth type: object - x-speakeasy-name-override: AppEntitlementAutomationRuleBasic - c1.api.app.v1.AppEntitlementAutomationRuleCEL: - description: The AppEntitlementAutomationRuleCEL message. - nullable: true + x-speakeasy-name-override: MCPServerAuthBasicAuth + c1.api.ai_governance.v1.MCPServerAuthBearerToken: + description: MCPServerAuthBearerToken provides bearer token authentication. properties: - expression: - description: The expression field. - readOnly: false + token: + description: The bearer token value. type: string - title: App Entitlement Automation Rule Cel + title: Mcp Server Auth Bearer Token type: object - x-speakeasy-name-override: AppEntitlementAutomationRuleCEL - c1.api.app.v1.AppEntitlementAutomationRuleEntitlement: - description: The AppEntitlementAutomationRuleEntitlement message. - nullable: true + x-speakeasy-name-override: MCPServerAuthBearerToken + c1.api.ai_governance.v1.MCPServerAuthCustomHeader: + description: MCPServerAuthCustomHeader provides custom header authentication. properties: - entitlementRefs: - description: The entitlementRefs field. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - title: App Entitlement Automation Rule Entitlement - type: object - x-speakeasy-name-override: AppEntitlementAutomationRuleEntitlement - c1.api.app.v1.AppEntitlementAutomationRuleNone: - description: The AppEntitlementAutomationRuleNone message. - nullable: true - title: App Entitlement Automation Rule None + headerName: + description: HTTP header name. + type: string + headerValue: + description: HTTP header value. + type: string + title: Mcp Server Auth Custom Header type: object - x-speakeasy-name-override: AppEntitlementAutomationRuleNone - c1.api.app.v1.AppEntitlementExpandMask: - description: The app entitlement expand mask allows the user to get additional information when getting responses containing app entitlement views. + x-speakeasy-name-override: MCPServerAuthCustomHeader + c1.api.ai_governance.v1.MCPServerAuthGoogleServiceAccount: + description: |- + MCPServerAuthGoogleServiceAccount provides Google service account authentication. + The admin uploads the raw JSON key file from the GCP console; the backend parses + it to extract the private key, client email (issuer), and token URI. properties: - paths: - description: Array of strings to describe which items to expand on the return value. Can be any combination of "*", "app_id", "app_resource_type_id", or "app_resource_id". + credentialsJson: + description: Raw JSON content of the Google service account key file. + type: string + scopes: + description: OAuth2 scopes to request when exchanging the JWT for an access token. items: type: string - nullable: true - readOnly: false - type: array - title: App Entitlement Expand Mask + type: + - array + - "null" + title: Mcp Server Auth Google Service Account type: object - x-speakeasy-name-override: AppEntitlementExpandMask - c1.api.app.v1.AppEntitlementProxy: - description: An entitlement proxy binding that defines a hierarchical relationship between two entitlements. + x-speakeasy-name-override: MCPServerAuthGoogleServiceAccount + c1.api.ai_governance.v1.MCPServerAuthNone: + description: MCPServerAuthNone indicates no authentication is required. + title: Mcp Server Auth None + type: object + x-speakeasy-name-override: MCPServerAuthNone + c1.api.ai_governance.v1.MCPServerAuthOAuth2: + description: MCPServerAuthOAuth2 provides OAuth2 client credentials or JWT Bearer authentication. properties: - createdAt: - format: date-time - readOnly: true + authorizeUrl: + description: OAuth2 authorization endpoint URL (for service and passthrough modes). type: string - deletedAt: - format: date-time - readOnly: true + clientId: + description: OAuth2 client identifier. Required for CLIENT_CREDENTIALS mode; not used for JWT_BEARER mode. type: string - disabledAt: - format: date-time - readOnly: false + clientIdMode: + description: |- + How the client_id is acquired for authorization_code mode. When DCR (or + CIMD), client_id / client_secret are not required on input — the gateway + registers itself with the authorization server during Register and injects + the result. UNSPECIFIED means manual (admin-entered client_id). + enum: + - MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_UNSPECIFIED + - MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_DCR + - MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_CIMD type: string - dstAppEntitlementId: - description: The ID of the destination (child) entitlement. - readOnly: false + x-speakeasy-unknown-values: allow + clientSecret: + description: OAuth2 client secret. Required for CLIENT_CREDENTIALS mode; not used for JWT_BEARER mode. type: string - dstAppId: - description: The ID of the app that owns the destination entitlement. - readOnly: false + codeChallengeMethodsSupported: + description: |- + PKCE code challenge methods supported by the authorization server, as + returned by DiscoverOIDCEndpoints. Optional registration-time shortcut + that lets the gateway skip the per-flow xjwks.Cache lookup. Capped at + 8 entries because RFC 7636 / RFC 8414 only define a tiny enumerated + set ("plain", "S256") and we don't want to be a dumping ground for + arbitrary strings the IdP might emit. + items: + type: string + type: + - array + - "null" + extraAuthorizeParams: + additionalProperties: + type: string + description: |- + Static query params appended to the authorize URL on top of the standard + OAuth2 fields (e.g. Notion "owner=user"). Applies to authorization_code + mode only. Inherited from MCPServerCatalogAuthMode.extra_authorize_params + at registration time. + type: object + extraTokenParams: + additionalProperties: + type: string + description: |- + Extra body params POSTed to the token endpoint on top of the standard + OAuth2 fields. Provider-specific (e.g. Auth0/Wiz "audience"). Applies + to client_credentials mode only; other modes ignore it. Inherited from + MCPServerCatalogAuthMode.extra_token_params at registration time; + admins can add, edit, or remove entries on the edit form. + type: object + issuerUrl: + description: |- + OIDC issuer URL (no trailing path). Used as the cache key for live + PKCE-methods discovery via xjwks.Cache on the gateway. Populated by + the Discover button or hand-entered alongside authorize_url/token_url. + Required for SERVICE / PASSTHROUGH modes. type: string - implicit: - description: If true, the binding does not exist yet and is inferred from the entitlements of the parent app. - nullable: true - readOnly: false - type: boolean - srcAppEntitlementId: - description: The ID of the source (parent) entitlement. - readOnly: false + jwtAudience: + description: Audience claim for the JWT. When empty, token_url is used as the audience. type: string - srcAppId: - description: The ID of the app that owns the source entitlement. - readOnly: false + jwtIssuer: + description: The service account email / issuer claim. type: string - systemBuiltin: - description: If true, this binding was created by the system and cannot be removed by the user. - readOnly: false - type: boolean - updatedAt: - format: date-time - readOnly: true + jwtPrivateKey: + description: PEM-encoded RSA private key (plaintext in API; sealed before storage). type: string - title: App Entitlement Proxy - type: object - x-speakeasy-entity: App Entitlement Proxy Binding - x-speakeasy-name-override: AppEntitlementProxy - c1.api.app.v1.AppEntitlementProxyExpandMask: - description: The AppEntitlementProxyExpandMask message. - properties: - paths: - description: The paths field. + jwtSubject: + description: Optional subject for domain-wide delegation. + type: string + mode: + description: OAuth2 mode. + enum: + - MCP_SERVER_AUTH_OAUTH2_MODE_UNSPECIFIED + - MCP_SERVER_AUTH_OAUTH2_MODE_SERVICE + - MCP_SERVER_AUTH_OAUTH2_MODE_PASSTHROUGH + - MCP_SERVER_AUTH_OAUTH2_MODE_CLIENT_CREDENTIALS + - MCP_SERVER_AUTH_OAUTH2_MODE_JWT_BEARER + - MCP_SERVER_AUTH_OAUTH2_MODE_GOOGLE_SERVICE_ACCOUNT + - MCP_SERVER_AUTH_OAUTH2_MODE_AUTHORIZATION_CODE + type: string + x-speakeasy-unknown-values: allow + pkce: + description: |- + PKCE behavior for authorization_code mode: "discover" (or empty), + "s256", or "disabled". Inherited from MCPServerCatalogAuthMode.pkce. + type: string + scopes: + description: OAuth2 scopes to request. items: type: string - nullable: true - readOnly: false - type: array - title: App Entitlement Proxy Expand Mask + type: + - array + - "null" + scopesSupported: + description: |- + Full list of OAuth scopes the IdP advertises in its discovery doc + (`scopes_supported`). Distinct from the `scopes` field above, which is + the curated subset the admin wants requested on the authorize URL. + Captured at registration time so the edit form can offer autocomplete + suggestions on the Scopes input without forcing the admin to re-run + Discover. Capped at 256 because providers like Salesforce return ~36; + 256 leaves headroom without inviting abuse. + items: + type: string + type: + - array + - "null" + tokenEndpointAuthMethod: + description: |- + RFC 7591 token_endpoint_auth_method the authorization server assigned. + Read-only / ignored on write: server-set from the DCR result, never copied + from the API request into the stored model. Surfaced for display only. + type: string + tokenUrl: + description: |- + OAuth2 token endpoint URL. Required for all modes when creating or + rotating; uses ignore_empty so partial UpdateCredentials calls that omit + this path pass protovalidate. The handler enforces required-on-create. + type: string + title: Mcp Server Auth O Auth 2 type: object - x-speakeasy-name-override: AppEntitlementProxyExpandMask - c1.api.app.v1.AppEntitlementProxyView: - description: The AppEntitlementProxyView message. + x-speakeasy-name-override: MCPServerAuthOAuth2 + c1.api.ai_governance.v1.MCPServerCatalogAuthMode: + description: |- + MCPServerCatalogAuthMode describes a single authentication method an impl + supports. Multiple modes mean the user/admin can pick at registration time + (e.g., GitHub: bearer PAT or OAuth2). Sourced from the bundle's + connect.supported_auth_modes via the model-side mirror. properties: - appProxyEntitlement: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementProxy' - dstAppEntitlementPath: - description: The dstAppEntitlementPath field. - readOnly: false + authMethod: + description: Authentication method enum. UNSPECIFIED entries are dropped on the way out. + enum: + - MCP_SERVER_AUTH_METHOD_UNSPECIFIED + - MCP_SERVER_AUTH_METHOD_NONE + - MCP_SERVER_AUTH_METHOD_BEARER_TOKEN + - MCP_SERVER_AUTH_METHOD_OAUTH2 + - MCP_SERVER_AUTH_METHOD_CUSTOM_HEADER + - MCP_SERVER_AUTH_METHOD_AWS_SIGV4 + - MCP_SERVER_AUTH_METHOD_BASIC_AUTH type: string - dstAppPath: - description: The dstAppPath field. - readOnly: false + x-speakeasy-unknown-values: allow + authStyle: + description: |- + Credential placement on the OAuth2 token request. Allowed values: + "in_params" (form body), "in_header" (HTTP Basic), or empty + (autodetect). Set by the impl bundle and shown read-only on the form. type: string - srcAppEntitlementPath: - description: The srcAppEntitlementPath field. - readOnly: false + authorizeUrl: + description: OAuth2 authorization endpoint URL. Empty for non-OAuth2 methods. type: string - srcAppPath: - description: The srcAppPath field. - readOnly: false + clientIdMode: + description: |- + How the OAuth2 client_id is acquired for this mode. Set by the impl bundle + and shown read-only on the form. authorization_code grant only. + enum: + - MCP_SERVER_CATALOG_CLIENT_ID_MODE_UNSPECIFIED + - MCP_SERVER_CATALOG_CLIENT_ID_MODE_MANUAL + - MCP_SERVER_CATALOG_CLIENT_ID_MODE_DCR + - MCP_SERVER_CATALOG_CLIENT_ID_MODE_CIMD type: string - title: App Entitlement Proxy View - type: object - x-speakeasy-name-override: AppEntitlementProxyView - c1.api.app.v1.AppEntitlementRef: - description: The AppEntitlementRef message. - properties: - appId: - description: The appId field. - readOnly: false + x-speakeasy-unknown-values: allow + credentialUrl: + description: |- + Documentation URL where the user can obtain a credential for this method + (e.g., a link to the SaaS app's "create API token" page). Empty if not set. type: string - id: - description: The id field. - readOnly: false + description: + description: |- + Optional admin-facing hint describing the use case this mode targets + (e.g. "Per user OAuth option"). type: string - title: App Entitlement Ref - type: object - x-speakeasy-name-override: AppEntitlementRef - c1.api.app.v1.AppEntitlementSearchServiceSearchGrantsRequest: - description: The AppEntitlementSearchServiceSearchGrantsRequest message. - properties: - appIds: - description: Search for grants contained in any of these apps. + extraAuthorizeParams: + additionalProperties: + type: string + description: |- + Static query params the bundle declares for the authorize URL + (e.g. Notion `owner=user`). authorization_code grant only. Surfaced + read-only so the form can pre-populate its editable copy. + type: object + extraTokenParams: + additionalProperties: + type: string + description: |- + Extra body params the bundle declares for the OAuth2 token request + (e.g. Auth0/Wiz `audience`). Surfaced read-only so the registration + form can pre-populate its editable copy on MCPServerAuthOAuth2. + type: object + header: + description: |- + Header name for api_key / custom-header methods. Prefills the form's + header-name field. Empty falls back to the C1 default. + type: string + issuerUrl: + description: OAuth2 issuer URL (used for OIDC discovery). Empty when not an OIDC issuer. + type: string + jwtAudience: + description: JWT-bearer assertion audience when it differs from token_url. + type: string + oauth2Grant: + description: |- + OAuth2 grant for this mode. Prefills the form's OAuth2 mode selection. + Raw bundle string: "client_credentials", "authorization_code", + "jwt_bearer", "google_service_account", or empty (infer from authorize_url). + type: string + optionalScopes: + description: |- + Optional (opt-in) OAuth2 scopes from the config's optional_scopes. + Disjoint from `scopes` and not pre-selected. Empty for non-OAuth2 methods. items: type: string - nullable: true - readOnly: false - type: array - appUserIds: - description: Search for grants that are granted to any of these app user ids. + type: + - array + - "null" + passthrough: + description: |- + Per-user OAuth: each user authorizes individually instead of sharing a + service-level credential. Only meaningful for OAuth2. + type: boolean + pkce: + description: |- + PKCE behavior for authorization_code: "discover" (or empty), "s256", or + "disabled". Set by the impl bundle and shown read-only on the form. + type: string + scopes: + description: OAuth2 scopes requested by this method. Empty for non-OAuth2 methods. items: type: string - nullable: true - readOnly: false - type: array - entitlementRefs: - description: Search for grants of an entitlement + type: + - array + - "null" + tokenUrl: + description: OAuth2 token endpoint URL. Empty for non-OAuth2 methods. + type: string + title: Mcp Server Catalog Auth Mode + type: object + x-speakeasy-name-override: MCPServerCatalogAuthMode + c1.api.ai_governance.v1.MCPServerCatalogConfigField: + description: MCPServerCatalogConfigField describes a single extra configuration field for an MCP server catalog entry. + properties: + default: + description: Default value the registration form prefills. Ignored when secret. + type: string + description: + description: Help text describing the field. + type: string + displayName: + description: Human-readable label for the field. + type: string + name: + description: Machine-readable field name (used as the map key in config_fields). + type: string + placeholder: + description: Placeholder text shown in an empty input. + type: string + required: + description: Whether this field must be provided. + type: boolean + secret: + description: Whether the field value should be treated as a secret (e.g. masked in UI). + type: boolean + title: Mcp Server Catalog Config Field + type: object + x-speakeasy-name-override: MCPServerCatalogConfigField + c1.api.ai_governance.v1.MCPServerCatalogConfigSchema: + description: MCPServerCatalogConfigSchema describes extra configuration fields beyond auth. + properties: + fields: + description: The fields field. items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - entitlementSlugs: - description: Filter for entitlements whose slug is in this list (e.g. "enrollment" for access profiles) + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerCatalogConfigField' + type: + - array + - "null" + title: Mcp Server Catalog Config Schema + type: object + x-speakeasy-name-override: MCPServerCatalogConfigSchema + c1.api.ai_governance.v1.MCPServerCatalogEntry: + description: MCPServerCatalogEntry describes a supported MCP server in the catalog. + properties: + authModes: + description: |- + Authentication methods this server supports. The first entry is the + catalog-prescribed default. Empty when the impl declares no auth. + items: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerCatalogAuthMode' + type: + - array + - "null" + baseUrl: + description: |- + Connection base URL declared by the impl. May be a ${VAR} template over + config_schema fields (e.g. "https://${workspace}.app.n8n.cloud/mcp-server/http"); + the UI substitutes the admin's config-field values to preview the resolved + endpoint. Empty when the impl declares no base URL. + type: string + channel: + description: Release channel for this catalog entry. + enum: + - MCP_SERVER_CATALOG_CHANNEL_UNSPECIFIED + - MCP_SERVER_CATALOG_CHANNEL_STABLE + - MCP_SERVER_CATALOG_CHANNEL_BETA + - MCP_SERVER_CATALOG_CHANNEL_ALPHA + type: string + x-speakeasy-unknown-values: allow + configSchema: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerCatalogConfigSchema' + - type: "null" + defaultAuthMethod: + deprecated: true + description: 'Deprecated: read auth_modes instead.' + enum: + - MCP_SERVER_AUTH_METHOD_UNSPECIFIED + - MCP_SERVER_AUTH_METHOD_NONE + - MCP_SERVER_AUTH_METHOD_BEARER_TOKEN + - MCP_SERVER_AUTH_METHOD_OAUTH2 + - MCP_SERVER_AUTH_METHOD_CUSTOM_HEADER + - MCP_SERVER_AUTH_METHOD_AWS_SIGV4 + - MCP_SERVER_AUTH_METHOD_BASIC_AUTH + type: string + x-speakeasy-unknown-values: allow + defaultAuthorizeUrl: + deprecated: true + description: 'Deprecated: read the OAUTH2 entry''s authorize_url from auth_modes instead.' + type: string + defaultScopes: + deprecated: true + description: 'Deprecated: read the OAUTH2 entry''s scopes from auth_modes instead.' items: type: string - nullable: true - readOnly: false - type: array - expandMask: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementExpandMask' - pageSize: - description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) - format: int32 - readOnly: false - type: integer - pageToken: - description: The pageToken field. - readOnly: false + type: + - array + - "null" + defaultTokenUrl: + deprecated: true + description: 'Deprecated: read the OAUTH2 entry''s token_url from auth_modes instead.' type: string - purpose: - description: Filter for entitlements with these purposes (e.g., ASSIGNMENT for membership entitlements) + defaultToolPrefix: + description: |- + Curated default tool-name prefix an admin gets when they register this + catalog entry and set no custom prefix: the impl's declared server_prefix, + else its service_name. Shown as a placeholder in the create wizard's tool + prefix field. Empty when the impl declares no curated default. Mirrors the + read-only default_tool_prefix on MCPServerView surfaced in the edit flow. + type: string + description: + description: Short description of what the MCP server does. + type: string + displayName: + description: Human-readable display name. + type: string + iconUrl: + description: Icon URL (e.g. "/static/app-icons/datadog.svg"). + type: string + id: + description: Opaque catalog entry identifier (27-character KSUID). + type: string + maturity: + description: Implementation maturity level. + enum: + - MCP_SERVER_CATALOG_MATURITY_UNSPECIFIED + - MCP_SERVER_CATALOG_MATURITY_STUB + - MCP_SERVER_CATALOG_MATURITY_GENERATED + - MCP_SERVER_CATALOG_MATURITY_VERIFIED + - MCP_SERVER_CATALOG_MATURITY_CURATED + type: string + x-speakeasy-unknown-values: allow + scope: + description: Implementation scope classification. + enum: + - MCP_SERVER_CATALOG_SCOPE_UNSPECIFIED + - MCP_SERVER_CATALOG_SCOPE_BUSINESS + - MCP_SERVER_CATALOG_SCOPE_EXCLUDED + - MCP_SERVER_CATALOG_SCOPE_UNDETERMINED + type: string + x-speakeasy-unknown-values: allow + serviceName: + description: |- + mcpgw impl service name (e.g., "datadog", "github"). Stable across + display-name changes; suitable for grouping entries that share an impl + and for matching catalog entries to a host app. For tunneled HOSTED + registrations the appliance must announce a HOSTED port whose Name field + matches this string — that's how the wormhole DialByName at runtime + resolves the right port on the appliance. + type: string + stable: + deprecated: true + description: |- + Whether this catalog entry is stable (true) or early access (false/default). + Deprecated: use channel instead. + type: boolean + supportedOauth2Modes: + description: |- + OAuth2 modes supported by this server. When non-empty, the frontend shows + only these modes in the dropdown. When empty, all modes are shown. items: enum: - - APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED - - APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT - - APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION - - APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP + - MCP_SERVER_AUTH_OAUTH2_MODE_UNSPECIFIED + - MCP_SERVER_AUTH_OAUTH2_MODE_SERVICE + - MCP_SERVER_AUTH_OAUTH2_MODE_PASSTHROUGH + - MCP_SERVER_AUTH_OAUTH2_MODE_CLIENT_CREDENTIALS + - MCP_SERVER_AUTH_OAUTH2_MODE_JWT_BEARER + - MCP_SERVER_AUTH_OAUTH2_MODE_GOOGLE_SERVICE_ACCOUNT + - MCP_SERVER_AUTH_OAUTH2_MODE_AUTHORIZATION_CODE type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - resourceIds: - description: Search for grants within a resource. + type: + - array + - "null" + title: Mcp Server Catalog Entry + type: object + x-speakeasy-name-override: MCPServerCatalogEntry + c1.api.ai_governance.v1.MCPServerExternalConfig: + description: | + MCPServerExternalConfig configures an external MCP server accessed via HTTP transport. + The server is routed through the MCP gateway for credential decryption. + + This message contains a oneof named auth_config. Only a single field of the following list may be set at a time: + - none + - bearerToken + - oauth2 + - customHeader + - basicAuth + properties: + basicAuth: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerAuthBasicAuth' + - type: "null" + bearerToken: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerAuthBearerToken' + - type: "null" + customHeader: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerAuthCustomHeader' + - type: "null" + none: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerAuthNone' + - type: "null" + oauth2: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerAuthOAuth2' + - type: "null" + requireToolApproval: + description: |- + Optional per-server override for tool auto-approval. See + MCPServerView.require_tool_approval for semantics. + enum: + - OPTIONAL_BOOL_UNSPECIFIED + - OPTIONAL_BOOL_TRUE + - OPTIONAL_BOOL_FALSE + type: string + x-speakeasy-unknown-values: allow + tokenSharing: + description: |- + Token sharing model. SHARED = admin authorizes once; PER_USER = each user + authenticates independently. PER_USER is supported for OAuth2 + authorization_code, bearer_token, custom_header, and basic_auth. Defaults + to SHARED at runtime. + enum: + - MCP_SERVER_TOKEN_SHARING_UNSPECIFIED + - MCP_SERVER_TOKEN_SHARING_SHARED + - MCP_SERVER_TOKEN_SHARING_PER_USER + type: string + x-speakeasy-unknown-values: allow + transportType: + description: Transport type for the MCP connection. + enum: + - MCP_SERVER_TRANSPORT_TYPE_UNSPECIFIED + - MCP_SERVER_TRANSPORT_TYPE_STREAMABLE_HTTP + - MCP_SERVER_TRANSPORT_TYPE_SSE + type: string + x-speakeasy-unknown-values: allow + url: + description: The HTTP endpoint URL of the external MCP server (HTTPS required). + type: string + title: Mcp Server External Config + type: object + x-speakeasy-name-override: MCPServerExternalConfig + c1.api.ai_governance.v1.MCPServerHostedConfig: + description: | + MCPServerHostedConfig configures a hosted MCP server backed by the MCP gateway. + + This message contains a oneof named auth_config. Only a single field of the following list may be set at a time: + - none + - bearerToken + - oauth2 + - customHeader + - googleServiceAccount + - awsSigv4 + - basicAuth + properties: + awsSigv4: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerAuthAWSSigV4' + - type: "null" + basicAuth: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerAuthBasicAuth' + - type: "null" + bearerToken: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerAuthBearerToken' + - type: "null" + configFields: + additionalProperties: + type: string + description: |- + Extra config field values keyed by catalog config field name. + Sent as plaintext over TLS; the backend seals secret fields based on catalog schema. + type: object + customHeader: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerAuthCustomHeader' + - type: "null" + googleServiceAccount: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerAuthGoogleServiceAccount' + - type: "null" + mcpServerCatalogId: + description: |- + Opaque catalog entry ID (27-character KSUID). Obtain valid IDs from the + ListCatalog or GetCatalog RPCs. + type: string + none: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerAuthNone' + - type: "null" + oauth2: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerAuthOAuth2' + - type: "null" + requireToolApproval: + description: |- + Optional per-server override for tool auto-approval. See + MCPServerView.require_tool_approval for semantics. + enum: + - OPTIONAL_BOOL_UNSPECIFIED + - OPTIONAL_BOOL_TRUE + - OPTIONAL_BOOL_FALSE + type: string + x-speakeasy-unknown-values: allow + sourceAppId: + description: Source app ID (optional, for connector-backed servers). + type: string + tokenSharing: + description: |- + Token sharing model for the configured auth method. SHARED means the + admin authorizes once and the credential applies to every tool call; + PER_USER means each user authenticates independently. PER_USER is + supported for OAuth2 authorization-code, bearer_token, custom_header, + and basic_auth methods; sending PER_USER alongside any other auth + method is rejected with InvalidArgument. + enum: + - MCP_SERVER_TOKEN_SHARING_UNSPECIFIED + - MCP_SERVER_TOKEN_SHARING_SHARED + - MCP_SERVER_TOKEN_SHARING_PER_USER + type: string + x-speakeasy-unknown-values: allow + title: Mcp Server Hosted Config + type: object + x-speakeasy-name-override: MCPServerHostedConfig + c1.api.ai_governance.v1.MCPServerSearchWithToolCountResult: + description: MCPServerSearchWithToolCountResult wraps a server view with per-state tool counts. + properties: + mcpServer: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerView' + - type: "null" + toolCount: + description: The toolCount field. + format: int64 + type: string + title: Mcp Server Search With Tool Count Result + type: object + x-speakeasy-name-override: MCPServerSearchWithToolCountResult + c1.api.ai_governance.v1.MCPServerServiceDeleteRequestInput: + description: MCPServerServiceDeleteRequest soft-deletes an MCP server. + title: Mcp Server Service Delete Request + type: object + x-speakeasy-name-override: MCPServerServiceDeleteRequest + c1.api.ai_governance.v1.MCPServerServiceDeleteResponse: + description: MCPServerServiceDeleteResponse confirms deletion. + title: Mcp Server Service Delete Response + type: object + x-speakeasy-name-override: MCPServerServiceDeleteResponse + c1.api.ai_governance.v1.MCPServerServiceDiscoverOIDCEndpointsRequest: + description: |- + MCPServerServiceDiscoverOIDCEndpointsRequest fetches the OpenID Connect discovery + document for a given issuer URL. + properties: + issuerUrl: + description: |- + The issuer URL (e.g. "https://accounts.google.com"). The server appends + /.well-known/openid-configuration to this URL. + type: string + title: Mcp Server Service Discover Oidc Endpoints Request + type: object + x-speakeasy-name-override: MCPServerServiceDiscoverOIDCEndpointsRequest + c1.api.ai_governance.v1.MCPServerServiceDiscoverOIDCEndpointsResponse: + description: MCPServerServiceDiscoverOIDCEndpointsResponse returns the discovered OAuth2 endpoints. + properties: + authorizationEndpoint: + description: The authorization endpoint URL. + type: string + codeChallengeMethodsSupported: + description: |- + PKCE code challenge methods supported by the authorization server (RFC 8414). + Typical values: "plain", "S256". Empty when the discovery doc omits this + field. The frontend should pass the array back unchanged on save so the + backend can persist it on the connector and skip per-flow re-discovery. items: type: string - nullable: true - readOnly: false - type: array - resourceTypeIds: - description: Search grants for given resource types. + type: + - array + - "null" + scopesSupported: + description: Scopes supported by the authorization server. items: type: string - nullable: true - readOnly: false - type: array - userId: - description: Search for grants of a user - readOnly: false + type: + - array + - "null" + tokenEndpoint: + description: The token endpoint URL. + type: string + title: Mcp Server Service Discover Oidc Endpoints Response + type: object + x-speakeasy-name-override: MCPServerServiceDiscoverOIDCEndpointsResponse + c1.api.ai_governance.v1.MCPServerServiceGetCatalogResponse: + description: MCPServerServiceGetCatalogResponse returns a single catalog entry. + properties: + catalogEntry: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerCatalogEntry' + - type: "null" + title: Mcp Server Service Get Catalog Response + type: object + x-speakeasy-name-override: MCPServerServiceGetCatalogResponse + c1.api.ai_governance.v1.MCPServerServiceGetResponse: + description: MCPServerServiceGetResponse returns a single MCP server. + properties: + mcpServer: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerView' + - type: "null" + title: Mcp Server Service Get Response + type: object + x-speakeasy-name-override: MCPServerServiceGetResponse + c1.api.ai_governance.v1.MCPServerServiceListCatalogResponse: + description: MCPServerServiceListCatalogResponse returns a paginated list of catalog entries. + properties: + list: + description: List of catalog entries. + items: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerCatalogEntry' + type: + - array + - "null" + nextPageToken: + description: Token for next page. type: string - title: App Entitlement Search Service Search Grants Request + title: Mcp Server Service List Catalog Response type: object - x-speakeasy-name-override: AppEntitlementSearchServiceSearchGrantsRequest - c1.api.app.v1.AppEntitlementSearchServiceSearchGrantsResponse: - description: The AppEntitlementSearchServiceSearchGrantsResponse message. + x-speakeasy-name-override: MCPServerServiceListCatalogResponse + c1.api.ai_governance.v1.MCPServerServiceListConnectionsResponse: + description: |- + MCPServerServiceListConnectionsResponse returns a list of passthrough-mode + MCP servers with per-user connection status. properties: - expanded: - description: The expanded field. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array list: - description: The list field. + description: List of passthrough MCP servers with connection status. items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementWithUserBinding' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPConnectionView' + type: + - array + - "null" nextPageToken: - description: The nextPageToken field. - readOnly: false + description: Token for next page. type: string - title: App Entitlement Search Service Search Grants Response + title: Mcp Server Service List Connections Response type: object - x-speakeasy-name-override: AppEntitlementSearchServiceSearchGrantsResponse - c1.api.app.v1.AppEntitlementSearchServiceSearchRequest: - description: Search app entitlements by a variety of filters. + x-speakeasy-name-override: MCPServerServiceListConnectionsResponse + c1.api.ai_governance.v1.MCPServerServiceListResponse: + description: MCPServerServiceListResponse returns a paginated list of MCP servers. properties: - accessReviewId: - description: Search for app entitlements that are being reviewed as part of this access review campaign. - readOnly: false + list: + description: List of MCP servers. + items: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerView' + type: + - array + - "null" + nextPageToken: + description: Token for next page. type: string - alias: - description: Search for app entitlements that have this alias (exact match). - readOnly: false - type: string - appIds: - description: Search for app entitlements contained in any of these apps. - items: - type: string - nullable: true - readOnly: false - type: array - appUserIds: - description: Search for app entitlements that are granted to any of these app user ids. + title: Mcp Server Service List Response + type: object + x-speakeasy-name-override: MCPServerServiceListResponse + c1.api.ai_governance.v1.MCPServerServiceRegisterRequestInput: + description: MCPServerServiceRegisterRequest creates a new MCP server (Connector + config). + properties: + accessProfileIds: + description: |- + Optional access profiles (request catalogs) the server should be requestable + through. Register creates the server's "All approved tools" toolset empty and adds + its entitlement to each profile, so members can request the server before discovery + has found a single tool; the sync later adopts the same toolset and fills it. Empty + skips both steps. items: type: string - nullable: true - readOnly: false - type: array - complianceFrameworkIds: - description: Search for app entitlements that are part of these compliance frameworks. + type: + - array + - "null" + acknowledgedFindingIds: + description: |- + finding_ids from the diagnostic the admin acknowledged. Each must cover a + blocking-relaxable finding on oauth_diagnostic_id. items: type: string - nullable: true - readOnly: false - type: array + type: + - array + - "null" + appManagedStateBindingRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppManagedStateBindingRef' + - type: "null" + dataSensitivity: + description: Data sensitivity classification. + enum: + - MCP_SERVER_DATA_SENSITIVITY_UNSPECIFIED + - MCP_SERVER_DATA_SENSITIVITY_PUBLIC + - MCP_SERVER_DATA_SENSITIVITY_INTERNAL + - MCP_SERVER_DATA_SENSITIVITY_CONFIDENTIAL + - MCP_SERVER_DATA_SENSITIVITY_RESTRICTED + type: string + x-speakeasy-unknown-values: allow + description: + description: Admin-provided description. + type: string displayName: - description: Filter results to entitlements with this exact display name. - readOnly: false + description: Admin-provided display name. + type: string + externalConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerExternalConfig' + - type: "null" + hostedConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerHostedConfig' + - type: "null" + oauthDiagnosticId: + description: |- + When registering a DCR (client_id_mode=DCR) hosted server, the id of the + diagnostic returned by DiscoverMCPOAuthConfig that the admin reviewed. When + set, the server uses that diagnostic as the canonical discovery result and + relaxes only the acknowledged findings. Empty preserves the strict path. type: string - excludeAppIds: - description: Exclude app entitlements from the results that are in these app IDs. - items: - type: string - nullable: true - readOnly: false - type: array - excludeAppUserIds: - description: Exclude entitlements from results that are granted to any of these app users. - items: - type: string - nullable: true - readOnly: false - type: array - excludeImmutable: - description: If true, exclude immutable entitlements (e.g., system-managed entitlements that cannot be modified). - readOnly: false + serverType: + description: The type of MCP server being registered. + enum: + - MCP_SERVER_TYPE_UNSPECIFIED + - MCP_SERVER_TYPE_HOSTED + - MCP_SERVER_TYPE_EXTERNAL + type: string + x-speakeasy-unknown-values: allow + toolPrefix: + description: |- + Optional prefix for tool names in the C1 MCP server. + Tools are exposed as "_". + When empty, the system uses an auto-derived prefix (service name or hostname). + type: string + tunnelApplianceId: + description: |- + ID of the bridge (TunnelBridge.id, a KSUID) that proxies this server. + Only set when tunneled == true; must match a bridge enrolled for this + tenant. The server resolves this at register time to an active + credential and persists that on the connector config; runtime routing + through the wormhole requester is keyed on the resolved credential. + + Cross-field invariant: proto validation uses ignore_empty:true so an + empty value passes the regex check. The service layer enforces that this + field is non-empty whenever tunneled==true (see applyTunneledRegisterResolution). + type: string + tunnelPath: + description: |- + Endpoint path on the appliance-side MCP server (e.g. "/sse", "/mcp"). + Only used for EXTERNAL servers when tunneled == true: the service + synthesizes external_config.url as http://, + since the tunnel host is the announced service name and only the admin + knows the path. Empty defaults to "/". Ignored for HOSTED and non-tunneled. + type: string + tunnelServiceName: + description: |- + Service name as declared by the appliance via AnnounceServices. Required + when tunneled == true (for both EXTERNAL and HOSTED). The frontend + populates this from a dropdown of services the picked appliance has + announced. At runtime, mcp-gateway uses this name as the wormhole + port-name argument to DialByName. + type: string + tunneled: + description: |- + Whether the MCP server is reached over a tunnel to a private appliance + instead of a public URL. type: boolean - excludeResourceTypeIds: - description: Exclude entitlements with any of these resource type IDs from results. + userIds: + description: Integration owners for the MCP server connector. items: type: string - nullable: true - readOnly: false - type: array - excludedEntitlementRefs: - description: Exclude these specific entitlements from results. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - expandMask: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementExpandMask' - includeDeleted: - description: Include deleted app entitlements, this includes app entitlements that have a deleted parent object (app, app resource, app resource type) - readOnly: false - type: boolean - isAutomated: - description: If true, restrict results to entitlements that have an automation rule configured. - readOnly: false + type: + - array + - "null" + title: Mcp Server Service Register Request + type: object + x-speakeasy-name-override: MCPServerServiceRegisterRequest + c1.api.ai_governance.v1.MCPServerServiceRegisterResponse: + description: MCPServerServiceRegisterResponse returns the newly created MCP server. + properties: + accessProfilesAttached: + description: |- + Whether the "All approved tools" toolset reached every profile in + access_profile_ids. False means the server registered but the attach failed + afterwards, and the profiles have to be wired from the server page. Always true + when access_profile_ids was empty, since there was nothing to attach. type: boolean - membershipType: - description: Filter results to entitlements where the user has any of these membership types (e.g., member, owner, admin). - items: - enum: - - APP_ENTITLEMENT_MEMBERSHIP_TYPE_UNSPECIFIED - - APP_ENTITLEMENT_MEMBERSHIP_TYPE_MEMBER - - APP_ENTITLEMENT_MEMBERSHIP_TYPE_OWNER - - APP_ENTITLEMENT_MEMBERSHIP_TYPE_EXCLUSION - - APP_ENTITLEMENT_MEMBERSHIP_TYPE_ADMIN - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - onlyGetExpiring: - description: If true, restrict results to entitlements that have at least one expiring grant. - readOnly: false + mcpServer: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerView' + - type: "null" + title: Mcp Server Service Register Response + type: object + x-speakeasy-name-override: MCPServerServiceRegisterResponse + c1.api.ai_governance.v1.MCPServerServiceResyncToolsRequestInput: + description: |- + MCPServerServiceResyncToolsRequest re-runs tool discovery for the calling + user's own credential on a per-user MCP server. + title: Mcp Server Service Resync Tools Request + type: object + x-speakeasy-name-override: MCPServerServiceResyncToolsRequest + c1.api.ai_governance.v1.MCPServerServiceResyncToolsResponse: + description: MCPServerServiceResyncToolsResponse is empty on success. + title: Mcp Server Service Resync Tools Response + type: object + x-speakeasy-name-override: MCPServerServiceResyncToolsResponse + c1.api.ai_governance.v1.MCPServerServiceSearchWithToolCountRequestInput: + description: |- + MCPServerServiceSearchWithToolCountRequest searches MCP servers for an app with + filters and returns per-server tool counts by state. + properties: + includeLastCalledAt: + description: |- + When true, the server populates MCPServerView.last_called_at on each + returned row by querying TSDB for the most recent `mcp_tool_calls` + raw emit time per (app_id, connector_id). Costs one Dynamo Limit(1) + read per row; callers that don't render the "Last used" value should + leave false. type: boolean pageSize: - description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) + description: Page size (max 100). format: int32 - readOnly: false type: integer pageToken: - description: The pageToken field. - readOnly: false + description: Page token for pagination. type: string - policyRefs: - description: Search for app entitlements that use any of these policies. - items: - $ref: '#/components/schemas/c1.api.policy.v1.PolicyRef' - nullable: true - readOnly: false - type: array query: - description: Query the app entitlements with a fuzzy search on display name and description. - readOnly: false + description: Optional text query matched against display_name. type: string - refs: - description: Filter results to only these specific entitlements. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - resourceIds: - description: Search for app entitlements that belongs to these resources. - items: - type: string - nullable: true - readOnly: false - type: array - resourceTraitIds: - description: Filter results to entitlements whose resource types have any of these trait IDs. - items: - type: string - nullable: true - readOnly: false - type: array - resourceTypeIds: - description: Search for app entitlements that are for items with resources types that have matching names. Example names are "group", "role", and "app". - items: - type: string - nullable: true - readOnly: false - type: array - riskLevelIds: - description: Search for app entitlements with these risk levels. - items: - type: string - nullable: true - readOnly: false - type: array - sourceConnectorId: - description: Filter results to entitlements synced from this connector. - readOnly: false + toolState: + description: Which tool state to return count for on each server. + enum: + - MCP_TOOL_STATE_UNSPECIFIED + - MCP_TOOL_STATE_PENDING_REVIEW + - MCP_TOOL_STATE_APPROVED + - MCP_TOOL_STATE_DISABLED + - MCP_TOOL_STATE_REMOVED type: string - title: App Entitlement Search Service Search Request + x-speakeasy-unknown-values: allow + title: Mcp Server Service Search With Tool Count Request type: object - x-speakeasy-name-override: AppEntitlementSearchServiceSearchRequest - c1.api.app.v1.AppEntitlementSearchServiceSearchResponse: - description: The AppEntitlementSearchServiceSearchResponse message. + x-speakeasy-name-override: MCPServerServiceSearchWithToolCountRequest + c1.api.ai_governance.v1.MCPServerServiceSearchWithToolCountResponse: + description: MCPServerServiceSearchWithToolCountResponse returns matching MCP servers with tool counts. properties: - expanded: - description: List of related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - facets: - $ref: '#/components/schemas/c1.api.search.v1.Facets' list: - description: List of app entitlement view objects. + description: Matching servers with counts. items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementView' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerSearchWithToolCountResult' + type: + - array + - "null" nextPageToken: - description: The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + description: Token for next page. type: string - title: App Entitlement Search Service Search Response + title: Mcp Server Service Search With Tool Count Response type: object - x-speakeasy-name-override: AppEntitlementSearchServiceSearchResponse - c1.api.app.v1.AppEntitlementServiceGetAutomationResponse: - description: The AppEntitlementServiceGetAutomationResponse message. + x-speakeasy-name-override: MCPServerServiceSearchWithToolCountResponse + c1.api.ai_governance.v1.MCPServerServiceTestConnectionRequest: + description: |- + MCPServerServiceTestConnectionRequest exercises an + MCPServerExternalConfig against the upstream server and reports whether + the supplied URL + transport + credentials accept a real MCP + initialize + tools/list. properties: - AppEntitlementAutomation: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomation' - title: App Entitlement Service Get Automation Response + appId: + description: |- + App ID of an existing external MCP connector. When set together with + connector_id, the request runs in edit mode (see above). + type: string + connectorId: + description: |- + Connector ID of an existing external MCP connector. When set together + with app_id, the request runs in edit mode (see above). + type: string + externalConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerExternalConfig' + - type: "null" + updateMask: + type: + - string + - "null" + title: Mcp Server Service Test Connection Request type: object - x-speakeasy-name-override: AppEntitlementServiceGetAutomationResponse - c1.api.app.v1.AppEntitlementServiceUpdateAutomationRequestInput: - description: | - The AppEntitlementServiceUpdateAutomationRequest message. - - This message contains a oneof named conditions. Only a single field of the following list may be set at a time: - - none - - entitlements - - cel - - basic + x-speakeasy-name-override: MCPServerServiceTestConnectionRequest + c1.api.ai_governance.v1.MCPServerServiceTestConnectionResponse: + description: The MCPServerServiceTestConnectionResponse message. properties: - basic: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomationRuleBasic' - cel: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomationRuleCEL' - description: - description: The description of the app entitlement. - readOnly: false + failureReason: + description: |- + Sanitized, human-readable explanation of why the probe failed, set + only when reachable=false (e.g. "MCP server unreachable or rejected + the credentials (HTTP 401 Unauthorized)"). Empty when reachable=true. + Never contains raw upstream response bytes. type: string - displayName: - description: The display name of the app entitlement. - readOnly: false + reachable: + description: |- + True when the MCP initialize handshake AND a tools/list call both + succeeded against the upstream with the supplied credentials. False + when the probe ran but the upstream was unreachable or rejected the + request — see failure_reason. Malformed requests (missing/invalid + config, bad permissions) are returned as a gRPC error, not + reachable=false. + type: boolean + toolCount: + description: |- + Number of tools advertised by the upstream's tools/list response. + Zero when reachable=false; can also legitimately be zero when the + server is reachable but exposes no tools. int64 to match + MCPServerSearchWithToolCountResult.tool_count. + format: int64 type: string - entitlements: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomationRuleEntitlement' - none: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomationRuleNone' + title: Mcp Server Service Test Connection Response + type: object + x-speakeasy-name-override: MCPServerServiceTestConnectionResponse + c1.api.ai_governance.v1.MCPServerServiceUpdateCredentialsRequestInput: + description: |- + MCPServerServiceUpdateCredentialsRequest updates the auth credentials and config fields + for an existing MCP server. Secrets are sealed before storage. + properties: + externalConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerExternalConfig' + - type: "null" + hostedConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerHostedConfig' + - type: "null" updateMask: - nullable: true - readOnly: false - type: string - title: App Entitlement Service Update Automation Request + type: + - string + - "null" + title: Mcp Server Service Update Credentials Request + type: object + x-speakeasy-name-override: MCPServerServiceUpdateCredentialsRequest + c1.api.ai_governance.v1.MCPServerServiceUpdateCredentialsResponse: + description: MCPServerServiceUpdateCredentialsResponse returns the updated MCP server. + properties: + mcpServer: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerView' + - type: "null" + title: Mcp Server Service Update Credentials Response + type: object + x-speakeasy-name-override: MCPServerServiceUpdateCredentialsResponse + c1.api.ai_governance.v1.MCPServerServiceUpdateRequestInput: + description: MCPServerServiceUpdateRequest updates an existing MCP server's editable fields. + properties: + mcpServer: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerView' + - type: "null" + updateMask: + type: + - string + - "null" + title: Mcp Server Service Update Request type: object - x-speakeasy-name-override: AppEntitlementServiceUpdateAutomationRequest - c1.api.app.v1.AppEntitlementServiceUpdateAutomationResponse: - description: The AppEntitlementServiceUpdateAutomationResponse message. + x-speakeasy-name-override: MCPServerServiceUpdateRequest + c1.api.ai_governance.v1.MCPServerServiceUpdateResponse: + description: MCPServerServiceUpdateResponse returns the updated MCP server. properties: - AppEntitlementAutomation: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomation' - title: App Entitlement Service Update Automation Response + mcpServer: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerView' + - type: "null" + title: Mcp Server Service Update Response type: object - x-speakeasy-name-override: AppEntitlementServiceUpdateAutomationResponse - c1.api.app.v1.AppEntitlementUserBinding: - description: The AppEntitlementUserBinding represents the relationship that gives an app user access to an app entitlement + x-speakeasy-name-override: MCPServerServiceUpdateResponse + c1.api.ai_governance.v1.MCPServerView: + description: MCPServerView is the API representation of an MCP server (backed by a Connector). properties: - appEntitlementId: - description: The ID of the app entitlement that the app user has access to - readOnly: false - type: string appId: - description: The ID of the app associated with the app entitlement - readOnly: false + description: App identifier that owns this MCP server. type: string - appUserId: - description: The ID of the app user that has access to the app entitlement - readOnly: false + authMethod: + description: Authentication method in use. Read-only; derived from stored config. + enum: + - MCP_SERVER_AUTH_METHOD_UNSPECIFIED + - MCP_SERVER_AUTH_METHOD_NONE + - MCP_SERVER_AUTH_METHOD_BEARER_TOKEN + - MCP_SERVER_AUTH_METHOD_OAUTH2 + - MCP_SERVER_AUTH_METHOD_CUSTOM_HEADER + - MCP_SERVER_AUTH_METHOD_AWS_SIGV4 + - MCP_SERVER_AUTH_METHOD_BASIC_AUTH + type: string + x-speakeasy-unknown-values: allow + awsAccessKeyId: + description: |- + AWS SigV4 access key ID (the public half of the credential pair). + Read-only; derived from stored config. Surfaced so the edit form can + pre-fill the field on load without exposing the sealed secret. + readOnly: true + type: string + awsSecretAccessKeyConfigured: + description: Whether an AWS SigV4 secret access key is configured. Read-only. + readOnly: true + type: boolean + awsSessionTokenConfigured: + description: |- + Whether an AWS SigV4 session token is configured (optional, only for + STS temporary credentials). Read-only. + readOnly: true + type: boolean + basicAuthPasswordConfigured: + description: |- + Whether a basic-auth password is configured (admin-supplied for SHARED, + irrelevant for PER_USER). Read-only; derived from stored config. + readOnly: true + type: boolean + basicAuthUsername: + description: The username configured for basic-auth. Read-only. + readOnly: true + type: string + bearerTokenConfigured: + description: |- + Whether a bearer-token credential is configured (admin-supplied for + SHARED, irrelevant for PER_USER). Read-only; derived from stored config. + Mirrors oauth2_credentials_configured for the bearer-token auth method + so the edit form can render the password input as "configured" without + exposing the sealed bytes. + readOnly: true + type: boolean + configFieldValues: + additionalProperties: + type: string + description: |- + Non-secret configuration field values keyed by catalog config field name. + Read-only; populated from the stored config. Secret fields are omitted. + readOnly: true + type: object + connectorId: + description: Unique identifier (connector ID). type: string createdAt: format: date-time readOnly: true + type: + - string + - "null" + credentialsSetupUrl: + description: |- + Deep link to the server's detail page in the C1 admin UI, where an admin + enters or rotates credentials in the browser. Lets an agent hand its human + a clickable link for credential entry so the secret value never transits + the agent transcript. Empty when the tenant frontend URL can't be resolved. + Read-only. + readOnly: true type: string - deletedAt: - format: date-time + customHeaderName: + description: |- + The HTTP header name configured for custom-header auth. Read-only; + derived from stored config. Surfaced so the admin edit form can + pre-fill the field on load — without this, the form shows blank and + the admin has to retype it on every edit (which loses the value if + they only meant to flip token_sharing). readOnly: true type: string - deprovisionAt: - format: date-time + customHeaderValueConfigured: + description: |- + Whether a custom-header value is configured (admin-supplied for SHARED, + irrelevant for PER_USER). Read-only; derived from stored config. readOnly: true + type: boolean + dataSensitivity: + description: Data sensitivity classification. + enum: + - MCP_SERVER_DATA_SENSITIVITY_UNSPECIFIED + - MCP_SERVER_DATA_SENSITIVITY_PUBLIC + - MCP_SERVER_DATA_SENSITIVITY_INTERNAL + - MCP_SERVER_DATA_SENSITIVITY_CONFIDENTIAL + - MCP_SERVER_DATA_SENSITIVITY_RESTRICTED type: string - grantSources: - description: The grantSources field. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - title: App Entitlement User Binding - type: object - x-speakeasy-name-override: AppEntitlementUserBinding - c1.api.app.v1.AppEntitlementUserBindingExpandHistoryMask: - description: The AppEntitlementUserBindingExpandHistoryMask message. - properties: - paths: - description: The paths field. - items: - type: string - nullable: true - readOnly: false - type: array - title: App Entitlement User Binding Expand History Mask - type: object - x-speakeasy-name-override: AppEntitlementUserBindingExpandHistoryMask - c1.api.app.v1.AppEntitlementUserBindingFeed: - description: The AppEntitlementUserBindingFeed message. - properties: - appEntitlementId: - description: The ID of the app entitlement that the app user has access to - readOnly: false + x-speakeasy-unknown-values: allow + defaultToolPrefix: + description: |- + Default tool-name prefix used when tool_prefix is unset (the hosted impl's + server_prefix / service name); empty for external or legacy servers. Read-only. + readOnly: true type: string - appId: - description: The ID of the app associated with the app entitlement - readOnly: false + description: + description: Admin-provided description. type: string - appUserId: - description: The ID of the app user that has access to the app entitlement - readOnly: false + displayName: + description: Admin-provided display name. type: string - date: + endpointUrl: + description: Endpoint URL for external MCP servers. Read-only. + readOnly: true + type: string + endpointUrlLocked: + description: |- + Whether the endpoint URL is immutable. True once the connector has + completed its first successful sync; the URL cannot be changed after + that point. Read-only. + readOnly: true + type: boolean + lastCalledAt: format: date-time - readOnly: false + readOnly: true + type: + - string + - "null" + mcpServerCatalogId: + description: |- + Opaque catalog entry ID for hosted MCP servers (27-character KSUID). + Obtain valid IDs from the ListCatalog or GetCatalog RPCs. type: string - eventType: - description: The eventType field. + oauth2AuthorizeUrl: + description: OAuth2 authorization URL. Read-only; derived from stored config. + readOnly: true + type: string + oauth2ClientId: + description: OAuth2 client ID (non-secret). Read-only; derived from stored config. + readOnly: true + type: string + oauth2ClientIdMode: + description: |- + How the OAuth2 client_id was acquired (manual / DCR / CIMD). Read-only; + derived from stored config. Empty for non-authorization_code servers. enum: - - GRANT_EVENT_TYPE_UNSPECIFIED - - GRANT_EVENT_TYPE_ADDED - - GRANT_EVENT_TYPE_REMOVED - readOnly: false + - MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_UNSPECIFIED + - MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_DCR + - MCP_SERVER_AUTH_OAUTH2_CLIENT_ID_MODE_CIMD + readOnly: true type: string x-speakeasy-unknown-values: allow - ticketId: - description: The ticketId field. - readOnly: false + oauth2ClientSecretExpiresAt: + description: |- + RFC 7591 client_secret expiry (unix seconds; 0 = never). Read-only; + derived from stored config. Surfaced for display only. + format: int64 + readOnly: true type: string - title: App Entitlement User Binding Feed - type: object - x-speakeasy-name-override: AppEntitlementUserBindingFeed - c1.api.app.v1.AppEntitlementUserBindingFeedView: - description: The AppEntitlementUserBindingFeedView message. - properties: - appPath: - description: The appPath field. - readOnly: false + oauth2CodeChallengeMethodsSupported: + description: |- + PKCE code-challenge methods the IdP advertised at registration. + Read-only; derived from stored config. Surfaced so the edit form's + change detection can compare against the saved value rather than an + implicit empty default — without this, re-running Discover on a + server with stable methods always reports the field as changed and + fires a spurious UpdateCredentials. + items: + type: string + readOnly: true + type: + - array + - "null" + oauth2CredentialsConfigured: + description: Whether OAuth2 client credentials (client_id + client_secret) are configured. Read-only. + readOnly: true + type: boolean + oauth2ExtraAuthorizeParams: + additionalProperties: + type: string + description: |- + Static query params appended to the OAuth2 authorize URL. Read-only on the + view; the edit form surfaces this as an editable key/value list. Empty for + non-authorization_code servers. + readOnly: true + type: object + oauth2ExtraTokenParams: + additionalProperties: + type: string + description: |- + Extra body params POSTed to the OAuth2 token endpoint. Read-only on the + view; the edit form takes this value and surfaces it as an editable + key/value list. Empty for non-OAuth2 / non-client-credentials servers. + readOnly: true + type: object + oauth2IssuerUrl: + description: |- + OAuth2 issuer URL. Read-only; derived from stored config. Surfaced so + the registration UI can prefill the Discover input box on edit. + readOnly: true type: string - appUserPath: - description: The appUserPath field. - readOnly: false + oauth2JwtAudience: + description: JWT audience claim. Read-only. + readOnly: true type: string - entitlementPath: - description: The entitlementPath field. - readOnly: false + oauth2JwtIssuer: + description: JWT issuer (service account email). Read-only. + readOnly: true type: string - feed: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBindingFeed' - ticketPath: - description: The ticketPath field. - readOnly: false + oauth2JwtPrivateKeyConfigured: + description: Whether a JWT private key is configured. Read-only. + readOnly: true + type: boolean + oauth2JwtSubject: + description: JWT subject (domain-wide delegation). Read-only. + readOnly: true type: string - title: App Entitlement User Binding Feed View - type: object - x-speakeasy-name-override: AppEntitlementUserBindingFeedView - c1.api.app.v1.AppEntitlementUserBindingHistory: - description: The AppEntitlementUserBindingHistory message. - properties: - appEntitlementId: - description: The ID of the app entitlement that the app user has access to - readOnly: false + oauth2Mode: + description: OAuth2 mode in use. Read-only; derived from stored config. + enum: + - MCP_SERVER_AUTH_OAUTH2_MODE_UNSPECIFIED + - MCP_SERVER_AUTH_OAUTH2_MODE_SERVICE + - MCP_SERVER_AUTH_OAUTH2_MODE_PASSTHROUGH + - MCP_SERVER_AUTH_OAUTH2_MODE_CLIENT_CREDENTIALS + - MCP_SERVER_AUTH_OAUTH2_MODE_JWT_BEARER + - MCP_SERVER_AUTH_OAUTH2_MODE_GOOGLE_SERVICE_ACCOUNT + - MCP_SERVER_AUTH_OAUTH2_MODE_AUTHORIZATION_CODE + readOnly: true type: string - appId: - description: The ID of the app associated with the app entitlement - readOnly: false + x-speakeasy-unknown-values: allow + oauth2Pkce: + description: |- + PKCE behavior for authorization_code mode: "discover" (or empty), "s256", + or "disabled". Read-only on the view. Empty for non-authorization_code servers. + readOnly: true type: string - appUserId: - description: The ID of the app user that has access to the app entitlement - readOnly: false + oauth2Scopes: + description: OAuth2 scopes. Read-only; derived from stored config. + items: + type: string + readOnly: true + type: + - array + - "null" + oauth2ScopesSupported: + description: |- + OAuth scopes the IdP advertised in its discovery doc at the most + recent Discover. Read-only; derived from stored config. Surfaced so + the edit form can populate the Scopes chips-input autocomplete from + a previously-discovered list without forcing the admin to re-run + Discover. Distinct from oauth2_scopes (= the requested subset). + items: + type: string + readOnly: true + type: + - array + - "null" + oauth2ServiceAuthorized: + description: Whether a service-mode OAuth2 credential exists. Read-only. + readOnly: true + type: boolean + oauth2ServiceAuthorizedAsEmail: + description: Email of the external identity authorized (from ID token). Read-only. + readOnly: true type: string - grantedAt: - format: date-time + oauth2ServiceAuthorizedAsName: + description: Display name of the external identity authorized (from ID token). Read-only. readOnly: true type: string - revokedAt: + oauth2ServiceAuthorizedAt: format: date-time readOnly: true + type: + - string + - "null" + oauth2ServiceAuthorizedBy: + description: Passport user ID of who authorized the service-mode OAuth2 credential. Read-only. + readOnly: true type: string - title: App Entitlement User Binding History - type: object - x-speakeasy-name-override: AppEntitlementUserBindingHistory - c1.api.app.v1.AppEntitlementUserBindingHistoryView: - description: The AppEntitlementUserBindingHistoryView message. - properties: - appPath: - description: The appPath field. - readOnly: false + oauth2TokenEndpointAuthMethod: + description: |- + RFC 7591 token_endpoint_auth_method the authorization server assigned + ("none" for public PKCE-only clients). Read-only; server-set from the DCR + result. Empty for manual / non-DCR servers. + readOnly: true type: string - appUserPath: - description: The appUserPath field. - readOnly: false + oauth2TokenUrl: + description: OAuth2 token URL. Read-only; derived from stored config. + readOnly: true type: string - entitlementPath: - description: The entitlementPath field. - readOnly: false + requireToolApproval: + description: Per-server override for tool auto-approval. + enum: + - OPTIONAL_BOOL_UNSPECIFIED + - OPTIONAL_BOOL_TRUE + - OPTIONAL_BOOL_FALSE type: string - history: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBindingHistory' - title: App Entitlement User Binding History View - type: object - x-speakeasy-name-override: AppEntitlementUserBindingHistoryView - c1.api.app.v1.AppEntitlementUserView: - description: The AppEntitlementUserView (aka grant view) describes the relationship between an app user and an entitlement. They have more recently been referred to as grants. - properties: - appEntitlementUserBindingCreatedAt: - format: date-time - readOnly: true + x-speakeasy-unknown-values: allow + serverType: + description: Whether this is a hosted MCP server. + enum: + - MCP_SERVER_TYPE_UNSPECIFIED + - MCP_SERVER_TYPE_HOSTED + - MCP_SERVER_TYPE_EXTERNAL type: string - appEntitlementUserBindingDeprovisionAt: - format: date-time + x-speakeasy-unknown-values: allow + sourceAppId: + description: Source app ID (hosted servers only). + type: string + tokenSharing: + description: |- + Token sharing model in use. Read-only; derived from stored config. + For rows stored under the legacy SERVICE/PASSTHROUGH OAuth2 modes, + this is synthesized as SHARED/PER_USER respectively. + enum: + - MCP_SERVER_TOKEN_SHARING_UNSPECIFIED + - MCP_SERVER_TOKEN_SHARING_SHARED + - MCP_SERVER_TOKEN_SHARING_PER_USER readOnly: true type: string - appUser: - $ref: '#/components/schemas/c1.api.app.v1.AppUserView' - grantSources: - description: List of sources for the grant, ie. groups, roles, etc. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - originatingTicketId: - description: The originating ticket ID for the grant (e.g. from a request ticket). - readOnly: false + x-speakeasy-unknown-values: allow + toolPrefix: + description: |- + Admin-configured prefix for tool names in the C1 MCP server. + Tools are exposed as "_". + When empty, the system uses an auto-derived prefix (service name or hostname). type: string - title: App Entitlement User View - type: object - x-speakeasy-name-override: AppEntitlementUserView - c1.api.app.v1.AppEntitlementView: - description: The app entitlement view contains the serialized app entitlement and paths to objects referenced by the app entitlement. - properties: - appEntitlement: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlement' - appPath: - description: JSONPATH expression indicating the location of the App object in the array. - readOnly: false + transportType: + description: Transport type for external MCP servers. Read-only. + enum: + - MCP_SERVER_TRANSPORT_TYPE_UNSPECIFIED + - MCP_SERVER_TRANSPORT_TYPE_STREAMABLE_HTTP + - MCP_SERVER_TRANSPORT_TYPE_SSE + readOnly: true type: string - appResourcePath: - description: JSONPATH expression indicating the location of the App Resource Type object in the expanded array. - readOnly: false + x-speakeasy-unknown-values: allow + tunnelApplianceId: + description: |- + Credential id (cutename) used to route tool calls through the bridge. + Set only when tunneled == true. Read-only. + readOnly: true type: string - appResourceTypePath: - description: JSONPATH expression indicating the location of the App Resource object in the array. - readOnly: false + tunnelBridgeId: + description: |- + ID of the bridge (TunnelConnection.id, a KSUID) that proxies this server. + Set only when tunneled == true. Read-only. + readOnly: true type: string - objectPermissions: - $ref: '#/components/schemas/c1.api.iam.v1.ActorObjectPermissions' - title: App Entitlement View + tunnelServiceName: + description: |- + Bridge-announced service name used to route to this server. Set only + when tunneled == true. Read-only. + readOnly: true + type: string + tunneled: + description: |- + Whether the MCP server is reached over a tunnel to a private bridge + appliance instead of a public URL. Read-only. + readOnly: true + type: boolean + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Mcp Server View type: object - x-speakeasy-name-override: AppEntitlementView - c1.api.app.v1.AppEntitlementWithExpired: - description: A grant with its expiry and discovery timestamps, along with the associated app user and ConductorOne user. + x-speakeasy-name-override: MCPServerView + c1.api.ai_governance.v1.MCPTool: + description: MCPTool represents metadata about individual tools discovered from an MCP server. properties: + allowedClientTypes: + description: |- + Which client types may use this tool. + Empty = all allowed types from tenant config. + items: + enum: + - MCP_CLIENT_TYPE_UNSPECIFIED + - MCP_CLIENT_TYPE_PERSONAL + - MCP_CLIENT_TYPE_SHARED + - MCP_CLIENT_TYPE_SERVICE + - MCP_CLIENT_TYPE_EPHEMERAL + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" appEntitlementId: - description: The ID of the app entitlement. - readOnly: false + description: Bound AppEntitlement created during sync. type: string appId: - description: The ID of the app that contains the entitlement. - readOnly: false + description: App identifier (app that owns the connector). type: string - appUser: - $ref: '#/components/schemas/c1.api.app.v1.AppUser' - appUserId: - description: The ID of the app user who holds the grant. - readOnly: false + classification: + description: Tool risk classification for policy decisions. + enum: + - TOOL_CLASSIFICATION_UNSPECIFIED + - TOOL_CLASSIFICATION_READ + - TOOL_CLASSIFICATION_WRITE + - TOOL_CLASSIFICATION_DESTRUCTIVE + - TOOL_CLASSIFICATION_SENSITIVE + - TOOL_CLASSIFICATION_DANGEROUS type: string - discovered: + x-speakeasy-unknown-values: allow + connectorId: + description: Connector identifier. + type: string + createdAt: format: date-time - readOnly: false + type: + - string + - "null" + defaultClassification: + description: Default tool classification from MCP config (system-managed during discovery). + enum: + - TOOL_CLASSIFICATION_UNSPECIFIED + - TOOL_CLASSIFICATION_READ + - TOOL_CLASSIFICATION_WRITE + - TOOL_CLASSIFICATION_DESTRUCTIVE + - TOOL_CLASSIFICATION_SENSITIVE + - TOOL_CLASSIFICATION_DANGEROUS type: string - expired: + x-speakeasy-unknown-values: allow + defaultDisplayName: + description: Default display name from MCP tool spec (title field). + type: string + defaultVisibility: + description: System-managed default visibility from MCP config (set during discovery). + enum: + - TOOL_VISIBILITY_UNSPECIFIED + - TOOL_VISIBILITY_FEATURED + - TOOL_VISIBILITY_AVAILABLE + - TOOL_VISIBILITY_BYPASSED + type: string + x-speakeasy-unknown-values: allow + deletedAt: format: date-time - readOnly: false + type: + - string + - "null" + description: + description: Admin-editable description. type: string - grantReasons: - description: The reasons this grant was given (e.g., access request, automation). - items: - $ref: '#/components/schemas/c1.api.app.v1.GrantReason' - nullable: true - readOnly: false - type: array - grantSources: - description: Entitlements that are the source of this grant (e.g., a group membership that implies a role). - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - user: - $ref: '#/components/schemas/c1.api.user.v1.User' - title: App Entitlement With Expired - type: object - x-speakeasy-name-override: AppEntitlementWithExpired - c1.api.app.v1.AppEntitlementWithUserBinding: - description: The AppEntitlementWithUserBinding message. - properties: - appEntitlementUserBinding: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserView' - entitlement: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementView' - title: App Entitlement With User Binding - type: object - x-speakeasy-name-override: AppEntitlementWithUserBinding - c1.api.app.v1.AppManagedStateBindingRef: - description: The AppManagedStateBindingRef message. - properties: - appId: - description: The appId field. - readOnly: false + discoveryHash: + description: Hash of tool definition for change detection. type: string - resourceId: - description: The resourceId field. - readOnly: false + displayName: + description: Admin-editable display name (overrides default_display_name when set). type: string - resourceTypeId: - description: The resourceTypeId field. - readOnly: false + id: + description: Unique identifier for this MCP tool record. type: string - title: App Managed State Binding Ref - type: object - x-speakeasy-name-override: AppManagedStateBindingRef - c1.api.app.v1.AppPopulationReport: - description: The AppPopulationReport is a generated report for a specific app that gives details about the app's users. These details include what groups, roles, and other entitlements the users have access to. - properties: - appId: - description: The appId is the Id of the app which the report is generated for. - readOnly: false + inputSchemaJson: + description: JSON-encoded input schema from MCP discovery. type: string - createdAt: + lastCalledAt: format: date-time readOnly: true + type: + - string + - "null" + requestable: + description: |- + Whether this tool's backing entitlement is exposed in at least one request + catalog directly (i.e. can be requested on its own). Computed read-only; + populated on Search. + readOnly: true + type: boolean + requestableViaToolset: + description: |- + Whether this tool is requestable indirectly — it belongs to at least one + toolset (access profile) whose backing entitlement is exposed in a request + catalog. Independent of `requestable`. Computed read-only; populated on Search. + readOnly: true + type: boolean + state: + description: Tool approval/lifecycle state. + enum: + - MCP_TOOL_STATE_UNSPECIFIED + - MCP_TOOL_STATE_PENDING_REVIEW + - MCP_TOOL_STATE_APPROVED + - MCP_TOOL_STATE_DISABLED + - MCP_TOOL_STATE_REMOVED type: string - downloadUrl: - description: The downloadUrl is the url used for downloading the AppPopulationReport. - readOnly: false - type: string - hashes: - additionalProperties: - type: string - description: The hashes field contains the file hashes of the report. - readOnly: false - type: object - id: - description: The id field. - readOnly: false + x-speakeasy-unknown-values: allow + toolName: + description: Native MCP tool name (unique within an MCP server). type: string - state: - description: The state field tracks the state of the AppPopulationReport. This state field can be one of REPORT_STATE_PENDING, REPORT_STATE_UNSPECIFIED, REPORT_STATE_OK, REPORT_STATE_ERROR. + updatedAt: + format: date-time + type: + - string + - "null" + visibility: + description: Admin-settable visibility override (how this tool is surfaced to users). enum: - - REPORT_STATE_UNSPECIFIED - - REPORT_STATE_PENDING - - REPORT_STATE_OK - - REPORT_STATE_ERROR - readOnly: false + - TOOL_VISIBILITY_UNSPECIFIED + - TOOL_VISIBILITY_FEATURED + - TOOL_VISIBILITY_AVAILABLE + - TOOL_VISIBILITY_BYPASSED type: string x-speakeasy-unknown-values: allow - title: App Population Report + title: Mcp Tool type: object - x-speakeasy-name-override: AppPopulationReport - c1.api.app.v1.AppRef: - description: The AppRef message. + x-speakeasy-name-override: MCPTool + c1.api.ai_governance.v1.MCPToolHistoryEntry: + description: MCPToolHistoryEntry is one version of an MCP tool and its history metadata. properties: + metadata: + oneOf: + - $ref: '#/components/schemas/c1.api.history.v1.HistoryEntryMetadata' + - type: "null" + snapshot: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPTool' + - type: "null" + title: Mcp Tool History Entry + type: object + x-speakeasy-name-override: MCPToolHistoryEntry + c1.api.ai_governance.v1.MCPToolRef: + description: MCPToolRef is a reference to a specific MCP tool. + properties: + appId: + description: The application the tool belongs to. + type: string + connectorId: + description: The connector the tool was discovered through. + type: string id: - description: The id field. - readOnly: false + description: Unique identifier for the MCP tool. type: string - title: App Ref + title: Mcp Tool Ref type: object - x-speakeasy-name-override: AppRef - c1.api.app.v1.AppReportServiceListResponse: - description: The AppReportServiceListResponse message contains a list of results and a nextPageToken if applicable. + x-speakeasy-name-override: MCPToolRef + c1.api.ai_governance.v1.MCPToolServiceDeleteRequestInput: + description: MCPToolServiceDeleteRequest deletes an MCP tool (soft delete). + title: Mcp Tool Service Delete Request + type: object + x-speakeasy-name-override: MCPToolServiceDeleteRequest + c1.api.ai_governance.v1.MCPToolServiceDeleteResponse: + description: MCPToolServiceDeleteResponse confirms deletion. + title: Mcp Tool Service Delete Response + type: object + x-speakeasy-name-override: MCPToolServiceDeleteResponse + c1.api.ai_governance.v1.MCPToolServiceGetResponse: + description: MCPToolServiceGetResponse returns a single MCP tool. + properties: + tool: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPTool' + - type: "null" + title: Mcp Tool Service Get Response + type: object + x-speakeasy-name-override: MCPToolServiceGetResponse + c1.api.ai_governance.v1.MCPToolServiceListHistoryResponse: + description: MCPToolServiceListHistoryResponse returns MCP tool history entries. properties: list: - description: The list of results containing up to X results, where X is the page size defined in the request. + description: The page of history entries, newest first. items: - $ref: '#/components/schemas/c1.api.app.v1.AppPopulationReport' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPToolHistoryEntry' + type: + - array + - "null" nextPageToken: - description: |- - The nextPageToken is shown for the next page if the number of results is larger than the max page size. - The server returns one page of results and the nextPageToken until all results are retreived. - To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + description: Pagination token for the next page, or empty if there are no more results. type: string - title: App Report Service List Response + title: Mcp Tool Service List History Response type: object - x-speakeasy-name-override: AppReportServiceListResponse - c1.api.app.v1.AppResource: - description: | - The app resource message is a single resource that can have entitlements. - - This message contains a oneof named metadata. Only a single field of the following list may be set at a time: - - secretTrait + x-speakeasy-name-override: MCPToolServiceListHistoryResponse + c1.api.ai_governance.v1.MCPToolServiceListResponse: + description: MCPToolServiceListResponse returns a list of MCP tools. properties: - accessConfigId: - description: |- - The access config ID for this resource. May be empty. - Must be one of the builtin access config IDs or empty. - readOnly: false - type: string - appId: - description: The app that this resource belongs to. - readOnly: false - type: string - appResourceTypeId: - description: The resource type that this resource is. - readOnly: false - type: string - createdAt: - format: date-time - readOnly: true - type: string - customDescription: - description: A custom description that can be set for a resource. - readOnly: false - type: string - deletedAt: - format: date-time - readOnly: true - type: string - description: - description: The description set for the resource. - readOnly: false + nextPageToken: + description: Token for next page. type: string - displayName: - description: The display name for this resource. - readOnly: false + tools: + description: List of MCP tools. + items: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPTool' + type: + - array + - "null" + title: Mcp Tool Service List Response + type: object + x-speakeasy-name-override: MCPToolServiceListResponse + c1.api.ai_governance.v1.MCPToolServiceSearchRequestInput: + description: MCPToolServiceSearchRequest searches MCP tools with filters. + properties: + accessProfileId: + deprecated: true + description: 'Deprecated: use access_profile_ids instead.' type: string - externalId: + accessProfileIds: + description: 'Optional: only return tools that are bound to at least one of these access profiles.' + items: + type: string + type: + - array + - "null" + classificationFilter: description: |- - The upstream product's native external ID for this resource (e.g. an Okta group ID). - Populated from the connector's external ID during sync. - readOnly: true - type: string - grantCount: - description: The number of grants to this resource. - format: int64 - readOnly: false - type: string - id: - description: The id of the resource. - readOnly: false + Optional filter by classification. An empty list means no filter. + Including TOOL_CLASSIFICATION_UNSPECIFIED matches unclassified tools. + items: + enum: + - TOOL_CLASSIFICATION_UNSPECIFIED + - TOOL_CLASSIFICATION_READ + - TOOL_CLASSIFICATION_WRITE + - TOOL_CLASSIFICATION_DESTRUCTIVE + - TOOL_CLASSIFICATION_SENSITIVE + - TOOL_CLASSIFICATION_DANGEROUS + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + excludeAccessProfileId: + deprecated: true + description: 'Deprecated: use exclude_access_profile_ids instead.' type: string - matchBatonId: - description: The matchBatonId field. - readOnly: false + excludeAccessProfileIds: + description: 'Optional: exclude tools that are bound to any of these access profiles.' + items: + type: string + type: + - array + - "null" + includeLastCalledAt: + description: |- + When true, the server populates MCPTool.last_called_at on each + returned row by querying TSDB for the most recent `mcp_tool_calls` + raw emit time per tool. Costs one Dynamo Limit(1) read per row; + callers that don't render the "Last used" column should leave false. + type: boolean + includeRequestable: + description: |- + When true, populate the computed `requestable` / `requestable_via_toolset` + fields on each tool (an extra catalog-membership lookup). Off by default so + callers that don't render requestability — e.g. tool-picker and + tools-by-toolset views — don't pay for it. + type: boolean + pageSize: + description: Page size (max 100). + format: int32 + type: integer + pageToken: + description: Page token for pagination. type: string - parentAppResourceId: - description: The parent resource id, if this resource is a child of another resource. - readOnly: false + query: + description: Optional text query matched against tool_name and display_name type: string - parentAppResourceTypeId: - description: The parent resource type id, if this resource is a child of another resource. - readOnly: false + refs: + description: 'Optional: filter by specific tool refs (used by websocket notify to re-fetch individual tools).' + items: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPToolRef' + type: + - array + - "null" + sortBy: + description: Sort order for results. UNSPECIFIED sorts by tool name ascending. + enum: + - MCP_TOOL_SORT_BY_UNSPECIFIED + - MCP_TOOL_SORT_BY_TOOL_NAME + - MCP_TOOL_SORT_BY_VISIBILITY + - MCP_TOOL_SORT_BY_CLASSIFICATION + - MCP_TOOL_SORT_BY_STATE + - MCP_TOOL_SORT_BY_UPDATED_AT type: string - profile: - additionalProperties: true - readOnly: true - type: object - secretTrait: - $ref: '#/components/schemas/c1.api.app.v1.SecretTrait' - updatedAt: - format: date-time - readOnly: true + x-speakeasy-unknown-values: allow + sortDirection: + description: Direction for sort_by. UNSPECIFIED means ascending. + enum: + - SORT_DIRECTION_UNSPECIFIED + - SORT_DIRECTION_ASC + - SORT_DIRECTION_DESC type: string - title: App Resource - type: object - x-speakeasy-entity: App Resource - x-speakeasy-name-override: AppResource - c1.api.app.v1.AppResourceExpandMask: - description: The app resource expand mask lets you get information about related objects from the request. - properties: - paths: - description: The app resource expanded fields. Maybe be any combination of "*", "app_id", "app_resource_type_id". + x-speakeasy-unknown-values: allow + stateFilter: + description: Optional filter by tool state. 0 (UNSPECIFIED) means no filter. items: + enum: + - MCP_TOOL_STATE_UNSPECIFIED + - MCP_TOOL_STATE_PENDING_REVIEW + - MCP_TOOL_STATE_APPROVED + - MCP_TOOL_STATE_DISABLED + - MCP_TOOL_STATE_REMOVED type: string - nullable: true - readOnly: false - type: array - title: App Resource Expand Mask - type: object - x-speakeasy-name-override: AppResourceExpandMask - c1.api.app.v1.AppResourceRef: - description: A reference to a specific app resource by its composite key. - properties: - appId: - description: The ID of the app that owns the resource. - readOnly: false - type: string - appResourceTypeId: - description: The ID of the resource type that classifies this resource. - readOnly: false - type: string - id: - description: The unique ID of the app resource. - readOnly: false - type: string - title: App Resource Ref - type: object - x-speakeasy-name-override: AppResourceRef - c1.api.app.v1.AppResourceServiceGetResponse: - description: The app resource service get response contains the app resource view and array of expanded items indicated by the request's expand mask. - properties: - appResourceView: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceView' - expanded: - description: List of serialized related objects. + x-speakeasy-unknown-values: allow + type: + - array + - "null" + visibilityFilter: + description: Optional filter by visibility. 0 (UNSPECIFIED) means no filter. items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - title: App Resource Service Get Response + enum: + - TOOL_VISIBILITY_UNSPECIFIED + - TOOL_VISIBILITY_FEATURED + - TOOL_VISIBILITY_AVAILABLE + - TOOL_VISIBILITY_BYPASSED + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + title: Mcp Tool Service Search Request type: object - x-speakeasy-name-override: AppResourceServiceGetResponse - c1.api.app.v1.AppResourceServiceListResponse: - description: The AppResourceServiceListResponse message contains a list of results and a nextPageToken if applicable. + x-speakeasy-name-override: MCPToolServiceSearchRequest + c1.api.ai_governance.v1.MCPToolServiceSearchResponse: + description: MCPToolServiceSearchResponse returns matching MCP tools. properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array list: - description: The list of results containing up to X results, where X is the page size defined in the request. + description: Matching MCP tools. items: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceView' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPTool' + type: + - array + - "null" nextPageToken: - description: |- - The nextPageToken is shown for the next page if the number of results is larger than the max page size. - The server returns one page of results and the nextPageToken until all results are retreived. - To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + description: Token for next page. type: string - title: App Resource Service List Response + title: Mcp Tool Service Search Response type: object - x-speakeasy-name-override: AppResourceServiceListResponse - c1.api.app.v1.AppResourceServiceUpdateRequestInput: - description: The request message for updating an app resource. + x-speakeasy-name-override: MCPToolServiceSearchResponse + c1.api.ai_governance.v1.MCPToolServiceUpdateRequestInput: + description: MCPToolServiceUpdateRequest updates an existing MCP tool. properties: - appResource: - $ref: '#/components/schemas/c1.api.app.v1.AppResource' - expandMask: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceExpandMask' + tool: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPTool' + - type: "null" updateMask: - nullable: true - readOnly: false - type: string - title: App Resource Service Update Request + type: + - string + - "null" + title: Mcp Tool Service Update Request type: object - x-speakeasy-name-override: AppResourceServiceUpdateRequest - c1.api.app.v1.AppResourceServiceUpdateResponse: - description: The response message for updating an app resource. + x-speakeasy-name-override: MCPToolServiceUpdateRequest + c1.api.ai_governance.v1.MCPToolServiceUpdateResponse: + description: MCPToolServiceUpdateResponse returns the updated MCP tool. properties: - appResourceView: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceView' - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - title: App Resource Service Update Response + tool: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPTool' + - type: "null" + title: Mcp Tool Service Update Response type: object - x-speakeasy-name-override: AppResourceServiceUpdateResponse - c1.api.app.v1.AppResourceType: - description: The AppResourceType is referenced by an app entitlement defining its resource types. Commonly things like Group or Role. + x-speakeasy-name-override: MCPToolServiceUpdateResponse + c1.api.ai_governance.v1.RequestableConnector: + description: RequestableConnector identifies a connector that has requestable MCP access profiles. properties: appId: - description: The ID of the app that is associated with the app resource type - readOnly: true + description: App identifier. type: string - createdAt: - format: date-time - readOnly: true + connectorId: + description: Connector identifier. type: string - deletedAt: - format: date-time - readOnly: true + title: Requestable Connector + type: object + x-speakeasy-name-override: RequestableConnector + c1.api.ai_governance.v1.RequestableConnectorView: + description: RequestableConnectorView is a card-ready MCP connector entry. + properties: + appId: + description: App identifier. type: string - displayName: - description: The display name of the app resource type. - readOnly: false + connectorId: + description: Connector identifier. type: string - id: - description: The unique ID for the app resource type. - readOnly: true + description: + description: Connector description. type: string - traitIds: - description: Associated trait ids - items: - type: string - nullable: true - readOnly: false - type: array - updatedAt: - format: date-time - readOnly: true + displayName: + description: Connector display name (falls back to the owning app's display name). type: string - title: App Resource Type + granted: + description: |- + True when the user actively holds a grant on at least one of this + connector's MCP entitlements. + type: boolean + toolCount: + description: |- + Count of ALL approved tools bound under this connector (connector-wide), + NOT scoped to the tools this user can request. 0 when unknown. + format: int32 + type: integer + title: Requestable Connector View type: object - x-speakeasy-entity: App Resource Type - x-speakeasy-name-override: AppResourceType - c1.api.app.v1.AppResourceTypeServiceGetResponse: + x-speakeasy-name-override: RequestableConnectorView + c1.api.ai_governance.v1.UpdateAIGovernanceSettingsRequest: description: |- - The AppResourceTypeServiceGetResponse contains an expanded array containing the expanded values indicated by the expand mask - in the request and an app resource type view containing the resource type and JSONPATHs indicating which objects are where in the expand mask. + UpdateAIGovernanceSettingsRequest is the request to update the tenant's AI + governance settings. properties: - appResourceTypeView: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceTypeView' - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - title: App Resource Type Service Get Response - type: object - x-speakeasy-name-override: AppResourceTypeServiceGetResponse - c1.api.app.v1.AppResourceTypeServiceListResponse: - description: The AppResourceTypeServiceListResponse message contains a list of results and a nextPageToken if applicable. + aiGovernanceSettings: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.AIGovernanceSettings' + - type: "null" + updateMask: + type: + - string + - "null" + title: Update Ai Governance Settings Request + type: object + x-speakeasy-name-override: UpdateAIGovernanceSettingsRequest + c1.api.ai_governance.v1.UpdateAIGovernanceSettingsResponse: + description: UpdateAIGovernanceSettingsResponse contains the updated AI governance settings. + properties: + aiGovernanceSettings: + oneOf: + - $ref: '#/components/schemas/c1.api.ai_governance.v1.AIGovernanceSettings' + - type: "null" + title: Update Ai Governance Settings Response + type: object + x-speakeasy-name-override: UpdateAIGovernanceSettingsResponse + c1.api.app.v1.AddAppEntitlementOwnerRequestInput: + description: The request message for adding an app entitlement owner. properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - list: - description: The list of results containing up to X results, where X is the page size defined in the request. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceTypeView' - nullable: true - readOnly: false - type: array - nextPageToken: - description: |- - The nextPageToken is shown for the next page if the number of results is larger than the max page size. - The server returns one page of results and the nextPageToken until all results are retreived. - To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + userId: + description: The user_id field for the user to add as an owner of the app entitlement. type: string - title: App Resource Type Service List Response + title: Add App Entitlement Owner Request type: object - x-speakeasy-name-override: AppResourceTypeServiceListResponse - c1.api.app.v1.AppResourceTypeView: - description: The AppResourceTypeView message. + x-speakeasy-name-override: AddAppEntitlementOwnerRequest + c1.api.app.v1.AddAppEntitlementOwnerResponse: + description: The empty response message for adding an app entitlement owner. + title: Add App Entitlement Owner Response + type: object + x-speakeasy-name-override: AddAppEntitlementOwnerResponse + c1.api.app.v1.AddAppOwnerRequestInput: + description: Empty request body. Just placeholder for the add app owner request which uses URL values for input. + title: Add App Owner Request + type: object + x-speakeasy-name-override: AddAppOwnerRequest + c1.api.app.v1.AddAppOwnerResponse: + description: Empty response with a status code indicating success + title: Add App Owner Response + type: object + x-speakeasy-name-override: AddAppOwnerResponse + c1.api.app.v1.AddAppResourceOwnerRequestInput: + description: The request message for adding an owner to an app resource. properties: - appPath: - description: JSONPATH expression indicating the location of the App object in the array - readOnly: false + userId: + description: The C1 user ID to add as an owner. type: string - appResourceType: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceType' - title: App Resource Type View + title: Add App Resource Owner Request type: object - x-speakeasy-name-override: AppResourceTypeView - c1.api.app.v1.AppResourceView: - description: The app resource view returns an app resource with paths for items in the expand mask filled in when this response is returned and a request expand mask has "*" or "app_id" or "resource_type_id". + x-speakeasy-name-override: AddAppResourceOwnerRequest + c1.api.app.v1.AddAppResourceOwnerResponse: + description: The empty response message for adding an owner to an app resource. + title: Add App Resource Owner Response + type: object + x-speakeasy-name-override: AddAppResourceOwnerResponse + c1.api.app.v1.AddAutomationExclusionRequestInput: + description: The AddAutomationExclusionRequest message. properties: - appPath: - description: JSONPATH expression indicating the location of the App object in the array - readOnly: false - type: string - appResource: - $ref: '#/components/schemas/c1.api.app.v1.AppResource' - objectPermissions: - $ref: '#/components/schemas/c1.api.iam.v1.ActorObjectPermissions' - parentResourcePath: - description: JSONPATH expression indicating the location of the Parent Resource object in the array - readOnly: false - type: string - parentResourceTypePath: - description: JSONPATH expression indicating the location of the Parent Resource Type object in the array - readOnly: false - type: string - resourceTypePath: - description: JSONPATH expression indicating the location of the Resource Type object in the array - readOnly: false - type: string - title: App Resource View + userIds: + description: The IDs of users to add to the automation exclusion list. + items: + type: string + type: + - array + - "null" + title: Add Automation Exclusion Request type: object - x-speakeasy-name-override: AppResourceView - c1.api.app.v1.AppUsageControls: - description: The AppUsageControls object describes some peripheral configuration for an app. + x-speakeasy-name-override: AddAutomationExclusionRequest + c1.api.app.v1.AddAutomationExclusionResponse: + description: Empty response with a status code indicating success. + title: Add Automation Exclusion Response + type: object + x-speakeasy-name-override: AddAutomationExclusionResponse + c1.api.app.v1.AddManuallyManagedUsersRequestInput: + description: The AddManuallyManagedUsersRequest message. properties: - appId: - description: The app that this object belongs to. - readOnly: false - type: string - notify: - description: Whether or not to notify some if they have access to the app, but has not used it within a configurable amount of time. - readOnly: false - type: boolean - notifyAfterDays: - description: The duration in days after which we notify users of nonusage. - format: uint32 - readOnly: false - type: integer - revoke: - description: Whether or not to revoke a grant if they have access to the app, but has not used it within a configurable amount of time. - readOnly: false - type: boolean - revokeAfterDays: - description: The duration in days after which we revoke users that have not used that grant. - format: uint32 - readOnly: false - type: integer - title: App Usage Controls + userIds: + description: The IDs of users to add as manually managed members. + items: + type: string + type: + - array + - "null" + title: Add Manually Managed Users Request type: object - x-speakeasy-name-override: AppUsageControls - c1.api.app.v1.AppUser: - description: Application User that represents an account in the application. + x-speakeasy-name-override: AddManuallyManagedUsersRequest + c1.api.app.v1.AgentTrait: + description: AgentTrait carries metadata for AI-agent resources surfaced in the Inventory. properties: - appId: - description: The ID of the application. - readOnly: true + identityAppUserId: + description: |- + The C1 app user ID of the service-account identity this agent authenticates as. + Empty if the backing identity has not yet been resolved. type: string - appUserType: - description: The appplication user type. Type can be user, system or service. + status: + description: The agent's lifecycle status (READY, DISABLED, DELETED). enum: - - APP_USER_TYPE_UNSPECIFIED - - APP_USER_TYPE_USER - - APP_USER_TYPE_SERVICE_ACCOUNT - - APP_USER_TYPE_SYSTEM_ACCOUNT - readOnly: false + - AGENT_STATUS_UNSPECIFIED + - AGENT_STATUS_READY + - AGENT_STATUS_DISABLED + - AGENT_STATUS_DELETED + type: string + x-speakeasy-unknown-values: allow + title: Agent Trait + type: object + x-speakeasy-name-override: AgentTrait + c1.api.app.v1.App: + description: The App object provides all of the details for an app, as well as some configuration. + properties: + accessModel: + description: |- + How this app models access. Derived during uplift from the app's resource type traits. + Sparse ACL feature. + enum: + - APP_ACCESS_MODEL_UNSPECIFIED + - APP_ACCESS_MODEL_CLASSIC + - APP_ACCESS_MODEL_HYBRID + - APP_ACCESS_MODEL_SPARSE type: string x-speakeasy-unknown-values: allow + annotations: + additionalProperties: + type: string + description: |- + Key/value metadata. Up to 16 entries; keys 1-128 chars; values 0-256 + chars; URL-safe ASCII. Keys starting with `c1/` are reserved. + + Updates have PATCH semantics: keys absent from the request are + preserved; an empty value deletes the key. + + Well-known keys: `managed_by`, `iac_workspace`, + `iac_resource_address`, `iac_tool_version`. + type: object + x-speakeasy-terraform-plan-modifier: + imports: + - github.com/conductorone/terraform-provider-conductorone/internal/annotations + schemaDefinition: annotations.PlanModifier() + appAccountId: + description: The ID of the Account named by AccountName. + readOnly: true + type: string + appAccountName: + description: The AccountName of the app. For example, AWS is AccountID, Github is Org Name, and Okta is Okta Subdomain. + readOnly: true + type: string + appOwners: + description: The owners of the app. + items: + $ref: '#/components/schemas/c1.api.user.v1.User' + readOnly: true + type: + - array + - "null" + appUserMapper: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppUserMapper' + - type: "null" + certifyPolicyId: + description: The ID of the Certify Policy associated with this App. + type: string + connectorVersion: + description: The connectorVersion field. + format: uint32 + type: integer createdAt: format: date-time readOnly: true + type: + - string + - "null" + defaultRequestCatalogId: + description: The ID for the default request catalog for this app. type: string deletedAt: format: date-time readOnly: true + type: + - string + - "null" + description: + description: The app's description. type: string displayName: - description: The display name of the application user. - readOnly: true + description: The app's display name. type: string - email: - description: The email field of the application user. + enableConnectorSourcedOwnership: + description: When enabled, resource ownership is sourced from the connector. + type: boolean + fieldMask: readOnly: true + type: + - string + - "null" + grantPolicyId: + description: The ID of the Grant Policy associated with this App. + type: string + iconUrl: + description: The URL of an icon to display for the app. type: string - emails: - description: The emails field of the application user. - items: - type: string - nullable: true - readOnly: true - type: array - employeeIds: - description: The employee IDs field of the application user. - items: - type: string - nullable: true - readOnly: true - type: array id: - description: A unique idenditfier of the application user. + description: The ID of the app. readOnly: true type: string - identityUserId: - description: The conductor one user ID of the account owner. - readOnly: true + identityMatching: + description: The identityMatching field. + enum: + - APP_USER_IDENTITY_MATCHING_UNSPECIFIED + - APP_USER_IDENTITY_MATCHING_STRICT + - APP_USER_IDENTITY_MATCHING_DISPLAY_NAME + - APP_USER_IDENTITY_MATCHING_CUSTOM type: string - isExternal: - description: The isExternal field. + x-speakeasy-unknown-values: allow + instructions: + description: If you add instructions here, they will be shown to users in the access request form when requesting access for this app. + type: string + isDirectory: + description: Specifies if the app is a directory. readOnly: true type: boolean - profile: - additionalProperties: true - readOnly: true - type: object - status: - $ref: '#/components/schemas/c1.api.app.v1.AppUserStatus' - updatedAt: - format: date-time - readOnly: true - type: string - username: - description: The username field of the application user. + isManuallyManaged: + description: The isManuallyManaged field. + type: boolean + logoUri: + description: The URL of a logo to display for the app. readOnly: true type: string - usernames: - description: The usernames field of the application user. - items: - type: string - nullable: true - readOnly: true - type: array - title: App User - type: object - x-speakeasy-name-override: AppUser - c1.api.app.v1.AppUserCredential: - description: | - A credentials for the Application User that represents an account in the application. - - This message contains a oneof named credential. Only a single field of the following list may be set at a time: - - encryptedData - properties: - appId: - description: The ID of the application. - readOnly: true - type: string - appUserId: - description: A unique identifier of the application user. - readOnly: true - type: string - createdAt: - format: date-time - readOnly: true - type: string - deletedAt: - format: date-time + matchBatonRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppMatchBatonRef' + - type: "null" + monthlyCostUsd: + description: The cost of an app per-seat, so that total cost can be calculated by the grant count. + format: int32 + type: integer + parentAppId: + description: The ID of the app that created this app, if any. readOnly: true type: string - encryptedData: - $ref: '#/components/schemas/c1.api.app.v1.EncryptedData' - expiresAt: - format: date-time - readOnly: false - type: string - id: - description: A unique identifier of the credential. - readOnly: true + revokeGrantSources: + description: When enabled, revoking a grant also revokes the grants that source it. + type: boolean + revokePolicyId: + description: The ID of the Revoke Policy associated with this App. type: string + strictAccessEntitlementProvisioning: + description: The strictAccessEntitlementProvisioning field. + type: boolean updatedAt: format: date-time readOnly: true + type: + - string + - "null" + userCount: + description: The number of users with grants to this app. + format: int64 + readOnly: true type: string - title: App User Credential - type: object - x-speakeasy-name-override: AppUserCredential - c1.api.app.v1.AppUserExpandMask: - description: The AppUserExpandMask message contains a list of paths to expand in the response. - properties: - paths: - description: The paths to expand in the response. May be any combination of "*", "identity_user_id", "app_id", and "last_usage". - items: - type: string - nullable: true - readOnly: false - type: array - title: App User Expand Mask - type: object - x-speakeasy-name-override: AppUserExpandMask - c1.api.app.v1.AppUserMapper: - description: AppUserMapper configures custom account mapping for uplift. - properties: - mappingCases: - description: Ordered list of match cases. Each case defines a pair of CEL key extractors. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppUserMapperMatchCase' - nullable: true - readOnly: false - type: array - title: App User Mapper - type: object - x-speakeasy-name-override: AppUserMapper - c1.api.app.v1.AppUserMapperMatchCase: - description: AppUserMapperMatchCase defines a single matching rule for uplift account mapping. - properties: - appUserKeyCel: - description: CEL expression evaluated against an AppUser to produce match key(s). - readOnly: false - type: string - userKeyCel: - description: CEL expression evaluated against a User to produce match key(s). - readOnly: false - type: string - title: App User Mapper Match Case - type: object - x-speakeasy-name-override: AppUserMapperMatchCase - c1.api.app.v1.AppUserRef: - description: The AppUserRef message. - properties: - appId: - description: The ID of the application. - readOnly: false - type: string - id: - description: The ID of the app user. - readOnly: false - type: string - title: App User Ref - type: object - x-speakeasy-name-override: AppUserRef - c1.api.app.v1.AppUserServiceListCredentialsResponse: - description: The response message for listing credentials of an app user. - properties: - list: - description: The list of credential results. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppUserCredential' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The token for fetching the next page of results. - readOnly: false - type: string - title: App User Service List Credentials Response - type: object - x-speakeasy-name-override: AppUserServiceListCredentialsResponse - c1.api.app.v1.AppUserServiceListResponse: - description: The response message for listing app users. - properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - list: - description: The list of app user results. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppUserView' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The token for fetching the next page of results. - readOnly: false - type: string - title: App User Service List Response + title: App type: object - x-speakeasy-name-override: AppUserServiceListResponse - c1.api.app.v1.AppUserServiceSearchRequest: - description: Search App users based on filters specified in the request body + x-speakeasy-entity: App + x-speakeasy-name-override: App + c1.api.app.v1.AppAccessRequestDefaults: + description: | + The AppAccessRequestDefaults message. + + This message contains a oneof named max_grant_duration. Only a single field of the following list may be set at a time: + - durationUnset + - durationGrant properties: appId: - description: The app ID to restrict the search to. - readOnly: false + description: The app id for the app access request rule type: string - appUserDomains: - description: A list of account domains to restrict the search to. - items: - enum: - - APP_USER_DOMAIN_UNSPECIFIED - - APP_USER_DOMAIN_EXTERNAL - - APP_USER_DOMAIN_TRUSTED - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - appUserIds: - description: A list of app user IDs to restrict the search to. - items: - type: string - nullable: true - readOnly: false - type: array - appUserStatusDetails: - description: A list of app user status details to restrict the search to. - items: - type: string - nullable: true - readOnly: false - type: array - appUserStatuses: - description: A list of app user statuses to restrict the search to. - items: - enum: - - STATUS_UNSPECIFIED - - STATUS_ENABLED - - STATUS_DISABLED - - STATUS_DELETED - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - appUserTypes: - description: A list of app user types to restrict the search to. - items: - enum: - - APP_USER_TYPE_UNSPECIFIED - - APP_USER_TYPE_USER - - APP_USER_TYPE_SERVICE_ACCOUNT - - APP_USER_TYPE_SYSTEM_ACCOUNT - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - excludeAppUserIds: - description: A list of app user IDs to remove from the results. + catalogIds: + description: The request catalog ids for the app access request rule. items: type: string - nullable: true - readOnly: false - type: array - expandMask: - $ref: '#/components/schemas/c1.api.app.v1.AppUserExpandMask' - pageSize: - description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) - format: int32 - readOnly: false - type: integer - pageToken: - description: The pageToken field. - readOnly: false - type: string - query: - description: Query the apps with a fuzzy search on display name and description. - readOnly: false + type: + - array + - "null" + defaultsEnabled: + description: If true the app level request configuration will be applied to specified resource types. + type: boolean + durationGrant: + format: duration + type: + - string + - "null" + durationUnset: + type: + - object + - "null" + emergencyGrantEnabled: + description: If emergency grants are enabled for this app access request rule. + type: boolean + emergencyGrantPolicyId: + description: The policy id for the emergency grant policy. type: string - refs: - description: A list of app users to limit the search to. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppUserRef' - nullable: true - readOnly: false - type: array - userIds: - description: A list of user IDs to restrict the search by. - items: - type: string - nullable: true - readOnly: false - type: array - title: App User Service Search Request - type: object - x-speakeasy-name-override: AppUserServiceSearchRequest - c1.api.app.v1.AppUserServiceSearchResponse: - description: The AppUserServiceSearchResponse message. - properties: - expanded: - description: List of related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - list: - description: The list of results containing up to X results, where X is the page size defined in the request. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppUserView' - nullable: true - readOnly: false - type: array - nextPageToken: - description: |- - The nextPageToken is shown for the next page if the number of results is larger than the max page size. - The server returns one page of results and the nextPageToken until all results are retrieved. - To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + requestPolicyId: + description: The ID of the request policy to apply to entitlements matching this rule. type: string - title: App User Service Search Response - type: object - x-speakeasy-name-override: AppUserServiceSearchResponse - c1.api.app.v1.AppUserServiceUpdateRequestInput: - description: The AppUserServiceUpdateRequest message contains the app user and the fields to be updated. - properties: - appUser: - $ref: '#/components/schemas/c1.api.app.v1.AppUser' - expandMask: - $ref: '#/components/schemas/c1.api.app.v1.AppUserExpandMask' - updateMask: - nullable: true - readOnly: false + requestSchemaId: + description: The ID of the request schema to apply to entitlements matching this rule. type: string - title: App User Service Update Request - type: object - x-speakeasy-name-override: AppUserServiceUpdateRequest - c1.api.app.v1.AppUserServiceUpdateResponse: - description: The AppUserServiceUpdateResponse message. - properties: - appUserView: - $ref: '#/components/schemas/c1.api.app.v1.AppUserView' - expanded: - description: The expanded field. + resourceTypeIds: + description: The app resource type ids for which the app access request defaults are applied. items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - title: App User Service Update Response - type: object - x-speakeasy-name-override: AppUserServiceUpdateResponse - c1.api.app.v1.AppUserStatus: - description: The satus of the applicaiton user. - properties: - details: - description: The details of applicaiton user status. - readOnly: true - type: string - status: - description: The application user status field. + type: string + type: + - array + - "null" + state: + description: The last applied state of the app access request defaults. enum: - - STATUS_UNSPECIFIED - - STATUS_ENABLED - - STATUS_DISABLED - - STATUS_DELETED - readOnly: true + - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_UNSPECIFIED + - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_RUNNING + - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_SUCCESS + - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_FAILED + - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_CANCELING + - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_CANCEL_SUCCESS + - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_CANCEL_ERROR type: string x-speakeasy-unknown-values: allow - title: App User Status + title: App Access Request Defaults type: object - x-speakeasy-name-override: AppUserStatus - c1.api.app.v1.AppUserView: - description: The AppUserView contains an app user as well as paths for apps, identity users, and last usage in expanded arrays. + x-speakeasy-name-override: AppAccessRequestDefaults + c1.api.app.v1.AppAccessRequestDefaultsInput: + description: | + The AppAccessRequestDefaults message. + + This message contains a oneof named max_grant_duration. Only a single field of the following list may be set at a time: + - durationUnset + - durationGrant properties: - appPath: - description: JSONPATH expression indicating where the app is expanded in expanded arrays indicated in the request. - readOnly: false + catalogIds: + description: The request catalog ids for the app access request rule. + items: + type: string + type: + - array + - "null" + defaultsEnabled: + description: If true the app level request configuration will be applied to specified resource types. + type: boolean + durationGrant: + format: duration + type: + - string + - "null" + durationUnset: + type: + - object + - "null" + emergencyGrantEnabled: + description: If emergency grants are enabled for this app access request rule. + type: boolean + emergencyGrantPolicyId: + description: The policy id for the emergency grant policy. type: string - appUser: - $ref: '#/components/schemas/c1.api.app.v1.AppUser' - identityUserPath: - description: JSONPATH expression indicating where the identity user is expanded in expanded arrays indicated in the request. - readOnly: false + requestPolicyId: + description: The ID of the request policy to apply to entitlements matching this rule. type: string - lastUsagePath: - description: JSONPATH expression indicating where the last usage information is expanded in expanded arrays indicated in the request. - readOnly: false + requestSchemaId: + description: The ID of the request schema to apply to entitlements matching this rule. type: string - title: App User View - type: object - x-speakeasy-name-override: AppUserView - c1.api.app.v1.AppUsersForUserServiceListResponse: - description: The response message for listing app users correlated to a specific C1 user. - properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - list: - description: The list of app user results. + resourceTypeIds: + description: The app resource type ids for which the app access request defaults are applied. items: - $ref: '#/components/schemas/c1.api.app.v1.AppUserView' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The token for fetching the next page of results. - readOnly: false + type: string + type: + - array + - "null" + state: + description: The last applied state of the app access request defaults. + enum: + - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_UNSPECIFIED + - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_RUNNING + - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_SUCCESS + - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_FAILED + - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_CANCELING + - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_CANCEL_SUCCESS + - APP_ACCESS_REQUEST_DEFAULTS_LAST_APPLY_STATE_CANCEL_ERROR type: string - title: App Users For User Service List Response - type: object - x-speakeasy-name-override: AppUsersForUserServiceListResponse - c1.api.app.v1.CancelAccessRequestDefaultsRequestInput: - description: The CancelAccessRequestDefaultsRequest message. - title: Cancel Access Request Defaults Request + x-speakeasy-unknown-values: allow + title: App Access Request Defaults type: object - x-speakeasy-name-override: CancelAccessRequestDefaultsRequest - c1.api.app.v1.ConfirmSyncValidRequestInput: - description: The ConfirmSyncValidRequest message contains the fields required to confirm a sync as valid. - title: Confirm Sync Valid Request + x-speakeasy-name-override: AppAccessRequestDefaults + c1.api.app.v1.AppActionsServiceGenerateReportRequestInput: + description: Empty request body. Just placeholder for the generate app report request which uses URL values for input. + title: App Actions Service Generate Report Request type: object - x-speakeasy-name-override: ConfirmSyncValidRequest - c1.api.app.v1.ConfirmSyncValidResponse: + x-speakeasy-name-override: AppActionsServiceGenerateReportRequest + c1.api.app.v1.AppActionsServiceGenerateReportResponse: description: Empty response body. Status code indicates success. - title: Confirm Sync Valid Response + title: App Actions Service Generate Report Response type: object - x-speakeasy-name-override: ConfirmSyncValidResponse - c1.api.app.v1.Connector: - description: A Connector is used to sync objects into Apps + x-speakeasy-name-override: AppActionsServiceGenerateReportResponse + c1.api.app.v1.AppEntitlement: + description: | + The app entitlement represents one permission in a downstream App (SAAS) that can be granted. For example, GitHub Read vs GitHub Write. + + This message contains a oneof named max_grant_duration. Only a single field of the following list may be set at a time: + - durationUnset + - durationGrant properties: + alias: + description: The alias of the app entitlement used by Cone. Also exact-match queryable. + type: string + annotations: + additionalProperties: + type: string + description: |- + Bounded key/value metadata bag for IaC marking and customer tags. + See .rfcs/object-annotations.md §2. Limits: ≤16 entries; keys 1–128 + chars matching ^[A-Za-z][A-Za-z0-9._/-]{0,127}$; values 0–256 chars + URL-safe ASCII; total serialized ≤ 4096 bytes. Keys matching ^c1/ + are reserved. + + Well-known keys: `managed_by`, `iac_workspace`, + `iac_resource_address`, `iac_tool_version`. + type: object + x-speakeasy-terraform-plan-modifier: + imports: + - github.com/conductorone/terraform-provider-conductorone/internal/annotations + schemaDefinition: annotations.PlanModifier() appId: - description: The id of the app the connector is associated with. - readOnly: false + description: The ID of the app that is associated with the app entitlement. type: string - canResumeSync: - description: The canResumeSync field. - readOnly: false - type: boolean - catalogId: - description: The catalogId describes which catalog entry this connector is an instance of. For example, every Okta connector will have the same catalogId indicating it is an Okta connector. - readOnly: false + appResourceId: + description: The ID of the app resource that is associated with the app entitlement type: string - config: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - configUpdatedAt: - format: date-time - readOnly: true + appResourceTypeId: + description: The ID of the app resource type that is associated with the app entitlement type: string - connectorApiVersion: - description: The connectorApiVersion field. - format: uint32 - readOnly: true - type: integer - connectorSyncCronSchedule: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorSyncCronSchedule' + certifyPolicyId: + description: The ID of the policy that will be used for certify tickets related to the app entitlement. + type: string + complianceFrameworkValueIds: + description: The IDs of different compliance frameworks associated with this app entitlement ex (SOX, HIPAA, PCI, etc.) + items: + type: string + type: + - array + - "null" createdAt: format: date-time readOnly: true - type: string + type: + - string + - "null" + defaultValuesApplied: + description: Flag to indicate if app-level access request defaults have been applied to the entitlement + type: boolean deletedAt: format: date-time readOnly: true - type: string + type: + - string + - "null" + deprovisionerPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ProvisionPolicy' + - type: "null" description: - description: The description of the connector. - readOnly: false + description: The description of the app entitlement. type: string - disableCheckBadSync: - description: The disableCheckBadSync field. - readOnly: false - type: boolean displayName: - description: The display name of the connector. - readOnly: false + description: The display name of the app entitlement. type: string - downloadUrl: - description: The downloadUrl for a spreadsheet if the connector was created from uploading a file. - readOnly: true + durationGrant: + format: duration + type: + - string + - "null" + durationUnset: + type: + - object + - "null" + emergencyGrantEnabled: + description: This enables tasks to be created in an emergency and use a selected emergency access policy. + type: boolean + emergencyGrantPolicyId: + description: The ID of the policy that will be used for emergency access grant tasks. type: string - id: - description: The id of the connector. - readOnly: false + externalId: + description: |- + The upstream product's native external ID for this entitlement (e.g. an Okta group ID). + Populated from the connector's external ID during sync. + readOnly: true type: string - oauthAuthorizedAs: - $ref: '#/components/schemas/c1.api.app.v1.OAuth2AuthorizedAs' - parallelSyncWorkerCount: - description: 'Number of sync workers to use for parallel sync, when the PARALLEL_SYNC feature is enabled. Zero disables parallel sync. Optional on write: omit the field in UpdateAdvancedConfig to leave the stored value unchanged. The public API allows setting up to 4.' - format: int32 - nullable: true - readOnly: false - type: integer - profileAllowList: - description: List of profile attributes to sync, when set only these attributes will be synced - items: - type: string - nullable: true - readOnly: false - type: array - profileIgnoreList: - description: List of profile attributes to ignore (not sync), when set other attributes will be synced, but these will not. - items: - type: string - nullable: true - readOnly: false - type: array - status: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorStatus' - syncConfig: - $ref: '#/components/schemas/c1.api.app.v1.SyncConfig' - syncDisabledAt: - format: date-time + grantCount: + description: The amount of grants open for this entitlement + format: int64 readOnly: true type: string - syncDisabledCategory: - description: The category of the connector sync that was disabled. - readOnly: false + grantPolicyId: + description: The ID of the policy that will be used for grant tickets related to the app entitlement. type: string - syncDisabledReason: - description: The reason the connector sync was disabled. - readOnly: false + id: + description: The unique ID for the App Entitlement. + readOnly: true type: string - updatedAt: - format: date-time + isAutomationEnabled: + description: Flag to indicate whether automation (for adding users to entitlement based on rules) has been enabled. readOnly: true + type: boolean + isManuallyManaged: + description: Flag to indicate if the app entitlement is manually managed. + type: boolean + matchBatonId: + description: An identifier used to match this entitlement to a connector-synced entitlement during sync. type: string - userIds: - description: The userIds field is used to define the integration owners of the connector. - items: + overrideAccessRequestsDefaults: + description: Flag to indicate if the app-level access request settings have been overridden for the entitlement + type: boolean + provisionerPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ProvisionPolicy' + - type: "null" + purpose: + description: The purpose of this entitlement (e.g., assignment, permission, ownership). + enum: + - APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED + - APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT + - APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION + - APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP + type: string + x-speakeasy-unknown-values: allow + requestSchemaId: + description: The ID of the request schema associated with this app entitlement. + type: string + revokePolicyId: + description: The ID of the policy that will be used for revoke tickets related to the app entitlement + type: string + riskLevelValueId: + description: The ID of the risk level assigned to this entitlement. + type: string + slug: + description: The slug is displayed as an oval next to the name in the frontend of C1, it tells you what permission the entitlement grants. See https://www.conductorone.com/docs/product/admin/entitlements/ + type: string + sourceConnectorIds: + additionalProperties: type: string - nullable: true - readOnly: false - type: array - title: Connector + description: Map to tell us which connector the entitlement came from. + type: object + systemBuiltin: + description: This field indicates if this is a system builtin entitlement. + readOnly: true + type: boolean + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + userEditedMask: + type: + - string + - "null" + title: App Entitlement type: object - x-speakeasy-name-override: Connector - c1.api.app.v1.ConnectorCredential: - description: ConnectorCredential is used by a connector to authenticate with conductor one. + x-speakeasy-entity: Custom App Entitlement + x-speakeasy-name-override: AppEntitlement + c1.api.app.v1.AppEntitlementAutomation: + description: | + The AppEntitlementAutomation message. + + This message contains a oneof named conditions. Only a single field of the following list may be set at a time: + - none + - entitlements + - cel + - basic properties: - appId: - description: The appId of the app the connector is attached to. - readOnly: false - type: string - clientId: - description: The client id of the ConnectorCredential. - readOnly: false - type: string - clientSecret: - description: The client secret of the ConnectorCredential. It's only returned on creation. - readOnly: false + appEntitlementId: + description: The unique ID for the App Entitlement. + readOnly: true type: string - connectorId: - description: The connectorId of the connector the credential is associated with. - readOnly: false + appId: + description: The ID of the app that is associated with the app entitlement. + readOnly: true type: string + basic: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomationRuleBasic' + - type: "null" + cel: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomationRuleCEL' + - type: "null" createdAt: format: date-time readOnly: true - type: string + type: + - string + - "null" deletedAt: format: date-time readOnly: true + type: + - string + - "null" + description: + description: The description of the app entitlement. type: string displayName: - description: The display name of the ConnectorCredential. - readOnly: false + description: The display name of the app entitlement. type: string - expiresTime: + entitlements: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomationRuleEntitlement' + - type: "null" + lastRunStatus: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomationLastRunStatus' + - type: "null" + managedByRequestCatalogId: + description: |- + When set, this automation is managed by an access profile's bundle automation. + Read-only. Not settable via this API. + readOnly: true + type: string + none: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomationRuleNone' + - type: "null" + updatedAt: format: date-time readOnly: true + type: + - string + - "null" + title: App Entitlement Automation + type: object + x-speakeasy-entity: App Entitlement Automation + x-speakeasy-name-override: AppEntitlementAutomation + c1.api.app.v1.AppEntitlementAutomationLastRunStatus: + description: The AppEntitlementAutomationLastRunStatus message. + properties: + errorMessage: + description: The errorMessage field. + readOnly: true type: string - id: - description: The id of the ConnectorCredential. - readOnly: false + lastCompletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + status: + description: The status field. + enum: + - APP_ENTITLEMENT_AUTOMATION_RUN_STATUS_UNSPECIFIED + - APP_ENTITLEMENT_AUTOMATION_RUN_STATUS_SUCCESS + - APP_ENTITLEMENT_AUTOMATION_RUN_STATUS_FAILED + - APP_ENTITLEMENT_AUTOMATION_RUN_STATUS_IN_PROGRESS + readOnly: true type: string - lastUsedAt: + x-speakeasy-unknown-values: allow + title: App Entitlement Automation Last Run Status + type: object + x-speakeasy-name-override: AppEntitlementAutomationLastRunStatus + c1.api.app.v1.AppEntitlementAutomationRuleBasic: + description: The AppEntitlementAutomationRuleBasic message. + properties: + expression: + description: The expression field. + type: string + title: App Entitlement Automation Rule Basic + type: object + x-speakeasy-name-override: AppEntitlementAutomationRuleBasic + c1.api.app.v1.AppEntitlementAutomationRuleCEL: + description: The AppEntitlementAutomationRuleCEL message. + properties: + expression: + description: The expression field. + type: string + title: App Entitlement Automation Rule Cel + type: object + x-speakeasy-name-override: AppEntitlementAutomationRuleCEL + c1.api.app.v1.AppEntitlementAutomationRuleEntitlement: + description: The AppEntitlementAutomationRuleEntitlement message. + properties: + entitlementRefs: + description: The entitlementRefs field. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + title: App Entitlement Automation Rule Entitlement + type: object + x-speakeasy-name-override: AppEntitlementAutomationRuleEntitlement + c1.api.app.v1.AppEntitlementAutomationRuleNone: + description: The AppEntitlementAutomationRuleNone message. + title: App Entitlement Automation Rule None + type: object + x-speakeasy-name-override: AppEntitlementAutomationRuleNone + c1.api.app.v1.AppEntitlementExpandMask: + description: The app entitlement expand mask allows the user to get additional information when getting responses containing app entitlement views. + properties: + paths: + description: Array of strings to describe which items to expand on the return value. Can be any combination of "*", "app_id", "app_resource_type_id", or "app_resource_id". + items: + type: string + type: + - array + - "null" + title: App Entitlement Expand Mask + type: object + x-speakeasy-name-override: AppEntitlementExpandMask + c1.api.app.v1.AppEntitlementProxy: + description: An entitlement proxy binding that defines a hierarchical relationship between two entitlements. + properties: + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + deletedAt: format: date-time readOnly: true + type: + - string + - "null" + disabledAt: + format: date-time + type: + - string + - "null" + dstAppEntitlementId: + description: The ID of the destination (child) entitlement. + type: string + dstAppId: + description: The ID of the app that owns the destination entitlement. + type: string + implicit: + description: If true, the binding does not exist yet and is inferred from the entitlements of the parent app. + type: + - boolean + - "null" + srcAppEntitlementId: + description: The ID of the source (parent) entitlement. + type: string + srcAppId: + description: The ID of the app that owns the source entitlement. type: string + systemBuiltin: + description: If true, this binding was created by the system and cannot be removed by the user. + type: boolean updatedAt: format: date-time readOnly: true - type: string - title: Connector Credential + type: + - string + - "null" + title: App Entitlement Proxy type: object - x-speakeasy-entity: ConnectorCredential - x-speakeasy-name-override: ConnectorCredential - c1.api.app.v1.ConnectorExpandMask: - description: The ConnectorExpandMask is used to expand related objects on a connector. + x-speakeasy-entity: App Entitlement Proxy Binding + x-speakeasy-name-override: AppEntitlementProxy + c1.api.app.v1.AppEntitlementProxyExpandMask: + description: The AppEntitlementProxyExpandMask message. properties: paths: - description: Paths that you want expanded in the response. Possible values are "app_id" and "*". + description: The paths field. items: type: string - nullable: true - readOnly: false - type: array - title: Connector Expand Mask + type: + - array + - "null" + title: App Entitlement Proxy Expand Mask type: object - x-speakeasy-name-override: ConnectorExpandMask - c1.api.app.v1.ConnectorRef: - description: The ConnectorRef message. - nullable: true + x-speakeasy-name-override: AppEntitlementProxyExpandMask + c1.api.app.v1.AppEntitlementProxyView: + description: The AppEntitlementProxyView message. + properties: + appProxyEntitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementProxy' + - type: "null" + dstAppEntitlementPath: + description: The dstAppEntitlementPath field. + type: string + dstAppPath: + description: The dstAppPath field. + type: string + srcAppEntitlementPath: + description: The srcAppEntitlementPath field. + type: string + srcAppPath: + description: The srcAppPath field. + type: string + title: App Entitlement Proxy View + type: object + x-speakeasy-name-override: AppEntitlementProxyView + c1.api.app.v1.AppEntitlementRef: + description: The AppEntitlementRef message. properties: appId: description: The appId field. - readOnly: false type: string id: description: The id field. - readOnly: false type: string - title: Connector Ref + title: App Entitlement Ref type: object - x-speakeasy-name-override: ConnectorRef - c1.api.app.v1.ConnectorScheduleCron: - description: A cron-based schedule definition for connector syncs. - nullable: true + x-speakeasy-name-override: AppEntitlementRef + c1.api.app.v1.AppEntitlementRoutingRule: + description: The AppEntitlementRoutingRule message. properties: - cronSpec: - description: The cron expression defining the sync schedule. - readOnly: false - type: string - timezone: - description: The IANA timezone name for the cron schedule (e.g., "America/Los_Angeles"). - readOnly: false + appId: + description: The appId field. + readOnly: true type: string - title: Connector Schedule Cron - type: object - x-speakeasy-name-override: ConnectorScheduleCron - c1.api.app.v1.ConnectorServiceCreateDelegatedRequestInput: - description: The ConnectorServiceCreateDelegatedRequest message contains the fields required to create a connector. - properties: - appEntitlementOwnerRefs: - description: Sets entitlement owners on the app. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - appManagedStateBindingRef: - $ref: '#/components/schemas/c1.api.app.v1.AppManagedStateBindingRef' - catalogId: - description: The catalogId describes which catalog entry this connector is an instance of. For example, every Okta connector will have the same catalogId indicating it is an Okta connector. - readOnly: false + condition: + description: |- + CEL expression evaluated against the entitlement routing rule context. + Empty string is valid and matches every target not matched earlier. type: string + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" description: - description: The description of the connector. - readOnly: false + description: The description field. type: string displayName: - description: The displayName of the connector. - readOnly: false + description: The displayName field. type: string - expandMask: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorExpandMask' - userIds: - description: The userIds field is used to define the integration owners of the connector. - items: - type: string - nullable: true - readOnly: false - type: array - title: Connector Service Create Delegated Request + enabled: + description: The enabled field. + type: boolean + id: + description: The id field. + readOnly: true + type: string + priority: + description: |- + Evaluation order: lower numbers evaluate first; rules are sorted by + (priority asc, id asc). On create, this is a 1-indexed insertion slot and + the server re-packs siblings densely; omit it to append last. Ignored on + update — use ReorderAppEntitlementRoutingRules (list order = priority order) + to change an existing rule's position. + format: int32 + type: integer + settings: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRoutingRuleSettings' + - type: "null" + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: App Entitlement Routing Rule type: object - x-speakeasy-name-override: ConnectorServiceCreateDelegatedRequest - c1.api.app.v1.ConnectorServiceCreateRequestInput: - description: The ConnectorServiceCreateRequest message. + x-speakeasy-name-override: AppEntitlementRoutingRule + c1.api.app.v1.AppEntitlementRoutingRuleSettings: + description: The AppEntitlementRoutingRuleSettings message. properties: - catalogId: - description: The catalogId field. - readOnly: false + emergencyGrantEnabled: + description: The emergencyGrantEnabled field. + type: boolean + emergencyGrantPolicyId: + description: The emergencyGrantPolicyId field. type: string - config: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - description: - description: The description field. - readOnly: false + maxGrantDuration: + format: duration + type: + - string + - "null" + requestPolicyId: + description: The requestPolicyId field. type: string - expandMask: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorExpandMask' - userIds: - description: The userIds field. - items: - type: string - nullable: true - readOnly: false - type: array - title: Connector Service Create Request + requestSchemaId: + description: The requestSchemaId field. + type: string + title: App Entitlement Routing Rule Settings type: object - x-speakeasy-name-override: ConnectorServiceCreateRequest - c1.api.app.v1.ConnectorServiceCreateResponse: - description: The ConnectorServiceCreateResponse is the response returned from creating a connector. + x-speakeasy-name-override: AppEntitlementRoutingRuleSettings + c1.api.app.v1.AppEntitlementSearchServiceCountGrantsForUserByAppRequest: + description: CountGrantsForUserByApp request. properties: - connectorView: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorView' - expanded: - description: The array of expanded items indicated by the request. + appIds: + description: |- + Restrict the count to these applications. Empty counts grants across all + applications the user has access to. items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - title: Connector Service Create Response - type: object - x-speakeasy-name-override: ConnectorServiceCreateResponse - c1.api.app.v1.ConnectorServiceDeleteRequestInput: - description: ConnectorServiceDeleteRequest is a request for deleting a connector. It uses URL values for input. - title: Connector Service Delete Request - type: object - x-speakeasy-name-override: ConnectorServiceDeleteRequest - c1.api.app.v1.ConnectorServiceDeleteResponse: - description: Empty response body. Status code indicates success. - title: Connector Service Delete Response + type: string + type: + - array + - "null" + userId: + description: The user whose grants to count. + type: string + title: App Entitlement Search Service Count Grants For User By App Request type: object - x-speakeasy-name-override: ConnectorServiceDeleteResponse - c1.api.app.v1.ConnectorServiceGetCredentialsResponse: - description: ConnectorServiceGetCredentialsResponse is the response returned by the get method. + x-speakeasy-name-override: AppEntitlementSearchServiceCountGrantsForUserByAppRequest + c1.api.app.v1.AppEntitlementSearchServiceCountGrantsForUserByAppResponse: + description: |- + CountGrantsForUserByApp response. Grant counts are computed directly from + grant bindings and are an upper bound on what SearchGraph renders for the + same user and app filter — SearchGraph applies additional filters that + these counts do not. properties: - credential: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorCredential' - title: Connector Service Get Credentials Response + appCount: + description: The number of applications represented in app_grant_counts. + format: int32 + type: integer + appGrantCounts: + description: |- + Grant counts, one entry per application the user has at least one grant + in (or per requested app_id, if narrower). + items: + $ref: '#/components/schemas/c1.api.app.v1.GraphAppGrantCount' + type: + - array + - "null" + appUsers: + description: |- + The user's accounts, scoped by the app_ids filter when provided. Includes + accounts with zero counted grants. Lets callers filter a subsequent access + graph by account without a second lookup. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppUserRef' + type: + - array + - "null" + band: + description: |- + Advisory size classification for the user's access graph. See + GraphSizeBand. + enum: + - GRAPH_SIZE_BAND_UNSPECIFIED + - GRAPH_SIZE_BAND_NORMAL + - GRAPH_SIZE_BAND_SUMMARIZED + - GRAPH_SIZE_BAND_TOO_LARGE + type: string + x-speakeasy-unknown-values: allow + totalGrants: + description: The sum of grant_count across all app_grant_counts. + format: int64 + type: string + title: App Entitlement Search Service Count Grants For User By App Response type: object - x-speakeasy-name-override: ConnectorServiceGetCredentialsResponse - c1.api.app.v1.ConnectorServiceGetResponse: - description: The ConnectorServiceGetResponse message contains the connectorView, and an expand mask. + x-speakeasy-name-override: AppEntitlementSearchServiceCountGrantsForUserByAppResponse + c1.api.app.v1.AppEntitlementSearchServiceSearchGrantsRequest: + description: The AppEntitlementSearchServiceSearchGrantsRequest message. properties: - connectorView: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorView' - expanded: - description: The array of expanded items indicated by the request. + appIds: + description: Search for grants contained in any of these apps. items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - title: Connector Service Get Response + type: string + type: + - array + - "null" + appUserIds: + description: Search for grants that are granted to any of these app user ids. + items: + type: string + type: + - array + - "null" + entitlementRefs: + description: Search for grants of an entitlement + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + entitlementSlugs: + description: Filter for entitlements whose slug is in this list (e.g. "enrollment" for access profiles) + items: + type: string + type: + - array + - "null" + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementExpandMask' + - type: "null" + pageSize: + description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) + format: int32 + type: integer + pageToken: + description: The pageToken field. + type: string + purpose: + description: Filter for entitlements with these purposes (e.g., ASSIGNMENT for membership entitlements) + items: + enum: + - APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED + - APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT + - APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION + - APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + resourceIds: + description: Search for grants within a resource. + items: + type: string + type: + - array + - "null" + resourceTypeIds: + description: Search grants for given resource types. + items: + type: string + type: + - array + - "null" + userId: + description: Search for grants of a user + type: string + title: App Entitlement Search Service Search Grants Request type: object - x-speakeasy-name-override: ConnectorServiceGetResponse - c1.api.app.v1.ConnectorServiceListResponse: - description: The ConnectorServiceListResponse message contains a list of results and a nextPageToken if applicable + x-speakeasy-name-override: AppEntitlementSearchServiceSearchGrantsRequest + c1.api.app.v1.AppEntitlementSearchServiceSearchGrantsResponse: + description: The AppEntitlementSearchServiceSearchGrantsResponse message. properties: expanded: - description: List of serialized related objects + description: The expanded field. items: additionalProperties: true description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. @@ -5748,323 +8036,352 @@ components: '@type': description: The type of the serialized message. type: string - readOnly: false type: object - nullable: true - readOnly: false - type: array + type: + - array + - "null" list: - description: The list of results containing up to X results, where X is the page size defined in the request + description: The list field. items: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorView' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementWithUserBinding' + type: + - array + - "null" nextPageToken: - description: The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + description: The nextPageToken field. type: string - title: Connector Service List Response - type: object - x-speakeasy-name-override: ConnectorServiceListResponse - c1.api.app.v1.ConnectorServiceRevokeCredentialRequestInput: - description: ConnectorServiceRevokeCredentialRequest is a request for revoking connector credentials. It uses URL values for input. - title: Connector Service Revoke Credential Request - type: object - x-speakeasy-entity: ConnectorCredential - x-speakeasy-name-override: ConnectorServiceRevokeCredentialRequest - c1.api.app.v1.ConnectorServiceRevokeCredentialResponse: - description: Empty response body. Status code indicates success. - title: Connector Service Revoke Credential Response + title: App Entitlement Search Service Search Grants Response type: object - x-speakeasy-entity: ConnectorCredential - x-speakeasy-name-override: ConnectorServiceRevokeCredentialResponse - c1.api.app.v1.ConnectorServiceRotateCredentialRequest: - description: ConnectorServiceRotateCredentialRequest is a request for rotating connector credentials. It uses URL values for input. + x-speakeasy-name-override: AppEntitlementSearchServiceSearchGrantsResponse + c1.api.app.v1.AppEntitlementSearchServiceSearchGraphRequest: + description: |- + SearchGraph request. Builds a filtered access graph starting from a root entity. + Exactly one of user_id, app_id, or resource_id must be set. + Server validates this constraint and returns InvalidArgument if violated. properties: appId: - description: The appId of the app the connector is attached to. - readOnly: false + description: The appId field. type: string - connectorId: - description: The connectorId of the connector that we are rotating the credentials for. - readOnly: false + appIds: + description: Filters — all optional, applied at every traversal hop + items: + type: string + type: + - array + - "null" + entitlementIds: + description: The entitlementIds field. + items: + type: string + type: + - array + - "null" + entitlementNameQuery: + description: The entitlementNameQuery field. + type: string + maxDepth: + description: Traversal controls + format: int32 + type: integer + maxFanOut: + description: |- + Legacy per-parent fan-out limit. Superseded by max_nodes and server-computed + per-parent budgets, but still honored for callers that set it. + format: int32 + type: integer + maxNodes: + description: Overall node budget for the returned subgraph. 0 uses the server default. + format: int32 + type: integer + pageSize: + description: |- + Legacy traversal page size. Superseded by max_nodes, but still honored for + callers that set it. + format: int32 + type: integer + pageToken: + description: |- + Legacy pagination token. Superseded by max_nodes-based traversal, but still + honored for callers that set it. type: string - title: Connector Service Rotate Credential Request - type: object - x-speakeasy-entity: ConnectorCredential - x-speakeasy-name-override: ConnectorServiceRotateCredentialRequest - c1.api.app.v1.ConnectorServiceRotateCredentialResponse: - description: ConnectorServiceRotateCredentialResponse is the response returned by the rotate method. - properties: - credential: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorCredential' - title: Connector Service Rotate Credential Response + resourceId: + description: The resourceId field. + type: string + resourceIds: + description: The resourceIds field. + items: + type: string + type: + - array + - "null" + resourceNameQuery: + description: The resourceNameQuery field. + type: string + resourceTypeIds: + description: The resourceTypeIds field. + items: + type: string + type: + - array + - "null" + userId: + description: Root entity — exactly one must be set + type: string + title: App Entitlement Search Service Search Graph Request type: object - x-speakeasy-name-override: ConnectorServiceRotateCredentialResponse - c1.api.app.v1.ConnectorServiceUpdateDelegatedRequestInput: - description: The ConnectorServiceUpdateDelegatedRequest message contains the fields required to update a connector. + x-speakeasy-name-override: AppEntitlementSearchServiceSearchGraphRequest + c1.api.app.v1.AppEntitlementSearchServiceSearchGraphResponse: + description: SearchGraph response. Contains a subgraph of nodes and edges. properties: - connector: - $ref: '#/components/schemas/c1.api.app.v1.Connector' - expandMask: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorExpandMask' - updateMask: - nullable: true - readOnly: false - type: string - title: Connector Service Update Delegated Request - type: object - x-speakeasy-name-override: ConnectorServiceUpdateDelegatedRequest - c1.api.app.v1.ConnectorServiceUpdateRequestInput: - description: The ConnectorServiceUpdateRequest message contains the fields required to update a connector. - properties: - connector: - $ref: '#/components/schemas/c1.api.app.v1.Connector' - expandMask: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorExpandMask' - updateMask: - nullable: true - readOnly: false + edges: + description: The edges field. + items: + $ref: '#/components/schemas/c1.api.app.v1.GraphEdge' + type: + - array + - "null" + hasMore: + description: The hasMore field. + type: boolean + nodeCeilingHit: + description: |- + True if the server-side node budget stopped the traversal before it + finished walking the graph. Distinct from has_more, which can also be set + by a request timeout or scan limit. + type: boolean + nodes: + description: The nodes field. + items: + $ref: '#/components/schemas/c1.api.app.v1.GraphNode' + type: + - array + - "null" + pageToken: + description: The pageToken field. type: string - title: Connector Service Update Request - type: object - x-speakeasy-name-override: ConnectorServiceUpdateRequest - c1.api.app.v1.ConnectorServiceUpdateResponse: - description: ConnectorServiceUpdateResponse is the response returned by the update method. - properties: - connectorView: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorView' - expanded: - description: The array of expanded items indicated by the request. + pathsReturned: + description: The pathsReturned field. + format: int32 + type: integer + truncatedNodeIds: + description: The truncatedNodeIds field. items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - title: Connector Service Update Response + type: string + type: + - array + - "null" + title: App Entitlement Search Service Search Graph Response type: object - x-speakeasy-name-override: ConnectorServiceUpdateResponse - c1.api.app.v1.ConnectorStatus: - description: The status field on the connector is used to track the status of the connectors sync, and when syncing last started, completed, or caused the connector to update. + x-speakeasy-name-override: AppEntitlementSearchServiceSearchGraphResponse + c1.api.app.v1.AppEntitlementSearchServiceSearchReachableResourcesForUserRequest: + description: SearchReachableResourcesForUser request. properties: - completedAt: - format: date-time - readOnly: false - type: string - lastError: - description: The last error encountered by the connector. - readOnly: false - type: string - startedAt: - format: date-time - readOnly: false + appIds: + description: |- + Restrict results to resources belonging to these applications. Empty + searches across every application the user can reach. + items: + type: string + type: + - array + - "null" + pageSize: + description: Maximum number of results to return per page. + format: int32 + type: integer + pageToken: + description: Token for fetching the next page of results. type: string - status: - description: The status of the connector sync. - enum: - - SYNC_STATUS_UNSPECIFIED - - SYNC_STATUS_RUNNING - - SYNC_STATUS_DONE - - SYNC_STATUS_ERROR - - SYNC_STATUS_DISABLED - readOnly: false + query: + description: Fuzzy search over the resource display name. type: string - x-speakeasy-unknown-values: allow - updatedAt: - format: date-time - readOnly: false + userId: + description: The user whose reachable resources to search. type: string - title: Connector Status + title: App Entitlement Search Service Search Reachable Resources For User Request type: object - x-speakeasy-name-override: ConnectorStatus - c1.api.app.v1.ConnectorSyncCronSchedule: - description: The ConnectorSyncCronSchedule message. + x-speakeasy-name-override: AppEntitlementSearchServiceSearchReachableResourcesForUserRequest + c1.api.app.v1.AppEntitlementSearchServiceSearchReachableResourcesForUserResponse: + description: |- + SearchReachableResourcesForUser response. Resources are deduplicated: a + resource reachable through more than one grant or entitlement appears once. properties: - cronSpec: - description: The cronSpec field. - readOnly: false - type: string - start: - format: date-time - readOnly: false - type: string - timezone: - description: The timezone field. - readOnly: false + list: + description: |- + The reachable resources, one GraphNode (type = GRAPH_NODE_TYPE_RESOURCE) + per distinct resource. Uses the same node representation as SearchGraph. + items: + $ref: '#/components/schemas/c1.api.app.v1.GraphNode' + type: + - array + - "null" + nextPageToken: + description: Token for fetching the next page of results. type: string - title: Connector Sync Cron Schedule + title: App Entitlement Search Service Search Reachable Resources For User Response type: object - x-speakeasy-name-override: ConnectorSyncCronSchedule - c1.api.app.v1.ConnectorView: - description: The ConnectorView object provides a connector response object, as well as JSONPATHs to related objects provided by expanders. + x-speakeasy-name-override: AppEntitlementSearchServiceSearchReachableResourcesForUserResponse + c1.api.app.v1.AppEntitlementSearchServiceSearchRequest: + description: Search app entitlements by a variety of filters. properties: - appPath: - description: JSONPATH expression indicating the location of the App object in the expanded array. - readOnly: false - type: string - capabilitiesPath: - description: JSONPATH expression indicating the location of the ConnectorCapabilities object in the expanded array. - readOnly: false - type: string - connector: - $ref: '#/components/schemas/c1.api.app.v1.Connector' - usersPath: - description: JSONPATH expression indicating the location of the User object in the expanded array. This is the user that is a direct target of the ticket without a specific relationship to a potentially non-existent app user. - readOnly: false + accessReviewId: + description: Search for app entitlements that are being reviewed as part of this access review campaign. type: string - title: Connector View - type: object - x-speakeasy-name-override: ConnectorView - c1.api.app.v1.CreateAppEntitlementProxyRequestInput: - description: The request message for creating an entitlement proxy binding. - properties: - expandMask: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementProxyExpandMask' - title: Create App Entitlement Proxy Request - type: object - x-speakeasy-name-override: CreateAppEntitlementProxyRequest - c1.api.app.v1.CreateAppEntitlementProxyResponse: - description: The response message for creating an entitlement proxy binding. - properties: - appProxyEntitlementView: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementProxyView' - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - title: Create App Entitlement Proxy Response - type: object - x-speakeasy-name-override: CreateAppEntitlementProxyResponse - c1.api.app.v1.CreateAppEntitlementRequestInput: - description: | - The CreateAppEntitlementRequest message. - - This message contains a oneof named max_grant_duration. Only a single field of the following list may be set at a time: - - durationUnset - - durationGrant - properties: alias: - description: A unique alias for the entitlement, used for programmatic lookups and Cone. - readOnly: false + description: Search for app entitlements that have this alias (exact match). type: string - appEntitlementOwnerIds: - description: The IDs of users to set as owners of this entitlement. + appIds: + description: Search for app entitlements contained in any of these apps. items: type: string - nullable: true - readOnly: false - type: array - appResourceId: - description: The ID of the resource that this entitlement belongs to. - readOnly: false - type: string - appResourceTypeId: - description: The ID of the resource type that this entitlement belongs to. - readOnly: false - type: string - certifyPolicyId: - description: The ID of the policy to use for certification tasks. - readOnly: false - type: string - complianceFrameworkValueIds: - description: The IDs of compliance frameworks to associate with this entitlement (e.g., SOX, HIPAA). + type: + - array + - "null" + appUserIds: + description: Search for app entitlements that are granted to any of these app user ids. items: type: string - nullable: true - readOnly: false - type: array - description: - description: The description of the new entitlement. - readOnly: false - type: string + type: + - array + - "null" + complianceFrameworkIds: + description: Search for app entitlements that are part of these compliance frameworks. + items: + type: string + type: + - array + - "null" displayName: - description: The display name of the new entitlement. - readOnly: false - type: string - durationGrant: - format: duration - readOnly: false + description: Filter results to entitlements with this exact display name. type: string - durationUnset: - nullable: true - readOnly: false - type: object - emergencyGrantEnabled: - description: Whether emergency grant requests are enabled for this entitlement. - readOnly: false + excludeAppIds: + description: Exclude app entitlements from the results that are in these app IDs. + items: + type: string + type: + - array + - "null" + excludeAppUserIds: + description: Exclude entitlements from results that are granted to any of these app users. + items: + type: string + type: + - array + - "null" + excludeImmutable: + description: If true, exclude immutable entitlements (e.g., system-managed entitlements that cannot be modified). type: boolean - emergencyGrantPolicyId: - description: The ID of the policy to use for emergency grant tasks. Required if emergency_grant_enabled is true. - readOnly: false - type: string + excludeResourceTypeIds: + description: Exclude entitlements with any of these resource type IDs from results. + items: + type: string + type: + - array + - "null" + excludedEntitlementRefs: + description: Exclude these specific entitlements from results. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" expandMask: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementExpandMask' - grantPolicyId: - description: The ID of the policy to use for grant request tasks. - readOnly: false - type: string - matchBatonId: - description: If supplied, it's implied that the entitlement is created before sync and needs to be merged with connector entitlement. - readOnly: false - type: string - overrideAccessRequestsDefaults: - description: Whether to override the app-level access request defaults for this entitlement. - readOnly: false + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementExpandMask' + - type: "null" + includeDeleted: + description: Include deleted app entitlements, this includes app entitlements that have a deleted parent object (app, app resource, app resource type) type: boolean - provisionPolicy: - $ref: '#/components/schemas/c1.api.policy.v1.ProvisionPolicy' - purpose: - description: The purpose of the entitlement (e.g., assignment, permission, ownership). - enum: - - APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED - - APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT - - APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION - - APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP - readOnly: false - type: string - x-speakeasy-unknown-values: allow - revokePolicyId: - description: The ID of the policy to use for revoke request tasks. - readOnly: false + isAutomated: + description: If true, restrict results to entitlements that have an automation rule configured. + type: boolean + membershipType: + description: Filter results to entitlements where the user has any of these membership types (e.g., member, owner, admin). + items: + enum: + - APP_ENTITLEMENT_MEMBERSHIP_TYPE_UNSPECIFIED + - APP_ENTITLEMENT_MEMBERSHIP_TYPE_MEMBER + - APP_ENTITLEMENT_MEMBERSHIP_TYPE_OWNER + - APP_ENTITLEMENT_MEMBERSHIP_TYPE_EXCLUSION + - APP_ENTITLEMENT_MEMBERSHIP_TYPE_ADMIN + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + onlyGetExpiring: + description: If true, restrict results to entitlements that have at least one expiring grant. + type: boolean + pageSize: + description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) + format: int32 + type: integer + pageToken: + description: The pageToken field. type: string - riskLevelValueId: - description: The ID of the risk level to assign to this entitlement. - readOnly: false + policyRefs: + description: Search for app entitlements that use any of these policies. + items: + $ref: '#/components/schemas/c1.api.policy.v1.PolicyRef' + type: + - array + - "null" + query: + description: Query the app entitlements with a fuzzy search on display name and description. type: string - slug: - description: A short label describing the permission the entitlement grants (e.g., "Admin", "Read"). - readOnly: false + refs: + description: Filter results to only these specific entitlements. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + requestSchemaIds: + description: Search for app entitlements that are bound to any of these request schemas. + items: + type: string + type: + - array + - "null" + resourceIds: + description: Search for app entitlements that belongs to these resources. + items: + type: string + type: + - array + - "null" + resourceTraitIds: + description: Filter results to entitlements whose resource types have any of these trait IDs. + items: + type: string + type: + - array + - "null" + resourceTypeIds: + description: Search for app entitlements that are for items with resources types that have matching names. Example names are "group", "role", and "app". + items: + type: string + type: + - array + - "null" + riskLevelIds: + description: Search for app entitlements with these risk levels. + items: + type: string + type: + - array + - "null" + sourceConnectorId: + description: Filter results to entitlements synced from this connector. type: string - required: - - displayName - title: Create App Entitlement Request + title: App Entitlement Search Service Search Request type: object - x-speakeasy-name-override: CreateAppEntitlementRequest - c1.api.app.v1.CreateAppEntitlementResponse: - description: The CreateAppEntitlementResponse message. + x-speakeasy-name-override: AppEntitlementSearchServiceSearchRequest + c1.api.app.v1.AppEntitlementSearchServiceSearchResponse: + description: The AppEntitlementSearchServiceSearchResponse message. properties: - appEntitlementView: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementView' expanded: - description: The expanded field. + description: List of related objects. items: additionalProperties: true description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. @@ -6072,517 +8389,734 @@ components: '@type': description: The type of the serialized message. type: string - readOnly: false type: object - nullable: true - readOnly: false - type: array - title: Create App Entitlement Response - type: object - x-speakeasy-name-override: CreateAppEntitlementResponse - c1.api.app.v1.CreateAppRequest: - description: The CreateAppRequest message is used to create a new app. - properties: - appEntitlementOwnerRefs: - description: Sets entitlement owners on the app. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - certifyPolicyId: - description: Creates the app with this certify policy. - readOnly: false - type: string - description: - description: Creates the app with this description. - readOnly: false - type: string - displayName: - description: Creates the app with this display name. - readOnly: false - type: string - grantPolicyId: - description: Creates the app with this grant policy. - readOnly: false - type: string - identityMatching: - description: Define the app user identity matching strategy for this app. - enum: - - APP_USER_IDENTITY_MATCHING_UNSPECIFIED - - APP_USER_IDENTITY_MATCHING_STRICT - - APP_USER_IDENTITY_MATCHING_DISPLAY_NAME - - APP_USER_IDENTITY_MATCHING_CUSTOM - readOnly: false - type: string - x-speakeasy-unknown-values: allow - instructions: - description: Instructions shown to users in the access request form when requesting access for this app. - readOnly: false - type: string - monthlyCostUsd: - description: Creates the app with this monthly cost per seat. - format: int32 - readOnly: false - type: integer - owners: - description: Creates the app with this array of user owners. + type: + - array + - "null" + facets: + oneOf: + - $ref: '#/components/schemas/c1.api.search.v1.Facets' + - type: "null" + list: + description: List of app entitlement view objects. items: - type: string - nullable: true - readOnly: false - type: array - revokePolicyId: - description: Creates the app with this revoke policy. - readOnly: false + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementView' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. type: string - strictAccessEntitlementProvisioning: - description: This flag enforces a provisioning mode where the access entitlement is always included in the provisioning flow, if the app user doesn't exist - readOnly: false - type: boolean - required: - - displayName - title: Create App Request + title: App Entitlement Search Service Search Response type: object - x-speakeasy-entity: App - x-speakeasy-name-override: CreateAppRequest - c1.api.app.v1.CreateAppResponse: - description: Returns the new app's values. + x-speakeasy-name-override: AppEntitlementSearchServiceSearchResponse + c1.api.app.v1.AppEntitlementServiceGetAutomationResponse: + description: The AppEntitlementServiceGetAutomationResponse message. properties: - app: - $ref: '#/components/schemas/c1.api.app.v1.App' - title: Create App Response + AppEntitlementAutomation: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomation' + - type: "null" + title: App Entitlement Service Get Automation Response type: object - x-speakeasy-name-override: CreateAppResponse - c1.api.app.v1.CreateAutomationRequestInput: - description: The CreateAutomationRequest message. + x-speakeasy-name-override: AppEntitlementServiceGetAutomationResponse + c1.api.app.v1.AppEntitlementServiceUpdateAutomationRequestInput: + description: | + The AppEntitlementServiceUpdateAutomationRequest message. + + This message contains a oneof named conditions. Only a single field of the following list may be set at a time: + - none + - entitlements + - cel + - basic properties: - automation: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomation' - title: Create Automation Request + basic: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomationRuleBasic' + - type: "null" + cel: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomationRuleCEL' + - type: "null" + description: + description: The description of the app entitlement. + type: string + displayName: + description: The display name of the app entitlement. + type: string + entitlements: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomationRuleEntitlement' + - type: "null" + none: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomationRuleNone' + - type: "null" + updateMask: + type: + - string + - "null" + title: App Entitlement Service Update Automation Request type: object - x-speakeasy-name-override: CreateAutomationRequest - c1.api.app.v1.CreateAutomationResponse: - description: The CreateAutomationResponse message. + x-speakeasy-name-override: AppEntitlementServiceUpdateAutomationRequest + c1.api.app.v1.AppEntitlementServiceUpdateAutomationResponse: + description: The AppEntitlementServiceUpdateAutomationResponse message. properties: - automation: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomation' - title: Create Automation Response + AppEntitlementAutomation: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomation' + - type: "null" + title: App Entitlement Service Update Automation Response type: object - x-speakeasy-name-override: CreateAutomationResponse - c1.api.app.v1.CreateManuallyManagedAppResourceRequestInput: - description: The request message for creating a manually managed app resource. + x-speakeasy-name-override: AppEntitlementServiceUpdateAutomationResponse + c1.api.app.v1.AppEntitlementUserBinding: + description: The AppEntitlementUserBinding represents the relationship that gives an app user access to an app entitlement properties: - description: - description: An optional description for the new resource. - readOnly: false + appEntitlementId: + description: The ID of the app entitlement that the app user has access to type: string - displayName: - description: The display name for the new resource. - readOnly: false + appId: + description: The ID of the app associated with the app entitlement type: string - matchBatonId: - description: If supplied, it's implied that the resource is created before sync and needs to be merged with connector resource. - readOnly: false + appUserId: + description: The ID of the app user that has access to the app entitlement type: string - resourceOwnerUserIds: - description: C1 user IDs to assign as owners of this resource. + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + deprovisionAt: + format: date-time + readOnly: true + type: + - string + - "null" + grantSources: + description: The grantSources field. items: - type: string - nullable: true - readOnly: false - type: array - required: - - displayName - title: Create Manually Managed App Resource Request + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + title: App Entitlement User Binding type: object - x-speakeasy-name-override: CreateManuallyManagedAppResourceRequest - c1.api.app.v1.CreateManuallyManagedAppResourceResponse: - description: The response message for creating a manually managed app resource. + x-speakeasy-name-override: AppEntitlementUserBinding + c1.api.app.v1.AppEntitlementUserBindingExpandHistoryMask: + description: The AppEntitlementUserBindingExpandHistoryMask message. properties: - appResource: - $ref: '#/components/schemas/c1.api.app.v1.AppResource' - title: Create Manually Managed App Resource Response + paths: + description: The paths field. + items: + type: string + type: + - array + - "null" + title: App Entitlement User Binding Expand History Mask type: object - x-speakeasy-name-override: CreateManuallyManagedAppResourceResponse - c1.api.app.v1.CreateManuallyManagedResourceTypeRequestInput: - description: The request message for creating a manually managed resource type. + x-speakeasy-name-override: AppEntitlementUserBindingExpandHistoryMask + c1.api.app.v1.AppEntitlementUserBindingFeed: + description: The AppEntitlementUserBindingFeed message. properties: - displayName: - description: The display name for the new resource type. - readOnly: false + appEntitlementId: + description: The ID of the app entitlement that the app user has access to type: string - resourceType: - description: The category of the resource type (e.g., ROLE, GROUP, LICENSE). + appId: + description: The ID of the app associated with the app entitlement + type: string + appUserId: + description: The ID of the app user that has access to the app entitlement + type: string + date: + format: date-time + type: + - string + - "null" + eventType: + description: The eventType field. enum: - - ROLE - - GROUP - - LICENSE - - PROJECT - - CATALOG - - CUSTOM - - VAULT - - PROFILE_TYPE - readOnly: false + - GRANT_EVENT_TYPE_UNSPECIFIED + - GRANT_EVENT_TYPE_ADDED + - GRANT_EVENT_TYPE_REMOVED type: string x-speakeasy-unknown-values: allow - required: - - resourceType - - displayName - title: Create Manually Managed Resource Type Request + ticketId: + description: The ticketId field. + type: string + title: App Entitlement User Binding Feed type: object - x-speakeasy-name-override: CreateManuallyManagedResourceTypeRequest - c1.api.app.v1.CreateManuallyManagedResourceTypeResponse: - description: The response message for creating a manually managed resource type. + x-speakeasy-name-override: AppEntitlementUserBindingFeed + c1.api.app.v1.AppEntitlementUserBindingFeedView: + description: The AppEntitlementUserBindingFeedView message. properties: - appResourceType: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceType' - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - title: Create Manually Managed Resource Type Response - type: object - x-speakeasy-name-override: CreateManuallyManagedResourceTypeResponse - c1.api.app.v1.DeleteAppEntitlementOwnersRequestInput: - description: The request message for deleting app entitlement owners. - title: Delete App Entitlement Owners Request - type: object - x-speakeasy-name-override: DeleteAppEntitlementOwnersRequest - c1.api.app.v1.DeleteAppEntitlementOwnersResponse: - description: the empty response message for deleting app entitlement owners. - title: Delete App Entitlement Owners Response - type: object - x-speakeasy-name-override: DeleteAppEntitlementOwnersResponse - c1.api.app.v1.DeleteAppEntitlementProxyRequestInput: - description: The request message for deleting an entitlement proxy binding. - title: Delete App Entitlement Proxy Request - type: object - x-speakeasy-name-override: DeleteAppEntitlementProxyRequest - c1.api.app.v1.DeleteAppEntitlementProxyResponse: - description: The empty response message for deleting an entitlement proxy binding. - title: Delete App Entitlement Proxy Response + appPath: + description: The appPath field. + type: string + appUserPath: + description: The appUserPath field. + type: string + entitlementPath: + description: The entitlementPath field. + type: string + feed: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBindingFeed' + - type: "null" + ticketPath: + description: The ticketPath field. + type: string + title: App Entitlement User Binding Feed View type: object - x-speakeasy-name-override: DeleteAppEntitlementProxyResponse - c1.api.app.v1.DeleteAppEntitlementRequestInput: - description: The DeleteAppEntitlementRequest message. - title: Delete App Entitlement Request + x-speakeasy-name-override: AppEntitlementUserBindingFeedView + c1.api.app.v1.AppEntitlementUserBindingHistory: + description: The AppEntitlementUserBindingHistory message. + properties: + appEntitlementId: + description: The ID of the app entitlement that the app user has access to + type: string + appId: + description: The ID of the app associated with the app entitlement + type: string + appUserId: + description: The ID of the app user that has access to the app entitlement + type: string + grantedAt: + format: date-time + readOnly: true + type: + - string + - "null" + id: + description: The unique ID of this grant history record + readOnly: true + type: string + revokedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: App Entitlement User Binding History type: object - x-speakeasy-name-override: DeleteAppEntitlementRequest - c1.api.app.v1.DeleteAppEntitlementResponse: - description: The DeleteAppEntitlementResponse message. - title: Delete App Entitlement Response + x-speakeasy-name-override: AppEntitlementUserBindingHistory + c1.api.app.v1.AppEntitlementUserBindingHistoryView: + description: The AppEntitlementUserBindingHistoryView message. + properties: + appPath: + description: The appPath field. + type: string + appUserPath: + description: The appUserPath field. + type: string + entitlementPath: + description: The entitlementPath field. + type: string + history: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBindingHistory' + - type: "null" + title: App Entitlement User Binding History View type: object - x-speakeasy-name-override: DeleteAppEntitlementResponse - c1.api.app.v1.DeleteAppOwnersRequestInput: - description: The request message for deleting app owners. + x-speakeasy-name-override: AppEntitlementUserBindingHistoryView + c1.api.app.v1.AppEntitlementUserView: + description: The AppEntitlementUserView (aka grant view) describes the relationship between an app user and an entitlement. They have more recently been referred to as grants. properties: - userIds: - description: The user_ids field for the users to set as an owner of the app. + appEntitlementId: + description: The ID of the app entitlement that the app user has access to. + type: string + appEntitlementUserBindingCreatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + appEntitlementUserBindingDeprovisionAt: + format: date-time + readOnly: true + type: + - string + - "null" + appId: + description: The ID of the app associated with the grant. + type: string + appUser: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppUserView' + - type: "null" + appUserId: + description: The ID of the app user that has access to the app entitlement. + type: string + grantSources: + description: List of sources for the grant, ie. groups, roles, etc. items: - type: string - nullable: true - readOnly: false - type: array - title: Delete App Owners Request - type: object - x-speakeasy-name-override: DeleteAppOwnersRequest - c1.api.app.v1.DeleteAppOwnersResponse: - description: the empty response message for deleting app owners. - title: Delete App Owners Response - type: object - x-speakeasy-name-override: DeleteAppOwnersResponse - c1.api.app.v1.DeleteAppRequestInput: - description: Empty request body - title: Delete App Request - type: object - x-speakeasy-entity: App - x-speakeasy-name-override: DeleteAppRequest - c1.api.app.v1.DeleteAppResourceOwnersRequestInput: - description: The request message for deleting app resource owners. - title: Delete App Resource Owners Request - type: object - x-speakeasy-name-override: DeleteAppResourceOwnersRequest - c1.api.app.v1.DeleteAppResourceOwnersResponse: - description: the empty response message for deleting app resource owners. - title: Delete App Resource Owners Response - type: object - x-speakeasy-name-override: DeleteAppResourceOwnersResponse - c1.api.app.v1.DeleteAppResponse: - description: Empty response body. Status code indicates success. - title: Delete App Response - type: object - x-speakeasy-name-override: DeleteAppResponse - c1.api.app.v1.DeleteAutomationRequestInput: - description: The DeleteAutomationRequest message. - title: Delete Automation Request - type: object - x-speakeasy-name-override: DeleteAutomationRequest - c1.api.app.v1.DeleteAutomationResponse: - description: The DeleteAutomationResponse message. - title: Delete Automation Response - type: object - x-speakeasy-name-override: DeleteAutomationResponse - c1.api.app.v1.DeleteManuallyManagedAppResourceRequestInput: - description: The request message for deleting a manually managed app resource. - title: Delete Manually Managed App Resource Request + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + originatingTicketId: + description: The originating ticket ID for the grant (e.g. from a request ticket). + type: string + title: App Entitlement User View type: object - x-speakeasy-name-override: DeleteManuallyManagedAppResourceRequest - c1.api.app.v1.DeleteManuallyManagedAppResourceResponse: - description: The empty response message for deleting a manually managed app resource. - title: Delete Manually Managed App Resource Response + x-speakeasy-name-override: AppEntitlementUserView + c1.api.app.v1.AppEntitlementView: + description: The app entitlement view contains the serialized app entitlement and paths to objects referenced by the app entitlement. + properties: + appEntitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlement' + - type: "null" + appPath: + description: JSONPATH expression indicating the location of the App object in the array. + type: string + appResourcePath: + description: JSONPATH expression indicating the location of the App Resource Type object in the expanded array. + type: string + appResourceTypePath: + description: JSONPATH expression indicating the location of the App Resource object in the array. + type: string + objectPermissions: + oneOf: + - $ref: '#/components/schemas/c1.api.iam.v1.ActorObjectPermissions' + - type: "null" + title: App Entitlement View type: object - x-speakeasy-name-override: DeleteManuallyManagedAppResourceResponse - c1.api.app.v1.DeleteManuallyManagedResourceTypeRequestInput: - description: The request message for deleting a manually managed resource type. - title: Delete Manually Managed Resource Type Request + x-speakeasy-name-override: AppEntitlementView + c1.api.app.v1.AppEntitlementWithExpired: + description: A grant with its expiry and discovery timestamps, along with the associated app user and ConductorOne user. + properties: + appEntitlementId: + description: The ID of the app entitlement. + type: string + appId: + description: The ID of the app that contains the entitlement. + type: string + appUser: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppUser' + - type: "null" + appUserId: + description: The ID of the app user who holds the grant. + type: string + discovered: + format: date-time + type: + - string + - "null" + expired: + format: date-time + type: + - string + - "null" + grantReasons: + description: The reasons this grant was given (e.g., access request, automation). + items: + $ref: '#/components/schemas/c1.api.app.v1.GrantReason' + type: + - array + - "null" + grantSources: + description: Entitlements that are the source of this grant (e.g., a group membership that implies a role). + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + user: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.User' + - type: "null" + title: App Entitlement With Expired type: object - x-speakeasy-name-override: DeleteManuallyManagedResourceTypeRequest - c1.api.app.v1.DeleteManuallyManagedResourceTypeResponse: - description: The empty response message for deleting a manually managed resource type. - title: Delete Manually Managed Resource Type Response + x-speakeasy-name-override: AppEntitlementWithExpired + c1.api.app.v1.AppEntitlementWithUserBinding: + description: The AppEntitlementWithUserBinding message. + properties: + appEntitlementUserBinding: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserView' + - type: "null" + entitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementView' + - type: "null" + title: App Entitlement With User Binding type: object - x-speakeasy-name-override: DeleteManuallyManagedResourceTypeResponse - c1.api.app.v1.EditorValidateRequest: - description: The EditorValidateRequest message contains the configuration text to validate. + x-speakeasy-name-override: AppEntitlementWithUserBinding + c1.api.app.v1.AppManagedState: + description: | + AppManagedState identifies whether a discovered application is managed. + + This message contains a oneof named state. Only a single field of the following list may be set at a time: + - unmanaged + - managed + properties: + managed: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppManagedState.AppManagedStateManaged' + - type: "null" + unmanaged: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppManagedState.AppManagedStateUnmanaged' + - type: "null" + title: App Managed State + type: object + x-speakeasy-name-override: AppManagedState + c1.api.app.v1.AppManagedState.AppManagedStateManaged: + description: AppManagedStateManaged identifies the application created by promotion. properties: - text: - description: The configuration text to validate. - readOnly: false + appId: + description: ID of the managed application. type: string - title: Editor Validate Request + title: App Managed State Managed type: object - x-speakeasy-name-override: EditorValidateRequest - c1.api.app.v1.EditorValidateResponse: - description: The EditorValidateResponse message contains validation results. - properties: - markers: - description: The list of diagnostic markers found during validation. - items: - $ref: '#/components/schemas/c1.api.editor.v1.EditorMarker' - nullable: true - readOnly: true - type: array - title: Editor Validate Response + x-speakeasy-name-override: AppManagedStateManaged + c1.api.app.v1.AppManagedState.AppManagedStateUnmanaged: + description: AppManagedStateUnmanaged indicates that the discovered application has not been promoted. + title: App Managed State Unmanaged type: object - x-speakeasy-name-override: EditorValidateResponse - c1.api.app.v1.EncryptedData: - description: EncryptedData is a message that contains encrypted bytes and metadata. - nullable: true + x-speakeasy-name-override: AppManagedStateUnmanaged + c1.api.app.v1.AppManagedStateBinding: + description: AppManagedStateBinding records whether a connector-discovered application is managed in ConductorOne. properties: - description: - description: The human-readable description of the encrypted data. + appId: + description: Application that owns the connector which discovered this application. readOnly: true type: string - encryptedBytes: - description: The encrypted bytes. - format: base64 + createdAt: + format: date-time readOnly: true - type: string - keyId: - description: The key ID used to encrypt the data. + type: + - string + - "null" + deletedAt: + format: date-time readOnly: true + type: + - string + - "null" + displayName: + description: Display name of the discovered application. type: string - name: - description: The human-readable name of the encrypted data. + resourceId: + description: Resource ID of the discovered application. readOnly: true type: string - provider: - description: The encryption provider used to encrypt the data. + resourceTypeId: + description: Resource type used by the connector to represent discovered applications. readOnly: true type: string - schema: - description: The (optional) JSON schema of the encrypted data. + state: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppManagedState' + - type: "null" + updatedAt: + format: date-time readOnly: true - type: string - title: Encrypted Data - type: object - x-speakeasy-name-override: EncryptedData - c1.api.app.v1.ForceSyncRequestInput: - description: Signal the connector to start syncing. This puts the sync on the queue. It does not guarantee immediate sync. Long syncs still take minutes to hours. - title: Force Sync Request - type: object - x-speakeasy-name-override: ForceSyncRequest - c1.api.app.v1.ForceSyncResponse: - description: Empty response body. Status code indicates success. - title: Force Sync Response + type: + - string + - "null" + title: App Managed State Binding type: object - x-speakeasy-name-override: ForceSyncResponse - c1.api.app.v1.GetAppEntitlementProxyResponse: - description: The response message for getting a specific entitlement proxy binding. + x-speakeasy-name-override: AppManagedStateBinding + c1.api.app.v1.AppManagedStateBindingExpandMask: + description: AppManagedStateBindingExpandMask controls which related objects are included in a response. properties: - appProxyEntitlementView: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementProxyView' - expanded: - description: List of serialized related objects. + paths: + description: Related objects to include. Supported values are `app_id`, `resource_id`, and `*`. items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - title: Get App Entitlement Proxy Response + type: string + type: + - array + - "null" + title: App Managed State Binding Expand Mask type: object - x-speakeasy-name-override: GetAppEntitlementProxyResponse - c1.api.app.v1.GetAppEntitlementResponse: - description: The get app entitlement response returns an entitlement view containing paths in the expanded array for the objects expanded as indicated by the expand mask in the request. + x-speakeasy-name-override: AppManagedStateBindingExpandMask + c1.api.app.v1.AppManagedStateBindingRef: + description: AppManagedStateBindingRef identifies an application discovered by a connector. properties: - appEntitlementView: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementView' - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - title: Get App Entitlement Response + appId: + description: ID of the application that owns the connector. + type: string + resourceId: + description: Resource ID of the discovered application. + type: string + resourceTypeId: + description: ID of the resource type used for discovered applications. + type: string + title: App Managed State Binding Ref type: object - x-speakeasy-name-override: GetAppEntitlementResponse - c1.api.app.v1.GetAppResponse: - description: The GetAppResponse message contains the details of the requested app in the app field. + x-speakeasy-name-override: AppManagedStateBindingRef + c1.api.app.v1.AppManagedStateBindingView: + description: AppManagedStateBindingView contains a managed-state binding and paths to its related objects. properties: - app: - $ref: '#/components/schemas/c1.api.app.v1.App' - title: Get App Response + appManagementStateBinding: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppManagedStateBinding' + - type: "null" + appPath: + description: Path of the application that owns the connector. + type: string + resourcePath: + description: Path of the connector resource representing the discovered application. + type: string + title: App Managed State Binding View type: object - x-speakeasy-name-override: GetAppResponse - c1.api.app.v1.GetAppUsageControlsResponse: - description: The GetAppUsageControlsResponse message contains the retrieved AppUsageControls object. + x-speakeasy-name-override: AppManagedStateBindingView + c1.api.app.v1.AppMatchBatonRef: + description: AppMatchBatonRef identifies the connector application that should adopt a manually-created application during uplift. properties: - appUsageControls: - $ref: '#/components/schemas/c1.api.app.v1.AppUsageControls' - hasUsageData: - description: HasUsageData is false if the access entitlement for this app has no usage data. - readOnly: false - type: boolean - title: Get App Usage Controls Response + appId: + description: Application that owns the connector. + type: string + connectorId: + description: Connector that discovers the application. + type: string + externalId: + description: |- + Canonical connector-v2 application resource ID in + `::` form (for example, `app::0oa123`). + type: string + required: + - appId + - connectorId + - externalId + title: App Match Baton Ref type: object - x-speakeasy-name-override: GetAppUsageControlsResponse - c1.api.app.v1.GetConnectorSyncDownloadURLResponse: - description: The GetConnectorSyncDownloadURLResponse message. + x-speakeasy-name-override: AppMatchBatonRef + c1.api.app.v1.AppPopulationReport: + description: The AppPopulationReport is a generated report for a specific app that gives details about the app's users. These details include what groups, roles, and other entitlements the users have access to. properties: + appId: + description: The appId is the Id of the app which the report is generated for. + type: string + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" downloadUrl: - description: Short-lived download URL for the connector sync artifact - readOnly: false + description: The downloadUrl is the url used for downloading the AppPopulationReport. type: string - title: Get Connector Sync Download Url Response + hashes: + additionalProperties: + type: string + description: The hashes field contains the file hashes of the report. + type: object + id: + description: The id field. + type: string + state: + description: The state field tracks the state of the AppPopulationReport. This state field can be one of REPORT_STATE_PENDING, REPORT_STATE_UNSPECIFIED, REPORT_STATE_OK, REPORT_STATE_ERROR. + enum: + - REPORT_STATE_UNSPECIFIED + - REPORT_STATE_PENDING + - REPORT_STATE_OK + - REPORT_STATE_ERROR + type: string + x-speakeasy-unknown-values: allow + title: App Population Report type: object - x-speakeasy-name-override: GetConnectorSyncDownloadURLResponse - c1.api.app.v1.GrantReason: - description: The GrantReason message. + x-speakeasy-name-override: AppPopulationReport + c1.api.app.v1.AppRef: + description: The AppRef message. properties: - appEntitlementId: - description: The ID of the app entitlement that is associated with the grant reason. - readOnly: false + id: + description: The id field. + type: string + title: App Ref + type: object + x-speakeasy-name-override: AppRef + c1.api.app.v1.AppReportServiceListResponse: + description: The AppReportServiceListResponse message contains a list of results and a nextPageToken if applicable. + properties: + list: + description: The list of results containing up to X results, where X is the page size defined in the request. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppPopulationReport' + type: + - array + - "null" + nextPageToken: + description: |- + The nextPageToken is shown for the next page if the number of results is larger than the max page size. + The server returns one page of results and the nextPageToken until all results are retreived. + To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. + type: string + title: App Report Service List Response + type: object + x-speakeasy-name-override: AppReportServiceListResponse + c1.api.app.v1.AppResource: + description: | + The app resource message is a single resource that can have entitlements. + + This message contains a oneof named metadata. Only a single field of the following list may be set at a time: + - secretTrait + properties: + accessConfigId: + description: |- + The access config ID for this resource. May be empty. + Must be one of the builtin access config IDs or empty. type: string + agentTrait: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AgentTrait' + - type: "null" + annotations: + additionalProperties: + type: string + description: |- + Bounded key/value metadata bag for IaC marking and customer tags. + See .rfcs/object-annotations.md §2. Limits: ≤16 entries; keys 1–128 + chars matching ^[A-Za-z][A-Za-z0-9._/-]{0,127}$; values 0–256 chars + URL-safe ASCII; total serialized ≤ 4096 bytes. Keys matching ^c1/ + are reserved. + + Well-known keys: `managed_by`, `iac_workspace`, + `iac_resource_address`, `iac_tool_version`. + + Most AppResources are connector-synced; user-supplied annotations on + a synced resource will be overwritten by the next sync. The + annotations bag is most useful on user-created groups (the + `conductorone_app_resource` TF resource). + type: object + x-speakeasy-terraform-plan-modifier: + imports: + - github.com/conductorone/terraform-provider-conductorone/internal/annotations + schemaDefinition: annotations.PlanModifier() appId: - description: The ID of the app that is associated with the grant reason. - readOnly: false + description: The app that this resource belongs to. type: string - appUserId: - description: The ID of the app user that is associated with the grant reason. - readOnly: false + appResourceTypeId: + description: The resource type that this resource is. type: string createdAt: format: date-time - readOnly: false + readOnly: true + type: + - string + - "null" + customDescription: + description: A custom description that can be set for a resource. type: string deletedAt: format: date-time - readOnly: false + readOnly: true + type: + - string + - "null" + description: + description: The description set for the resource. type: string - derivedIdData: - description: This is the other part of the derived ID which include the details like ticket_id, group_id, etc. This provides the uniqueness. - readOnly: false + displayName: + description: The display name for this resource. type: string - derivedIdType: - description: This is one part of the derived ID, indicating the type, like "ticket" or "group" - readOnly: false + externalId: + description: |- + The upstream product's native external ID for this resource (e.g. an Okta group ID). + Populated from the connector's external ID during sync. + readOnly: true type: string - reasonExpiresAt: - format: date-time - readOnly: false + grantCount: + description: The number of grants to this resource. + format: int64 type: string - referenceStrength: + id: + description: The id of the resource. + type: string + matchBatonId: + description: The matchBatonId field. + type: string + nhiDetail: description: |- - GrantReasonReferenceStrength is used to indicate the strength of the reference to the reason. - This is used to determine if a grant should be removed when all strong reasons are removed. + Axis-2 detail refining nhi_type (e.g. "aws.role.lambda"). Read-only; + translated from the model. + readOnly: true + type: string + nhiType: + description: |- + The NHI classification (K3 spine) for this resource. Populated for + non-human-identity resources; UNSPECIFIED for everything else. Mirrors + agent_trait: read-only and translated from the model enum at the API boundary. enum: - - GRANT_REASON_REFERENCE_STRENGTH_UNSPECIFIED - - GRANT_REASON_REFERENCE_STRENGTH_WEAK - - GRANT_REASON_REFERENCE_STRENGTH_STRONG - readOnly: false + - NHI_TYPE_UNSPECIFIED + - NHI_TYPE_APP_REGISTRATION + - NHI_TYPE_ASSUMABLE_ROLE + - NHI_TYPE_MANAGED_IDENTITY + readOnly: true type: string x-speakeasy-unknown-values: allow + parentAppResourceId: + description: The parent resource id, if this resource is a child of another resource. + type: string + parentAppResourceTypeId: + description: The parent resource type id, if this resource is a child of another resource. + type: string + profile: + additionalProperties: true + readOnly: true + type: + - object + - "null" + secretTrait: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.SecretTrait' + - type: "null" updatedAt: format: date-time - readOnly: false - type: string - title: Grant Reason + readOnly: true + type: + - string + - "null" + title: App Resource type: object - x-speakeasy-name-override: GrantReason - c1.api.app.v1.ListAppEntitlementOwnerIDsResponse: - description: The response message for listing app entitlement owners IDs. + x-speakeasy-entity: App Resource + x-speakeasy-name-override: AppResource + c1.api.app.v1.AppResourceExpandMask: + description: The app resource expand mask lets you get information about related objects from the request. properties: - userIds: - description: The list of owner IDs for the app entitlement. + paths: + description: The app resource expanded fields. Maybe be any combination of "*", "app_id", "app_resource_type_id". items: type: string - nullable: true - readOnly: false - type: array - title: List App Entitlement Owner I Ds Response + type: + - array + - "null" + title: App Resource Expand Mask type: object - x-speakeasy-name-override: ListAppEntitlementOwnerIDsResponse - c1.api.app.v1.ListAppEntitlementOwnersResponse: - description: The response message for listing app entitlement owners. + x-speakeasy-name-override: AppResourceExpandMask + c1.api.app.v1.AppResourceRef: + description: A reference to a specific app resource by its composite key. properties: - list: - description: The list of owners for the app entitlement. - items: - $ref: '#/components/schemas/c1.api.user.v1.User' - nullable: true - readOnly: false - type: array - nextPageToken: - description: |- - The nextPageToken is shown for the next page if the number of results is larger than the max page size. - The server returns one page of results and the nextPageToken until all results are retreived. - To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + appId: + description: The ID of the app that owns the resource. type: string - title: List App Entitlement Owners Response + appResourceTypeId: + description: The ID of the resource type that classifies this resource. + type: string + id: + description: The unique ID of the app resource. + type: string + title: App Resource Ref type: object - x-speakeasy-name-override: ListAppEntitlementOwnersResponse - c1.api.app.v1.ListAppEntitlementUsersResponse: - description: The ListAppEntitlementUsersResponse message contains a list of results and a nextPageToken if applicable. + x-speakeasy-name-override: AppResourceRef + c1.api.app.v1.AppResourceServiceGetResponse: + description: The app resource service get response contains the app resource view and array of expanded items indicated by the request's expand mask. properties: + appResourceView: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppResourceView' + - type: "null" expanded: - description: List of related objects + description: List of serialized related objects. items: additionalProperties: true description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. @@ -6590,30 +9124,18 @@ components: '@type': description: The type of the serialized message. type: string - readOnly: false type: object - nullable: true - readOnly: false - type: array - list: - description: The list of results containing up to X results, where X is the page size defined in the request. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserView' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false - type: string - title: List App Entitlement Users Response + type: + - array + - "null" + title: App Resource Service Get Response type: object - x-speakeasy-name-override: ListAppEntitlementUsersResponse - c1.api.app.v1.ListAppEntitlementsResponse: - description: The ListAppEntitlementsResponse message contains a list of results and a nextPageToken if applicable. + x-speakeasy-name-override: AppResourceServiceGetResponse + c1.api.app.v1.AppResourceServiceListResponse: + description: The AppResourceServiceListResponse message contains a list of results and a nextPageToken if applicable. properties: expanded: - description: List of related objects + description: List of serialized related objects. items: additionalProperties: true description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. @@ -6621,477 +9143,668 @@ components: '@type': description: The type of the serialized message. type: string - readOnly: false type: object - nullable: true - readOnly: false - type: array + type: + - array + - "null" list: description: The list of results containing up to X results, where X is the page size defined in the request. items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementView' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.app.v1.AppResourceView' + type: + - array + - "null" nextPageToken: - description: The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + description: |- + The nextPageToken is shown for the next page if the number of results is larger than the max page size. + The server returns one page of results and the nextPageToken until all results are retreived. + To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. type: string - title: List App Entitlements Response + title: App Resource Service List Response type: object - x-speakeasy-name-override: ListAppEntitlementsResponse - c1.api.app.v1.ListAppOwnerIDsResponse: - description: The response message for listing app owners IDs. + x-speakeasy-name-override: AppResourceServiceListResponse + c1.api.app.v1.AppResourceServiceUpdateRequestInput: + description: The request message for updating an app resource. properties: - userIds: - description: The list of owner IDs for the app. - items: - type: string - nullable: true - readOnly: false - type: array - title: List App Owner I Ds Response + appResource: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppResource' + - type: "null" + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppResourceExpandMask' + - type: "null" + updateMask: + type: + - string + - "null" + title: App Resource Service Update Request type: object - x-speakeasy-name-override: ListAppOwnerIDsResponse - c1.api.app.v1.ListAppOwnersResponse: - description: The ListAppOwnersResponse message. + x-speakeasy-name-override: AppResourceServiceUpdateRequest + c1.api.app.v1.AppResourceServiceUpdateResponse: + description: The response message for updating an app resource. properties: - list: - description: The list of results containing up to X results, where X is the page size defined in the request + appResourceView: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppResourceView' + - type: "null" + expanded: + description: List of serialized related objects. items: - $ref: '#/components/schemas/c1.api.user.v1.User' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false - type: string - title: List App Owners Response + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + title: App Resource Service Update Response type: object - x-speakeasy-name-override: ListAppOwnersResponse - c1.api.app.v1.ListAppResourceOwnerIDsResponse: - description: The response message for listing app resource owners IDs. + x-speakeasy-name-override: AppResourceServiceUpdateResponse + c1.api.app.v1.AppResourceType: + description: The AppResourceType is referenced by an app entitlement defining its resource types. Commonly things like Group or Role. properties: - userIds: - description: The list of owner IDs for the app resource. + appId: + description: The ID of the app that is associated with the app resource type + readOnly: true + type: string + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + displayName: + description: The display name of the app resource type. + type: string + id: + description: The unique ID for the app resource type. + readOnly: true + type: string + traitIds: + description: Associated trait ids items: type: string - nullable: true - readOnly: false - type: array - title: List App Resource Owner I Ds Response + type: + - array + - "null" + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: App Resource Type type: object - x-speakeasy-name-override: ListAppResourceOwnerIDsResponse - c1.api.app.v1.ListAppResourceOwnersResponse: - description: The ListAppResourceOwnersResponse message contains a list of results and a nextPageToken if applicable + x-speakeasy-entity: App Resource Type + x-speakeasy-name-override: AppResourceType + c1.api.app.v1.AppResourceTypeServiceGetResponse: + description: |- + The AppResourceTypeServiceGetResponse contains an expanded array containing the expanded values indicated by the expand mask + in the request and an app resource type view containing the resource type and JSONPATHs indicating which objects are where in the expand mask. properties: - immutableUserIds: - description: |- - User IDs of owners that are immutable and cannot be removed by the user. - These owners are managed by the system (e.g., connector-sourced) and will be updated automatically. + appResourceTypeView: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppResourceTypeView' + - type: "null" + expanded: + description: List of serialized related objects. items: - type: string - nullable: true - readOnly: false - type: array + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + title: App Resource Type Service Get Response + type: object + x-speakeasy-name-override: AppResourceTypeServiceGetResponse + c1.api.app.v1.AppResourceTypeServiceListResponse: + description: The AppResourceTypeServiceListResponse message contains a list of results and a nextPageToken if applicable. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" list: description: The list of results containing up to X results, where X is the page size defined in the request. items: - $ref: '#/components/schemas/c1.api.user.v1.User' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.app.v1.AppResourceTypeView' + type: + - array + - "null" nextPageToken: description: |- The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false type: string - title: List App Resource Owners Response + title: App Resource Type Service List Response type: object - x-speakeasy-name-override: ListAppResourceOwnersResponse - c1.api.app.v1.ListAppUsersForIdentityWithGrantResponse: - description: The ListAppUsersForIdentityWithGrantResponse message. + x-speakeasy-name-override: AppResourceTypeServiceListResponse + c1.api.app.v1.AppResourceTypeView: + description: The AppResourceTypeView message. properties: - bindings: - description: |- - The list of app users that may also have grant information. - Without a grant, only the tenant, app, and app user ID will be set. With a grant, the whole struct is populated - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBinding' - nullable: true - readOnly: false - type: array - title: List App Users For Identity With Grant Response + appPath: + description: JSONPATH expression indicating the location of the App object in the array + type: string + appResourceType: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppResourceType' + - type: "null" + title: App Resource Type View type: object - x-speakeasy-name-override: ListAppUsersForIdentityWithGrantResponse - c1.api.app.v1.ListAppsResponse: - description: The ListAppsResponse message contains a list of results and a nextPageToken if applicable. + x-speakeasy-name-override: AppResourceTypeView + c1.api.app.v1.AppResourceView: + description: The app resource view returns an app resource with paths for items in the expand mask filled in when this response is returned and a request expand mask has "*" or "app_id" or "resource_type_id". properties: - list: - description: The list of results containing up to X results, where X is the page size defined in the request. - items: - $ref: '#/components/schemas/c1.api.app.v1.App' - nullable: true - readOnly: false - type: array - nextPageToken: - description: |- - The nextPageToken is shown for the next page if the number of results is larger than the max page size. - The server returns one page of results and the nextPageToken until all results are retreived. - To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + appPath: + description: JSONPATH expression indicating the location of the App object in the array type: string - title: List Apps Response + appResource: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppResource' + - type: "null" + objectPermissions: + oneOf: + - $ref: '#/components/schemas/c1.api.iam.v1.ActorObjectPermissions' + - type: "null" + parentResourcePath: + description: JSONPATH expression indicating the location of the Parent Resource object in the array + type: string + parentResourceTypePath: + description: JSONPATH expression indicating the location of the Parent Resource Type object in the array + type: string + resourceTypePath: + description: JSONPATH expression indicating the location of the Resource Type object in the array + type: string + title: App Resource View type: object - x-speakeasy-name-override: ListAppsResponse - c1.api.app.v1.ListAutomationExclusionsResponse: - description: The ListAutomationExclusionsResponse message. + x-speakeasy-name-override: AppResourceView + c1.api.app.v1.AppUsageControls: + description: The AppUsageControls object describes some peripheral configuration for an app. properties: - list: - description: The list field. - items: - $ref: '#/components/schemas/c1.api.app.v1.UserWithAppEntitlementUserBindingView' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The nextPageToken field. - readOnly: false + appId: + description: The app that this object belongs to. type: string - title: List Automation Exclusions Response + notify: + description: Whether or not to notify some if they have access to the app, but has not used it within a configurable amount of time. + type: boolean + notifyAfterDays: + description: The duration in days after which we notify users of nonusage. + format: uint32 + type: integer + revoke: + description: Whether or not to revoke a grant if they have access to the app, but has not used it within a configurable amount of time. + type: boolean + revokeAfterDays: + description: The duration in days after which we revoke users that have not used that grant. + format: uint32 + type: integer + title: App Usage Controls type: object - x-speakeasy-name-override: ListAutomationExclusionsResponse - c1.api.app.v1.ManuallyManagedUsersResponse: - description: The ManuallyManagedUsersResponse message. + x-speakeasy-name-override: AppUsageControls + c1.api.app.v1.AppUser: + description: Application User that represents an account in the application. properties: - bulkActionId: - description: The ID of the bulk action created to process the membership additions. - readOnly: false + agentStatus: + description: |- + AI-agent lifecycle status when this app user carries the agent trait. + UNSPECIFIED marks a non-agent account. Read-only; translated from the + model's agent_trait at the API boundary. + enum: + - APP_USER_AGENT_STATUS_UNSPECIFIED + - APP_USER_AGENT_STATUS_READY + - APP_USER_AGENT_STATUS_DISABLED + - APP_USER_AGENT_STATUS_DELETED + readOnly: true type: string - failedUsersErrorMap: - additionalProperties: + x-speakeasy-unknown-values: allow + appId: + description: The ID of the application. + readOnly: true + type: string + appUserType: + description: The appplication user type. Type can be user, system or service. + enum: + - APP_USER_TYPE_UNSPECIFIED + - APP_USER_TYPE_USER + - APP_USER_TYPE_SERVICE_ACCOUNT + - APP_USER_TYPE_SYSTEM_ACCOUNT + type: string + x-speakeasy-unknown-values: allow + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + displayName: + description: The display name of the application user. + readOnly: true + type: string + email: + description: The email field of the application user. + readOnly: true + type: string + emails: + description: The emails field of the application user. + items: type: string - description: A map of user IDs to error messages for users that could not be added. - readOnly: false - type: object - title: Manually Managed Users Response - type: object - x-speakeasy-name-override: ManuallyManagedUsersResponse - c1.api.app.v1.OAuth2AuthorizedAs: - description: OAuth2AuthorizedAs tracks the user that OAuthed with the connector. - properties: - authEmail: - description: authEmail is the email of the user that authorized the connector using OAuth. + readOnly: true + type: + - array + - "null" + employeeIds: + description: The employee IDs field of the application user. + items: + type: string + readOnly: true + type: + - array + - "null" + id: + description: A unique idenditfier of the application user. readOnly: true type: string - authorizedAt: + identityUserId: + description: The conductor one user ID of the account owner. + readOnly: true + type: string + isExternal: + description: The isExternal field. + readOnly: true + type: boolean + nhiDetail: + description: Axis-2 detail refining nhi_type (e.g. "aws.role.lambda"). Read-only. + readOnly: true + type: string + nhiType: + description: |- + NHI classification when this app user carries the non-human-identity trait. + Read-only; translated from the model's nhi_trait at the API boundary. + enum: + - APP_USER_NHI_TYPE_UNSPECIFIED + - APP_USER_NHI_TYPE_APP_REGISTRATION + - APP_USER_NHI_TYPE_ASSUMABLE_ROLE + - APP_USER_NHI_TYPE_MANAGED_IDENTITY + readOnly: true + type: string + x-speakeasy-unknown-values: allow + profile: + additionalProperties: true + readOnly: true + type: + - object + - "null" + status: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppUserStatus' + - type: "null" + updatedAt: format: date-time readOnly: true + type: + - string + - "null" + username: + description: The username field of the application user. + readOnly: true type: string - title: O Auth 2 Authorized As - type: object - x-speakeasy-name-override: OAuth2AuthorizedAs - c1.api.app.v1.PauseSyncRequestInput: - description: The PauseSyncRequest message contains the fields required to pause syncing for a connector. - title: Pause Sync Request - type: object - x-speakeasy-name-override: PauseSyncRequest - c1.api.app.v1.PauseSyncResponse: - description: Empty response body. Status code indicates success. - title: Pause Sync Response - type: object - x-speakeasy-name-override: PauseSyncResponse - c1.api.app.v1.RemoveAppEntitlementOwnerRequestInput: - description: The request message for removing an app entitlement owner. - title: Remove App Entitlement Owner Request - type: object - x-speakeasy-name-override: RemoveAppEntitlementOwnerRequest - c1.api.app.v1.RemoveAppEntitlementOwnerResponse: - description: The empty response message for removing an app entitlement owner. - title: Remove App Entitlement Owner Response - type: object - x-speakeasy-name-override: RemoveAppEntitlementOwnerResponse - c1.api.app.v1.RemoveAppOwnerRequestInput: - description: RemoveAppOwnerRequest is the request body for removing an app owner. It uses URL values for input. - title: Remove App Owner Request - type: object - x-speakeasy-name-override: RemoveAppOwnerRequest - c1.api.app.v1.RemoveAppOwnerResponse: - description: Empty response with a status code indicating success. - title: Remove App Owner Response + usernames: + description: The usernames field of the application user. + items: + type: string + readOnly: true + type: + - array + - "null" + title: App User type: object - x-speakeasy-name-override: RemoveAppOwnerResponse - c1.api.app.v1.RemoveAppResourceOwnerRequestInput: - description: The request message for removing an owner from an app resource. + x-speakeasy-name-override: AppUser + c1.api.app.v1.AppUserCredential: + description: | + A credentials for the Application User that represents an account in the application. + + This message contains a oneof named credential. Only a single field of the following list may be set at a time: + - encryptedData properties: - userId: - description: The C1 user ID to remove as an owner. - readOnly: false + appId: + description: The ID of the application. + readOnly: true type: string - title: Remove App Resource Owner Request - type: object - x-speakeasy-name-override: RemoveAppResourceOwnerRequest - c1.api.app.v1.RemoveAppResourceOwnerResponse: - description: The empty response message for removing an owner from an app resource. - title: Remove App Resource Owner Response + appUserId: + description: A unique identifier of the application user. + readOnly: true + type: string + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + encryptedData: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.EncryptedData' + - type: "null" + expiresAt: + format: date-time + type: + - string + - "null" + id: + description: A unique identifier of the credential. + readOnly: true + type: string + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: App User Credential type: object - x-speakeasy-name-override: RemoveAppResourceOwnerResponse - c1.api.app.v1.RemoveAutomationExclusionRequestInput: - description: The RemoveAutomationExclusionRequest message. + x-speakeasy-name-override: AppUserCredential + c1.api.app.v1.AppUserExpandMask: + description: The AppUserExpandMask message contains a list of paths to expand in the response. properties: - userIds: - description: The IDs of users to remove from the automation exclusion list. + paths: + description: The paths to expand in the response. May be any combination of "*", "identity_user_id", "app_id", and "last_usage". items: type: string - nullable: true - readOnly: false - type: array - title: Remove Automation Exclusion Request - type: object - x-speakeasy-name-override: RemoveAutomationExclusionRequest - c1.api.app.v1.RemoveAutomationExclusionResponse: - description: Empty response with a status code indicating success. - title: Remove Automation Exclusion Response + type: + - array + - "null" + title: App User Expand Mask type: object - x-speakeasy-name-override: RemoveAutomationExclusionResponse - c1.api.app.v1.RemoveEntitlementMembershipRequestInput: - description: The RemoveEntitlementMembershipRequest message. + x-speakeasy-name-override: AppUserExpandMask + c1.api.app.v1.AppUserMapper: + description: AppUserMapper configures custom account mapping for uplift. properties: - appUserId: - description: The ID of the app user whose membership to remove. - readOnly: false + appId: + description: The app this mapper belongs to. + readOnly: true type: string - title: Remove Entitlement Membership Request + mappingCases: + description: Ordered list of match cases. Each case defines a pair of CEL key extractors. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppUserMapperMatchCase' + type: + - array + - "null" + title: App User Mapper type: object - x-speakeasy-name-override: RemoveEntitlementMembershipRequest - c1.api.app.v1.RemoveEntitlementMembershipResponse: - description: The RemoveEntitlementMembershipResponse message. + x-speakeasy-name-override: AppUserMapper + c1.api.app.v1.AppUserMapperMatchCase: + description: AppUserMapperMatchCase defines a single matching rule for uplift account mapping. properties: - revokeTaskId: - description: |- - The ID of the revoke task created to remove the user from the entitlement, if the entitlement is an access profile (aka. catalog). - It's aka. the JML task. - readOnly: false + appId: + description: The app this match case belongs to. + readOnly: true type: string - title: Remove Entitlement Membership Response - type: object - x-speakeasy-name-override: RemoveEntitlementMembershipResponse - c1.api.app.v1.RemoveGrantDurationRequestInput: - description: The request message for removing the expiration time from a grant. - title: Remove Grant Duration Request + appUserKeyCel: + description: CEL expression evaluated against an AppUser to produce match key(s). + type: string + caseIndex: + description: The ordered index of this match case within the mapper. + format: uint32 + readOnly: true + type: integer + userKeyCel: + description: CEL expression evaluated against a User to produce match key(s). + type: string + title: App User Mapper Match Case type: object - x-speakeasy-name-override: RemoveGrantDurationRequest - c1.api.app.v1.RemoveGrantDurationResponse: - description: The response message for removing the expiration time from a grant. + x-speakeasy-name-override: AppUserMapperMatchCase + c1.api.app.v1.AppUserRef: + description: The AppUserRef message. properties: - binding: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBinding' - title: Remove Grant Duration Response - type: object - x-speakeasy-name-override: RemoveGrantDurationResponse - c1.api.app.v1.ResumeSyncRequestInput: - description: The ResumeSyncRequest message contains the fields required to resume syncing for a connector. - title: Resume Sync Request - type: object - x-speakeasy-name-override: ResumeSyncRequest - c1.api.app.v1.ResumeSyncResponse: - description: Empty response body. Status code indicates success. - title: Resume Sync Response + appId: + description: The ID of the application. + type: string + id: + description: The ID of the app user. + type: string + title: App User Ref type: object - x-speakeasy-name-override: ResumeSyncResponse - c1.api.app.v1.SearchAppEntitlementsWithExpiredResponse: - description: The SearchAppEntitlementsWithExpiredResponse message contains a list of results and a nextPageToken if applicable. + x-speakeasy-name-override: AppUserRef + c1.api.app.v1.AppUserServiceListCredentialsResponse: + description: The response message for listing credentials of an app user. properties: list: - description: The list field. + description: The list of credential results. items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementWithExpired' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.app.v1.AppUserCredential' + type: + - array + - "null" nextPageToken: - description: The nextPageToken field. - readOnly: false + description: The token for fetching the next page of results. type: string - title: Search App Entitlements With Expired Response + title: App User Service List Credentials Response type: object - x-speakeasy-name-override: SearchAppEntitlementsWithExpiredResponse - c1.api.app.v1.SearchAppResourceTypesRequest: - description: Search for app resources based on some filters. + x-speakeasy-name-override: AppUserServiceListCredentialsResponse + c1.api.app.v1.AppUserServiceListResponse: + description: The response message for listing app users. properties: - appIds: - description: A list of app IDs to restrict the search by. + expanded: + description: List of serialized related objects. items: - type: string - nullable: true - readOnly: false - type: array - appUserIds: - description: A list of app user IDs to restrict the search by. + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + list: + description: The list of app user results. items: - type: string - nullable: true - readOnly: false - type: array - displayName: - description: Exact match on display name - readOnly: false + $ref: '#/components/schemas/c1.api.app.v1.AppUserView' + type: + - array + - "null" + nextPageToken: + description: The token for fetching the next page of results. type: string - excludeResourceTypeIds: - description: A list of resource type IDs to exclude from the search. + title: App User Service List Response + type: object + x-speakeasy-name-override: AppUserServiceListResponse + c1.api.app.v1.AppUserServiceSearchRequest: + description: Search App users based on filters specified in the request body + properties: + agentStatuses: + description: |- + Restrict to app users whose agent trait lifecycle status (agent_status) + matches one of these values. When empty, agent_status is not used as a filter. items: + enum: + - APP_USER_AGENT_STATUS_UNSPECIFIED + - APP_USER_AGENT_STATUS_READY + - APP_USER_AGENT_STATUS_DISABLED + - APP_USER_AGENT_STATUS_DELETED type: string - nullable: true - readOnly: false - type: array - excludeResourceTypeTraitIds: - description: A list of resource type trait IDs to exclude from the search. + x-speakeasy-unknown-values: allow + type: + - array + - "null" + appId: + description: The app ID to restrict the search to. + type: string + appIds: + description: A list of app IDs to restrict the search to. items: type: string - nullable: true - readOnly: false - type: array - pageSize: - description: The pageSize where 10 <= pageSize <= 100, default 25. - format: int32 - readOnly: false - type: integer - pageToken: - description: The pageToken field. - readOnly: false - type: string - query: - description: Fuzzy search the display name of resource types. - readOnly: false - type: string - resourceTypeIds: - description: A list of resource type IDs to restrict the search by. + type: + - array + - "null" + appUserDomains: + description: A list of account domains to restrict the search to. items: + enum: + - APP_USER_DOMAIN_UNSPECIFIED + - APP_USER_DOMAIN_EXTERNAL + - APP_USER_DOMAIN_TRUSTED type: string - nullable: true - readOnly: false - type: array - resourceTypeTraitIds: - description: A list of resource type trait IDs to restrict the search by. + x-speakeasy-unknown-values: allow + type: + - array + - "null" + appUserIds: + description: A list of app user IDs to restrict the search to. items: type: string - nullable: true - readOnly: false - type: array - title: Search App Resource Types Request - type: object - x-speakeasy-name-override: SearchAppResourceTypesRequest - c1.api.app.v1.SearchAppResourceTypesResponse: - description: The SearchAppResourceTypesResponse message contains a list of results and a nextPageToken if applicable. - properties: - list: - description: The list of results containing up to X results, where X is the page size defined in the request. + type: + - array + - "null" + appUserStatusDetails: + description: A list of app user status details to restrict the search to. items: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceType' - nullable: true - readOnly: false - type: array - nextPageToken: - description: |- - The nextPageToken is shown for the next page if the number of results is larger than the max page size. - The server returns one page of results and the nextPageToken until all results are retreived. - To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false - type: string - title: Search App Resource Types Response - type: object - x-speakeasy-name-override: SearchAppResourceTypesResponse - c1.api.app.v1.SearchAppResourcesRequest: - description: Search app resources based on filters specified in the request body. - properties: - appId: - description: The app ID to restrict the search to. - readOnly: false - type: string - appUserIds: - description: A list of app user IDs to restrict the search by. + type: string + type: + - array + - "null" + appUserStatuses: + description: A list of app user statuses to restrict the search to. items: + enum: + - STATUS_UNSPECIFIED + - STATUS_ENABLED + - STATUS_DISABLED + - STATUS_DELETED type: string - nullable: true - readOnly: false - type: array - excludeDeletedResourceBindings: - description: If true, exclude resources whose bindings have been deleted. - readOnly: false - type: boolean - excludeResourceIds: - description: A list of resource IDs to exclude from the search results. + x-speakeasy-unknown-values: allow + type: + - array + - "null" + appUserTypes: + description: A list of app user types to restrict the search to. items: + enum: + - APP_USER_TYPE_UNSPECIFIED + - APP_USER_TYPE_USER + - APP_USER_TYPE_SERVICE_ACCOUNT + - APP_USER_TYPE_SYSTEM_ACCOUNT type: string - nullable: true - readOnly: false - type: array - excludeResourceTypeTraitIds: - description: A list of resource type trait IDs to exclude from the search. + x-speakeasy-unknown-values: allow + type: + - array + - "null" + excludeAppUserIds: + description: A list of app user IDs to remove from the results. items: type: string - nullable: true - readOnly: false - type: array - ownerUserIds: - description: A list of C1 user IDs to filter resources by ownership. + type: + - array + - "null" + excludeDeletedApps: + description: When true, excludes app users belonging to soft-deleted apps. + type: boolean + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppUserExpandMask' + - type: "null" + nhiTypes: + description: |- + Restrict to app users whose NHI trait classification (nhi_type) matches one of + these values. When empty, nhi_type is not used as a filter. items: + enum: + - APP_USER_NHI_TYPE_UNSPECIFIED + - APP_USER_NHI_TYPE_APP_REGISTRATION + - APP_USER_NHI_TYPE_ASSUMABLE_ROLE + - APP_USER_NHI_TYPE_MANAGED_IDENTITY type: string - nullable: true - readOnly: false - type: array + x-speakeasy-unknown-values: allow + type: + - array + - "null" pageSize: - description: The maximum number of results to return per page. + description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) format: int32 - readOnly: false type: integer pageToken: - description: The token for fetching the next page of results. - readOnly: false + description: The pageToken field. type: string query: - description: Fuzzy search the display name of resources. - readOnly: false + description: Query the apps with a fuzzy search on display name and description. type: string refs: - description: A list of specific app resource references to restrict the search to. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceRef' - nullable: true - readOnly: false - type: array - resourceIds: - description: A list of resource IDs to restrict the search to. - items: - type: string - nullable: true - readOnly: false - type: array - resourceTypeIds: - description: A list of resource type IDs to restrict the search by. + description: A list of app users to limit the search to. items: - type: string - nullable: true - readOnly: false - type: array - resourceTypeTraitIds: - description: A list of resource type trait IDs to restrict the search by. + $ref: '#/components/schemas/c1.api.app.v1.AppUserRef' + type: + - array + - "null" + sortBy: + description: Ordering of the results. Defaults to display-name ordering. + enum: + - APP_USER_SEARCH_SORT_BY_UNSPECIFIED + - APP_USER_SEARCH_SORT_BY_APP + type: string + x-speakeasy-unknown-values: allow + userIds: + description: A list of user IDs to restrict the search by. items: type: string - nullable: true - readOnly: false - type: array - title: Search App Resources Request + type: + - array + - "null" + withOpenFindings: + description: |- + When true, restrict results to app users that have at least one open finding + (index-backed EXISTS semi-join). When false/unset, results are unfiltered. + type: boolean + withoutResponsibleParty: + description: |- + When true, restrict results to app users with no responsible party + (identity_user_id empty) — i.e. unowned, for any app-user type. + type: boolean + title: App User Service Search Request type: object - x-speakeasy-name-override: SearchAppResourcesRequest - c1.api.app.v1.SearchAppResourcesResponse: - description: The SearchAppResourcesResponse message contains a list of results and a nextPageToken if applicable. + x-speakeasy-name-override: AppUserServiceSearchRequest + c1.api.app.v1.AppUserServiceSearchResponse: + description: The AppUserServiceSearchResponse message. properties: expanded: - description: List of serialized related objects. + description: List of related objects. items: additionalProperties: true description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. @@ -7099,149 +9812,51 @@ components: '@type': description: The type of the serialized message. type: string - readOnly: false type: object - nullable: true - readOnly: false - type: array - list: - description: The list of app resource results. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceView' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The token for fetching the next page of results. - readOnly: false - type: string - title: Search App Resources Response - type: object - x-speakeasy-name-override: SearchAppResourcesResponse - c1.api.app.v1.SearchAppsRequest: - description: Search Apps by a few properties. - properties: - appIds: - description: A list of app IDs to restrict the search to. - items: - type: string - nullable: true - readOnly: false - type: array - displayName: - description: Search for apps with a case insensitive match on the display name. - readOnly: false - type: string - excludeAppIds: - description: A list of app IDs to remove from the results. - items: - type: string - nullable: true - readOnly: false - type: array - onlyDirectories: - description: Only return apps which are directories - readOnly: false - type: boolean - pageSize: - description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) - format: int32 - readOnly: false - type: integer - pageToken: - description: The pageToken field. - readOnly: false - type: string - policyRefs: - description: Search for apps that use any of these policies. - items: - $ref: '#/components/schemas/c1.api.policy.v1.PolicyRef' - nullable: true - readOnly: false - type: array - query: - description: Query the apps with a fuzzy search on display name and description. - readOnly: false - type: string - title: Search Apps Request - type: object - x-speakeasy-name-override: SearchAppsRequest - c1.api.app.v1.SearchAppsResponse: - description: The SearchAppsResponse message contains a list of results and a nextPageToken if applicable. - properties: + type: + - array + - "null" list: description: The list of results containing up to X results, where X is the page size defined in the request. items: - $ref: '#/components/schemas/c1.api.app.v1.App' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.app.v1.AppUserView' + type: + - array + - "null" nextPageToken: description: |- The nextPageToken is shown for the next page if the number of results is larger than the max page size. - The server returns one page of results and the nextPageToken until all results are retreived. + The server returns one page of results and the nextPageToken until all results are retrieved. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false type: string - title: Search Apps Response + title: App User Service Search Response type: object - x-speakeasy-name-override: SearchAppsResponse - c1.api.app.v1.SearchGrantFeedRequest: - description: The SearchGrantFeedRequest message. + x-speakeasy-name-override: AppUserServiceSearchResponse + c1.api.app.v1.AppUserServiceUpdateRequestInput: + description: The AppUserServiceUpdateRequest message contains the app user and the fields to be updated. properties: - after: - format: date-time - readOnly: false - type: string - appEntitlementRefs: - description: The list of app entitlements to limit the search to. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - appRefs: - description: The list of apps to limit the search to. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppRef' - nullable: true - readOnly: false - type: array - appUserRefs: - description: The list of app users to limit the search to. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppUserRef' - nullable: true - readOnly: false - type: array - before: - format: date-time - readOnly: false - type: string + appUser: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppUser' + - type: "null" expandMask: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBindingExpandHistoryMask' - pageSize: - description: The pageSize where 10 <= pageSize <= 100, default 25. - format: int32 - readOnly: false - type: integer - pageToken: - description: The page_token field for pagination. - readOnly: false - type: string - userRefs: - description: The list of C1 users to limit the search to. - items: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - nullable: true - readOnly: false - type: array - title: Search Grant Feed Request + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppUserExpandMask' + - type: "null" + updateMask: + type: + - string + - "null" + title: App User Service Update Request type: object - x-speakeasy-name-override: SearchGrantFeedRequest - c1.api.app.v1.SearchGrantFeedResponse: - description: The SearchGrantFeedResponse message contains a list of grant event results and a nextPageToken if applicable. + x-speakeasy-name-override: AppUserServiceUpdateRequest + c1.api.app.v1.AppUserServiceUpdateResponse: + description: The AppUserServiceUpdateResponse message. properties: + appUserView: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppUserView' + - type: "null" expanded: description: The expanded field. items: @@ -7251,71 +9866,57 @@ components: '@type': description: The type of the serialized message. type: string - readOnly: false type: object - nullable: true - readOnly: false - type: array - list: - description: The list of results containing up to X results, where X is the page size defined in the request. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBindingFeedView' - nullable: true - readOnly: false - type: array - nextPageToken: - description: |- - The nextPageToken is shown for the next page if the number of results is larger than the max page size. - The server returns one page of results and the nextPageToken until all results are retrieved. - To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + type: + - array + - "null" + title: App User Service Update Response + type: object + x-speakeasy-name-override: AppUserServiceUpdateResponse + c1.api.app.v1.AppUserStatus: + description: The satus of the applicaiton user. + properties: + details: + description: The details of applicaiton user status. + readOnly: true type: string - title: Search Grant Feed Response + status: + description: The application user status field. + enum: + - STATUS_UNSPECIFIED + - STATUS_ENABLED + - STATUS_DISABLED + - STATUS_DELETED + readOnly: true + type: string + x-speakeasy-unknown-values: allow + title: App User Status type: object - x-speakeasy-name-override: SearchGrantFeedResponse - c1.api.app.v1.SearchPastGrantsRequest: - description: The request message for searching historical grants. + x-speakeasy-name-override: AppUserStatus + c1.api.app.v1.AppUserView: + description: The AppUserView contains an app user as well as paths for apps, identity users, and last usage in expanded arrays. properties: - appEntitlementRefs: - description: A list of entitlement references to restrict the search to. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - appIds: - description: A list of app IDs to restrict the search to. - items: - type: string - nullable: true - readOnly: false - type: array - appUserRefs: - description: A list of app user references to restrict the search to. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppUserRef' - nullable: true - readOnly: false - type: array - expandMask: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBindingExpandHistoryMask' - pageSize: - description: The maximum number of results to return per page. - format: int32 - readOnly: false - type: integer - pageToken: - description: The token for fetching the next page of results. - readOnly: false + appPath: + description: JSONPATH expression indicating where the app is expanded in expanded arrays indicated in the request. type: string - title: Search Past Grants Request + appUser: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppUser' + - type: "null" + identityUserPath: + description: JSONPATH expression indicating where the identity user is expanded in expanded arrays indicated in the request. + type: string + lastUsagePath: + description: JSONPATH expression indicating where the last usage information is expanded in expanded arrays indicated in the request. + type: string + title: App User View type: object - x-speakeasy-name-override: SearchPastGrantsRequest - c1.api.app.v1.SearchPastGrantsResponse: - description: The SearchPastGrantsResponse message contains a list of past grants and a nextPageToken if applicable. + x-speakeasy-name-override: AppUserView + c1.api.app.v1.AppUsersForUserServiceListResponse: + description: The response message for listing app users correlated to a specific C1 user. properties: expanded: - description: The expanded field. + description: List of serialized related objects. items: additionalProperties: true description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. @@ -7323,225 +9924,390 @@ components: '@type': description: The type of the serialized message. type: string - readOnly: false type: object - nullable: true - readOnly: false - type: array + type: + - array + - "null" list: - description: The list of results containing up to X results, where X is the page size defined in the request. + description: The list of app user results. items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBindingHistoryView' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.app.v1.AppUserView' + type: + - array + - "null" nextPageToken: - description: |- - The nextPageToken is shown for the next page if the number of results is larger than the max page size. - The server returns one page of results and the nextPageToken until all results are retrieved. - To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + description: The token for fetching the next page of results. type: string - title: Search Past Grants Response + title: App Users For User Service List Response type: object - x-speakeasy-name-override: SearchPastGrantsResponse - c1.api.app.v1.SearchUserOwnershipRequest: - description: |- - Search for all ownership assignments for a given user. Returns apps, resources, and - entitlements the user owns, each tagged with a UserOwnershipType discriminator. - Filter by ownership_types to restrict results to specific kinds of ownership. - properties: - ownershipTypes: - description: Filter results to only include these ownership types. If empty, all types are returned. - items: - enum: - - USER_OWNERSHIP_TYPE_UNSPECIFIED - - USER_OWNERSHIP_TYPE_APP - - USER_OWNERSHIP_TYPE_RESOURCE - - USER_OWNERSHIP_TYPE_ENTITLEMENT - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - pageSize: - description: Maximum number of results to return per page. - format: int32 - readOnly: false - type: integer - pageToken: - description: Pagination token from a previous response. - readOnly: false - type: string - userId: - description: The ID of the ConductorOne user whose ownership to search. - readOnly: false - type: string - title: Search User Ownership Request + x-speakeasy-name-override: AppUsersForUserServiceListResponse + c1.api.app.v1.CancelAccessRequestDefaultsRequestInput: + description: The CancelAccessRequestDefaultsRequest message. + title: Cancel Access Request Defaults Request type: object - x-speakeasy-name-override: SearchUserOwnershipRequest - c1.api.app.v1.SearchUserOwnershipResponse: - description: The SearchUserOwnershipResponse message contains a paginated list of ownership entries. - properties: - list: - description: The list of ownership entries for the requested user. - items: - $ref: '#/components/schemas/c1.api.app.v1.UserOwnershipEntry' - nullable: true - readOnly: false - type: array - nextPageToken: - description: Pagination token for the next page of results. Empty when there are no more results. - readOnly: false - type: string - title: Search User Ownership Response + x-speakeasy-name-override: CancelAccessRequestDefaultsRequest + c1.api.app.v1.ConfirmSyncValidRequestInput: + description: The ConfirmSyncValidRequest message contains the fields required to confirm a sync as valid. + title: Confirm Sync Valid Request type: object - x-speakeasy-name-override: SearchUserOwnershipResponse - c1.api.app.v1.SecretTrait: - description: The SecretTrait message. - nullable: true + x-speakeasy-name-override: ConfirmSyncValidRequest + c1.api.app.v1.ConfirmSyncValidResponse: + description: Empty response body. Status code indicates success. + title: Confirm Sync Valid Response + type: object + x-speakeasy-name-override: ConfirmSyncValidResponse + c1.api.app.v1.Connector: + description: A Connector is used to sync objects into Apps properties: - identityAppUserId: - description: The identityAppUserId field. - readOnly: false + appId: + description: The id of the app the connector is associated with. type: string - lastUsedAt: - format: date-time - readOnly: false + canResumeSync: + description: The canResumeSync field. + type: boolean + catalogId: + description: The catalogId describes which catalog entry this connector is an instance of. For example, every Okta connector will have the same catalogId indicating it is an Okta connector. type: string - secretCreatedAt: + config: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: + - object + - "null" + configUpdatedAt: format: date-time - readOnly: false - type: string - secretExpiresAt: + readOnly: true + type: + - string + - "null" + connectorApiVersion: + description: The connectorApiVersion field. + format: uint32 + readOnly: true + type: integer + connectorSyncCronSchedule: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.ConnectorSyncCronSchedule' + - type: "null" + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + deletedAt: format: date-time - readOnly: false + readOnly: true + type: + - string + - "null" + description: + description: The description of the connector. type: string - title: Secret Trait - type: object - x-speakeasy-name-override: SecretTrait - c1.api.app.v1.SetAppEntitlementOwnersRequestInput: - description: The request message for setting the app entitlement owners. - properties: - userIds: - description: The user_ids field for the users to set as an owner of the app entitlement. + disableCheckBadSync: + description: The disableCheckBadSync field. + type: boolean + displayName: + description: The display name of the connector. + type: string + downloadUrl: + description: The downloadUrl for a spreadsheet if the connector was created from uploading a file. + readOnly: true + type: string + id: + description: The id of the connector. + type: string + oauthAuthorizedAs: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.OAuth2AuthorizedAs' + - type: "null" + parallelSyncWorkerCount: + description: 'Number of sync workers to use for parallel sync, when the PARALLEL_SYNC feature is enabled. Zero disables parallel sync. Optional on write: omit the field in UpdateAdvancedConfig to leave the stored value unchanged. The public API allows setting up to 4.' + format: int32 + type: + - integer + - "null" + profileAllowList: + description: List of profile attributes to sync, when set only these attributes will be synced items: type: string - nullable: true - readOnly: false - type: array - title: Set App Entitlement Owners Request - type: object - x-speakeasy-entity: App_Entitlement_Owner - x-speakeasy-name-override: SetAppEntitlementOwnersRequest - c1.api.app.v1.SetAppEntitlementOwnersResponse: - description: The empty response message for setting the app entitlement owners. - title: Set App Entitlement Owners Response - type: object - x-speakeasy-name-override: SetAppEntitlementOwnersResponse - c1.api.app.v1.SetAppOwnersRequestInput: - description: The request message for setting the app owners. - properties: - userIds: - description: The user_ids field for the users to set as an owner of the app. + type: + - array + - "null" + profileIgnoreList: + description: List of profile attributes to ignore (not sync), when set other attributes will be synced, but these will not. items: type: string - nullable: true - readOnly: false - type: array - title: Set App Owners Request - type: object - x-speakeasy-entity: App_Owner - x-speakeasy-name-override: SetAppOwnersRequest - c1.api.app.v1.SetAppOwnersResponse: - description: The empty response message for setting the app owners. - title: Set App Owners Response - type: object - x-speakeasy-name-override: SetAppOwnersResponse - c1.api.app.v1.SetAppResourceOwnersRequestInput: - description: The SetAppResourceOwnersRequest message. - properties: + type: + - array + - "null" + status: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.ConnectorStatus' + - type: "null" + syncConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.SyncConfig' + - type: "null" + syncDisabledAt: + format: date-time + readOnly: true + type: + - string + - "null" + syncDisabledCategory: + description: The category of the connector sync that was disabled. + type: string + syncDisabledReason: + description: The reason the connector sync was disabled. + type: string + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" userIds: - description: The userIds field. + description: The userIds field is used to define the integration owners of the connector. items: type: string - nullable: true - readOnly: false - type: array - title: Set App Resource Owners Request - type: object - x-speakeasy-entity: App_Resource_Owner - x-speakeasy-name-override: SetAppResourceOwnersRequest - c1.api.app.v1.SetAppResourceOwnersResponse: - description: The empty response message for setting the app resource owners. - title: Set App Resource Owners Response + type: + - array + - "null" + title: Connector type: object - x-speakeasy-name-override: SetAppResourceOwnersResponse - c1.api.app.v1.SyncConfig: - description: The SyncConfig message. + x-speakeasy-name-override: Connector + c1.api.app.v1.ConnectorActionEffect: + description: The ConnectorActionEffect message. properties: - syncResourceTypeIds: - description: The syncResourceTypeIds field. - items: - type: string - nullable: true - readOnly: false - type: array - title: Sync Config - type: object - x-speakeasy-name-override: SyncConfig - c1.api.app.v1.TaskAuditCancelledResult: - description: The TaskAuditCancelledResult message. - nullable: true + appEntitlementId: + description: The appEntitlementId field. + type: string + appId: + description: The appId field. + type: string + appUserId: + description: The appUserId field. + type: string + connectorActionId: + description: The connectorActionId field. + type: string + connectorEntitlementId: + description: The connectorEntitlementId field. + type: string + connectorGrantId: + description: The connectorGrantId field. + type: string + connectorId: + description: The connectorId field. + type: string + effectSource: + description: The effectSource field. + enum: + - CONNECTOR_ACTION_EFFECT_SOURCE_UNSPECIFIED + - CONNECTOR_ACTION_EFFECT_SOURCE_ACTION_TARGET + - CONNECTOR_ACTION_EFFECT_SOURCE_CONNECTOR_RESPONSE + - CONNECTOR_ACTION_EFFECT_SOURCE_GRANT_REPLACED + - CONNECTOR_ACTION_EFFECT_SOURCE_DEFAULT_REPLACEMENT + type: string + x-speakeasy-unknown-values: allow + effectType: + description: The effectType field. + enum: + - CONNECTOR_ACTION_EFFECT_TYPE_UNSPECIFIED + - CONNECTOR_ACTION_EFFECT_TYPE_GRANT + - CONNECTOR_ACTION_EFFECT_TYPE_REVOKE + type: string + x-speakeasy-unknown-values: allow + exclusionGroupId: + description: The exclusionGroupId field. + type: string + replacedConnectorGrantId: + description: The replacedConnectorGrantId field. + type: string + unresolvedReason: + description: The unresolvedReason field. + type: string + title: Connector Action Effect + type: object + x-speakeasy-name-override: ConnectorActionEffect + c1.api.app.v1.ConnectorCredential: + description: ConnectorCredential is used by a connector to authenticate with conductor one. properties: - cancelReason: + appId: + description: The appId of the app the connector is attached to. + type: string + clientId: + description: The client id of the ConnectorCredential. + type: string + clientSecret: + description: The client secret of the ConnectorCredential. It's only returned on creation. + type: string + connectorId: + description: The connectorId of the connector the credential is associated with. + type: string + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + displayName: + description: The display name of the ConnectorCredential. + type: string + expiresTime: + format: date-time + readOnly: true + type: + - string + - "null" + id: + description: The id of the ConnectorCredential. + type: string + lastUsedAt: + format: date-time + readOnly: true + type: + - string + - "null" + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Connector Credential + type: object + x-speakeasy-entity: ConnectorCredential + x-speakeasy-name-override: ConnectorCredential + c1.api.app.v1.ConnectorExpandMask: + description: The ConnectorExpandMask is used to expand related objects on a connector. + properties: + paths: description: |- - Human-readable reason the action was cancelled. Already populated on the - model-side CanceledResult (e.g., "action is invalid - ticket is closed"); - this surfaces it to the UI. - readOnly: false + Paths that you want expanded in the response. Possible values are "app_id", + "user_ids", "capabilities" and "*". + items: + type: string + type: + - array + - "null" + title: Connector Expand Mask + type: object + x-speakeasy-name-override: ConnectorExpandMask + c1.api.app.v1.ConnectorRef: + description: The ConnectorRef message. + properties: + appId: + description: The appId field. type: string - title: Task Audit Cancelled Result + id: + description: The id field. + type: string + title: Connector Ref type: object - x-speakeasy-name-override: TaskAuditCancelledResult - c1.api.app.v1.TaskAuditErrorResult: - description: The TaskAuditErrorResult message. - nullable: true + x-speakeasy-name-override: ConnectorRef + c1.api.app.v1.ConnectorScheduleCron: + description: A cron-based schedule definition for connector syncs. properties: - errorCount: - description: 'TODO(pquerna): expand' - format: int64 - readOnly: false + cronSpec: + description: The cron expression defining the sync schedule. type: string - errorReason: - description: The errorReason field. - readOnly: false + timezone: + description: The IANA timezone name for the cron schedule (e.g., "America/Los_Angeles"). type: string - title: Task Audit Error Result + title: Connector Schedule Cron type: object - x-speakeasy-name-override: TaskAuditErrorResult - c1.api.app.v1.TaskAuditPendingResult: - description: The TaskAuditPendingResult message. - nullable: true + x-speakeasy-name-override: ConnectorScheduleCron + c1.api.app.v1.ConnectorServiceCreateDelegatedRequestInput: + description: The ConnectorServiceCreateDelegatedRequest message contains the fields required to create a connector. properties: - pendingReason: - description: |- - Human-readable explanation of why the action is pending. Rendered in the - ticket audit log so admins can see what the action is waiting on (e.g., - "GitHub org invite sent. User must accept the invitation before team - membership can be granted."). Naming mirrors TaskAuditErrorResult.error_reason - and TaskAuditCancelledResult.cancel_reason for consistency. - readOnly: false + appEntitlementOwnerRefs: + description: Sets entitlement owners on the app. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + appManagedStateBindingRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppManagedStateBindingRef' + - type: "null" + catalogId: + description: The catalogId describes which catalog entry this connector is an instance of. For example, every Okta connector will have the same catalogId indicating it is an Okta connector. type: string - title: Task Audit Pending Result + description: + description: The description of the connector. + type: string + displayName: + description: The displayName of the connector. + type: string + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.ConnectorExpandMask' + - type: "null" + userIds: + description: The userIds field is used to define the integration owners of the connector. + items: + type: string + type: + - array + - "null" + title: Connector Service Create Delegated Request type: object - x-speakeasy-name-override: TaskAuditPendingResult - c1.api.app.v1.TaskAuditSuccessResult: - description: The TaskAuditSuccessResult message. - nullable: true + x-speakeasy-name-override: ConnectorServiceCreateDelegatedRequest + c1.api.app.v1.ConnectorServiceCreateRequestInput: + description: The ConnectorServiceCreateRequest message. properties: - annotations: - description: The annotations field. + catalogId: + description: The catalogId field. + type: string + config: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: + - object + - "null" + description: + description: The description field. + type: string + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.ConnectorExpandMask' + - type: "null" + userIds: + description: The userIds field. + items: + type: string + type: + - array + - "null" + title: Connector Service Create Request + type: object + x-speakeasy-name-override: ConnectorServiceCreateRequest + c1.api.app.v1.ConnectorServiceCreateResponse: + description: The ConnectorServiceCreateResponse is the response returned from creating a connector. + properties: + connectorView: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.ConnectorView' + - type: "null" + expanded: + description: The array of expanded items indicated by the request. items: additionalProperties: true description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. @@ -7549,48 +10315,42 @@ components: '@type': description: The type of the serialized message. type: string - readOnly: false type: object - nullable: true - readOnly: false - type: array - successReason: - description: |- - Optional human-readable note about the successful action. Rendered in - the ticket audit log when present (e.g., "Account already existed; no - change made." for the AlreadyExistsResult path). Naming mirrors - TaskAuditErrorResult.error_reason and TaskAuditCancelledResult.cancel_reason - for consistency. - readOnly: false - type: string - title: Task Audit Success Result + type: + - array + - "null" + title: Connector Service Create Response type: object - x-speakeasy-name-override: TaskAuditSuccessResult - c1.api.app.v1.UpdateAppEntitlementRequestInput: - description: The UpdateAppEntitlementRequest message contains the app entitlement and the fields to be updated. + x-speakeasy-name-override: ConnectorServiceCreateResponse + c1.api.app.v1.ConnectorServiceDeleteRequestInput: + description: ConnectorServiceDeleteRequest is a request for deleting a connector. It uses URL values for input. + title: Connector Service Delete Request + type: object + x-speakeasy-name-override: ConnectorServiceDeleteRequest + c1.api.app.v1.ConnectorServiceDeleteResponse: + description: Empty response body. Status code indicates success. + title: Connector Service Delete Response + type: object + x-speakeasy-name-override: ConnectorServiceDeleteResponse + c1.api.app.v1.ConnectorServiceGetCredentialsResponse: + description: ConnectorServiceGetCredentialsResponse is the response returned by the get method. properties: - entitlement: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlement' - expandMask: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementExpandMask' - overrideAccessRequestsDefaults: - description: Flag to indicate that access request defaults, if any are applied to these entitlements, should be overridden. - readOnly: false - type: boolean - updateMask: - nullable: true - readOnly: false - type: string - title: Update App Entitlement Request + credential: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.ConnectorCredential' + - type: "null" + title: Connector Service Get Credentials Response type: object - x-speakeasy-name-override: UpdateAppEntitlementRequest - c1.api.app.v1.UpdateAppEntitlementResponse: - description: The UpdateAppEntitlementResponse message. + x-speakeasy-name-override: ConnectorServiceGetCredentialsResponse + c1.api.app.v1.ConnectorServiceGetResponse: + description: The ConnectorServiceGetResponse message contains the connectorView, and an expand mask. properties: - appEntitlementView: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementView' + connectorView: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.ConnectorView' + - type: "null" expanded: - description: List of related objects + description: The array of expanded items indicated by the request. items: additionalProperties: true description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. @@ -7598,108 +10358,122 @@ components: '@type': description: The type of the serialized message. type: string - readOnly: false type: object - nullable: true - readOnly: false - type: array - title: Update App Entitlement Response - type: object - x-speakeasy-name-override: UpdateAppEntitlementResponse - c1.api.app.v1.UpdateAppRequestInput: - description: The UpdateAppRequest message contains the app to update and the fields to update. - properties: - app: - $ref: '#/components/schemas/c1.api.app.v1.App' - updateMask: - nullable: true - readOnly: false - type: string - title: Update App Request - type: object - x-speakeasy-name-override: UpdateAppRequest - c1.api.app.v1.UpdateAppResponse: - description: Returns the updated app's new values. - properties: - app: - $ref: '#/components/schemas/c1.api.app.v1.App' - title: Update App Response + type: + - array + - "null" + title: Connector Service Get Response type: object - x-speakeasy-name-override: UpdateAppResponse - c1.api.app.v1.UpdateAppUsageControlsRequestInput: - description: The UpdateAppUsageControlsRequest message contains the AppUsageControls object to update and the update mask. + x-speakeasy-name-override: ConnectorServiceGetResponse + c1.api.app.v1.ConnectorServiceListResponse: + description: The ConnectorServiceListResponse message contains a list of results and a nextPageToken if applicable properties: - appUsageControls: - $ref: '#/components/schemas/c1.api.app.v1.AppUsageControls' - updateMask: - nullable: true - readOnly: false + expanded: + description: List of serialized related objects + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + list: + description: The list of results containing up to X results, where X is the page size defined in the request + items: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorView' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. type: string - title: Update App Usage Controls Request - type: object - x-speakeasy-name-override: UpdateAppUsageControlsRequest - c1.api.app.v1.UpdateAppUsageControlsResponse: - description: The UpdateAppUsageControlsResponse message contains the updated AppUsageControls object. - properties: - appUsageControls: - $ref: '#/components/schemas/c1.api.app.v1.AppUsageControls' - title: Update App Usage Controls Response + title: Connector Service List Response type: object - x-speakeasy-name-override: UpdateAppUsageControlsResponse - c1.api.app.v1.UpdateConnectorScheduleRequestInput: - description: | - The UpdateConnectorScheduleRequest message contains the fields required to update a connector's sync schedule. - - This message contains a oneof named schedule. Only a single field of the following list may be set at a time: - - cron - properties: - cron: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorScheduleCron' - title: Update Connector Schedule Request + x-speakeasy-name-override: ConnectorServiceListResponse + c1.api.app.v1.ConnectorServiceRevokeCredentialRequestInput: + description: ConnectorServiceRevokeCredentialRequest is a request for revoking connector credentials. It uses URL values for input. + title: Connector Service Revoke Credential Request type: object - x-speakeasy-name-override: UpdateConnectorScheduleRequest - c1.api.app.v1.UpdateConnectorScheduleResponse: + x-speakeasy-entity: ConnectorCredential + x-speakeasy-name-override: ConnectorServiceRevokeCredentialRequest + c1.api.app.v1.ConnectorServiceRevokeCredentialResponse: description: Empty response body. Status code indicates success. - title: Update Connector Schedule Response + title: Connector Service Revoke Credential Response type: object - x-speakeasy-name-override: UpdateConnectorScheduleResponse - c1.api.app.v1.UpdateGrantDurationRequestInput: - description: The request message for updating the duration of an existing grant. + x-speakeasy-entity: ConnectorCredential + x-speakeasy-name-override: ConnectorServiceRevokeCredentialResponse + c1.api.app.v1.ConnectorServiceRotateCredentialRequest: + description: ConnectorServiceRotateCredentialRequest is a request for rotating connector credentials. It uses URL values for input. properties: - newDeprovisionAt: - format: date-time - readOnly: false + appId: + description: The appId of the app the connector is attached to. type: string - title: Update Grant Duration Request + connectorId: + description: The connectorId of the connector that we are rotating the credentials for. + type: string + title: Connector Service Rotate Credential Request type: object - x-speakeasy-name-override: UpdateGrantDurationRequest - c1.api.app.v1.UpdateGrantDurationResponse: - description: The response message for updating the duration of a grant. + x-speakeasy-entity: ConnectorCredential + x-speakeasy-name-override: ConnectorServiceRotateCredentialRequest + c1.api.app.v1.ConnectorServiceRotateCredentialResponse: + description: ConnectorServiceRotateCredentialResponse is the response returned by the rotate method. properties: - binding: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBinding' - title: Update Grant Duration Response + credential: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.ConnectorCredential' + - type: "null" + title: Connector Service Rotate Credential Response type: object - x-speakeasy-name-override: UpdateGrantDurationResponse - c1.api.app.v1.UpdateManuallyManagedResourceTypeRequestInput: - description: The request message for updating a manually managed resource type. + x-speakeasy-name-override: ConnectorServiceRotateCredentialResponse + c1.api.app.v1.ConnectorServiceUpdateDelegatedRequestInput: + description: The ConnectorServiceUpdateDelegatedRequest message contains the fields required to update a connector. properties: - appResourceType: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceType' + connector: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.Connector' + - type: "null" + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.ConnectorExpandMask' + - type: "null" updateMask: - nullable: true - readOnly: false - type: string - title: Update Manually Managed Resource Type Request + type: + - string + - "null" + title: Connector Service Update Delegated Request type: object - x-speakeasy-name-override: UpdateManuallyManagedResourceTypeRequest - c1.api.app.v1.UpdateManuallyManagedResourceTypeResponse: - description: The response message for updating a manually managed resource type. + x-speakeasy-name-override: ConnectorServiceUpdateDelegatedRequest + c1.api.app.v1.ConnectorServiceUpdateRequestInput: + description: The ConnectorServiceUpdateRequest message contains the fields required to update a connector. properties: - appResourceType: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceType' + connector: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.Connector' + - type: "null" + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.ConnectorExpandMask' + - type: "null" + updateMask: + type: + - string + - "null" + title: Connector Service Update Request + type: object + x-speakeasy-name-override: ConnectorServiceUpdateRequest + c1.api.app.v1.ConnectorServiceUpdateResponse: + description: ConnectorServiceUpdateResponse is the response returned by the update method. + properties: + connectorView: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.ConnectorView' + - type: "null" expanded: - description: List of serialized related objects. + description: The array of expanded items indicated by the request. items: additionalProperties: true description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. @@ -7707,18089 +10481,20494 @@ components: '@type': description: The type of the serialized message. type: string - readOnly: false type: object - nullable: true - readOnly: false - type: array - title: Update Manually Managed Resource Type Response + type: + - array + - "null" + title: Connector Service Update Response type: object - x-speakeasy-name-override: UpdateManuallyManagedResourceTypeResponse - c1.api.app.v1.UserOwnershipEntry: - description: |- - A single ownership entry. Fields are populated based on ownership_type: - APP — only app_id and app_display_name are set. - RESOURCE — app_id, app_display_name, resource_type_id, resource_id, and resource_display_name are set. - ENTITLEMENT — app_id, app_display_name, resource_type_id, entitlement_id, and entitlement_display_name are set. + x-speakeasy-name-override: ConnectorServiceUpdateResponse + c1.api.app.v1.ConnectorStatus: + description: The status field on the connector is used to track the status of the connectors sync, and when syncing last started, completed, or caused the connector to update. properties: - appDisplayName: - description: The app display name. - readOnly: false - type: string - appId: - description: The app ID. - readOnly: false - type: string - entitlementDisplayName: - description: The entitlement display name, if applicable. - readOnly: false - type: string - entitlementId: - description: The entitlement ID, if applicable. - readOnly: false + completedAt: + format: date-time + type: + - string + - "null" + lastError: + description: The last error encountered by the connector. type: string - ownershipType: - description: The type of ownership. + startedAt: + format: date-time + type: + - string + - "null" + status: + description: The status of the connector sync. enum: - - USER_OWNERSHIP_TYPE_UNSPECIFIED - - USER_OWNERSHIP_TYPE_APP - - USER_OWNERSHIP_TYPE_RESOURCE - - USER_OWNERSHIP_TYPE_ENTITLEMENT - readOnly: false + - SYNC_STATUS_UNSPECIFIED + - SYNC_STATUS_RUNNING + - SYNC_STATUS_DONE + - SYNC_STATUS_ERROR + - SYNC_STATUS_DISABLED type: string x-speakeasy-unknown-values: allow - resourceDisplayName: - description: The resource display name, if applicable. - readOnly: false - type: string - resourceId: - description: The resource ID, if applicable. - readOnly: false - type: string - resourceTypeId: - description: The resource type ID, if applicable. - readOnly: false - type: string - title: User Ownership Entry - type: object - x-speakeasy-name-override: UserOwnershipEntry - c1.api.app.v1.UserWithAppEntitlementUserBindingView: - description: The UserWithAppEntitlementUserBindingView message. - properties: - appEntitlementId: - description: The ID of the app entitlement. - readOnly: false - type: string - appId: - description: The ID of the app that contains the entitlement. - readOnly: false - type: string - appUserId: - description: The ID of the app user associated with this binding. - readOnly: false - type: string - user: - $ref: '#/components/schemas/c1.api.user.v1.User' - title: User With App Entitlement User Binding View - type: object - x-speakeasy-name-override: UserWithAppEntitlementUserBindingView - c1.api.app.v2.AppEntitlementOwnerEntitlement: - description: AppEntitlementOwnerEntitlement represents an entitlement ownership source for an app entitlement. - properties: - appEntitlement: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlement' - appId: - description: The appId field. - readOnly: false - type: string - createdAt: + updatedAt: format: date-time - readOnly: false - type: string - entitlementId: - description: The entitlementId field. - readOnly: false - type: string - roleSlug: - description: The roleSlug field. - readOnly: false - type: string - title: App Entitlement Owner Entitlement + type: + - string + - "null" + title: Connector Status type: object - x-speakeasy-entity: App_Entitlement_Owner_Entitlement - x-speakeasy-name-override: AppEntitlementOwnerEntitlement - c1.api.app.v2.AppEntitlementOwnerUser: - description: AppEntitlementOwnerUser represents a user ownership source for an app entitlement. + x-speakeasy-name-override: ConnectorStatus + c1.api.app.v1.ConnectorSyncCronSchedule: + description: The ConnectorSyncCronSchedule message. properties: - appId: - description: The appId field. - readOnly: false + cronSpec: + description: The cronSpec field. type: string - createdAt: + start: format: date-time - readOnly: false - type: string - entitlementId: - description: The entitlementId field. - readOnly: false - type: string - roleSlug: - description: The roleSlug field. - readOnly: false + type: + - string + - "null" + timezone: + description: The timezone field. type: string - user: - $ref: '#/components/schemas/c1.api.user.v1.User' - title: App Entitlement Owner User + title: Connector Sync Cron Schedule type: object - x-speakeasy-entity: App_Entitlement_Owner_User - x-speakeasy-name-override: AppEntitlementOwnerUser - c1.api.app.v2.AppOwnerEntitlement: - description: AppOwnerEntitlement represents an entitlement ownership source for an app. + x-speakeasy-name-override: ConnectorSyncCronSchedule + c1.api.app.v1.ConnectorView: + description: The ConnectorView object provides a connector response object, as well as JSONPATHs to related objects provided by expanders. properties: - appEntitlement: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlement' - appId: - description: The appId field. - readOnly: false + appPath: + description: JSONPATH expression indicating the location of the App object in the expanded array. type: string - createdAt: - format: date-time - readOnly: false + capabilitiesPath: + description: JSONPATH expression indicating the location of the ConnectorCapabilities object in the expanded array. type: string - roleSlug: - description: The roleSlug field. - readOnly: false + connector: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.Connector' + - type: "null" + usersPath: + description: JSONPATH expression indicating the location of the User object in the expanded array. This is the user that is a direct target of the ticket without a specific relationship to a potentially non-existent app user. type: string - title: App Owner Entitlement + title: Connector View type: object - x-speakeasy-entity: App_Owner_Entitlement - x-speakeasy-name-override: AppOwnerEntitlement - c1.api.app.v2.AppOwnerUser: - description: AppOwnerUser represents a user ownership source for an app. + x-speakeasy-name-override: ConnectorView + c1.api.app.v1.CreateAppEntitlementProxyRequestInput: + description: The request message for creating an entitlement proxy binding. properties: - appId: - description: The appId field. - readOnly: false - type: string - createdAt: - format: date-time - readOnly: false - type: string - roleSlug: - description: The roleSlug field. - readOnly: false - type: string - user: - $ref: '#/components/schemas/c1.api.user.v1.User' - title: App Owner User + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementProxyExpandMask' + - type: "null" + title: Create App Entitlement Proxy Request type: object - x-speakeasy-entity: App_Owner_User - x-speakeasy-name-override: AppOwnerUser - c1.api.app.v2.ConnectorOwnerEntitlement: - description: ConnectorOwnerEntitlement represents an entitlement ownership source for a connector. + x-speakeasy-name-override: CreateAppEntitlementProxyRequest + c1.api.app.v1.CreateAppEntitlementProxyResponse: + description: The response message for creating an entitlement proxy binding. properties: - appEntitlement: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlement' - createdAt: - format: date-time - readOnly: false + appProxyEntitlementView: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementProxyView' + - type: "null" + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + title: Create App Entitlement Proxy Response + type: object + x-speakeasy-name-override: CreateAppEntitlementProxyResponse + c1.api.app.v1.CreateAppEntitlementRequestInput: + description: | + The CreateAppEntitlementRequest message. + + This message contains a oneof named max_grant_duration. Only a single field of the following list may be set at a time: + - durationUnset + - durationGrant + properties: + alias: + description: A unique alias for the entitlement, used for programmatic lookups and Cone. type: string - roleSlug: - description: The roleSlug field. - readOnly: false + annotations: + additionalProperties: + type: string + description: |- + Bounded key/value metadata bag for IaC marking and customer tags. + See .rfcs/object-annotations.md §2. Limits: ≤16 entries; keys 1–128 + chars matching ^[A-Za-z][A-Za-z0-9._/-]{0,127}$; values 0–256 chars + matching URL-safe ASCII; total serialized ≤4096 bytes. Keys starting + with `c1/` are reserved for server-managed use and rejected on write. + + Well-known keys: `managed_by`, `iac_workspace`, + `iac_resource_address`, `iac_tool_version`. + type: object + x-speakeasy-terraform-plan-modifier: + imports: + - github.com/conductorone/terraform-provider-conductorone/internal/annotations + schemaDefinition: annotations.PlanModifier() + appEntitlementOwnerIds: + description: The IDs of users to set as owners of this entitlement. + items: + type: string + type: + - array + - "null" + appResourceId: + description: The ID of the resource that this entitlement belongs to. type: string - title: Connector Owner Entitlement + appResourceTypeId: + description: The ID of the resource type that this entitlement belongs to. + type: string + certifyPolicyId: + description: The ID of the policy to use for certification tasks. + type: string + complianceFrameworkValueIds: + description: The IDs of compliance frameworks to associate with this entitlement (e.g., SOX, HIPAA). + items: + type: string + type: + - array + - "null" + description: + description: The description of the new entitlement. + type: string + displayName: + description: The display name of the new entitlement. + type: string + durationGrant: + format: duration + type: + - string + - "null" + durationUnset: + type: + - object + - "null" + emergencyGrantEnabled: + description: Whether emergency grant requests are enabled for this entitlement. + type: boolean + emergencyGrantPolicyId: + description: The ID of the policy to use for emergency grant tasks. Required if emergency_grant_enabled is true. + type: string + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementExpandMask' + - type: "null" + grantPolicyId: + description: The ID of the policy to use for grant request tasks. + type: string + matchBatonId: + description: If supplied, it's implied that the entitlement is created before sync and needs to be merged with connector entitlement. + type: string + overrideAccessRequestsDefaults: + description: Whether to override the app-level access request defaults for this entitlement. + type: boolean + provisionPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ProvisionPolicy' + - type: "null" + purpose: + description: The purpose of the entitlement (e.g., assignment, permission, ownership). + enum: + - APP_ENTITLEMENT_PURPOSE_VALUE_UNSPECIFIED + - APP_ENTITLEMENT_PURPOSE_VALUE_ASSIGNMENT + - APP_ENTITLEMENT_PURPOSE_VALUE_PERMISSION + - APP_ENTITLEMENT_PURPOSE_VALUE_OWNERSHIP + type: string + x-speakeasy-unknown-values: allow + revokePolicyId: + description: The ID of the policy to use for revoke request tasks. + type: string + riskLevelValueId: + description: The ID of the risk level to assign to this entitlement. + type: string + slug: + description: A short label describing the permission the entitlement grants (e.g., "Admin", "Read"). + type: string + required: + - displayName + title: Create App Entitlement Request type: object - x-speakeasy-name-override: ConnectorOwnerEntitlement - c1.api.app.v2.ConnectorOwnerUser: - description: ConnectorOwnerUser represents a user ownership source for a connector. + x-speakeasy-name-override: CreateAppEntitlementRequest + c1.api.app.v1.CreateAppEntitlementResponse: + description: The CreateAppEntitlementResponse message. properties: - createdAt: - format: date-time - readOnly: false + appEntitlementView: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementView' + - type: "null" + expanded: + description: The expanded field. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + title: Create App Entitlement Response + type: object + x-speakeasy-name-override: CreateAppEntitlementResponse + c1.api.app.v1.CreateAppEntitlementRoutingRuleRequestInput: + description: The CreateAppEntitlementRoutingRuleRequest message. + properties: + condition: + description: |- + CEL expression evaluated against the entitlement routing rule context. + Empty string is valid and matches every target not matched earlier. type: string - roleSlug: - description: The roleSlug field. - readOnly: false + description: + description: The description field. type: string - user: - $ref: '#/components/schemas/c1.api.user.v1.User' - title: Connector Owner User + displayName: + description: The displayName field. + type: string + enabled: + description: The enabled field. + type: boolean + priority: + description: |- + A 1-indexed insertion slot; the server clamps it into [1, N+1] and re-packs + siblings densely. Omit (or 0) to append the rule last. + format: int32 + type: integer + settings: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRoutingRuleSettings' + - type: "null" + title: Create App Entitlement Routing Rule Request type: object - x-speakeasy-name-override: ConnectorOwnerUser - c1.api.app.v2.CreateAppEntitlementEntitlementOwnerRequestInput: - description: CreateAppEntitlementEntitlementOwnerRequest is the request for creating an entitlement ownership source on an entitlement. + x-speakeasy-name-override: CreateAppEntitlementRoutingRuleRequest + c1.api.app.v1.CreateAppEntitlementRoutingRuleResponse: + description: The CreateAppEntitlementRoutingRuleResponse message. properties: - appEntitlementRef: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - title: Create App Entitlement Entitlement Owner Request + routingRule: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRoutingRule' + - type: "null" + title: Create App Entitlement Routing Rule Response type: object - x-speakeasy-name-override: CreateAppEntitlementEntitlementOwnerRequest - c1.api.app.v2.CreateAppEntitlementEntitlementOwnerResponse: - description: CreateAppEntitlementEntitlementOwnerResponse is the response for creating an entitlement ownership source on an entitlement. + x-speakeasy-name-override: CreateAppEntitlementRoutingRuleResponse + c1.api.app.v1.CreateAppRequest: + description: The CreateAppRequest message is used to create a new app. properties: - appEntitlementOwnerEntitlement: - $ref: '#/components/schemas/c1.api.app.v2.AppEntitlementOwnerEntitlement' - title: Create App Entitlement Entitlement Owner Response + annotations: + additionalProperties: + type: string + description: |- + Bounded key/value metadata bag for IaC marking and customer tags. + See .rfcs/object-annotations.md §2. Limits: ≤16 entries; keys 1–128 + chars matching ^[A-Za-z][A-Za-z0-9._/-]{0,127}$; values 0–256 chars + matching URL-safe ASCII; total serialized ≤4096 bytes. Keys starting + with `c1/` are reserved for server-managed use and rejected on write. + + Well-known keys: `managed_by`, `iac_workspace`, + `iac_resource_address`, `iac_tool_version`. + type: object + x-speakeasy-terraform-plan-modifier: + imports: + - github.com/conductorone/terraform-provider-conductorone/internal/annotations + schemaDefinition: annotations.PlanModifier() + appEntitlementOwnerRefs: + description: Initial entitlement owners for ordinary API creation. Requests with `match_baton_ref` must leave this empty; Terraform manages owners with `conductorone_app_owner_entitlement`. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + certifyPolicyId: + description: Creates the app with this certify policy. + type: string + description: + description: Creates the app with this description. + type: string + displayName: + description: Creates the app with this display name. + type: string + grantPolicyId: + description: Creates the app with this grant policy. + type: string + identityMatching: + description: Define the app user identity matching strategy for this app. + enum: + - APP_USER_IDENTITY_MATCHING_UNSPECIFIED + - APP_USER_IDENTITY_MATCHING_STRICT + - APP_USER_IDENTITY_MATCHING_DISPLAY_NAME + - APP_USER_IDENTITY_MATCHING_CUSTOM + type: string + x-speakeasy-unknown-values: allow + instructions: + description: Instructions shown to users in the access request form when requesting access for this app. + type: string + matchBatonRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppMatchBatonRef' + - type: "null" + monthlyCostUsd: + description: Creates the app with this monthly cost per seat. + format: int32 + type: integer + owners: + description: Initial user owners for ordinary API creation. Requests with `match_baton_ref` must leave this empty; Terraform manages owners with `conductorone_app_owner_user`. + items: + type: string + type: + - array + - "null" + revokePolicyId: + description: Creates the app with this revoke policy. + type: string + strictAccessEntitlementProvisioning: + description: This flag enforces a provisioning mode where the access entitlement is always included in the provisioning flow, if the app user doesn't exist + type: boolean + required: + - displayName + title: Create App Request type: object - x-speakeasy-name-override: CreateAppEntitlementEntitlementOwnerResponse - c1.api.app.v2.CreateAppEntitlementOwnerRequestInput: - description: CreateEntitlementOwnerRequest is the request for creating an entitlement ownership source. + x-speakeasy-entity: App + x-speakeasy-name-override: CreateAppRequest + c1.api.app.v1.CreateAppResponse: + description: CreateAppResponse contains the newly created application. properties: - appEntitlementRef: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - title: Create App Entitlement Owner Request + app: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.App' + - type: "null" + title: Create App Response type: object - x-speakeasy-name-override: CreateAppEntitlementOwnerRequest - c1.api.app.v2.CreateAppEntitlementOwnerResponse: - description: CreateEntitlementOwnerResponse is the response for creating an entitlement ownership source. + x-speakeasy-name-override: CreateAppResponse + c1.api.app.v1.CreateAutomationRequestInput: + description: The CreateAutomationRequest message. properties: - appOwnerEntitlement: - $ref: '#/components/schemas/c1.api.app.v2.AppOwnerEntitlement' - title: Create App Entitlement Owner Response + automation: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomation' + - type: "null" + title: Create Automation Request type: object - x-speakeasy-name-override: CreateAppEntitlementOwnerResponse - c1.api.app.v2.CreateAppEntitlementUserOwnerRequestInput: - description: CreateAppEntitlementUserOwnerRequest is the request for creating a user ownership source on an entitlement. + x-speakeasy-name-override: CreateAutomationRequest + c1.api.app.v1.CreateAutomationResponse: + description: The CreateAutomationResponse message. properties: - userRef: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - title: Create App Entitlement User Owner Request + automation: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementAutomation' + - type: "null" + title: Create Automation Response type: object - x-speakeasy-name-override: CreateAppEntitlementUserOwnerRequest - c1.api.app.v2.CreateAppEntitlementUserOwnerResponse: - description: CreateAppEntitlementUserOwnerResponse is the response for creating a user ownership source on an entitlement. + x-speakeasy-name-override: CreateAutomationResponse + c1.api.app.v1.CreateManuallyManagedAppResourceRequestInput: + description: The request message for creating a manually managed app resource. properties: - appEntitlementOwnerUser: - $ref: '#/components/schemas/c1.api.app.v2.AppEntitlementOwnerUser' - title: Create App Entitlement User Owner Response + annotations: + additionalProperties: + type: string + description: |- + Bounded key/value metadata bag for IaC marking and customer tags. + See .rfcs/object-annotations.md §2. Limits: ≤16 entries; keys 1–128 + chars matching ^[A-Za-z][A-Za-z0-9._/-]{0,127}$; values 0–256 chars + matching URL-safe ASCII; total serialized ≤4096 bytes. Keys starting + with `c1/` are reserved for server-managed use and rejected on write. + + Well-known keys: `managed_by`, `iac_workspace`, + `iac_resource_address`, `iac_tool_version`. + type: object + x-speakeasy-terraform-plan-modifier: + imports: + - github.com/conductorone/terraform-provider-conductorone/internal/annotations + schemaDefinition: annotations.PlanModifier() + description: + description: An optional description for the new resource. + type: string + displayName: + description: The display name for the new resource. + type: string + matchBatonId: + description: If supplied, it's implied that the resource is created before sync and needs to be merged with connector resource. + type: string + resourceOwnerUserIds: + description: C1 user IDs to assign as owners of this resource. + items: + type: string + type: + - array + - "null" + required: + - displayName + title: Create Manually Managed App Resource Request type: object - x-speakeasy-name-override: CreateAppEntitlementUserOwnerResponse - c1.api.app.v2.CreateAppUserOwnerRequestInput: - description: CreateUserOwnerRequest is the request for creating a user ownership source. + x-speakeasy-name-override: CreateManuallyManagedAppResourceRequest + c1.api.app.v1.CreateManuallyManagedAppResourceResponse: + description: The response message for creating a manually managed app resource. properties: - userRef: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - title: Create App User Owner Request + appResource: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppResource' + - type: "null" + title: Create Manually Managed App Resource Response type: object - x-speakeasy-name-override: CreateAppUserOwnerRequest - c1.api.app.v2.CreateAppUserOwnerResponse: - description: CreateUserOwnerResponse is the response for creating a user ownership source. + x-speakeasy-name-override: CreateManuallyManagedAppResourceResponse + c1.api.app.v1.CreateManuallyManagedResourceTypeRequestInput: + description: The request message for creating a manually managed resource type. properties: - appOwnerUser: - $ref: '#/components/schemas/c1.api.app.v2.AppOwnerUser' - title: Create App User Owner Response + displayName: + description: The display name for the new resource type. + type: string + resourceType: + description: The category of the resource type (e.g., ROLE, GROUP, LICENSE). + enum: + - ROLE + - GROUP + - LICENSE + - PROJECT + - CATALOG + - CUSTOM + - VAULT + - PROFILE_TYPE + - SESSION_POLICY + - CLAW_AGENT + type: string + x-speakeasy-unknown-values: allow + required: + - resourceType + - displayName + title: Create Manually Managed Resource Type Request type: object - x-speakeasy-name-override: CreateAppUserOwnerResponse - c1.api.app.v2.DeleteAppEntitlementEntitlementOwnerRequestInput: - description: DeleteAppEntitlementEntitlementOwnerRequest is the request for deleting an entitlement ownership source on an entitlement. + x-speakeasy-name-override: CreateManuallyManagedResourceTypeRequest + c1.api.app.v1.CreateManuallyManagedResourceTypeResponse: + description: The response message for creating a manually managed resource type. properties: - appEntitlementRef: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - title: Delete App Entitlement Entitlement Owner Request + appResourceType: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppResourceType' + - type: "null" + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + title: Create Manually Managed Resource Type Response type: object - x-speakeasy-name-override: DeleteAppEntitlementEntitlementOwnerRequest - c1.api.app.v2.DeleteAppEntitlementEntitlementOwnerResponse: - description: DeleteAppEntitlementEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source on an entitlement. - title: Delete App Entitlement Entitlement Owner Response + x-speakeasy-name-override: CreateManuallyManagedResourceTypeResponse + c1.api.app.v1.DeleteAppEntitlementOwnersRequestInput: + description: The request message for deleting app entitlement owners. + title: Delete App Entitlement Owners Request type: object - x-speakeasy-name-override: DeleteAppEntitlementEntitlementOwnerResponse - c1.api.app.v2.DeleteAppEntitlementOwnerRequestInput: - description: DeleteEntitlementOwnerRequest is the request for deleting an entitlement ownership source. - properties: - appEntitlementRef: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - title: Delete App Entitlement Owner Request + x-speakeasy-name-override: DeleteAppEntitlementOwnersRequest + c1.api.app.v1.DeleteAppEntitlementOwnersResponse: + description: the empty response message for deleting app entitlement owners. + title: Delete App Entitlement Owners Response type: object - x-speakeasy-name-override: DeleteAppEntitlementOwnerRequest - c1.api.app.v2.DeleteAppEntitlementOwnerResponse: - description: DeleteEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source. - title: Delete App Entitlement Owner Response + x-speakeasy-name-override: DeleteAppEntitlementOwnersResponse + c1.api.app.v1.DeleteAppEntitlementProxyRequestInput: + description: The request message for deleting an entitlement proxy binding. + title: Delete App Entitlement Proxy Request type: object - x-speakeasy-name-override: DeleteAppEntitlementOwnerResponse - c1.api.app.v2.DeleteAppEntitlementUserOwnerRequestInput: - description: DeleteAppEntitlementUserOwnerRequest is the request for deleting a user ownership source on an entitlement. - properties: - userRef: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - title: Delete App Entitlement User Owner Request + x-speakeasy-name-override: DeleteAppEntitlementProxyRequest + c1.api.app.v1.DeleteAppEntitlementProxyResponse: + description: The empty response message for deleting an entitlement proxy binding. + title: Delete App Entitlement Proxy Response type: object - x-speakeasy-name-override: DeleteAppEntitlementUserOwnerRequest - c1.api.app.v2.DeleteAppEntitlementUserOwnerResponse: - description: DeleteAppEntitlementUserOwnerResponse is the empty response for deleting a user ownership source on an entitlement. - title: Delete App Entitlement User Owner Response + x-speakeasy-name-override: DeleteAppEntitlementProxyResponse + c1.api.app.v1.DeleteAppEntitlementRequestInput: + description: The DeleteAppEntitlementRequest message. + title: Delete App Entitlement Request type: object - x-speakeasy-name-override: DeleteAppEntitlementUserOwnerResponse - c1.api.app.v2.DeleteAppUserOwnerRequestInput: - description: DeleteUserOwnerRequest is the request for deleting a user ownership source. - properties: - userRef: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - title: Delete App User Owner Request + x-speakeasy-name-override: DeleteAppEntitlementRequest + c1.api.app.v1.DeleteAppEntitlementResponse: + description: The DeleteAppEntitlementResponse message. + title: Delete App Entitlement Response type: object - x-speakeasy-name-override: DeleteAppUserOwnerRequest - c1.api.app.v2.DeleteAppUserOwnerResponse: - description: DeleteUserOwnerResponse is the empty response for deleting a user ownership source. - title: Delete App User Owner Response + x-speakeasy-name-override: DeleteAppEntitlementResponse + c1.api.app.v1.DeleteAppEntitlementRoutingRuleRequestInput: + description: The DeleteAppEntitlementRoutingRuleRequest message. + title: Delete App Entitlement Routing Rule Request type: object - x-speakeasy-name-override: DeleteAppUserOwnerResponse - c1.api.app.v2.GetAppEntitlementEntitlementOwnerResponse: - description: GetAppEntitlementEntitlementOwnerResponse is the response for getting an entitlement ownership source on an entitlement. - properties: - appEntitlementOwnerEntitlement: - $ref: '#/components/schemas/c1.api.app.v2.AppEntitlementOwnerEntitlement' - title: Get App Entitlement Entitlement Owner Response + x-speakeasy-name-override: DeleteAppEntitlementRoutingRuleRequest + c1.api.app.v1.DeleteAppEntitlementRoutingRuleResponse: + description: The DeleteAppEntitlementRoutingRuleResponse message. + title: Delete App Entitlement Routing Rule Response type: object - x-speakeasy-name-override: GetAppEntitlementEntitlementOwnerResponse - c1.api.app.v2.GetAppEntitlementOwnerResponse: - description: GetEntitlementOwnerResponse is the response for getting an entitlement ownership source. + x-speakeasy-name-override: DeleteAppEntitlementRoutingRuleResponse + c1.api.app.v1.DeleteAppOwnersRequestInput: + description: The request message for deleting app owners. properties: - appOwnerEntitlement: - $ref: '#/components/schemas/c1.api.app.v2.AppOwnerEntitlement' - title: Get App Entitlement Owner Response + userIds: + description: The user_ids field for the users to set as an owner of the app. + items: + type: string + type: + - array + - "null" + title: Delete App Owners Request type: object - x-speakeasy-name-override: GetAppEntitlementOwnerResponse - c1.api.app.v2.GetAppEntitlementUserOwnerResponse: - description: GetAppEntitlementUserOwnerResponse is the response for getting a user ownership source on an entitlement. - properties: - appEntitlementOwnerUser: - $ref: '#/components/schemas/c1.api.app.v2.AppEntitlementOwnerUser' - title: Get App Entitlement User Owner Response + x-speakeasy-name-override: DeleteAppOwnersRequest + c1.api.app.v1.DeleteAppOwnersResponse: + description: the empty response message for deleting app owners. + title: Delete App Owners Response type: object - x-speakeasy-name-override: GetAppEntitlementUserOwnerResponse - c1.api.app.v2.GetAppUserOwnerResponse: - description: GetUserOwnerResponse is the response for getting a user ownership source. - properties: - appOwnerUser: - $ref: '#/components/schemas/c1.api.app.v2.AppOwnerUser' - title: Get App User Owner Response + x-speakeasy-name-override: DeleteAppOwnersResponse + c1.api.app.v1.DeleteAppRequestInput: + description: Empty request body + title: Delete App Request type: object - x-speakeasy-name-override: GetAppUserOwnerResponse - c1.api.app.v2.SearchAppEntitlementEntitlementOwnersResponse: - description: SearchAppEntitlementEntitlementOwnersResponse is the response for searching entitlement ownership sources on an entitlement. + x-speakeasy-entity: App + x-speakeasy-name-override: DeleteAppRequest + c1.api.app.v1.DeleteAppResourceOwnersRequestInput: + description: The request message for deleting app resource owners. + title: Delete App Resource Owners Request + type: object + x-speakeasy-name-override: DeleteAppResourceOwnersRequest + c1.api.app.v1.DeleteAppResourceOwnersResponse: + description: the empty response message for deleting app resource owners. + title: Delete App Resource Owners Response + type: object + x-speakeasy-name-override: DeleteAppResourceOwnersResponse + c1.api.app.v1.DeleteAppResponse: + description: Empty response body. Status code indicates success. + title: Delete App Response + type: object + x-speakeasy-name-override: DeleteAppResponse + c1.api.app.v1.DeleteAutomationRequestInput: + description: The DeleteAutomationRequest message. + title: Delete Automation Request + type: object + x-speakeasy-name-override: DeleteAutomationRequest + c1.api.app.v1.DeleteAutomationResponse: + description: The DeleteAutomationResponse message. + title: Delete Automation Response + type: object + x-speakeasy-name-override: DeleteAutomationResponse + c1.api.app.v1.DeleteManuallyManagedAppResourceRequestInput: + description: The request message for deleting a manually managed app resource. + title: Delete Manually Managed App Resource Request + type: object + x-speakeasy-name-override: DeleteManuallyManagedAppResourceRequest + c1.api.app.v1.DeleteManuallyManagedAppResourceResponse: + description: The empty response message for deleting a manually managed app resource. + title: Delete Manually Managed App Resource Response + type: object + x-speakeasy-name-override: DeleteManuallyManagedAppResourceResponse + c1.api.app.v1.DeleteManuallyManagedResourceTypeRequestInput: + description: The request message for deleting a manually managed resource type. + title: Delete Manually Managed Resource Type Request + type: object + x-speakeasy-name-override: DeleteManuallyManagedResourceTypeRequest + c1.api.app.v1.DeleteManuallyManagedResourceTypeResponse: + description: The empty response message for deleting a manually managed resource type. + title: Delete Manually Managed Resource Type Response + type: object + x-speakeasy-name-override: DeleteManuallyManagedResourceTypeResponse + c1.api.app.v1.EditorValidateRequest: + description: The EditorValidateRequest message contains the configuration text to validate. properties: - list: - description: The list field. - items: - $ref: '#/components/schemas/c1.api.app.v2.AppEntitlementOwnerEntitlement' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The nextPageToken field. - readOnly: false + text: + description: The configuration text to validate. type: string - title: Search App Entitlement Entitlement Owners Response + title: Editor Validate Request type: object - x-speakeasy-name-override: SearchAppEntitlementEntitlementOwnersResponse - c1.api.app.v2.SearchAppEntitlementOwnersResponse: - description: SearchEntitlementOwnersResponse is the response for searching entitlement ownership sources. + x-speakeasy-name-override: EditorValidateRequest + c1.api.app.v1.EditorValidateResponse: + description: The EditorValidateResponse message contains validation results. properties: - list: - description: The list field. + markers: + description: The list of diagnostic markers found during validation. items: - $ref: '#/components/schemas/c1.api.app.v2.AppOwnerEntitlement' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The nextPageToken field. - readOnly: false - type: string - title: Search App Entitlement Owners Response + $ref: '#/components/schemas/c1.api.editor.v1.EditorMarker' + readOnly: true + type: + - array + - "null" + title: Editor Validate Response type: object - x-speakeasy-name-override: SearchAppEntitlementOwnersResponse - c1.api.app.v2.SearchAppEntitlementUserOwnersResponse: - description: SearchAppEntitlementUserOwnersResponse is the response for searching user ownership sources on an entitlement. + x-speakeasy-name-override: EditorValidateResponse + c1.api.app.v1.EncryptedData: + description: EncryptedData is a message that contains encrypted bytes and metadata. properties: - list: - description: The list field. - items: - $ref: '#/components/schemas/c1.api.app.v2.AppEntitlementOwnerUser' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The nextPageToken field. - readOnly: false + description: + description: The human-readable description of the encrypted data. + readOnly: true type: string - title: Search App Entitlement User Owners Response - type: object - x-speakeasy-name-override: SearchAppEntitlementUserOwnersResponse - c1.api.app.v2.SearchAppUserOwnersResponse: - description: SearchUserOwnersResponse is the response for searching user ownership sources. - properties: - list: - description: The list field. - items: - $ref: '#/components/schemas/c1.api.app.v2.AppOwnerUser' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The nextPageToken field. - readOnly: false + encryptedBytes: + description: The encrypted bytes. + format: base64 + readOnly: true type: string - title: Search App User Owners Response + keyId: + description: The key ID used to encrypt the data. + readOnly: true + type: string + name: + description: The human-readable name of the encrypted data. + readOnly: true + type: string + provider: + description: The encryption provider used to encrypt the data. + readOnly: true + type: string + schema: + description: The (optional) JSON schema of the encrypted data. + readOnly: true + type: string + title: Encrypted Data type: object - x-speakeasy-name-override: SearchAppUserOwnersResponse - c1.api.app.v2.SearchConnectorEntitlementOwnersResponse: - description: SearchConnectorEntitlementOwnersResponse is the response for searching entitlement ownership sources on a connector. + x-speakeasy-name-override: EncryptedData + c1.api.app.v1.ForceSyncRequestInput: + description: Signal the connector to start syncing. This puts the sync on the queue. It does not guarantee immediate sync. Long syncs still take minutes to hours. + title: Force Sync Request + type: object + x-speakeasy-name-override: ForceSyncRequest + c1.api.app.v1.ForceSyncResponse: + description: |- + Empty response body. Status code indicates success. Poll the connector sync status + for progress after ForceSync accepts the request. + title: Force Sync Response + type: object + x-speakeasy-name-override: ForceSyncResponse + c1.api.app.v1.GetAppEntitlementProxyResponse: + description: The response message for getting a specific entitlement proxy binding. properties: - list: - description: The list field. + appProxyEntitlementView: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementProxyView' + - type: "null" + expanded: + description: List of serialized related objects. items: - $ref: '#/components/schemas/c1.api.app.v2.ConnectorOwnerEntitlement' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The nextPageToken field. - readOnly: false - type: string - title: Search Connector Entitlement Owners Response + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + title: Get App Entitlement Proxy Response type: object - x-speakeasy-name-override: SearchConnectorEntitlementOwnersResponse - c1.api.app.v2.SearchConnectorUserOwnersResponse: - description: SearchConnectorUserOwnersResponse is the response for searching user ownership sources on a connector. + x-speakeasy-name-override: GetAppEntitlementProxyResponse + c1.api.app.v1.GetAppEntitlementResponse: + description: The get app entitlement response returns an entitlement view containing paths in the expanded array for the objects expanded as indicated by the expand mask in the request. properties: - list: - description: The list field. + appEntitlementView: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementView' + - type: "null" + expanded: + description: List of serialized related objects. items: - $ref: '#/components/schemas/c1.api.app.v2.ConnectorOwnerUser' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The nextPageToken field. - readOnly: false - type: string - title: Search Connector User Owners Response + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + title: Get App Entitlement Response type: object - x-speakeasy-name-override: SearchConnectorUserOwnersResponse - c1.api.app.v2.SetAppEntitlementOwnersRequestInput: - description: SetAppEntitlementOwnersRequest is the request for setting the owners of an app entitlement for a given role. + x-speakeasy-name-override: GetAppEntitlementResponse + c1.api.app.v1.GetAppEntitlementRoutingRuleResponse: + description: The GetAppEntitlementRoutingRuleResponse message. properties: - appEntitlementRefs: - description: The appEntitlementRefs field. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - roleSlug: - description: The roleSlug field. - readOnly: false - type: string - userRefs: - description: The userRefs field. + routingRule: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRoutingRule' + - type: "null" + title: Get App Entitlement Routing Rule Response + type: object + x-speakeasy-name-override: GetAppEntitlementRoutingRuleResponse + c1.api.app.v1.GetAppManagedStateBindingResponse: + description: GetAppManagedStateBindingResponse contains the managed state of a discovered application. + properties: + appManagementState: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppManagedStateBindingView' + - type: "null" + expanded: + description: Related objects requested through expand_mask. REST Get requests do not support expansions; REST Promote requests do. items: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - nullable: true - readOnly: false - type: array - title: Set App Entitlement Owners Request - type: object - x-speakeasy-name-override: SetAppEntitlementOwnersRequestV2 - c1.api.app.v2.SetAppEntitlementOwnersResponse: - description: SetAppEntitlementOwnersResponse is the empty response for setting app entitlement owners. - title: Set App Entitlement Owners Response + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + title: Get App Managed State Binding Response type: object - x-speakeasy-name-override: SetAppEntitlementOwnersResponseV2 - c1.api.app.v2.SetAppOwnersRequestInput: - description: SetAppOwnersRequest is the request for setting user owners for an app and role. + x-speakeasy-name-override: GetAppManagedStateBindingResponse + c1.api.app.v1.GetAppResponse: + description: The GetAppResponse message contains the details of the requested app in the app field. properties: - appEntitlementRefs: - description: The appEntitlementRefs field. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - roleSlug: - description: The roleSlug field. - readOnly: false - type: string - userRefs: - description: The userRefs field. - items: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - nullable: true - readOnly: false - type: array - title: Set App Owners Request + app: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.App' + - type: "null" + title: Get App Response type: object - x-speakeasy-name-override: SetAppOwnersRequestV2 - c1.api.app.v2.SetAppOwnersResponse: - description: SetAppOwnersResponse is the empty response for setting app owners. - title: Set App Owners Response + x-speakeasy-name-override: GetAppResponse + c1.api.app.v1.GetAppUsageControlsResponse: + description: The GetAppUsageControlsResponse message contains the retrieved AppUsageControls object. + properties: + appUsageControls: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppUsageControls' + - type: "null" + hasUsageData: + description: HasUsageData is false if the access entitlement for this app has no usage data. + type: boolean + title: Get App Usage Controls Response type: object - x-speakeasy-name-override: SetAppOwnersResponseV2 - c1.api.app.v2.SetConnectorOwnersV2RequestInput: - description: SetConnectorOwnersV2Request is the request for setting the owners of a connector for a given role. + x-speakeasy-name-override: GetAppUsageControlsResponse + c1.api.app.v1.GetConnectorSyncDownloadURLResponse: + description: The GetConnectorSyncDownloadURLResponse message. properties: - appEntitlementRefs: - description: The appEntitlementRefs field. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - roleSlug: - description: The role slug for this ownership grant. Required. - readOnly: false + downloadUrl: + description: Short-lived download URL for the connector sync artifact type: string - userRefs: - description: The userRefs field. - items: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - nullable: true - readOnly: false - type: array - title: Set Connector Owners V 2 Request - type: object - x-speakeasy-name-override: SetConnectorOwnersV2Request - c1.api.app.v2.SetConnectorOwnersV2Response: - description: SetConnectorOwnersV2Response is the empty response for setting connector owners. - title: Set Connector Owners V 2 Response + title: Get Connector Sync Download Url Response type: object - x-speakeasy-name-override: SetConnectorOwnersV2Response - c1.api.attribute.v1.AttributeType: - description: AttributeType defines the type of an attribute. + x-speakeasy-name-override: GetConnectorSyncDownloadURLResponse + c1.api.app.v1.GrantReason: + description: The GrantReason message. properties: - id: - description: The ID of the AttributeType. - readOnly: false + appEntitlementId: + description: The ID of the app entitlement that is associated with the grant reason. type: string - name: - description: The name of the AttributeType. - readOnly: false + appId: + description: The ID of the app that is associated with the grant reason. type: string - title: Attribute Type - type: object - x-speakeasy-name-override: AttributeType - c1.api.attribute.v1.AttributeValue: - description: AttributeValue is the value of an attribute of a defined type. - properties: - attributeTypeId: - description: The ID of the AttributeType that this AttributeValue belongs to. - readOnly: false + appUserId: + description: The ID of the app user that is associated with the grant reason. type: string createdAt: format: date-time - readOnly: true - type: string + type: + - string + - "null" deletedAt: format: date-time - readOnly: true + type: + - string + - "null" + derivedIdData: + description: This is the other part of the derived ID which include the details like ticket_id, group_id, etc. This provides the uniqueness. type: string - id: - description: The ID of the AttributeValue. - readOnly: false + derivedIdType: + description: This is one part of the derived ID, indicating the type, like "ticket" or "group" type: string - updatedAt: + reasonExpiresAt: format: date-time - readOnly: true - type: string - value: - description: The value of the AttributeValue. This is the string that will be displayed to the user. - readOnly: false + type: + - string + - "null" + referenceStrength: + description: |- + GrantReasonReferenceStrength is used to indicate the strength of the reference to the reason. + This is used to determine if a grant should be removed when all strong reasons are removed. + enum: + - GRANT_REASON_REFERENCE_STRENGTH_UNSPECIFIED + - GRANT_REASON_REFERENCE_STRENGTH_WEAK + - GRANT_REASON_REFERENCE_STRENGTH_STRONG type: string - title: Attribute Value + x-speakeasy-unknown-values: allow + updatedAt: + format: date-time + type: + - string + - "null" + title: Grant Reason type: object - x-speakeasy-name-override: AttributeValue - c1.api.attribute.v1.CreateAttributeValueRequest: - description: The CreateAttributeValueRequest message. + x-speakeasy-name-override: GrantReason + c1.api.app.v1.GraphAppGrantCount: + description: The number of grants a user holds in a single application. properties: - attributeTypeId: - description: The attributeTypeId field. - readOnly: false + appId: + description: The ID of the application. type: string - value: - description: The value field. - readOnly: false + grantCount: + description: The number of grants the user holds in this application. + format: int64 type: string - title: Create Attribute Value Request - type: object - x-speakeasy-name-override: CreateAttributeValueRequest - c1.api.attribute.v1.CreateAttributeValueResponse: - description: CreateAttributeValueResponse is the response for creating an attribute value. - properties: - value: - $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' - title: Create Attribute Value Response + title: Graph App Grant Count type: object - x-speakeasy-name-override: CreateAttributeValueResponse - c1.api.attribute.v1.CreateComplianceFrameworkAttributeValueRequest: - description: The CreateComplianceFrameworkAttributeValueRequest message. + x-speakeasy-name-override: GraphAppGrantCount + c1.api.app.v1.GraphEdge: + description: An edge in the access graph. properties: - value: - description: The value field. - readOnly: false + hiddenChildren: + description: The hiddenChildren field. + format: int32 + type: integer + isTruncated: + description: The isTruncated field. + type: boolean + sourceId: + description: The sourceId field. type: string - title: Create Compliance Framework Attribute Value Request - type: object - x-speakeasy-name-override: CreateComplianceFrameworkAttributeValueRequest - c1.api.attribute.v1.CreateComplianceFrameworkAttributeValueResponse: - description: The CreateComplianceFrameworkAttributeValueResponse message. - properties: - value: - $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' - title: Create Compliance Framework Attribute Value Response - type: object - x-speakeasy-name-override: CreateComplianceFrameworkAttributeValueResponse - c1.api.attribute.v1.CreateRiskLevelAttributeValueRequest: - description: The CreateRiskLevelAttributeValueRequest message. - properties: - value: - description: The value field. - readOnly: false + targetId: + description: The targetId field. type: string - title: Create Risk Level Attribute Value Request - type: object - x-speakeasy-name-override: CreateRiskLevelAttributeValueRequest - c1.api.attribute.v1.CreateRiskLevelAttributeValueResponse: - description: The CreateRiskLevelAttributeValueResponse message. - properties: - value: - $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' - title: Create Risk Level Attribute Value Response - type: object - x-speakeasy-name-override: CreateRiskLevelAttributeValueResponse - c1.api.attribute.v1.DeleteAttributeValueRequestInput: - description: The DeleteAttributeValueRequest message. - title: Delete Attribute Value Request - type: object - x-speakeasy-name-override: DeleteAttributeValueRequest - c1.api.attribute.v1.DeleteAttributeValueResponse: - description: DeleteAttributeValueResponse is the empty response for deleting an attribute value. - title: Delete Attribute Value Response - type: object - x-speakeasy-name-override: DeleteAttributeValueResponse - c1.api.attribute.v1.DeleteComplianceFrameworkAttributeValueRequestInput: - description: The DeleteComplianceFrameworkAttributeValueRequest message. - title: Delete Compliance Framework Attribute Value Request - type: object - x-speakeasy-name-override: DeleteComplianceFrameworkAttributeValueRequest - c1.api.attribute.v1.DeleteComplianceFrameworkAttributeValueResponse: - description: The DeleteComplianceFrameworkAttributeValueResponse message. - title: Delete Compliance Framework Attribute Value Response - type: object - x-speakeasy-name-override: DeleteComplianceFrameworkAttributeValueResponse - c1.api.attribute.v1.DeleteRiskLevelAttributeValueRequestInput: - description: The DeleteRiskLevelAttributeValueRequest message. - title: Delete Risk Level Attribute Value Request - type: object - x-speakeasy-name-override: DeleteRiskLevelAttributeValueRequest - c1.api.attribute.v1.DeleteRiskLevelAttributeValueResponse: - description: The DeleteRiskLevelAttributeValueResponse message. - title: Delete Risk Level Attribute Value Response - type: object - x-speakeasy-name-override: DeleteRiskLevelAttributeValueResponse - c1.api.attribute.v1.GetAttributeValueResponse: - description: GetAttributeValueResponse is the response for getting an attribute value by id. - properties: - value: - $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' - title: Get Attribute Value Response + type: + description: The type field. + enum: + - GRAPH_EDGE_TYPE_UNSPECIFIED + - GRAPH_EDGE_TYPE_IDENTITY_LINK + - GRAPH_EDGE_TYPE_DIRECT_GRANT + - GRAPH_EDGE_TYPE_APP_HIERARCHY + - GRAPH_EDGE_TYPE_RESOURCE_HIERARCHY + - GRAPH_EDGE_TYPE_PROXY_BINDING + type: string + x-speakeasy-unknown-values: allow + title: Graph Edge type: object - x-speakeasy-name-override: GetAttributeValueResponse - c1.api.attribute.v1.GetComplianceFrameworkAttributeValueResponse: - description: The GetComplianceFrameworkAttributeValueResponse message. + x-speakeasy-name-override: GraphEdge + c1.api.app.v1.GraphNode: + description: A node in the access graph. properties: - value: - $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' - title: Get Compliance Framework Attribute Value Response + appId: + description: The appId field. + type: string + displayName: + description: The displayName field. + type: string + id: + description: The id field. + type: string + resourceTypeId: + description: The resourceTypeId field. + type: string + secondaryText: + description: |- + Optional secondary line shown under the display name (e.g. an account's + email/username, or an identity's email). + type: string + type: + description: The type field. + enum: + - GRAPH_NODE_TYPE_UNSPECIFIED + - GRAPH_NODE_TYPE_USER + - GRAPH_NODE_TYPE_APP_USER + - GRAPH_NODE_TYPE_APP + - GRAPH_NODE_TYPE_RESOURCE_TYPE + - GRAPH_NODE_TYPE_RESOURCE + - GRAPH_NODE_TYPE_ENTITLEMENT + - GRAPH_NODE_TYPE_GRANT + type: string + x-speakeasy-unknown-values: allow + title: Graph Node type: object - x-speakeasy-name-override: GetComplianceFrameworkAttributeValueResponse - c1.api.attribute.v1.GetRiskLevelAttributeValueResponse: - description: The GetRiskLevelAttributeValueResponse message. + x-speakeasy-name-override: GraphNode + c1.api.app.v1.ListAppEntitlementOwnerIDsResponse: + description: The response message for listing app entitlement owners IDs. properties: - value: - $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' - title: Get Risk Level Attribute Value Response + userIds: + description: The list of owner IDs for the app entitlement. + items: + type: string + type: + - array + - "null" + title: List App Entitlement Owner I Ds Response type: object - x-speakeasy-name-override: GetRiskLevelAttributeValueResponse - c1.api.attribute.v1.ListAttributeTypesResponse: - description: ListAttributeTypesResponse is the response for listing attribute types. + x-speakeasy-name-override: ListAppEntitlementOwnerIDsResponse + c1.api.app.v1.ListAppEntitlementOwnersResponse: + description: The response message for listing app entitlement owners. properties: list: - description: The list of AttributeTypes. + description: The list of owners for the app entitlement. items: - $ref: '#/components/schemas/c1.api.attribute.v1.AttributeType' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.user.v1.User' + type: + - array + - "null" nextPageToken: description: |- The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false type: string - title: List Attribute Types Response + title: List App Entitlement Owners Response type: object - x-speakeasy-name-override: ListAttributeTypesResponse - c1.api.attribute.v1.ListAttributeValuesResponse: - description: ListAttributeValuesResponse is the response for listing attribute values for a given AttributeType. + x-speakeasy-name-override: ListAppEntitlementOwnersResponse + c1.api.app.v1.ListAppEntitlementRoutingRulesResponse: + description: The ListAppEntitlementRoutingRulesResponse message. properties: list: - description: The list of AttributeValues. + description: The list field. items: - $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRoutingRule' + type: + - array + - "null" nextPageToken: - description: |- - The nextPageToken is shown for the next page if the number of results is larger than the max page size. - The server returns one page of results and the nextPageToken until all results are retreived. - To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + description: The nextPageToken field. type: string - title: List Attribute Values Response + title: List App Entitlement Routing Rules Response type: object - x-speakeasy-name-override: ListAttributeValuesResponse - c1.api.attribute.v1.ListComplianceFrameworksResponse: - description: ListComplianceFrameworksResponse is the response for listing compliance framework attribute values. + x-speakeasy-name-override: ListAppEntitlementRoutingRulesResponse + c1.api.app.v1.ListAppEntitlementUsersResponse: + description: The ListAppEntitlementUsersResponse message contains a list of results and a nextPageToken if applicable. properties: + expanded: + description: List of related objects + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" list: - description: The list of compliance framework attribute values. + description: The list of results containing up to X results, where X is the page size defined in the request. items: - $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserView' + type: + - array + - "null" nextPageToken: - description: The token to retrieve the next page of results, or empty if there are no more results. - readOnly: false + description: The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. type: string - title: List Compliance Frameworks Response + title: List App Entitlement Users Response type: object - x-speakeasy-name-override: ListComplianceFrameworksResponse - c1.api.attribute.v1.ListRiskLevelsResponse: - description: ListRiskLevelsResponse is the response for listing risk level attribute values. + x-speakeasy-name-override: ListAppEntitlementUsersResponse + c1.api.app.v1.ListAppEntitlementsResponse: + description: The ListAppEntitlementsResponse message contains a list of results and a nextPageToken if applicable. properties: + expanded: + description: List of related objects + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" list: - description: The list of risk level attribute values. + description: The list of results containing up to X results, where X is the page size defined in the request. items: - $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementView' + type: + - array + - "null" nextPageToken: - description: The token to retrieve the next page of results, or empty if there are no more results. - readOnly: false + description: The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. type: string - title: List Risk Levels Response + title: List App Entitlements Response type: object - x-speakeasy-name-override: ListRiskLevelsResponse - c1.api.attribute.v1.SearchAttributeValuesRequest: - description: Search Attributes by a few properties. + x-speakeasy-name-override: ListAppEntitlementsResponse + c1.api.app.v1.ListAppManagedStateBindingsResponse: + description: ListAppManagedStateBindingsResponse contains one page of discovered application managed states. properties: - attributeTypeIds: - description: The attribute type ids for what type of attributes to search for. + expanded: + description: Related objects included for gRPC requests that set expand_mask. items: - type: string - nullable: true - readOnly: false - type: array - excludeIds: - description: Exclude attributes with these ids from the search results. + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + list: + description: Managed states of the discovered applications. items: - type: string - nullable: true - readOnly: false - type: array - ids: - description: Include attributes with these ids in the search results. + $ref: '#/components/schemas/c1.api.app.v1.AppManagedStateBindingView' + type: + - array + - "null" + nextPageToken: + description: Pagination token for the next page. Empty when there are no more results. + type: string + title: List App Managed State Bindings Response + type: object + x-speakeasy-name-override: ListAppManagedStateBindingsResponse + c1.api.app.v1.ListAppOwnerIDsResponse: + description: The response message for listing app owners IDs. + properties: + userIds: + description: The list of owner IDs for the app. items: type: string - nullable: true - readOnly: false - type: array - pageSize: - description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) - format: int32 - readOnly: false - type: integer - pageToken: - description: The pageToken field. - readOnly: false - type: string - query: - description: Query the attributes with a fuzzy search on display name and description. - readOnly: false - type: string - value: - description: Search for attributes with a case insensitive match on the attribute value which is the attribute name. - readOnly: false + type: + - array + - "null" + title: List App Owner I Ds Response + type: object + x-speakeasy-name-override: ListAppOwnerIDsResponse + c1.api.app.v1.ListAppOwnersResponse: + description: The ListAppOwnersResponse message. + properties: + list: + description: The list of results containing up to X results, where X is the page size defined in the request + items: + $ref: '#/components/schemas/c1.api.user.v1.User' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. type: string - title: Search Attribute Values Request + title: List App Owners Response type: object - x-speakeasy-name-override: SearchAttributeValuesRequest - c1.api.attribute.v1.SearchAttributeValuesResponse: - description: SearchAttributeValuesResponse is the response for searching AttributeValues. + x-speakeasy-name-override: ListAppOwnersResponse + c1.api.app.v1.ListAppResourceOwnerIDsResponse: + description: The response message for listing app resource owners IDs. + properties: + userIds: + description: The list of owner IDs for the app resource. + items: + type: string + type: + - array + - "null" + title: List App Resource Owner I Ds Response + type: object + x-speakeasy-name-override: ListAppResourceOwnerIDsResponse + c1.api.app.v1.ListAppResourceOwnersResponse: + description: The ListAppResourceOwnersResponse message contains a list of results and a nextPageToken if applicable properties: + immutableUserIds: + description: |- + User IDs of owners that are immutable and cannot be removed by the user. + These owners are managed by the system (e.g., connector-sourced) and will be updated automatically. + items: + type: string + type: + - array + - "null" list: - description: The list of returned AttributeValues. + description: The list of results containing up to X results, where X is the page size defined in the request. items: - $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.user.v1.User' + type: + - array + - "null" nextPageToken: description: |- The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false type: string - title: Search Attribute Values Response - type: object - x-speakeasy-name-override: SearchAttributeValuesResponse - c1.api.auth.v1.IntrospectResponse: - description: IntrospectResponse contains information about the current user who is authenticated. - properties: - features: - description: The list of feature flags enabled for the tenant the logged in user belongs to. - items: - type: string - nullable: true - readOnly: false - type: array - permissions: - description: The list of permissions that the current logged in user has. - items: - type: string - nullable: true - readOnly: false - type: array - principleId: - description: The principleID of the current logged in user. - readOnly: false - type: string - roles: - description: The list of roles that the current logged in user has. - items: - type: string - nullable: true - readOnly: false - type: array - userId: - description: The userID of the current logged in user. - readOnly: false - type: string - title: Introspect Response + title: List App Resource Owners Response type: object - x-speakeasy-name-override: IntrospectResponse - c1.api.auth_config.v1.AuthConfigC1Local: - description: The AuthConfigC1Local message. - nullable: true + x-speakeasy-name-override: ListAppResourceOwnersResponse + c1.api.app.v1.ListAppUsersForIdentityWithGrantResponse: + description: The ListAppUsersForIdentityWithGrantResponse message. properties: - delegatedVerifiers: - description: The delegatedVerifiers field. + bindings: + description: |- + The list of app users that may also have grant information. + Without a grant, only the tenant, app, and app user ID will be set. With a grant, the whole struct is populated items: - enum: - - DELEGATED_VERIFIER_TYPE_UNSPECIFIED - - DELEGATED_VERIFIER_TYPE_GOOGLE - - DELEGATED_VERIFIER_TYPE_MICROSOFT - - DELEGATED_VERIFIER_TYPE_GITHUB - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - title: Auth Config C 1 Local + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBinding' + type: + - array + - "null" + title: List App Users For Identity With Grant Response type: object - x-speakeasy-name-override: AuthConfigC1Local - c1.api.auth_config.v1.AuthConfigGoogle: - description: The AuthConfigGoogle message. - nullable: true + x-speakeasy-name-override: ListAppUsersForIdentityWithGrantResponse + c1.api.app.v1.ListAppsResponse: + description: The ListAppsResponse message contains a list of results and a nextPageToken if applicable. properties: - hostedDomains: - description: The hostedDomains field. + list: + description: The list of results containing up to X results, where X is the page size defined in the request. items: - type: string - nullable: true - readOnly: false - type: array - title: Auth Config Google - type: object - x-speakeasy-name-override: AuthConfigGoogle - c1.api.auth_config.v1.AuthConfigJumpCloud: - description: The AuthConfigJumpCloud message. - nullable: true - properties: - oidcClientId: - description: The oidcClientId field. - readOnly: false - type: string - oidcClientSecret: - description: Write-only. Never returned in get/list. - readOnly: false + $ref: '#/components/schemas/c1.api.app.v1.App' + type: + - array + - "null" + nextPageToken: + description: |- + The nextPageToken is shown for the next page if the number of results is larger than the max page size. + The server returns one page of results and the nextPageToken until all results are retreived. + To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. type: string - title: Auth Config Jump Cloud + title: List Apps Response type: object - x-speakeasy-name-override: AuthConfigJumpCloud - c1.api.auth_config.v1.AuthConfigMicrosoft: - description: The AuthConfigMicrosoft message. - nullable: true + x-speakeasy-name-override: ListAppsResponse + c1.api.app.v1.ListAutomationExclusionsResponse: + description: The ListAutomationExclusionsResponse message. properties: - tenantIds: - description: The tenantIds field. + list: + description: The list field. items: - type: string - nullable: true - readOnly: false - type: array - title: Auth Config Microsoft - type: object - x-speakeasy-name-override: AuthConfigMicrosoft - c1.api.auth_config.v1.AuthConfigOIDC: - description: The AuthConfigOIDC message. - nullable: true - properties: - exactMatchClaims: - additionalProperties: - type: string - description: The exactMatchClaims field. - readOnly: false - type: object - issuerId: - description: The issuerId field. - readOnly: false - type: string - oidcClientId: - description: The oidcClientId field. - readOnly: false - type: string - oidcClientSecret: - description: The oidcClientSecret field. - readOnly: false + $ref: '#/components/schemas/c1.api.app.v1.UserWithAppEntitlementUserBindingView' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - scopes: - description: The scopes field. - items: - type: string - nullable: true - readOnly: false - type: array - title: Auth Config Oidc + title: List Automation Exclusions Response type: object - x-speakeasy-name-override: AuthConfigOIDC - c1.api.auth_config.v1.AuthConfigOkta: - description: The AuthConfigOkta message. - nullable: true + x-speakeasy-name-override: ListAutomationExclusionsResponse + c1.api.app.v1.ListOwnedServiceAccountsRequest: + description: The ListOwnedServiceAccountsRequest message. properties: - domain: - description: The domain field. - readOnly: false - type: string - oidcClientId: - description: The oidcClientId field. - readOnly: false - type: string - oidcClientSecret: - description: Write-only. Never returned in get/list. - readOnly: false + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppUserExpandMask' + - type: "null" + pageSize: + description: The maximum number of results to return per page. + format: int32 + type: integer + pageToken: + description: The token for fetching the next page of results. type: string - title: Auth Config Okta + title: List Owned Service Accounts Request type: object - x-speakeasy-name-override: AuthConfigOkta - c1.api.auth_config.v1.AuthConfigOneLogin: - description: The AuthConfigOneLogin message. - nullable: true + x-speakeasy-name-override: ListOwnedServiceAccountsRequest + c1.api.app.v1.ListOwnedServiceAccountsResponse: + description: The ListOwnedServiceAccountsResponse message. properties: - domain: - description: The domain field. - readOnly: false - type: string - oidcClientId: - description: The oidcClientId field. - readOnly: false - type: string - oidcClientSecret: - description: The oidcClientSecret field. - readOnly: false + expanded: + description: List of related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + list: + description: The service accounts owned by the calling user, up to one page of results. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppUserView' + type: + - array + - "null" + nextPageToken: + description: The token for fetching the next page of results, empty when there are no more pages. type: string - title: Auth Config One Login + title: List Owned Service Accounts Response type: object - x-speakeasy-name-override: AuthConfigOneLogin - c1.api.auth_config.v1.AuthConfigPingOne: - description: The AuthConfigPingOne message. - nullable: true + x-speakeasy-name-override: ListOwnedServiceAccountsResponse + c1.api.app.v1.ManuallyManagedUsersResponse: + description: The ManuallyManagedUsersResponse message. properties: - environmentId: - description: The environmentId field. - readOnly: false - type: string - oidcClientId: - description: The oidcClientId field. - readOnly: false - type: string - oidcClientSecret: - description: The oidcClientSecret field. - readOnly: false + bulkActionId: + description: The ID of the bulk action created to process the membership additions. type: string - title: Auth Config Ping One + failedUsersErrorMap: + additionalProperties: + type: string + description: A map of user IDs to error messages for users that could not be added. + type: object + title: Manually Managed Users Response type: object - x-speakeasy-name-override: AuthConfigPingOne - c1.api.auth_config.v1.TenantAuthConfig: - description: | - The TenantAuthConfig message. - - This message contains a oneof named provider_config. Only a single field of the following list may be set at a time: - - google - - microsoft - - okta - - onelogin - - jumpcloud - - pingone - - oidc - - c1Local + x-speakeasy-name-override: ManuallyManagedUsersResponse + c1.api.app.v1.OAuth2AuthorizedAs: + description: OAuth2AuthorizedAs tracks the user that OAuthed with the connector. properties: - bootstrapDomains: - description: 'Bootstrap routing: email domains that route unknown users to this config.' - items: - type: string - nullable: true - readOnly: false - type: array - c1Local: - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigC1Local' - createdAt: - format: date-time - readOnly: true - type: string - deprecationDeadline: - format: date-time - readOnly: false - type: string - deprecationMessage: - description: User-visible message shown when status=DEPRECATED. - readOnly: false - type: string - displayName: - description: The displayName field. - readOnly: false - type: string - google: - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigGoogle' - id: - description: The id field. - readOnly: false - type: string - isDefaultBootstrap: - description: The isDefaultBootstrap field. - readOnly: false - type: boolean - jumpcloud: - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigJumpCloud' - microsoft: - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigMicrosoft' - oidc: - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigOIDC' - okta: - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigOkta' - onelogin: - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigOneLogin' - pingone: - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigPingOne' - providerType: - description: Provider type (read-only after creation — provider config determines type). - enum: - - AUTH_CONFIG_PROVIDER_TYPE_UNSPECIFIED - - AUTH_CONFIG_PROVIDER_TYPE_GOOGLE - - AUTH_CONFIG_PROVIDER_TYPE_MICROSOFT - - AUTH_CONFIG_PROVIDER_TYPE_OKTA - - AUTH_CONFIG_PROVIDER_TYPE_ONELOGIN - - AUTH_CONFIG_PROVIDER_TYPE_JUMPCLOUD - - AUTH_CONFIG_PROVIDER_TYPE_PINGONE - - AUTH_CONFIG_PROVIDER_TYPE_OIDC - - AUTH_CONFIG_PROVIDER_TYPE_C1_LOCAL + authEmail: + description: authEmail is the email of the user that authorized the connector using OAuth. readOnly: true type: string - x-speakeasy-unknown-values: allow - status: - description: The status field. - enum: - - AUTH_CONFIG_STATUS_UNSPECIFIED - - AUTH_CONFIG_STATUS_ACTIVE - - AUTH_CONFIG_STATUS_DEPRECATED - - AUTH_CONFIG_STATUS_DISABLED - readOnly: false - type: string - x-speakeasy-unknown-values: allow - updatedAt: + authorizedAt: format: date-time readOnly: true - type: string - title: Tenant Auth Config + type: + - string + - "null" + title: O Auth 2 Authorized As type: object - x-speakeasy-name-override: TenantAuthConfig - c1.api.auth_config.v1.TenantAuthConfigServiceCreateRequest: - description: | - The TenantAuthConfigServiceCreateRequest message. - - This message contains a oneof named provider_config. Only a single field of the following list may be set at a time: - - google - - microsoft - - okta - - onelogin - - jumpcloud - - pingone - - oidc - - c1Local + x-speakeasy-name-override: OAuth2AuthorizedAs + c1.api.app.v1.PauseSyncRequestInput: + description: The PauseSyncRequest message contains the fields required to pause syncing for a connector. + title: Pause Sync Request + type: object + x-speakeasy-name-override: PauseSyncRequest + c1.api.app.v1.PauseSyncResponse: + description: Empty response body. Status code indicates success. + title: Pause Sync Response + type: object + x-speakeasy-name-override: PauseSyncResponse + c1.api.app.v1.PromoteAppManagedStateBindingRequestInput: + description: PromoteAppManagedStateBindingRequest identifies an unmanaged application and configures its owners. properties: - bootstrapDomains: - description: Email domains that route unknown users to this authentication provider during login. + appEntitlementOwnerRefs: + description: Entitlements to assign as owners of the new application. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppManagedStateBindingExpandMask' + - type: "null" + userIds: + description: |- + User IDs to assign as owners of the new application. + If omitted, the application inherits the owners of the source connector application. items: type: string - nullable: true - readOnly: false - type: array - c1Local: - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigC1Local' - deprecationDeadline: - format: date-time - readOnly: false - type: string - deprecationMessage: - description: A user-visible message explaining why the provider is deprecated. - readOnly: false - type: string - displayName: - description: The human-readable name for this authentication provider. - readOnly: false - type: string - google: - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigGoogle' - isDefaultBootstrap: - description: Whether this provider is the default for users whose email domain has no explicit mapping. - readOnly: false - type: boolean - jumpcloud: - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigJumpCloud' - microsoft: - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigMicrosoft' - oidc: - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigOIDC' - okta: - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigOkta' - onelogin: - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigOneLogin' - pingone: - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigPingOne' - status: - description: The initial status of the authentication provider. - enum: - - AUTH_CONFIG_STATUS_UNSPECIFIED - - AUTH_CONFIG_STATUS_ACTIVE - - AUTH_CONFIG_STATUS_DEPRECATED - - AUTH_CONFIG_STATUS_DISABLED - readOnly: false - type: string - x-speakeasy-unknown-values: allow - required: - - displayName - title: Tenant Auth Config Service Create Request + type: + - array + - "null" + title: Promote App Managed State Binding Request type: object - x-speakeasy-name-override: TenantAuthConfigServiceCreateRequest - c1.api.auth_config.v1.TenantAuthConfigServiceCreateResponse: - description: The TenantAuthConfigServiceCreateResponse message. - properties: - authConfig: - $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfig' - title: Tenant Auth Config Service Create Response + x-speakeasy-name-override: PromoteAppManagedStateBindingRequest + c1.api.app.v1.RemoveAppEntitlementOwnerRequestInput: + description: The request message for removing an app entitlement owner. + title: Remove App Entitlement Owner Request type: object - x-speakeasy-name-override: TenantAuthConfigServiceCreateResponse - c1.api.auth_config.v1.TenantAuthConfigServiceDeleteRequestInput: - description: The TenantAuthConfigServiceDeleteRequest message. - title: Tenant Auth Config Service Delete Request + x-speakeasy-name-override: RemoveAppEntitlementOwnerRequest + c1.api.app.v1.RemoveAppEntitlementOwnerResponse: + description: The empty response message for removing an app entitlement owner. + title: Remove App Entitlement Owner Response type: object - x-speakeasy-name-override: TenantAuthConfigServiceDeleteRequest - c1.api.auth_config.v1.TenantAuthConfigServiceDeleteResponse: - description: The TenantAuthConfigServiceDeleteResponse message. - title: Tenant Auth Config Service Delete Response + x-speakeasy-name-override: RemoveAppEntitlementOwnerResponse + c1.api.app.v1.RemoveAppOwnerRequestInput: + description: RemoveAppOwnerRequest is the request body for removing an app owner. It uses URL values for input. + title: Remove App Owner Request type: object - x-speakeasy-name-override: TenantAuthConfigServiceDeleteResponse - c1.api.auth_config.v1.TenantAuthConfigServiceGetResponse: - description: The TenantAuthConfigServiceGetResponse message. + x-speakeasy-name-override: RemoveAppOwnerRequest + c1.api.app.v1.RemoveAppOwnerResponse: + description: Empty response with a status code indicating success. + title: Remove App Owner Response + type: object + x-speakeasy-name-override: RemoveAppOwnerResponse + c1.api.app.v1.RemoveAppResourceOwnerRequestInput: + description: The request message for removing an owner from an app resource. properties: - authConfig: - $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfig' - title: Tenant Auth Config Service Get Response + userId: + description: The C1 user ID to remove as an owner. + type: string + title: Remove App Resource Owner Request type: object - x-speakeasy-name-override: TenantAuthConfigServiceGetResponse - c1.api.auth_config.v1.TenantAuthConfigServiceListResponse: - description: The TenantAuthConfigServiceListResponse message. + x-speakeasy-name-override: RemoveAppResourceOwnerRequest + c1.api.app.v1.RemoveAppResourceOwnerResponse: + description: The empty response message for removing an owner from an app resource. + title: Remove App Resource Owner Response + type: object + x-speakeasy-name-override: RemoveAppResourceOwnerResponse + c1.api.app.v1.RemoveAutomationExclusionRequestInput: + description: The RemoveAutomationExclusionRequest message. properties: - list: - description: The list of authentication provider configurations. + userIds: + description: The IDs of users to remove from the automation exclusion list. items: - $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfig' - nullable: true - readOnly: false - type: array - nextPageToken: - description: A token to retrieve the next page of results, or empty if there are no more results. - readOnly: false + type: string + type: + - array + - "null" + title: Remove Automation Exclusion Request + type: object + x-speakeasy-name-override: RemoveAutomationExclusionRequest + c1.api.app.v1.RemoveAutomationExclusionResponse: + description: Empty response with a status code indicating success. + title: Remove Automation Exclusion Response + type: object + x-speakeasy-name-override: RemoveAutomationExclusionResponse + c1.api.app.v1.RemoveEntitlementMembershipRequestInput: + description: The RemoveEntitlementMembershipRequest message. + properties: + appUserId: + description: The ID of the app user whose membership to remove. type: string - title: Tenant Auth Config Service List Response + title: Remove Entitlement Membership Request type: object - x-speakeasy-name-override: TenantAuthConfigServiceListResponse - c1.api.auth_config.v1.TenantAuthConfigServiceUpdateRequestInput: - description: The TenantAuthConfigServiceUpdateRequest message. + x-speakeasy-name-override: RemoveEntitlementMembershipRequest + c1.api.app.v1.RemoveEntitlementMembershipResponse: + description: The RemoveEntitlementMembershipResponse message. properties: - authConfig: - $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfig' - updateMask: - nullable: true - readOnly: false + revokeTaskId: + description: |- + The ID of the revoke task created to remove the user from the entitlement, if the entitlement is an access profile (aka. catalog). + It's aka. the JML task. type: string - title: Tenant Auth Config Service Update Request + title: Remove Entitlement Membership Response type: object - x-speakeasy-name-override: TenantAuthConfigServiceUpdateRequest - c1.api.auth_config.v1.TenantAuthConfigServiceUpdateResponse: - description: The TenantAuthConfigServiceUpdateResponse message. + x-speakeasy-name-override: RemoveEntitlementMembershipResponse + c1.api.app.v1.RemoveGrantDurationRequestInput: + description: The request message for removing the expiration time from a grant. + title: Remove Grant Duration Request + type: object + x-speakeasy-name-override: RemoveGrantDurationRequest + c1.api.app.v1.RemoveGrantDurationResponse: + description: The response message for removing the expiration time from a grant. properties: - authConfig: - $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfig' - title: Tenant Auth Config Service Update Response + binding: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBinding' + - type: "null" + title: Remove Grant Duration Response type: object - x-speakeasy-name-override: TenantAuthConfigServiceUpdateResponse - c1.api.automations.v1.AccessConflictTrigger: - description: | - The AccessConflictTrigger message. - - This message contains a oneof named conflict_monitor_selector. Only a single field of the following list may be set at a time: - - conflictMonitorRefs - - allConflictMonitors - nullable: true + x-speakeasy-name-override: RemoveGrantDurationResponse + c1.api.app.v1.ReorderAppEntitlementRoutingRulesRequestInput: + description: The ReorderAppEntitlementRoutingRulesRequest message. properties: - allConflictMonitors: + ruleIds: description: |- - The allConflictMonitors field. - This field is part of the `conflict_monitor_selector` oneof. - See the documentation for `c1.api.automations.v1.AccessConflictTrigger` for more details. - nullable: true - readOnly: false - type: boolean - conflictMonitorRefs: - $ref: '#/components/schemas/c1.api.automations.v1.ConflictMonitorRefs' - title: Access Conflict Trigger - type: object - x-speakeasy-name-override: AccessConflictTrigger - c1.api.automations.v1.AccountInContext: - description: The AccountInContext message. - nullable: true - title: Account In Context + The full set of routing-rule IDs for the app, in the desired evaluation + order. The first entry receives priority 1, the second priority 2, and so + on. The list must be a permutation of every active rule in the app. + items: + type: string + type: + - array + - "null" + title: Reorder App Entitlement Routing Rules Request type: object - x-speakeasy-name-override: AccountInContext - c1.api.automations.v1.AccountLifecycleAction: - description: | - The AccountLifecycleAction message. - - This message contains a oneof named account_identifier. Only a single field of the following list may be set at a time: - - accountRef - - accountInContext - nullable: true + x-speakeasy-name-override: ReorderAppEntitlementRoutingRulesRequest + c1.api.app.v1.ReorderAppEntitlementRoutingRulesResponse: + description: The ReorderAppEntitlementRoutingRulesResponse message. properties: - accountInContext: - $ref: '#/components/schemas/c1.api.automations.v1.AccountInContext' - accountRef: - $ref: '#/components/schemas/c1.api.automations.v1.AccountRef' - actionName: - description: The actionName field. - readOnly: false - type: string - connectorRef: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorRef' - title: Account Lifecycle Action + list: + description: The rules in their new evaluation order, with priorities reassigned to 1..N. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRoutingRule' + type: + - array + - "null" + title: Reorder App Entitlement Routing Rules Response type: object - x-speakeasy-name-override: AccountLifecycleAction - c1.api.automations.v1.AccountRef: - description: The AccountRef message. - nullable: true + x-speakeasy-name-override: ReorderAppEntitlementRoutingRulesResponse + c1.api.app.v1.ResumeSyncRequestInput: + description: The ResumeSyncRequest message contains the fields required to resume syncing for a connector. + title: Resume Sync Request + type: object + x-speakeasy-name-override: ResumeSyncRequest + c1.api.app.v1.ResumeSyncResponse: + description: Empty response body. Status code indicates success. + title: Resume Sync Response + type: object + x-speakeasy-name-override: ResumeSyncResponse + c1.api.app.v1.SearchAppEntitlementsWithExpiredResponse: + description: The SearchAppEntitlementsWithExpiredResponse message contains a list of results and a nextPageToken if applicable. properties: - accountIdCel: - description: The accountIdCel field. - readOnly: false + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementWithExpired' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - title: Account Ref + title: Search App Entitlements With Expired Response type: object - x-speakeasy-name-override: AccountRef - c1.api.automations.v1.AppUserCreatedTrigger: - description: | - The AppUserCreatedTrigger message. - - This message contains a oneof named app_identifier. Only a single field of the following list may be set at a time: - - appId - - appIdCel - nullable: true + x-speakeasy-name-override: SearchAppEntitlementsWithExpiredResponse + c1.api.app.v1.SearchAppResourceTypesRequest: + description: Search for app resources based on some filters. properties: - appId: - description: |- - The appId field. - This field is part of the `app_identifier` oneof. - See the documentation for `c1.api.automations.v1.AppUserCreatedTrigger` for more details. - nullable: true - readOnly: false + appIds: + description: A list of app IDs to restrict the search by. + items: + type: string + type: + - array + - "null" + appUserIds: + description: A list of app user IDs to restrict the search by. + items: + type: string + type: + - array + - "null" + displayName: + description: Exact match on display name type: string - appIdCel: - description: |- - The appIdCel field. - This field is part of the `app_identifier` oneof. - See the documentation for `c1.api.automations.v1.AppUserCreatedTrigger` for more details. - nullable: true - readOnly: false + excludeResourceTypeIds: + description: A list of resource type IDs to exclude from the search. + items: + type: string + type: + - array + - "null" + excludeResourceTypeTraitIds: + description: A list of resource type trait IDs to exclude from the search. + items: + type: string + type: + - array + - "null" + pageSize: + description: The pageSize where 10 <= pageSize <= 100, default 25. + format: int32 + type: integer + pageToken: + description: The pageToken field. type: string - condition: - description: The condition field. - readOnly: false + query: + description: Fuzzy search the display name of resource types. type: string - title: App User Created Trigger + resourceTypeIds: + description: A list of resource type IDs to restrict the search by. + items: + type: string + type: + - array + - "null" + resourceTypeTraitIds: + description: A list of resource type trait IDs to restrict the search by. + items: + type: string + type: + - array + - "null" + title: Search App Resource Types Request type: object - x-speakeasy-name-override: AppUserCreatedTrigger - c1.api.automations.v1.AppUserUpdatedTrigger: - description: | - The AppUserUpdatedTrigger message. - - This message contains a oneof named app_identifier. Only a single field of the following list may be set at a time: - - appId - - appIdCel - nullable: true + x-speakeasy-name-override: SearchAppResourceTypesRequest + c1.api.app.v1.SearchAppResourceTypesResponse: + description: The SearchAppResourceTypesResponse message contains a list of results and a nextPageToken if applicable. properties: - appId: - description: |- - The appId field. - This field is part of the `app_identifier` oneof. - See the documentation for `c1.api.automations.v1.AppUserUpdatedTrigger` for more details. - nullable: true - readOnly: false - type: string - appIdCel: + list: + description: The list of results containing up to X results, where X is the page size defined in the request. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppResourceType' + type: + - array + - "null" + nextPageToken: description: |- - The appIdCel field. - This field is part of the `app_identifier` oneof. - See the documentation for `c1.api.automations.v1.AppUserUpdatedTrigger` for more details. - nullable: true - readOnly: false - type: string - condition: - description: The condition field. - readOnly: false + The nextPageToken is shown for the next page if the number of results is larger than the max page size. + The server returns one page of results and the nextPageToken until all results are retreived. + To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. type: string - title: App User Updated Trigger + title: Search App Resource Types Response type: object - x-speakeasy-name-override: AppUserUpdatedTrigger - c1.api.automations.v1.Automation: - description: | - The Automation message. - - This message contains a oneof named disabled_reason. Only a single field of the following list may be set at a time: - - circuitBreaker + x-speakeasy-name-override: SearchAppResourceTypesResponse + c1.api.app.v1.SearchAppResourcesRequest: + description: Search app resources based on filters specified in the request body. properties: + agentStatuses: + description: |- + Restrict the search to AI-agent resources with one of the given agent + lifecycle statuses (READY, DISABLED, DELETED). When empty, agent status is + not used as a filter. + items: + enum: + - AGENT_STATUS_UNSPECIFIED + - AGENT_STATUS_READY + - AGENT_STATUS_DISABLED + - AGENT_STATUS_DELETED + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" appId: - description: the app id this workflow_template belongs to - readOnly: false + description: The app ID to restrict the search to. type: string - automationSteps: - description: The automationSteps field. + appIds: + description: |- + A list of app IDs to restrict the search to. Mirrors the singular app_id; + both fold into the same filter, so callers may set either or both. items: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationStep' - nullable: true - readOnly: false - type: array - circuitBreaker: - $ref: '#/components/schemas/c1.api.automations.v1.DisabledReasonCircuitBreaker' - circuitBreakerMax: + type: string + type: + - array + - "null" + appUserIds: + description: A list of app user IDs to restrict the search by. + items: + type: string + type: + - array + - "null" + credentialTypes: description: |- - Circuit breaker rate cap: disable this automation if it executes more - than circuit_breaker_max times in the trailing circuit_breaker_period. - 0 = circuit breaker off (default). - format: uint32 - readOnly: false - type: integer - circuitBreakerPeriod: - description: The circuitBreakerPeriod field. + Restrict the search to resources whose credential material spine (K1) matches + one of the given CredentialType values. Applies to resources with a + secret_trait. When empty, credential_type is not used as a filter. + items: + enum: + - CREDENTIAL_TYPE_UNSPECIFIED + - CREDENTIAL_TYPE_STATIC_SECRET + - CREDENTIAL_TYPE_ASYMMETRIC_KEY + - CREDENTIAL_TYPE_CERTIFICATE + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + direction: + description: |- + Direction to sort in. Unspecified falls back to ASC when sort_field is set. + No defined_only validation here: protoc-gen-validate mis-resolves the + cross-package enum name map to this file's c1.models.app.v1 import alias + instead of c1.api.search.v1, which fails to compile. The query builder + already treats any unrecognized value as ASC, so this is safe to omit. enum: - - CIRCUIT_BREAKER_PERIOD_UNSPECIFIED - - CIRCUIT_BREAKER_PERIOD_HOUR - - CIRCUIT_BREAKER_PERIOD_DAY - - CIRCUIT_BREAKER_PERIOD_WEEK - - CIRCUIT_BREAKER_PERIOD_MONTH - readOnly: false + - SORT_DIRECTION_UNSPECIFIED + - SORT_DIRECTION_ASC + - SORT_DIRECTION_DESC type: string x-speakeasy-unknown-values: allow - context: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationContext' - createdAt: - format: date-time - readOnly: false - type: string - currentVersion: - description: The currentVersion field. - format: int64 - readOnly: false - type: string - description: - description: The description field. - readOnly: false - type: string - displayName: - description: The displayName field. - readOnly: false - type: string - draftAutomationSteps: - description: The draftAutomationSteps field. + excludeDeletedApps: + description: When true, excludes resources belonging to soft-deleted apps. + type: boolean + excludeDeletedResourceBindings: + description: If true, exclude resources whose bindings have been deleted. + type: boolean + excludeResourceIds: + description: A list of resource IDs to exclude from the search results. items: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationStep' - nullable: true - readOnly: false - type: array - draftTriggers: - description: The draftTriggers field. + type: string + type: + - array + - "null" + excludeResourceTypeTraitIds: + description: A list of resource type trait IDs to exclude from the search. items: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationTrigger' - nullable: true - readOnly: false - type: array - enabled: - description: The enabled field. - readOnly: false - type: boolean - id: - description: The id field. - readOnly: true + type: string + type: + - array + - "null" + nhiTypes: + description: |- + Restrict the search to resources whose NHI classification spine (K3) is one + of the given NhiType values. When empty, nhi_type is not used as a filter. + items: + enum: + - NHI_TYPE_UNSPECIFIED + - NHI_TYPE_APP_REGISTRATION + - NHI_TYPE_ASSUMABLE_ROLE + - NHI_TYPE_MANAGED_IDENTITY + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + ownerUserIds: + description: |- + A list of C1 user IDs to filter resources by ownership. The sentinel + value "none" matches resources with no owner. Mutually exclusive with + unowned_only — combine "none" with real owner IDs instead of setting + unowned_only alongside them. + items: + type: string + type: + - array + - "null" + pageSize: + description: The maximum number of results to return per page. + format: int32 + type: integer + pageToken: + description: The token for fetching the next page of results. type: string - isDraft: - description: The isDraft field. - readOnly: false - type: boolean - lastExecutedAt: - format: date-time - readOnly: false + query: + description: Fuzzy search the display name of resources. type: string - primaryTriggerType: - description: The primaryTriggerType field. + refs: + description: A list of specific app resource references to restrict the search to. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppResourceRef' + type: + - array + - "null" + resourceIds: + description: A list of resource IDs to restrict the search to. + items: + type: string + type: + - array + - "null" + resourceTypeIds: + description: A list of resource type IDs to restrict the search by. + items: + type: string + type: + - array + - "null" + resourceTypeTraitIds: + description: A list of resource type trait IDs to restrict the search by. + items: + type: string + type: + - array + - "null" + secretAging: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.SecretAgingFilter' + - type: "null" + sortField: + description: Column to sort by. Unspecified (0) keeps the server's default order (app, then display name). enum: - - TRIGGER_TYPE_UNSPECIFIED - - TRIGGER_TYPE_USER_PROFILE_CHANGE - - TRIGGER_TYPE_APP_USER_CREATE - - TRIGGER_TYPE_APP_USER_UPDATE - - TRIGGER_TYPE_UNUSED_ACCESS - - TRIGGER_TYPE_USER_CREATED - - TRIGGER_TYPE_GRANT_FOUND - - TRIGGER_TYPE_GRANT_DELETED - - TRIGGER_TYPE_WEBHOOK - - TRIGGER_TYPE_SCHEDULE - - TRIGGER_TYPE_FORM - - TRIGGER_TYPE_SCHEDULE_APP_USER - - TRIGGER_TYPE_ACCESS_CONFLICT - - TRIGGER_TYPE_SCHEDULE_NO_USER - readOnly: false + - APP_RESOURCE_SORT_FIELD_UNSPECIFIED + - APP_RESOURCE_SORT_FIELD_SECRET_CREATED_AT + - APP_RESOURCE_SORT_FIELD_SECRET_EXPIRES_AT + - APP_RESOURCE_SORT_FIELD_LAST_USED_AT type: string x-speakeasy-unknown-values: allow - triggers: - description: The triggers field. - items: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationTrigger' - nullable: true - readOnly: false - type: array - title: Automation + unownedOnly: + description: |- + When true, restrict results to resources with no ownership-v2 primary-role + owner. Mutually exclusive with owner_user_ids — use owner_user_ids: + ["none"] instead if you also need to combine it with real owner IDs. + type: boolean + withOpenFindings: + description: |- + When true, restrict results to resources that have at least one open finding + (index-backed EXISTS semi-join). When false/unset, results are unfiltered. + type: boolean + title: Search App Resources Request type: object - x-speakeasy-entity: Automation - x-speakeasy-name-override: Automation - c1.api.automations.v1.AutomationContext: - description: The AutomationContext message. + x-speakeasy-name-override: SearchAppResourcesRequest + c1.api.app.v1.SearchAppResourcesResponse: + description: The SearchAppResourcesResponse message contains a list of results and a nextPageToken if applicable. properties: - context: - additionalProperties: true - readOnly: false - type: object - title: Automation Context + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + list: + description: The list of app resource results. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppResourceView' + type: + - array + - "null" + nextPageToken: + description: The token for fetching the next page of results. + type: string + title: Search App Resources Response type: object - x-speakeasy-name-override: AutomationContext - c1.api.automations.v1.AutomationExecution: - description: The AutomationExecution message. + x-speakeasy-name-override: SearchAppResourcesResponse + c1.api.app.v1.SearchAppsRequest: + description: Search Apps by a few properties. properties: - automationTemplateId: - description: The automationTemplateId field. - readOnly: false - type: string - completedAt: - format: date-time - readOnly: false - type: string - context: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationContext' - createdAt: - format: date-time - readOnly: false + appIds: + description: A list of app IDs to restrict the search to. + items: + type: string + type: + - array + - "null" + displayName: + description: Search for apps with a case insensitive match on the display name. type: string - currentVersion: - description: The currentVersion field. + excludeAppIds: + description: A list of app IDs to remove from the results. + items: + type: string + type: + - array + - "null" + onlyDirectories: + description: Only return apps which are directories + type: boolean + pageSize: + description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) format: int32 - readOnly: false type: integer - deletedAt: - format: date-time - readOnly: false - type: string - duration: - format: duration - readOnly: false + pageToken: + description: The pageToken field. type: string - id: - description: The id field. - format: int64 - readOnly: false + policyRefs: + description: Search for apps that use any of these policies. + items: + $ref: '#/components/schemas/c1.api.policy.v1.PolicyRef' + type: + - array + - "null" + query: + description: Query the apps with a fuzzy search on display name and description. type: string - isDraft: - description: The isDraft field. - readOnly: false - type: boolean - state: - description: The state field. - enum: - - AUTOMATION_EXECUTION_STATE_UNSPECIFIED - - AUTOMATION_EXECUTION_STATE_PENDING - - AUTOMATION_EXECUTION_STATE_CREATING - - AUTOMATION_EXECUTION_STATE_GET_STEP - - AUTOMATION_EXECUTION_STATE_PROCESS_STEP - - AUTOMATION_EXECUTION_STATE_COMPLETE_STEP - - AUTOMATION_EXECUTION_STATE_DONE - - AUTOMATION_EXECUTION_STATE_ERROR - - AUTOMATION_EXECUTION_STATE_TERMINATE - - AUTOMATION_EXECUTION_STATE_WAITING - readOnly: false + title: Search Apps Request + type: object + x-speakeasy-name-override: SearchAppsRequest + c1.api.app.v1.SearchAppsResponse: + description: The SearchAppsResponse message contains a list of results and a nextPageToken if applicable. + properties: + list: + description: The list of results containing up to X results, where X is the page size defined in the request. + items: + $ref: '#/components/schemas/c1.api.app.v1.App' + type: + - array + - "null" + nextPageToken: + description: |- + The nextPageToken is shown for the next page if the number of results is larger than the max page size. + The server returns one page of results and the nextPageToken until all results are retreived. + To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. type: string - x-speakeasy-unknown-values: allow - updatedAt: + title: Search Apps Response + type: object + x-speakeasy-name-override: SearchAppsResponse + c1.api.app.v1.SearchGrantFeedRequest: + description: The SearchGrantFeedRequest message. + properties: + after: + format: date-time + type: + - string + - "null" + appEntitlementRefs: + description: The list of app entitlements to limit the search to. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + appRefs: + description: The list of apps to limit the search to. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppRef' + type: + - array + - "null" + appUserRefs: + description: The list of app users to limit the search to. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppUserRef' + type: + - array + - "null" + before: format: date-time - readOnly: false + type: + - string + - "null" + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBindingExpandHistoryMask' + - type: "null" + pageSize: + description: The pageSize where 10 <= pageSize <= 100, default 25. + format: int32 + type: integer + pageToken: + description: The page_token field for pagination. type: string - title: Automation Execution + userRefs: + description: The list of C1 users to limit the search to. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserRef' + type: + - array + - "null" + title: Search Grant Feed Request type: object - x-speakeasy-name-override: AutomationExecution - c1.api.automations.v1.AutomationExecutionExpandMask: - description: The AutomationExecutionExpandMask message. + x-speakeasy-name-override: SearchGrantFeedRequest + c1.api.app.v1.SearchGrantFeedResponse: + description: The SearchGrantFeedResponse message contains a list of grant event results and a nextPageToken if applicable. properties: - paths: - description: The paths field. + expanded: + description: The expanded field. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + list: + description: The list of results containing up to X results, where X is the page size defined in the request. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBindingFeedView' + type: + - array + - "null" + nextPageToken: + description: |- + The nextPageToken is shown for the next page if the number of results is larger than the max page size. + The server returns one page of results and the nextPageToken until all results are retrieved. + To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. + type: string + title: Search Grant Feed Response + type: object + x-speakeasy-name-override: SearchGrantFeedResponse + c1.api.app.v1.SearchPastGrantsRequest: + description: The request message for searching historical grants. + properties: + appEntitlementRefs: + description: A list of entitlement references to restrict the search to. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + appIds: + description: A list of app IDs to restrict the search to. items: type: string - nullable: true - readOnly: false - type: array - title: Automation Execution Expand Mask + type: + - array + - "null" + appUserRefs: + description: A list of app user references to restrict the search to. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppUserRef' + type: + - array + - "null" + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBindingExpandHistoryMask' + - type: "null" + pageSize: + description: The maximum number of results to return per page. + format: int32 + type: integer + pageToken: + description: The token for fetching the next page of results. + type: string + title: Search Past Grants Request type: object - x-speakeasy-name-override: AutomationExecutionExpandMask - c1.api.automations.v1.AutomationExecutionRef: - description: The AutomationExecutionRef message. + x-speakeasy-name-override: SearchPastGrantsRequest + c1.api.app.v1.SearchPastGrantsResponse: + description: The SearchPastGrantsResponse message contains a list of past grants and a nextPageToken if applicable. properties: - id: - description: The id field. - format: int64 - readOnly: false + expanded: + description: The expanded field. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + list: + description: The list of results containing up to X results, where X is the page size defined in the request. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBindingHistoryView' + type: + - array + - "null" + nextPageToken: + description: |- + The nextPageToken is shown for the next page if the number of results is larger than the max page size. + The server returns one page of results and the nextPageToken until all results are retrieved. + To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. type: string - title: Automation Execution Ref + title: Search Past Grants Response type: object - x-speakeasy-name-override: AutomationExecutionRef - c1.api.automations.v1.AutomationExecutionView: - description: The AutomationExecutionView message. + x-speakeasy-name-override: SearchPastGrantsResponse + c1.api.app.v1.SearchUserOwnershipRequest: + description: |- + Search for all ownership assignments for a given user. Returns apps, resources, and + entitlements the user owns, each tagged with a UserOwnershipType discriminator. + Filter by ownership_types to restrict results to specific kinds of ownership. properties: - automationExecution: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationExecution' - automationExecutionTriggerPath: - description: The automationExecutionTriggerPath field. - readOnly: false + ownershipTypes: + description: Filter results to only include these ownership types. If empty, all types are returned. + items: + enum: + - USER_OWNERSHIP_TYPE_UNSPECIFIED + - USER_OWNERSHIP_TYPE_APP + - USER_OWNERSHIP_TYPE_RESOURCE + - USER_OWNERSHIP_TYPE_ENTITLEMENT + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + pageSize: + description: Maximum number of results to return per page. + format: int32 + type: integer + pageToken: + description: Pagination token from a previous response. type: string - automationPath: - description: The automationPath field. - readOnly: false + userId: + description: The ID of the ConductorOne user whose ownership to search. type: string - title: Automation Execution View + title: Search User Ownership Request type: object - x-speakeasy-name-override: AutomationExecutionView - c1.api.automations.v1.AutomationStep: - description: | - The AutomationStep message. - - This message contains a oneof named kind. Only a single field of the following list may be set at a time: - - createAccessReview - - waitForDuration - - unenrollFromAllAccessProfiles - - createRevokeTasks - - createRevokeTasksV2 - - sendEmail - - removeFromDelegation - - runAutomation - - updateUser - - taskAction - - webhook - - connectorAction - - connectorCreateAccount - - grantEntitlements - - sendSlackMessage - - callFunction - - accountLifecycleAction - - generatePassword - - evaluateExpressions - - setCredential - - storeCredential + x-speakeasy-name-override: SearchUserOwnershipRequest + c1.api.app.v1.SearchUserOwnershipResponse: + description: The SearchUserOwnershipResponse message contains a paginated list of ownership entries. properties: - accountLifecycleAction: - $ref: '#/components/schemas/c1.api.automations.v1.AccountLifecycleAction' - callFunction: - $ref: '#/components/schemas/c1.api.automations.v1.CallFunction' - connectorAction: - $ref: '#/components/schemas/c1.api.automations.v1.ConnectorAction' - connectorCreateAccount: - $ref: '#/components/schemas/c1.api.automations.v1.ConnectorCreateAccount' - createAccessReview: - $ref: '#/components/schemas/c1.api.automations.v1.CreateAccessReview' - createRevokeTasks: - $ref: '#/components/schemas/c1.api.automations.v1.CreateRevokeTasks' - createRevokeTasksV2: - $ref: '#/components/schemas/c1.api.automations.v1.CreateRevokeTasksV2' - evaluateExpressions: - $ref: '#/components/schemas/c1.api.automations.v1.EvaluateExpressions' - generatePassword: - $ref: '#/components/schemas/c1.api.automations.v1.GeneratePassword' - grantEntitlements: - $ref: '#/components/schemas/c1.api.automations.v1.GrantEntitlements' - removeFromDelegation: - $ref: '#/components/schemas/c1.api.automations.v1.RemoveFromDelegation' - runAutomation: - $ref: '#/components/schemas/c1.api.automations.v1.RunAutomation' - sendEmail: - $ref: '#/components/schemas/c1.api.automations.v1.SendEmail' - sendSlackMessage: - $ref: '#/components/schemas/c1.api.automations.v1.SendSlackMessage' - setCredential: - $ref: '#/components/schemas/c1.api.automations.v1.SetCredential' - skipIfTrueCel: - description: The skipIfTrueCel field. - readOnly: false - type: string - stepDisplayName: - description: The stepDisplayName field. - readOnly: false - type: string - stepName: - description: The stepName field. - readOnly: false + list: + description: The list of ownership entries for the requested user. + items: + $ref: '#/components/schemas/c1.api.app.v1.UserOwnershipEntry' + type: + - array + - "null" + nextPageToken: + description: Pagination token for the next page of results. Empty when there are no more results. type: string - storeCredential: - $ref: '#/components/schemas/c1.api.automations.v1.StoreCredential' - taskAction: - $ref: '#/components/schemas/c1.api.automations.v1.TaskAction' - unenrollFromAllAccessProfiles: - $ref: '#/components/schemas/c1.api.automations.v1.UnenrollFromAllAccessProfiles' - updateUser: - $ref: '#/components/schemas/c1.api.automations.v1.UpdateUser' - waitForDuration: - $ref: '#/components/schemas/c1.api.automations.v1.WaitForDuration' - webhook: - $ref: '#/components/schemas/c1.api.automations.v1.Webhook' - title: Automation Step + title: Search User Ownership Response type: object - x-speakeasy-name-override: AutomationStep - c1.api.automations.v1.AutomationTemplateRef: - description: The AutomationTemplateRef message. - nullable: true + x-speakeasy-name-override: SearchUserOwnershipResponse + c1.api.app.v1.SecretAgingFilter: + description: |- + SecretAgingFilter restricts a resource search to secrets (credential_type != 0) + whose secret-trait timestamps fall in the given half-open ranges. Each bound is + optional; leave one unset for an open-ended range. All set bounds are ANDed. + Callers pass absolute timestamps (computed against their reference "now"). properties: - id: - description: The id field. - readOnly: false - type: string - title: Automation Template Ref + lastUsedAfter: + format: date-time + type: + - string + - "null" + lastUsedBefore: + format: date-time + type: + - string + - "null" + secretCreatedAfter: + format: date-time + type: + - string + - "null" + secretCreatedBefore: + format: date-time + type: + - string + - "null" + secretExpiresAfter: + format: date-time + type: + - string + - "null" + secretExpiresBefore: + format: date-time + type: + - string + - "null" + title: Secret Aging Filter type: object - x-speakeasy-name-override: AutomationTemplateRef - c1.api.automations.v1.AutomationTemplateVersion: - description: The AutomationTemplateVersion message. + x-speakeasy-name-override: SecretAgingFilter + c1.api.app.v1.SecretTrait: + description: The SecretTrait message. properties: - automationSteps: - description: The automationSteps field. - items: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationStep' - nullable: true - readOnly: false - type: array - automationTemplateId: - description: The automationTemplateId field. - readOnly: false + createdByAppUserId: + description: |- + The AppUser id that created this credential. Read-only; resolved from + the model during uplift. Distinct from identity_app_user_id (the + holder) and from the resource's Owner (a separate assignment, not + part of this message). type: string - createdAt: - format: date-time - readOnly: false + credentialDetail: + description: |- + Platform-specific credential subtype detail, finer than credential_type + (e.g. "GCP service-account key"). Read-only; translated from the model. type: string - deletedAt: - format: date-time - readOnly: false + identityAppUserId: + description: The identityAppUserId field. type: string - triggers: - description: The triggers field. - items: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationTrigger' - nullable: true - readOnly: false - type: array - updatedAt: + lastUsedAt: format: date-time - readOnly: false - type: string - version: - description: The version field. - format: int64 - readOnly: false - type: string - title: Automation Template Version + type: + - string + - "null" + secretCreatedAt: + format: date-time + type: + - string + - "null" + secretExpiresAt: + format: date-time + type: + - string + - "null" + title: Secret Trait type: object - x-speakeasy-name-override: AutomationTemplateVersion - c1.api.automations.v1.AutomationTrigger: - description: | - Automation Triggers - - This message contains a oneof named kind. Only a single field of the following list may be set at a time: - - userProfileChange - - appUserCreated - - appUserUpdated - - usageBasedRevocation - - userCreated - - grantFound - - grantDeleted - - webhook - - schedule - - scheduleAppUser - - accessConflict - - scheduleNoUser + x-speakeasy-name-override: SecretTrait + c1.api.app.v1.SetAppEntitlementOwnersRequestInput: + description: The request message for setting the app entitlement owners. properties: - accessConflict: - $ref: '#/components/schemas/c1.api.automations.v1.AccessConflictTrigger' - appUserCreated: - $ref: '#/components/schemas/c1.api.automations.v1.AppUserCreatedTrigger' - appUserUpdated: - $ref: '#/components/schemas/c1.api.automations.v1.AppUserUpdatedTrigger' - grantDeleted: - $ref: '#/components/schemas/c1.api.automations.v1.GrantDeletedTrigger' - grantFound: - $ref: '#/components/schemas/c1.api.automations.v1.GrantFoundTrigger' - schedule: - $ref: '#/components/schemas/c1.api.automations.v1.ScheduleTrigger' - scheduleAppUser: - $ref: '#/components/schemas/c1.api.automations.v1.ScheduleTriggerAppUser' - scheduleNoUser: - $ref: '#/components/schemas/c1.api.automations.v1.ScheduleTriggerNoUser' - usageBasedRevocation: - $ref: '#/components/schemas/c1.api.automations.v1.UsageBasedRevocationTrigger' - userCreated: - $ref: '#/components/schemas/c1.api.automations.v1.UserCreatedTrigger' - userProfileChange: - $ref: '#/components/schemas/c1.api.automations.v1.UserProfileChangeTrigger' - webhook: - $ref: '#/components/schemas/c1.api.automations.v1.WebhookAutomationTrigger' - title: Automation Trigger + userIds: + description: The user_ids field for the users to set as an owner of the app entitlement. + items: + type: string + type: + - array + - "null" + title: Set App Entitlement Owners Request type: object - x-speakeasy-name-override: AutomationTrigger - c1.api.automations.v1.CallFunction: - description: The CallFunction message. - nullable: true + x-speakeasy-entity: App_Entitlement_Owner + x-speakeasy-name-override: SetAppEntitlementOwnersRequest + c1.api.app.v1.SetAppEntitlementOwnersResponse: + description: The empty response message for setting the app entitlement owners. + title: Set App Entitlement Owners Response + type: object + x-speakeasy-name-override: SetAppEntitlementOwnersResponse + c1.api.app.v1.SetAppOwnersRequestInput: + description: The request message for setting the app owners. properties: - args: - additionalProperties: + userIds: + description: The user_ids field for the users to set as an owner of the app. + items: type: string - description: The args field. - readOnly: false - type: object - functionId: - description: The functionId field. - readOnly: false - type: string - title: Call Function + type: + - array + - "null" + title: Set App Owners Request type: object - x-speakeasy-name-override: CallFunction - c1.api.automations.v1.ClearAutomationCircuitBreakerRequestInput: - description: The ClearAutomationCircuitBreakerRequest message. + x-speakeasy-entity: App_Owner + x-speakeasy-name-override: SetAppOwnersRequest + c1.api.app.v1.SetAppOwnersResponse: + description: The empty response message for setting the app owners. + title: Set App Owners Response + type: object + x-speakeasy-name-override: SetAppOwnersResponse + c1.api.app.v1.SetAppResourceOwnersRequestInput: + description: The SetAppResourceOwnersRequest message. properties: - decision: - description: |- - What to do with paused executions. UNSPECIFIED means clear the breaker - only (backward-compatible default). RUN or CANCEL creates a bulk action - to resolve them asynchronously. - enum: - - PAUSED_EXECUTION_DECISION_UNSPECIFIED - - PAUSED_EXECUTION_DECISION_RUN - - PAUSED_EXECUTION_DECISION_CANCEL - readOnly: false - type: string - x-speakeasy-unknown-values: allow - reason: - description: Admin-supplied reason when decision is CANCEL. Up to 1024 bytes. - readOnly: false - type: string - title: Clear Automation Circuit Breaker Request + userIds: + description: The userIds field. + items: + type: string + type: + - array + - "null" + title: Set App Resource Owners Request type: object - x-speakeasy-name-override: ClearAutomationCircuitBreakerRequest - c1.api.automations.v1.ClearAutomationCircuitBreakerResponse: - description: The ClearAutomationCircuitBreakerResponse message. + x-speakeasy-entity: App_Resource_Owner + x-speakeasy-name-override: SetAppResourceOwnersRequest + c1.api.app.v1.SetAppResourceOwnersResponse: + description: The empty response message for setting the app resource owners. + title: Set App Resource Owners Response + type: object + x-speakeasy-name-override: SetAppResourceOwnersResponse + c1.api.app.v1.SyncConfig: + description: The SyncConfig message. properties: - bulkActionId: - description: |- - The bulk action ID if a bulk action was created to resolve paused - executions. Empty when decision is UNSPECIFIED or there were no - paused executions. - readOnly: false - type: string - title: Clear Automation Circuit Breaker Response + syncResourceTypeIds: + description: The syncResourceTypeIds field. + items: + type: string + type: + - array + - "null" + title: Sync Config type: object - x-speakeasy-name-override: ClearAutomationCircuitBreakerResponse - c1.api.automations.v1.CloseAction: - description: | - The CloseAction message. - - This message contains a oneof named user_identifier. Only a single field of the following list may be set at a time: - - userIdCel - - userRef - nullable: true + x-speakeasy-name-override: SyncConfig + c1.api.app.v1.TaskAuditCancelledResult: + description: The TaskAuditCancelledResult message. properties: - useSubjectUser: - description: If true, the step will use the subject user of the automation as the subject. - readOnly: false - type: boolean - userIdCel: + cancelReason: description: |- - The userIdCel field. - This field is part of the `user_identifier` oneof. - See the documentation for `c1.api.automations.v1.CloseAction` for more details. - nullable: true - readOnly: false + Human-readable reason the action was cancelled. Already populated on the + model-side CanceledResult (e.g., "action is invalid - ticket is closed"); + this surfaces it to the UI. type: string - userRef: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - title: Close Action - type: object - x-speakeasy-name-override: CloseAction - c1.api.automations.v1.ConflictMonitorRefs: - description: The ConflictMonitorRefs message. - nullable: true - properties: - conflictMonitorRefs: - description: The conflictMonitorRefs field. - items: - $ref: '#/components/schemas/c1.api.accessconflict.v1.ConflictMonitorRef' - nullable: true - readOnly: false - type: array - title: Conflict Monitor Refs + title: Task Audit Cancelled Result type: object - x-speakeasy-name-override: ConflictMonitorRefs - c1.api.automations.v1.ConnectorAction: - description: | - The ConnectorAction message. - - This message contains a oneof named connector_identifier. Only a single field of the following list may be set at a time: - - connectorRef - nullable: true + x-speakeasy-name-override: TaskAuditCancelledResult + c1.api.app.v1.TaskAuditErrorResult: + description: The TaskAuditErrorResult message. properties: - actionName: - description: The actionName field. - readOnly: false + errorCount: + description: 'TODO(pquerna): expand' + format: int64 type: string - argsTemplate: - additionalProperties: true - readOnly: false - type: object - connectorRef: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorRef' - resourceTypeId: - description: The resourceTypeId field. - readOnly: false + errorReason: + description: The errorReason field. type: string - title: Connector Action + title: Task Audit Error Result type: object - x-speakeasy-name-override: ConnectorAction - c1.api.automations.v1.ConnectorCreateAccount: - description: | - The ConnectorCreateAccount message. - - This message contains a oneof named create_account_arguments. Only a single field of the following list may be set at a time: - - userIdCel - - userProperties - nullable: true + x-speakeasy-name-override: TaskAuditErrorResult + c1.api.app.v1.TaskAuditPendingResult: + description: The TaskAuditPendingResult message. properties: - connectorRef: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorRef' - passwordCel: + pendingReason: description: |- - CEL expression referencing a GeneratePassword step output (e.g. "genStep.password"). - When set, the resolved password is encrypted for the connector and sent as CredentialOptions.EncryptedPassword. - readOnly: false + Human-readable explanation of why the action is pending. Rendered in the + ticket audit log so admins can see what the action is waiting on (e.g., + "GitHub org invite sent. User must accept the invitation before team + membership can be granted."). Naming mirrors TaskAuditErrorResult.error_reason + and TaskAuditCancelledResult.cancel_reason for consistency. type: string - userIdCel: + title: Task Audit Pending Result + type: object + x-speakeasy-name-override: TaskAuditPendingResult + c1.api.app.v1.TaskAuditSuccessResult: + description: The TaskAuditSuccessResult message. + properties: + annotations: + description: The annotations field. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + effects: + description: The effects field. + items: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorActionEffect' + type: + - array + - "null" + successReason: description: |- - The userIdCel field. - This field is part of the `create_account_arguments` oneof. - See the documentation for `c1.api.automations.v1.ConnectorCreateAccount` for more details. - nullable: true - readOnly: false + Optional human-readable note about the successful action. Rendered in + the ticket audit log when present (e.g., "Account already existed; no + change made." for the AlreadyExistsResult path). Naming mirrors + TaskAuditErrorResult.error_reason and TaskAuditCancelledResult.cancel_reason + for consistency. type: string - userProperties: - $ref: '#/components/schemas/c1.api.automations.v1.UserProperties' - title: Connector Create Account + title: Task Audit Success Result type: object - x-speakeasy-name-override: ConnectorCreateAccount - c1.api.automations.v1.CreateAccessReview: - description: The CreateAccessReview message. - nullable: true + x-speakeasy-name-override: TaskAuditSuccessResult + c1.api.app.v1.UpdateAppEntitlementRequestInput: + description: The UpdateAppEntitlementRequest message contains the app entitlement and the fields to be updated. properties: - accessReviewTemplateCel: - description: The accessReviewTemplateCel field. - readOnly: false - type: string - accessReviewTemplateId: - description: The accessReviewTemplateId field. - readOnly: false - type: string - campaignName: - description: Optional campaign name. If not provided, the campaign name will be the access review template name. - readOnly: false - type: string - useSubjectUser: - description: If true, the step will use the subject user of the automation as the subject. - readOnly: false + entitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlement' + - type: "null" + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementExpandMask' + - type: "null" + overrideAccessRequestsDefaults: + description: Flag to indicate that access request defaults, if any are applied to these entitlements, should be overridden. type: boolean - userIdsCel: - description: The userIdsCel field. - readOnly: false - type: string - userRefs: - description: The userRefs field. - items: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - nullable: true - readOnly: false - type: array - title: Create Access Review + updateMask: + type: + - string + - "null" + title: Update App Entitlement Request type: object - x-speakeasy-name-override: CreateAccessReview - c1.api.automations.v1.CreateAutomationRequest: - description: The CreateAutomationRequest message. + x-speakeasy-name-override: UpdateAppEntitlementRequest + c1.api.app.v1.UpdateAppEntitlementResponse: + description: The UpdateAppEntitlementResponse message. properties: - appId: - description: the app id this workflow_template belongs to - readOnly: false - type: string - automationSteps: - description: Ordered list of steps that the automation executes. + appEntitlementView: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementView' + - type: "null" + expanded: + description: List of related objects items: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationStep' - nullable: true - readOnly: false - type: array - circuitBreakerMax: - description: Circuit breaker rate cap. See Automation.circuit_breaker_max for semantics. - format: uint32 - readOnly: false - type: integer - circuitBreakerPeriod: - description: The circuitBreakerPeriod field. - enum: - - CIRCUIT_BREAKER_PERIOD_UNSPECIFIED - - CIRCUIT_BREAKER_PERIOD_HOUR - - CIRCUIT_BREAKER_PERIOD_DAY - - CIRCUIT_BREAKER_PERIOD_WEEK - - CIRCUIT_BREAKER_PERIOD_MONTH - readOnly: false + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + title: Update App Entitlement Response + type: object + x-speakeasy-name-override: UpdateAppEntitlementResponse + c1.api.app.v1.UpdateAppEntitlementRoutingRuleRequestInput: + description: The UpdateAppEntitlementRoutingRuleRequest message. + properties: + condition: + description: |- + CEL expression evaluated against the entitlement routing rule context. + Empty string is valid and matches every target not matched earlier. type: string - x-speakeasy-unknown-values: allow - context: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationContext' description: - description: Optional description explaining the automation's purpose. - readOnly: false + description: The description field. type: string displayName: - description: Human-readable name for the automation. - readOnly: false + description: The displayName field. type: string - draftAutomationSteps: - description: Steps saved as a draft that have not yet been published. - items: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationStep' - nullable: true - readOnly: false - type: array - draftTriggers: - description: Triggers saved as a draft that have not yet been published. - items: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationTrigger' - nullable: true - readOnly: false - type: array enabled: - description: Whether the automation is active and eligible for execution. - readOnly: false - type: boolean - isDraft: - description: Whether this automation is in draft mode. Draft automations are not eligible for trigger-based execution. - readOnly: false + description: The enabled field. type: boolean - triggers: - description: Triggers that determine when the automation runs. - items: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationTrigger' - nullable: true - readOnly: false - type: array - title: Create Automation Request + settings: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRoutingRuleSettings' + - type: "null" + title: Update App Entitlement Routing Rule Request type: object - x-speakeasy-name-override: AutomationsCreateAutomationRequest - c1.api.automations.v1.CreateAutomationResponse: - description: The CreateAutomationResponse message. + x-speakeasy-name-override: UpdateAppEntitlementRoutingRuleRequest + c1.api.app.v1.UpdateAppEntitlementRoutingRuleResponse: + description: The UpdateAppEntitlementRoutingRuleResponse message. properties: - automation: - $ref: '#/components/schemas/c1.api.automations.v1.Automation' - webhookCapabilityUrl: - description: |- - One-time absolute webhook URL for capability URL authentication, shown once at creation time. - Contains the full URL including the embedded token (e.g. https://tenant.conductorone.com/api/v1/webhooks/incoming/{id}/t/{token}). - Populated only when the webhook trigger uses capability URL authentication. - readOnly: false - type: string - webhookHmacSecret: - description: |- - One-time HMAC shared secret, shown once at creation time. - Populated only when the webhook trigger uses HMAC authentication. - readOnly: false - type: string - title: Create Automation Response + routingRule: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRoutingRule' + - type: "null" + title: Update App Entitlement Routing Rule Response type: object - x-speakeasy-name-override: AutomationsCreateAutomationResponse - c1.api.automations.v1.CreateRevokeTasks: - description: The CreateRevokeTasks message. - nullable: true + x-speakeasy-name-override: UpdateAppEntitlementRoutingRuleResponse + c1.api.app.v1.UpdateAppRequestInput: + description: The UpdateAppRequest message contains the app to update and the fields to update. properties: - appEntitlementRefs: - description: The appEntitlementRefs field. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - appEntitlementRefsCel: - description: The appEntitlementRefsCel field. - readOnly: false - type: string - excludedAppEntitlementRefs: - description: The excludedAppEntitlementRefs field. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - excludedAppEntitlementRefsCel: - description: The excludedAppEntitlementRefsCel field. - readOnly: false - type: string - revokeAll: - description: The revokeAll field. - readOnly: false - type: boolean - useSubjectUser: - description: If true, the step will use the subject user of the automation as the subject. - readOnly: false - type: boolean - userIdCel: - description: The userIdCel field. - readOnly: false - type: string - userRef: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - title: Create Revoke Tasks + app: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.App' + - type: "null" + updateMask: + type: + - string + - "null" + title: Update App Request type: object - x-speakeasy-name-override: CreateRevokeTasks - c1.api.automations.v1.CreateRevokeTasksV2: + x-speakeasy-name-override: UpdateAppRequest + c1.api.app.v1.UpdateAppResponse: + description: Returns the updated app's new values. + properties: + app: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.App' + - type: "null" + title: Update App Response + type: object + x-speakeasy-name-override: UpdateAppResponse + c1.api.app.v1.UpdateAppUsageControlsRequestInput: + description: The UpdateAppUsageControlsRequest message contains the AppUsageControls object to update and the update mask. + properties: + appUsageControls: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppUsageControls' + - type: "null" + updateMask: + type: + - string + - "null" + title: Update App Usage Controls Request + type: object + x-speakeasy-name-override: UpdateAppUsageControlsRequest + c1.api.app.v1.UpdateAppUsageControlsResponse: + description: The UpdateAppUsageControlsResponse message contains the updated AppUsageControls object. + properties: + appUsageControls: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppUsageControls' + - type: "null" + title: Update App Usage Controls Response + type: object + x-speakeasy-name-override: UpdateAppUsageControlsResponse + c1.api.app.v1.UpdateConnectorScheduleRequestInput: description: | - The CreateRevokeTasksV2 message. - - This message contains a oneof named user. Only a single field of the following list may be set at a time: - - userIdCel - - userRef - - useSubjectUser - - - This message contains a oneof named inclusion. Only a single field of the following list may be set at a time: - - inclusionList - - inclusionAll - - inclusionCriteria - - inclusionListCel - + The UpdateConnectorScheduleRequest message contains the fields required to update a connector's sync schedule. - This message contains a oneof named exclusion. Only a single field of the following list may be set at a time: - - exclusionNone - - exclusionList - - exclusionCriteria - - exclusionListCel - nullable: true + This message contains a oneof named schedule. Only a single field of the following list may be set at a time: + - cron properties: - exclusionCriteria: - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementExclusionCriteria' - exclusionList: - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementExclusionList' - exclusionListCel: - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementExclusionListCel' - exclusionNone: - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementExclusionNone' - inclusionAll: - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementInclusionAll' - inclusionCriteria: - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementInclusionCriteria' - inclusionList: - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementInclusionList' - inclusionListCel: - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementInclusionListCel' - useSubjectUser: - description: |- - The useSubjectUser field. - This field is part of the `user` oneof. - See the documentation for `c1.api.automations.v1.CreateRevokeTasksV2` for more details. - nullable: true - readOnly: false - type: boolean - userIdCel: - description: |- - The userIdCel field. - This field is part of the `user` oneof. - See the documentation for `c1.api.automations.v1.CreateRevokeTasksV2` for more details. - nullable: true - readOnly: false - type: string - userRef: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - title: Create Revoke Tasks V 2 - type: object - x-speakeasy-name-override: CreateRevokeTasksV2 - c1.api.automations.v1.DeleteAutomationRequestInput: - description: The DeleteAutomationRequest message. - title: Delete Automation Request + cron: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.ConnectorScheduleCron' + - type: "null" + title: Update Connector Schedule Request type: object - x-speakeasy-name-override: AutomationsDeleteAutomationRequest - c1.api.automations.v1.DeleteAutomationResponse: - description: The DeleteAutomationResponse message. - title: Delete Automation Response + x-speakeasy-name-override: UpdateConnectorScheduleRequest + c1.api.app.v1.UpdateConnectorScheduleResponse: + description: Empty response body. Status code indicates success. + title: Update Connector Schedule Response type: object - x-speakeasy-name-override: AutomationsDeleteAutomationResponse - c1.api.automations.v1.DisabledReasonCircuitBreaker: - description: |- - DisabledReasonCircuitBreaker carries the trip context when an automation - has been auto-disabled by its rate cap. Returned on the parent Automation - when read; not directly settable. - nullable: true + x-speakeasy-name-override: UpdateConnectorScheduleResponse + c1.api.app.v1.UpdateGrantDurationRequestInput: + description: The request message for updating the duration of an existing grant. properties: - observedCount: - description: Observed execution count in the period at trip time. - format: uint32 - readOnly: false - type: integer - period: - description: Snapshot of the period at trip time. - enum: - - CIRCUIT_BREAKER_PERIOD_UNSPECIFIED - - CIRCUIT_BREAKER_PERIOD_HOUR - - CIRCUIT_BREAKER_PERIOD_DAY - - CIRCUIT_BREAKER_PERIOD_WEEK - - CIRCUIT_BREAKER_PERIOD_MONTH - readOnly: false - type: string - x-speakeasy-unknown-values: allow - threshold: - description: Snapshot of the threshold at trip time. - format: uint32 - readOnly: false - type: integer - trippedAt: + newDeprovisionAt: format: date-time - readOnly: false - type: string - title: Disabled Reason Circuit Breaker + type: + - string + - "null" + title: Update Grant Duration Request type: object - x-speakeasy-name-override: DisabledReasonCircuitBreaker - c1.api.automations.v1.EntitlementExclusionCriteria: - description: The EntitlementExclusionCriteria message. - nullable: true + x-speakeasy-name-override: UpdateGrantDurationRequest + c1.api.app.v1.UpdateGrantDurationResponse: + description: The response message for updating the duration of a grant. properties: - excludedAppIds: - description: The excludedAppIds field. - items: - type: string - nullable: true - readOnly: false - type: array - excludedComplianceFrameworkIds: - description: The excludedComplianceFrameworkIds field. - items: - type: string - nullable: true - readOnly: false - type: array - excludedResourceTypeIds: - description: The excludedResourceTypeIds field. - items: - type: string - nullable: true - readOnly: false - type: array - excludedRiskLevelIds: - description: The excludedRiskLevelIds field. - items: - type: string - nullable: true - readOnly: false - type: array - title: Entitlement Exclusion Criteria + binding: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBinding' + - type: "null" + title: Update Grant Duration Response type: object - x-speakeasy-name-override: EntitlementExclusionCriteria - c1.api.automations.v1.EntitlementExclusionList: - description: The EntitlementExclusionList message. - nullable: true + x-speakeasy-name-override: UpdateGrantDurationResponse + c1.api.app.v1.UpdateManuallyManagedResourceTypeRequestInput: + description: The request message for updating a manually managed resource type. properties: - excludedAppEntitlementRefs: - description: The excludedAppEntitlementRefs field. + appResourceType: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppResourceType' + - type: "null" + updateMask: + type: + - string + - "null" + title: Update Manually Managed Resource Type Request + type: object + x-speakeasy-name-override: UpdateManuallyManagedResourceTypeRequest + c1.api.app.v1.UpdateManuallyManagedResourceTypeResponse: + description: The response message for updating a manually managed resource type. + properties: + appResourceType: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppResourceType' + - type: "null" + expanded: + description: List of serialized related objects. items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - title: Entitlement Exclusion List + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + title: Update Manually Managed Resource Type Response type: object - x-speakeasy-name-override: EntitlementExclusionList - c1.api.automations.v1.EntitlementExclusionListCel: - description: The EntitlementExclusionListCel message. - nullable: true + x-speakeasy-name-override: UpdateManuallyManagedResourceTypeResponse + c1.api.app.v1.UserOwnershipEntry: + description: |- + A single ownership entry. Fields are populated based on ownership_type: + APP — only app_id and app_display_name are set. + RESOURCE — app_id, app_display_name, resource_type_id, resource_id, and resource_display_name are set. + ENTITLEMENT — app_id, app_display_name, resource_type_id, entitlement_id, and entitlement_display_name are set. properties: - excludedAppEntitlementRefsCel: - description: The excludedAppEntitlementRefsCel field. - readOnly: false + appDisplayName: + description: The app display name. type: string - title: Entitlement Exclusion List Cel + appId: + description: The app ID. + type: string + entitlementDisplayName: + description: The entitlement display name, if applicable. + type: string + entitlementId: + description: The entitlement ID, if applicable. + type: string + ownershipType: + description: The type of ownership. + enum: + - USER_OWNERSHIP_TYPE_UNSPECIFIED + - USER_OWNERSHIP_TYPE_APP + - USER_OWNERSHIP_TYPE_RESOURCE + - USER_OWNERSHIP_TYPE_ENTITLEMENT + type: string + x-speakeasy-unknown-values: allow + resourceDisplayName: + description: The resource display name, if applicable. + type: string + resourceId: + description: The resource ID, if applicable. + type: string + resourceTypeId: + description: The resource type ID, if applicable. + type: string + title: User Ownership Entry type: object - x-speakeasy-name-override: EntitlementExclusionListCel - c1.api.automations.v1.EntitlementExclusionNone: - description: The EntitlementExclusionNone message. - nullable: true - title: Entitlement Exclusion None + x-speakeasy-name-override: UserOwnershipEntry + c1.api.app.v1.UserWithAppEntitlementUserBindingView: + description: The UserWithAppEntitlementUserBindingView message. + properties: + appEntitlementId: + description: The ID of the app entitlement. + type: string + appId: + description: The ID of the app that contains the entitlement. + type: string + appUserId: + description: The ID of the app user associated with this binding. + type: string + user: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.User' + - type: "null" + title: User With App Entitlement User Binding View type: object - x-speakeasy-name-override: EntitlementExclusionNone - c1.api.automations.v1.EntitlementInclusionAll: - description: The EntitlementInclusionAll message. - nullable: true - title: Entitlement Inclusion All + x-speakeasy-name-override: UserWithAppEntitlementUserBindingView + c1.api.app.v2.AppEntitlementOwnerEntitlement: + description: AppEntitlementOwnerEntitlement represents an entitlement ownership source for an app entitlement. + properties: + appEntitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlement' + - type: "null" + appId: + description: The appId field. + type: string + createdAt: + format: date-time + type: + - string + - "null" + entitlementId: + description: The entitlementId field. + type: string + roleSlug: + description: The roleSlug field. + type: string + title: App Entitlement Owner Entitlement type: object - x-speakeasy-name-override: EntitlementInclusionAll - c1.api.automations.v1.EntitlementInclusionCriteria: - description: The EntitlementInclusionCriteria message. - nullable: true + x-speakeasy-entity: App_Entitlement_Owner_Entitlement + x-speakeasy-name-override: AppEntitlementOwnerEntitlement + c1.api.app.v2.AppEntitlementOwnerUser: + description: AppEntitlementOwnerUser represents a user ownership source for an app entitlement. properties: - appIds: - description: The appIds field. - items: - type: string - nullable: true - readOnly: false - type: array - complianceFrameworkIds: - description: The complianceFrameworkIds field. - items: - type: string - nullable: true - readOnly: false - type: array - resourceTypeIds: - description: The resourceTypeIds field. - items: - type: string - nullable: true - readOnly: false - type: array - riskLevelIds: - description: The riskLevelIds field. - items: - type: string - nullable: true - readOnly: false - type: array - title: Entitlement Inclusion Criteria + appId: + description: The appId field. + type: string + createdAt: + format: date-time + type: + - string + - "null" + entitlementId: + description: The entitlementId field. + type: string + roleSlug: + description: The roleSlug field. + type: string + user: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.User' + - type: "null" + title: App Entitlement Owner User type: object - x-speakeasy-name-override: EntitlementInclusionCriteria - c1.api.automations.v1.EntitlementInclusionList: - description: The EntitlementInclusionList message. - nullable: true + x-speakeasy-entity: App_Entitlement_Owner_User + x-speakeasy-name-override: AppEntitlementOwnerUser + c1.api.app.v2.AppOwnerEntitlement: + description: AppOwnerEntitlement represents an entitlement ownership source for an app. properties: - appEntitlementRefs: - description: The appEntitlementRefs field. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - title: Entitlement Inclusion List + appEntitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlement' + - type: "null" + appId: + description: The appId field. + type: string + createdAt: + format: date-time + type: + - string + - "null" + roleSlug: + description: The roleSlug field. + type: string + title: App Owner Entitlement type: object - x-speakeasy-name-override: EntitlementInclusionList - c1.api.automations.v1.EntitlementInclusionListCel: - description: The EntitlementInclusionListCel message. - nullable: true + x-speakeasy-entity: App_Owner_Entitlement + x-speakeasy-name-override: AppOwnerEntitlement + c1.api.app.v2.AppOwnerUser: + description: AppOwnerUser represents a user ownership source for an app. properties: - appEntitlementRefsCel: - description: The appEntitlementRefsCel field. - readOnly: false + appId: + description: The appId field. type: string - title: Entitlement Inclusion List Cel + createdAt: + format: date-time + type: + - string + - "null" + roleSlug: + description: The roleSlug field. + type: string + user: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.User' + - type: "null" + title: App Owner User type: object - x-speakeasy-name-override: EntitlementInclusionListCel - c1.api.automations.v1.EvaluateExpressions: - description: The EvaluateExpressions message. - nullable: true + x-speakeasy-entity: App_Owner_User + x-speakeasy-name-override: AppOwnerUser + c1.api.app.v2.AppResourceOwnerEntitlement: + description: AppResourceOwnerEntitlement represents an entitlement ownership source for an app resource. properties: - expressions: - description: The expressions field. - items: - $ref: '#/components/schemas/c1.api.automations.v1.Expression' - nullable: true - readOnly: false - type: array - title: Evaluate Expressions + appEntitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlement' + - type: "null" + appId: + description: The appId field. + type: string + createdAt: + format: date-time + type: + - string + - "null" + resourceId: + description: The resourceId field. + type: string + resourceTypeId: + description: The resourceTypeId field. + type: string + roleSlug: + description: The roleSlug field. + type: string + title: App Resource Owner Entitlement type: object - x-speakeasy-name-override: EvaluateExpressions - c1.api.automations.v1.ExecuteAutomationRequestInput: - description: The ExecuteAutomationRequest message. + x-speakeasy-entity: App_Resource_Owner_Entitlement + x-speakeasy-name-override: AppResourceOwnerEntitlement + c1.api.app.v2.AppResourceOwnerUser: + description: AppResourceOwnerUser represents a user ownership source for an app resource. properties: - context: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationContext' - title: Execute Automation Request + appId: + description: The appId field. + type: string + createdAt: + format: date-time + type: + - string + - "null" + resourceId: + description: The resourceId field. + type: string + resourceTypeId: + description: The resourceTypeId field. + type: string + roleSlug: + description: The roleSlug field. + type: string + user: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.User' + - type: "null" + title: App Resource Owner User type: object - x-speakeasy-name-override: ExecuteAutomationRequest - c1.api.automations.v1.ExecuteAutomationResponse: - description: The ExecuteAutomationResponse message. + x-speakeasy-entity: App_Resource_Owner_User + x-speakeasy-name-override: AppResourceOwnerUser + c1.api.app.v2.AppUserOwnerEntitlement: + description: AppUserOwnerEntitlement represents an entitlement ownership source for an app user. properties: - executionId: - description: The unique identifier of the newly created execution. - format: int64 - readOnly: false + appEntitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlement' + - type: "null" + appId: + description: The appId field. type: string - title: Execute Automation Response + createdAt: + format: date-time + type: + - string + - "null" + roleSlug: + description: The roleSlug field. + type: string + userId: + description: The userId field. + type: string + title: App User Owner Entitlement type: object - x-speakeasy-name-override: ExecuteAutomationResponse - c1.api.automations.v1.Expression: - description: The Expression message. + x-speakeasy-name-override: AppUserOwnerEntitlement + c1.api.app.v2.AppUserOwnerUser: + description: AppUserOwnerUser represents a user ownership source for an app user. properties: - expressionCel: - description: The expressionCel field. - readOnly: false + appId: + description: The appId field. type: string - isSecret: - description: The isSecret field. - readOnly: false - type: boolean - key: - description: The key field. - readOnly: false + createdAt: + format: date-time + type: + - string + - "null" + roleSlug: + description: The roleSlug field. type: string - title: Expression + user: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.User' + - type: "null" + userId: + description: The userId field. + type: string + title: App User Owner User type: object - x-speakeasy-name-override: Expression - c1.api.automations.v1.GeneratePassword: - description: The GeneratePassword message. - nullable: true + x-speakeasy-name-override: AppUserOwnerUser + c1.api.app.v2.ConnectorOwnerEntitlement: + description: ConnectorOwnerEntitlement represents an entitlement ownership source for a connector. properties: - passwordPolicyId: - deprecated: true - description: 'Deprecated: password policy ID lookup is no longer used.' - readOnly: false + appEntitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlement' + - type: "null" + appId: + description: The appId field. type: string - policy: - $ref: '#/components/schemas/c1.api.automations.v1.GeneratePasswordPolicy' - title: Generate Password + connectorId: + description: The connectorId field. + type: string + createdAt: + format: date-time + type: + - string + - "null" + roleSlug: + description: The roleSlug field. + type: string + title: Connector Owner Entitlement type: object - x-speakeasy-name-override: GeneratePassword - c1.api.automations.v1.GeneratePasswordPolicy: - description: | - GeneratePasswordPolicy defines inline password generation rules. - - This message contains a oneof named character_rules. Only a single field of the following list may be set at a time: - - noRestrictions - - customCharacters - - excludedCharacters + x-speakeasy-entity: Connector_Owner_Entitlement + x-speakeasy-name-override: ConnectorOwnerEntitlement + c1.api.app.v2.ConnectorOwnerUser: + description: ConnectorOwnerUser represents a user ownership source for a connector. properties: - customCharacters: - description: |- - The customCharacters field. - This field is part of the `character_rules` oneof. - See the documentation for `c1.api.automations.v1.GeneratePasswordPolicy` for more details. - nullable: true - readOnly: false + appId: + description: The appId field. type: string - excludedCharacters: - description: |- - The excludedCharacters field. - This field is part of the `character_rules` oneof. - See the documentation for `c1.api.automations.v1.GeneratePasswordPolicy` for more details. - nullable: true - readOnly: false + connectorId: + description: The connectorId field. type: string - maxCharacterCount: - description: The maxCharacterCount field. - format: int32 - readOnly: false - type: integer - minCharacterCount: - description: The minCharacterCount field. - format: int32 - readOnly: false - type: integer - noRestrictions: - description: |- - The noRestrictions field. - This field is part of the `character_rules` oneof. - See the documentation for `c1.api.automations.v1.GeneratePasswordPolicy` for more details. - nullable: true - readOnly: false - type: boolean - requireLowercase: - description: The requireLowercase field. - readOnly: false - type: boolean - requireNumbers: - description: The requireNumbers field. - readOnly: false - type: boolean - requireSpecialCharacters: - description: The requireSpecialCharacters field. - readOnly: false - type: boolean - requireUppercase: - description: The requireUppercase field. - readOnly: false - type: boolean - title: Generate Password Policy + createdAt: + format: date-time + type: + - string + - "null" + roleSlug: + description: The roleSlug field. + type: string + user: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.User' + - type: "null" + title: Connector Owner User type: object - x-speakeasy-name-override: GeneratePasswordPolicy - c1.api.automations.v1.GetAutomationExecutionResponse: - description: The GetAutomationExecutionResponse message. + x-speakeasy-entity: Connector_Owner_User + x-speakeasy-name-override: ConnectorOwnerUser + c1.api.app.v2.CreateAppEntitlementEntitlementOwnerRequestInput: + description: CreateAppEntitlementEntitlementOwnerRequest is the request for creating an entitlement ownership source on an entitlement. properties: - automationExecution: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationExecution' - expanded: - description: Related objects requested via the expand mask. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - view: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationExecutionView' - title: Get Automation Execution Response + appEntitlementRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + - type: "null" + title: Create App Entitlement Entitlement Owner Request type: object - x-speakeasy-name-override: GetAutomationExecutionResponse - c1.api.automations.v1.GetAutomationResponse: - description: The GetAutomationResponse message. + x-speakeasy-name-override: CreateAppEntitlementEntitlementOwnerRequest + c1.api.app.v2.CreateAppEntitlementEntitlementOwnerResponse: + description: CreateAppEntitlementEntitlementOwnerResponse is the response for creating an entitlement ownership source on an entitlement. properties: - automation: - $ref: '#/components/schemas/c1.api.automations.v1.Automation' - title: Get Automation Response + appEntitlementOwnerEntitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v2.AppEntitlementOwnerEntitlement' + - type: "null" + title: Create App Entitlement Entitlement Owner Response type: object - x-speakeasy-name-override: GetAutomationResponse - c1.api.automations.v1.GrantDeletedTrigger: - description: The GrantDeletedTrigger message. - nullable: true + x-speakeasy-name-override: CreateAppEntitlementEntitlementOwnerResponse + c1.api.app.v2.CreateAppEntitlementOwnerRequestInput: + description: CreateEntitlementOwnerRequest is the request for creating an entitlement ownership source. properties: - grantTriggerFilter: - $ref: '#/components/schemas/c1.api.automations.v1.GrantTriggerFilter' - title: Grant Deleted Trigger + appEntitlementRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + - type: "null" + title: Create App Entitlement Owner Request type: object - x-speakeasy-name-override: GrantDeletedTrigger - c1.api.automations.v1.GrantEntitlementExclusionCriteria: - description: The GrantEntitlementExclusionCriteria message. - nullable: true + x-speakeasy-name-override: CreateAppEntitlementOwnerRequest + c1.api.app.v2.CreateAppEntitlementOwnerResponse: + description: CreateEntitlementOwnerResponse is the response for creating an entitlement ownership source. properties: - excludedAppIds: - description: The excludedAppIds field. - items: - type: string - nullable: true - readOnly: false - type: array - excludedComplianceFrameworkIds: - description: The excludedComplianceFrameworkIds field. - items: - type: string - nullable: true - readOnly: false - type: array - excludedRiskLevelIds: - description: The excludedRiskLevelIds field. - items: - type: string - nullable: true - readOnly: false - type: array - title: Grant Entitlement Exclusion Criteria + appOwnerEntitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v2.AppOwnerEntitlement' + - type: "null" + title: Create App Entitlement Owner Response type: object - x-speakeasy-name-override: GrantEntitlementExclusionCriteria - c1.api.automations.v1.GrantEntitlementExclusionList: - description: The GrantEntitlementExclusionList message. - nullable: true + x-speakeasy-name-override: CreateAppEntitlementOwnerResponse + c1.api.app.v2.CreateAppEntitlementUserOwnerRequestInput: + description: CreateAppEntitlementUserOwnerRequest is the request for creating a user ownership source on an entitlement. properties: - excludedAppEntitlementRefs: - description: The excludedAppEntitlementRefs field. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - title: Grant Entitlement Exclusion List + userRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + title: Create App Entitlement User Owner Request type: object - x-speakeasy-name-override: GrantEntitlementExclusionList - c1.api.automations.v1.GrantEntitlementExclusionListCel: - description: The GrantEntitlementExclusionListCel message. - nullable: true + x-speakeasy-name-override: CreateAppEntitlementUserOwnerRequest + c1.api.app.v2.CreateAppEntitlementUserOwnerResponse: + description: CreateAppEntitlementUserOwnerResponse is the response for creating a user ownership source on an entitlement. properties: - excludedAppEntitlementRefsCel: - description: The excludedAppEntitlementRefsCel field. - readOnly: false - type: string - title: Grant Entitlement Exclusion List Cel + appEntitlementOwnerUser: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v2.AppEntitlementOwnerUser' + - type: "null" + title: Create App Entitlement User Owner Response type: object - x-speakeasy-name-override: GrantEntitlementExclusionListCel - c1.api.automations.v1.GrantEntitlementExclusionNone: - description: The GrantEntitlementExclusionNone message. - nullable: true - title: Grant Entitlement Exclusion None + x-speakeasy-name-override: CreateAppEntitlementUserOwnerResponse + c1.api.app.v2.CreateAppResourceEntitlementOwnerRequestInput: + description: CreateAppResourceEntitlementOwnerRequest is the request for creating an entitlement ownership source on a resource. + properties: + appEntitlementRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + - type: "null" + title: Create App Resource Entitlement Owner Request type: object - x-speakeasy-name-override: GrantEntitlementExclusionNone - c1.api.automations.v1.GrantEntitlementInclusionCriteria: - description: The GrantEntitlementInclusionCriteria message. - nullable: true + x-speakeasy-name-override: CreateAppResourceEntitlementOwnerRequest + c1.api.app.v2.CreateAppResourceEntitlementOwnerResponse: + description: CreateAppResourceEntitlementOwnerResponse is the response for creating an entitlement ownership source on a resource. properties: - appIds: - description: The appIds field. - items: - type: string - nullable: true - readOnly: false - type: array - complianceFrameworkIds: - description: The complianceFrameworkIds field. - items: - type: string - nullable: true - readOnly: false - type: array - riskLevelIds: - description: The riskLevelIds field. - items: - type: string - nullable: true - readOnly: false - type: array - title: Grant Entitlement Inclusion Criteria + appResourceOwnerEntitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v2.AppResourceOwnerEntitlement' + - type: "null" + title: Create App Resource Entitlement Owner Response type: object - x-speakeasy-name-override: GrantEntitlementInclusionCriteria - c1.api.automations.v1.GrantEntitlementInclusionList: - description: The GrantEntitlementInclusionList message. - nullable: true + x-speakeasy-name-override: CreateAppResourceEntitlementOwnerResponse + c1.api.app.v2.CreateAppResourceUserOwnerRequestInput: + description: CreateAppResourceUserOwnerRequest is the request for creating a user ownership source on a resource. properties: - appEntitlementRefs: - description: The appEntitlementRefs field. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - title: Grant Entitlement Inclusion List + userRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + title: Create App Resource User Owner Request type: object - x-speakeasy-name-override: GrantEntitlementInclusionList - c1.api.automations.v1.GrantEntitlementInclusionListCel: - description: The GrantEntitlementInclusionListCel message. - nullable: true + x-speakeasy-name-override: CreateAppResourceUserOwnerRequest + c1.api.app.v2.CreateAppResourceUserOwnerResponse: + description: CreateAppResourceUserOwnerResponse is the response for creating a user ownership source on a resource. properties: - appEntitlementRefsCel: - description: The appEntitlementRefsCel field. - readOnly: false - type: string - title: Grant Entitlement Inclusion List Cel + appResourceOwnerUser: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v2.AppResourceOwnerUser' + - type: "null" + title: Create App Resource User Owner Response type: object - x-speakeasy-name-override: GrantEntitlementInclusionListCel - c1.api.automations.v1.GrantEntitlements: - description: | - The GrantEntitlements message. - - This message contains a oneof named inclusion. Only a single field of the following list may be set at a time: - - inclusionList - - inclusionCriteria - - inclusionListCel - - - This message contains a oneof named exclusion. Only a single field of the following list may be set at a time: - - exclusionNone - - exclusionList - - exclusionCriteria - - exclusionListCel - nullable: true + x-speakeasy-name-override: CreateAppResourceUserOwnerResponse + c1.api.app.v2.CreateAppUserEntitlementOwnerRequestInput: + description: CreateAppUserEntitlementOwnerRequest is the request for creating an entitlement ownership source on an app user. + properties: + appEntitlementRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + - type: "null" + title: Create App User Entitlement Owner Request + type: object + x-speakeasy-name-override: CreateAppUserEntitlementOwnerRequest + c1.api.app.v2.CreateAppUserEntitlementOwnerResponse: + description: CreateAppUserEntitlementOwnerResponse is the response for creating an entitlement ownership source on an app user. + properties: + appUserOwnerEntitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v2.AppUserOwnerEntitlement' + - type: "null" + title: Create App User Entitlement Owner Response + type: object + x-speakeasy-name-override: CreateAppUserEntitlementOwnerResponse + c1.api.app.v2.CreateAppUserOwnerRequestInput: + description: CreateUserOwnerRequest is the request for creating a user ownership source. properties: - exclusionCriteria: - $ref: '#/components/schemas/c1.api.automations.v1.GrantEntitlementExclusionCriteria' - exclusionList: - $ref: '#/components/schemas/c1.api.automations.v1.GrantEntitlementExclusionList' - exclusionListCel: - $ref: '#/components/schemas/c1.api.automations.v1.GrantEntitlementExclusionListCel' - exclusionNone: - $ref: '#/components/schemas/c1.api.automations.v1.GrantEntitlementExclusionNone' - inclusionCriteria: - $ref: '#/components/schemas/c1.api.automations.v1.GrantEntitlementInclusionCriteria' - inclusionList: - $ref: '#/components/schemas/c1.api.automations.v1.GrantEntitlementInclusionList' - inclusionListCel: - $ref: '#/components/schemas/c1.api.automations.v1.GrantEntitlementInclusionListCel' - useSubjectUser: - description: If true, the step will use the subject user of the automation as the subject. - readOnly: false - type: boolean - userIdCel: - description: The userIdCel field. - readOnly: false - type: string userRef: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - title: Grant Entitlements + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + title: Create App User Owner Request type: object - x-speakeasy-name-override: GrantEntitlements - c1.api.automations.v1.GrantFoundTrigger: - description: The GrantFoundTrigger message. - nullable: true + x-speakeasy-name-override: CreateAppUserOwnerRequest + c1.api.app.v2.CreateAppUserOwnerResponse: + description: CreateUserOwnerResponse is the response for creating a user ownership source. properties: - grantTriggerFilter: - $ref: '#/components/schemas/c1.api.automations.v1.GrantTriggerFilter' - title: Grant Found Trigger + appOwnerUser: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v2.AppOwnerUser' + - type: "null" + title: Create App User Owner Response type: object - x-speakeasy-name-override: GrantFoundTrigger - c1.api.automations.v1.GrantTriggerFilter: - description: | - The GrantTriggerFilter message. - - This message contains a oneof named entitlement_inclusion. Only a single field of the following list may be set at a time: - - inclusionList - - inclusionAll - - inclusionCriteria - - inclusionListCel + x-speakeasy-name-override: CreateAppUserOwnerResponse + c1.api.app.v2.CreateAppUserUserOwnerRequestInput: + description: CreateAppUserUserOwnerRequest is the request for creating a user ownership source on an app user. properties: - accountFilter: - $ref: '#/components/schemas/c1.api.automations.v1.GrantTriggerFilter.AccountFilter' - grantFilter: - $ref: '#/components/schemas/c1.api.automations.v1.GrantTriggerFilter.GrantFilter' - inclusionAll: - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementInclusionAll' - inclusionCriteria: - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementInclusionCriteria' - inclusionList: - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementInclusionList' - inclusionListCel: - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementInclusionListCel' - title: Grant Trigger Filter + userRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + title: Create App User User Owner Request type: object - x-speakeasy-name-override: GrantTriggerFilter - c1.api.automations.v1.GrantTriggerFilter.AccountFilter: - description: The AccountFilter message. + x-speakeasy-name-override: CreateAppUserUserOwnerRequest + c1.api.app.v2.CreateAppUserUserOwnerResponse: + description: CreateAppUserUserOwnerResponse is the response for creating a user ownership source on an app user. properties: - accountType: - description: The accountType field. - enum: - - APP_USER_TYPE_UNSPECIFIED - - APP_USER_TYPE_USER - - APP_USER_TYPE_SERVICE_ACCOUNT - - APP_USER_TYPE_SYSTEM_ACCOUNT - readOnly: false - type: string - x-speakeasy-unknown-values: allow - title: Account Filter + appUserOwnerUser: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v2.AppUserOwnerUser' + - type: "null" + title: Create App User User Owner Response type: object - x-speakeasy-name-override: AccountFilter - c1.api.automations.v1.GrantTriggerFilter.GrantFilter: - description: The GrantFilter message. + x-speakeasy-name-override: CreateAppUserUserOwnerResponse + c1.api.app.v2.CreateConnectorEntitlementOwnerRequestInput: + description: CreateConnectorEntitlementOwnerRequest is the request for creating an entitlement ownership source on a connector. properties: - grantFilterType: - description: The grantFilterType field. - enum: - - GRANT_FILTER_TYPE_UNSPECIFIED - - GRANT_FILTER_TYPE_PERMANENT - - GRANT_FILTER_TYPE_TEMPORARY - readOnly: false - type: string - x-speakeasy-unknown-values: allow - grantJustificationType: - description: The grantJustificationType field. - enum: - - GRANT_JUSTIFICATION_TYPE_UNSPECIFIED - - GRANT_JUSTIFICATION_TYPE_ALL - - GRANT_JUSTIFICATION_TYPE_CONDUCTOR_ONE - - GRANT_JUSTIFICATION_TYPE_DIRECT - readOnly: false - type: string - x-speakeasy-unknown-values: allow - grantSourceFilter: - description: The grantSourceFilter field. - enum: - - GRANT_SOURCE_FILTER_UNSPECIFIED - - GRANT_SOURCE_FILTER_DIRECT - - GRANT_SOURCE_FILTER_INHERITED - readOnly: false - type: string - x-speakeasy-unknown-values: allow - title: Grant Filter + appEntitlementRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + - type: "null" + title: Create Connector Entitlement Owner Request type: object - x-speakeasy-name-override: GrantFilter - c1.api.automations.v1.ListAutomationExecutionsResponse: - description: The ListAutomationExecutionsResponse message. + x-speakeasy-name-override: CreateConnectorEntitlementOwnerRequest + c1.api.app.v2.CreateConnectorEntitlementOwnerResponse: + description: CreateConnectorEntitlementOwnerResponse is the response for creating an entitlement ownership source on a connector. properties: - automationExecutions: - description: The page of automation executions. + connectorOwnerEntitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v2.ConnectorOwnerEntitlement' + - type: "null" + title: Create Connector Entitlement Owner Response + type: object + x-speakeasy-name-override: CreateConnectorEntitlementOwnerResponse + c1.api.app.v2.CreateConnectorUserOwnerRequestInput: + description: CreateConnectorUserOwnerRequest is the request for creating a user ownership source on a connector. + properties: + userRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + title: Create Connector User Owner Request + type: object + x-speakeasy-name-override: CreateConnectorUserOwnerRequest + c1.api.app.v2.CreateConnectorUserOwnerResponse: + description: CreateConnectorUserOwnerResponse is the response for creating a user ownership source on a connector. + properties: + connectorOwnerUser: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v2.ConnectorOwnerUser' + - type: "null" + title: Create Connector User Owner Response + type: object + x-speakeasy-name-override: CreateConnectorUserOwnerResponse + c1.api.app.v2.DeleteAppEntitlementEntitlementOwnerRequestInput: + description: DeleteAppEntitlementEntitlementOwnerRequest is the request for deleting an entitlement ownership source on an entitlement. + properties: + appEntitlementRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + - type: "null" + title: Delete App Entitlement Entitlement Owner Request + type: object + x-speakeasy-name-override: DeleteAppEntitlementEntitlementOwnerRequest + c1.api.app.v2.DeleteAppEntitlementEntitlementOwnerResponse: + description: DeleteAppEntitlementEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source on an entitlement. + title: Delete App Entitlement Entitlement Owner Response + type: object + x-speakeasy-name-override: DeleteAppEntitlementEntitlementOwnerResponse + c1.api.app.v2.DeleteAppEntitlementOwnerRequestInput: + description: DeleteEntitlementOwnerRequest is the request for deleting an entitlement ownership source. + properties: + appEntitlementRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + - type: "null" + title: Delete App Entitlement Owner Request + type: object + x-speakeasy-name-override: DeleteAppEntitlementOwnerRequest + c1.api.app.v2.DeleteAppEntitlementOwnerResponse: + description: DeleteEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source. + title: Delete App Entitlement Owner Response + type: object + x-speakeasy-name-override: DeleteAppEntitlementOwnerResponse + c1.api.app.v2.DeleteAppEntitlementUserOwnerRequestInput: + description: DeleteAppEntitlementUserOwnerRequest is the request for deleting a user ownership source on an entitlement. + properties: + userRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + title: Delete App Entitlement User Owner Request + type: object + x-speakeasy-name-override: DeleteAppEntitlementUserOwnerRequest + c1.api.app.v2.DeleteAppEntitlementUserOwnerResponse: + description: DeleteAppEntitlementUserOwnerResponse is the empty response for deleting a user ownership source on an entitlement. + title: Delete App Entitlement User Owner Response + type: object + x-speakeasy-name-override: DeleteAppEntitlementUserOwnerResponse + c1.api.app.v2.DeleteAppResourceEntitlementOwnerRequestInput: + description: DeleteAppResourceEntitlementOwnerRequest is the request for deleting an entitlement ownership source on a resource. + properties: + appEntitlementRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + - type: "null" + title: Delete App Resource Entitlement Owner Request + type: object + x-speakeasy-name-override: DeleteAppResourceEntitlementOwnerRequest + c1.api.app.v2.DeleteAppResourceEntitlementOwnerResponse: + description: DeleteAppResourceEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source on a resource. + title: Delete App Resource Entitlement Owner Response + type: object + x-speakeasy-name-override: DeleteAppResourceEntitlementOwnerResponse + c1.api.app.v2.DeleteAppResourceUserOwnerRequestInput: + description: DeleteAppResourceUserOwnerRequest is the request for deleting a user ownership source on a resource. + properties: + userRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + title: Delete App Resource User Owner Request + type: object + x-speakeasy-name-override: DeleteAppResourceUserOwnerRequest + c1.api.app.v2.DeleteAppResourceUserOwnerResponse: + description: DeleteAppResourceUserOwnerResponse is the empty response for deleting a user ownership source on a resource. + title: Delete App Resource User Owner Response + type: object + x-speakeasy-name-override: DeleteAppResourceUserOwnerResponse + c1.api.app.v2.DeleteAppUserEntitlementOwnerRequestInput: + description: DeleteAppUserEntitlementOwnerRequest is the request for deleting an entitlement ownership source on an app user. + properties: + appEntitlementRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + - type: "null" + title: Delete App User Entitlement Owner Request + type: object + x-speakeasy-name-override: DeleteAppUserEntitlementOwnerRequest + c1.api.app.v2.DeleteAppUserEntitlementOwnerResponse: + description: DeleteAppUserEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source on an app user. + title: Delete App User Entitlement Owner Response + type: object + x-speakeasy-name-override: DeleteAppUserEntitlementOwnerResponse + c1.api.app.v2.DeleteAppUserOwnerRequestInput: + description: DeleteUserOwnerRequest is the request for deleting a user ownership source. + properties: + userRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + title: Delete App User Owner Request + type: object + x-speakeasy-name-override: DeleteAppUserOwnerRequest + c1.api.app.v2.DeleteAppUserOwnerResponse: + description: DeleteUserOwnerResponse is the empty response for deleting a user ownership source. + title: Delete App User Owner Response + type: object + x-speakeasy-name-override: DeleteAppUserOwnerResponse + c1.api.app.v2.DeleteAppUserUserOwnerRequestInput: + description: DeleteAppUserUserOwnerRequest is the request for deleting a user ownership source on an app user. + properties: + userRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + title: Delete App User User Owner Request + type: object + x-speakeasy-name-override: DeleteAppUserUserOwnerRequest + c1.api.app.v2.DeleteAppUserUserOwnerResponse: + description: DeleteAppUserUserOwnerResponse is the empty response for deleting a user ownership source on an app user. + title: Delete App User User Owner Response + type: object + x-speakeasy-name-override: DeleteAppUserUserOwnerResponse + c1.api.app.v2.DeleteConnectorEntitlementOwnerRequestInput: + description: DeleteConnectorEntitlementOwnerRequest is the request for deleting an entitlement ownership source on a connector. + properties: + appEntitlementRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + - type: "null" + title: Delete Connector Entitlement Owner Request + type: object + x-speakeasy-name-override: DeleteConnectorEntitlementOwnerRequest + c1.api.app.v2.DeleteConnectorEntitlementOwnerResponse: + description: DeleteConnectorEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source on a connector. + title: Delete Connector Entitlement Owner Response + type: object + x-speakeasy-name-override: DeleteConnectorEntitlementOwnerResponse + c1.api.app.v2.DeleteConnectorUserOwnerRequestInput: + description: DeleteConnectorUserOwnerRequest is the request for deleting a user ownership source on a connector. + properties: + userRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + title: Delete Connector User Owner Request + type: object + x-speakeasy-name-override: DeleteConnectorUserOwnerRequest + c1.api.app.v2.DeleteConnectorUserOwnerResponse: + description: DeleteConnectorUserOwnerResponse is the empty response for deleting a user ownership source on a connector. + title: Delete Connector User Owner Response + type: object + x-speakeasy-name-override: DeleteConnectorUserOwnerResponse + c1.api.app.v2.GetAppEntitlementEntitlementOwnerResponse: + description: GetAppEntitlementEntitlementOwnerResponse is the response for getting an entitlement ownership source on an entitlement. + properties: + appEntitlementOwnerEntitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v2.AppEntitlementOwnerEntitlement' + - type: "null" + title: Get App Entitlement Entitlement Owner Response + type: object + x-speakeasy-name-override: GetAppEntitlementEntitlementOwnerResponse + c1.api.app.v2.GetAppEntitlementOwnerResponse: + description: GetEntitlementOwnerResponse is the response for getting an entitlement ownership source. + properties: + appOwnerEntitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v2.AppOwnerEntitlement' + - type: "null" + title: Get App Entitlement Owner Response + type: object + x-speakeasy-name-override: GetAppEntitlementOwnerResponse + c1.api.app.v2.GetAppEntitlementUserOwnerResponse: + description: GetAppEntitlementUserOwnerResponse is the response for getting a user ownership source on an entitlement. + properties: + appEntitlementOwnerUser: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v2.AppEntitlementOwnerUser' + - type: "null" + title: Get App Entitlement User Owner Response + type: object + x-speakeasy-name-override: GetAppEntitlementUserOwnerResponse + c1.api.app.v2.GetAppResourceEntitlementOwnerResponse: + description: GetAppResourceEntitlementOwnerResponse is the response for getting an entitlement ownership source on a resource. + properties: + appResourceOwnerEntitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v2.AppResourceOwnerEntitlement' + - type: "null" + title: Get App Resource Entitlement Owner Response + type: object + x-speakeasy-name-override: GetAppResourceEntitlementOwnerResponse + c1.api.app.v2.GetAppResourceUserOwnerResponse: + description: GetAppResourceUserOwnerResponse is the response for getting a user ownership source on a resource. + properties: + appResourceOwnerUser: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v2.AppResourceOwnerUser' + - type: "null" + title: Get App Resource User Owner Response + type: object + x-speakeasy-name-override: GetAppResourceUserOwnerResponse + c1.api.app.v2.GetAppUserOwnerResponse: + description: GetUserOwnerResponse is the response for getting a user ownership source. + properties: + appOwnerUser: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v2.AppOwnerUser' + - type: "null" + title: Get App User Owner Response + type: object + x-speakeasy-name-override: GetAppUserOwnerResponse + c1.api.app.v2.GetConnectorEntitlementOwnerResponse: + description: GetConnectorEntitlementOwnerResponse is the response for getting an entitlement ownership source on a connector. + properties: + connectorOwnerEntitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v2.ConnectorOwnerEntitlement' + - type: "null" + title: Get Connector Entitlement Owner Response + type: object + x-speakeasy-name-override: GetConnectorEntitlementOwnerResponse + c1.api.app.v2.GetConnectorUserOwnerResponse: + description: GetConnectorUserOwnerResponse is the response for getting a user ownership source on a connector. + properties: + connectorOwnerUser: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v2.ConnectorOwnerUser' + - type: "null" + title: Get Connector User Owner Response + type: object + x-speakeasy-name-override: GetConnectorUserOwnerResponse + c1.api.app.v2.SearchAppEntitlementEntitlementOwnersResponse: + description: SearchAppEntitlementEntitlementOwnersResponse is the response for searching entitlement ownership sources on an entitlement. + properties: + list: + description: The list field. items: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationExecution' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.app.v2.AppEntitlementOwnerEntitlement' + type: + - array + - "null" nextPageToken: - description: Token to retrieve the next page of results, empty when no more results exist. - readOnly: false + description: The nextPageToken field. type: string - title: List Automation Executions Response + title: Search App Entitlement Entitlement Owners Response type: object - x-speakeasy-name-override: ListAutomationExecutionsResponse - c1.api.automations.v1.ListAutomationsResponse: - description: The ListAutomationsResponse message. + x-speakeasy-name-override: SearchAppEntitlementEntitlementOwnersResponse + c1.api.app.v2.SearchAppEntitlementOwnersResponse: + description: SearchEntitlementOwnersResponse is the response for searching entitlement ownership sources. properties: list: - description: The page of automations. + description: The list field. items: - $ref: '#/components/schemas/c1.api.automations.v1.Automation' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.app.v2.AppOwnerEntitlement' + type: + - array + - "null" nextPageToken: - description: Token to retrieve the next page of results, empty when no more results exist. - readOnly: false + description: The nextPageToken field. type: string - title: List Automations Response + title: Search App Entitlement Owners Response type: object - x-speakeasy-name-override: ListAutomationsResponse - c1.api.automations.v1.ReassignAction: - description: | - The ReassignAction message. - - This message contains a oneof named assignee_user_identifier. Only a single field of the following list may be set at a time: - - assigneeUserIdCel - - assigneeUserRef - - - This message contains a oneof named subject_user_identifier. Only a single field of the following list may be set at a time: - - subjectUserIdCel - - subjectUserRef - nullable: true + x-speakeasy-name-override: SearchAppEntitlementOwnersResponse + c1.api.app.v2.SearchAppEntitlementUserOwnersResponse: + description: SearchAppEntitlementUserOwnersResponse is the response for searching user ownership sources on an entitlement. properties: - assigneeUserIdCel: - description: |- - The assigneeUserIdCel field. - This field is part of the `assignee_user_identifier` oneof. - See the documentation for `c1.api.automations.v1.ReassignAction` for more details. - nullable: true - readOnly: false - type: string - assigneeUserRef: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - subjectUserIdCel: - description: |- - The subjectUserIdCel field. - This field is part of the `subject_user_identifier` oneof. - See the documentation for `c1.api.automations.v1.ReassignAction` for more details. - nullable: true - readOnly: false + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.app.v2.AppEntitlementOwnerUser' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - subjectUserRef: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - useSubjectUser: - description: If true, the step will use the subject user of the automation as the subject. - readOnly: false - type: boolean - title: Reassign Action + title: Search App Entitlement User Owners Response type: object - x-speakeasy-name-override: ReassignAction - c1.api.automations.v1.RemoveFromDelegation: - description: | - RemoveFromDelegation: find all users that have the target user as their delegated user, and modify the delegation. - - This message contains a oneof named replacement_user. Only a single field of the following list may be set at a time: - - replacementUserIdCel - - replacementUserRef - nullable: true + x-speakeasy-name-override: SearchAppEntitlementUserOwnersResponse + c1.api.app.v2.SearchAppResourceEntitlementOwnersResponse: + description: SearchAppResourceEntitlementOwnersResponse is the response for searching entitlement ownership sources on a resource. properties: - replacementUserIdCel: - description: |- - The user who will replace the target user's delegation - This field is part of the `replacement_user` oneof. - See the documentation for `c1.api.automations.v1.RemoveFromDelegation` for more details. - nullable: true - readOnly: false - type: string - replacementUserRef: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - useSubjectUser: - description: If true, the step will use the subject user of the automation as the subject. - readOnly: false - type: boolean - userIdCel: - description: The userIdCel field. - readOnly: false + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.app.v2.AppResourceOwnerEntitlement' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - userRef: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - title: Remove From Delegation + title: Search App Resource Entitlement Owners Response type: object - x-speakeasy-name-override: RemoveFromDelegation - c1.api.automations.v1.ResolvePausedAutomationExecutionsRequestInput: - description: The ResolvePausedAutomationExecutionsRequest message. + x-speakeasy-name-override: SearchAppResourceEntitlementOwnersResponse + c1.api.app.v2.SearchAppResourceUserOwnersResponse: + description: SearchAppResourceUserOwnersResponse is the response for searching user ownership sources on a resource. properties: - decision: - description: Whether to run or cancel the paused executions. - enum: - - PAUSED_EXECUTION_DECISION_UNSPECIFIED - - PAUSED_EXECUTION_DECISION_RUN - - PAUSED_EXECUTION_DECISION_CANCEL - readOnly: false - type: string - x-speakeasy-unknown-values: allow - reason: - description: |- - Optional human-readable reason for the resolution decision. Stored on - the audit row (paused_run / paused_cancelled events) for post-mortem - and compliance use. Surfaced in the FE as a required field on CANCEL - so admins capture why bulk-cancellation happened. Up to 1024 bytes. - readOnly: false + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.app.v2.AppResourceOwnerUser' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - title: Resolve Paused Automation Executions Request + title: Search App Resource User Owners Response type: object - x-speakeasy-name-override: ResolvePausedAutomationExecutionsRequest - c1.api.automations.v1.ResolvePausedAutomationExecutionsResponse: - description: The ResolvePausedAutomationExecutionsResponse message. + x-speakeasy-name-override: SearchAppResourceUserOwnersResponse + c1.api.app.v2.SearchAppUserEntitlementOwnersResponse: + description: SearchAppUserEntitlementOwnersResponse is the response for searching entitlement ownership sources on an app user. properties: - bulkActionId: - description: |- - The bulk action ID created to resolve the paused executions. Track - progress via the BulkAction API. - readOnly: false + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.app.v2.AppUserOwnerEntitlement' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - erroredCount: - deprecated: true - description: 'Deprecated: see paused_count.' - format: uint32 - readOnly: false - type: integer - pausedCount: - deprecated: true - description: |- - Deprecated: previously returned inline resolution counts. Now returns - the bulk action ID for async tracking. - format: uint32 - readOnly: false - type: integer - title: Resolve Paused Automation Executions Response + title: Search App User Entitlement Owners Response type: object - x-speakeasy-name-override: ResolvePausedAutomationExecutionsResponse - c1.api.automations.v1.RunAutomation: - description: | - RunAutomation: kick off the execution of an automation template. - - This message contains a oneof named automation_template. Only a single field of the following list may be set at a time: - - automationTemplateRef - - automationTemplateIdCel - nullable: true + x-speakeasy-name-override: SearchAppUserEntitlementOwnersResponse + c1.api.app.v2.SearchAppUserOwnersResponse: + description: SearchUserOwnersResponse is the response for searching user ownership sources. properties: - automationTemplateIdCel: - description: |- - The automationTemplateIdCel field. - This field is part of the `automation_template` oneof. - See the documentation for `c1.api.automations.v1.RunAutomation` for more details. - nullable: true - readOnly: false + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.app.v2.AppOwnerUser' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - automationTemplateRef: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationTemplateRef' - context: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationContext' - title: Run Automation + title: Search App User Owners Response type: object - x-speakeasy-name-override: RunAutomation - c1.api.automations.v1.RunDelayed: - description: The RunDelayed message. - nullable: true + x-speakeasy-name-override: SearchAppUserOwnersResponse + c1.api.app.v2.SearchAppUserUserOwnersResponse: + description: SearchAppUserUserOwnersResponse is the response for searching user ownership sources on an app user. properties: - coldStartDelayDays: - description: The coldStartDelayDays field. - format: uint32 - readOnly: false - type: integer - required: - - coldStartDelayDays - title: Run Delayed - type: object - x-speakeasy-name-override: RunDelayed - c1.api.automations.v1.RunImmediately: - description: No fields needed; this just indicates the trigger should run immediately - nullable: true - title: Run Immediately + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.app.v2.AppUserOwnerUser' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. + type: string + title: Search App User User Owners Response type: object - x-speakeasy-name-override: RunImmediately - c1.api.automations.v1.ScheduleTrigger: - description: The ScheduleTrigger message. - nullable: true + x-speakeasy-name-override: SearchAppUserUserOwnersResponse + c1.api.app.v2.SearchConnectorEntitlementOwnersResponse: + description: SearchConnectorEntitlementOwnersResponse is the response for searching entitlement ownership sources on a connector. properties: - advanced: - description: The advanced field. - readOnly: false - type: boolean - condition: - description: The condition field. - readOnly: false - type: string - cronSpec: - description: The cronSpec field. - readOnly: false - type: string - skipIfTrueCel: - deprecated: true - description: The skipIfTrueCel field. - readOnly: false - type: string - start: - format: date-time - readOnly: false - type: string - timezone: - description: The timezone field. - readOnly: false + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.app.v2.ConnectorOwnerEntitlement' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - title: Schedule Trigger + title: Search Connector Entitlement Owners Response type: object - x-speakeasy-name-override: ScheduleTrigger - c1.api.automations.v1.ScheduleTriggerAppUser: - description: The ScheduleTriggerAppUser message. - nullable: true + x-speakeasy-name-override: SearchConnectorEntitlementOwnersResponse + c1.api.app.v2.SearchConnectorUserOwnersResponse: + description: SearchConnectorUserOwnersResponse is the response for searching user ownership sources on a connector. properties: - appId: - description: The appId field. - readOnly: false - type: string - condition: - description: The condition field. - readOnly: false - type: string - cronSpec: - description: The cronSpec field. - readOnly: false - type: string - start: - format: date-time - readOnly: false - type: string - timezone: - description: The timezone field. - readOnly: false + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.app.v2.ConnectorOwnerUser' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - title: Schedule Trigger App User + title: Search Connector User Owners Response type: object - x-speakeasy-name-override: ScheduleTriggerAppUser - c1.api.automations.v1.ScheduleTriggerNoUser: - description: |- - ScheduleTriggerNoUser fires on a cron schedule with no subject user (e.g. reports, syncs, orchestration). - Minimum cron interval is enforced at 1 hour in validation. - nullable: true + x-speakeasy-name-override: SearchConnectorUserOwnersResponse + c1.api.app.v2.SetAppEntitlementOwnersRequestInput: + description: SetAppEntitlementOwnersRequest is the request for setting the owners of an app entitlement for a given role. properties: - advanced: - description: The advanced field. - readOnly: false - type: boolean - cronSpec: - description: The cronSpec field. - readOnly: false - type: string - start: - format: date-time - readOnly: false + appEntitlementRefs: + description: The appEntitlementRefs field. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + roleSlug: + description: The roleSlug field. type: string - timezone: - description: The timezone field. - readOnly: false + userRefs: + description: The userRefs field. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserRef' + type: + - array + - "null" + title: Set App Entitlement Owners Request + type: object + x-speakeasy-name-override: SetAppEntitlementOwnersRequestV2 + c1.api.app.v2.SetAppEntitlementOwnersResponse: + description: SetAppEntitlementOwnersResponse is the empty response for setting app entitlement owners. + title: Set App Entitlement Owners Response + type: object + x-speakeasy-name-override: SetAppEntitlementOwnersResponseV2 + c1.api.app.v2.SetAppOwnersRequestInput: + description: SetAppOwnersRequest is the request for setting user owners for an app and role. + properties: + appEntitlementRefs: + description: The appEntitlementRefs field. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + roleSlug: + description: The roleSlug field. type: string - title: Schedule Trigger No User + userRefs: + description: The userRefs field. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserRef' + type: + - array + - "null" + title: Set App Owners Request type: object - x-speakeasy-name-override: ScheduleTriggerNoUser - c1.api.automations.v1.SearchAllAutomationExecutionsRequest: - description: The SearchAllAutomationExecutionsRequest message. + x-speakeasy-name-override: SetAppOwnersRequestV2 + c1.api.app.v2.SetAppOwnersResponse: + description: SetAppOwnersResponse is the empty response for setting app owners. + title: Set App Owners Response + type: object + x-speakeasy-name-override: SetAppOwnersResponseV2 + c1.api.app.v2.SetAppResourceOwnersV2RequestInput: + description: SetAppResourceOwnersV2Request is the request for setting the owners of an app resource for a given role. properties: - appIds: - description: Filter to executions associated with one or more apps. + appEntitlementRefs: + description: The appEntitlementRefs field. items: - type: string - nullable: true - readOnly: false - type: array - automationTemplateIds: - description: Filter to one or more specific automation templates. + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + roleSlug: + description: The roleSlug field. + type: string + userRefs: + description: The userRefs field. items: - type: string - nullable: true - readOnly: false - type: array - executionStates: - description: Filter by execution state (e.g. DONE, ERROR). + $ref: '#/components/schemas/c1.api.user.v1.UserRef' + type: + - array + - "null" + title: Set App Resource Owners V 2 Request + type: object + x-speakeasy-name-override: SetAppResourceOwnersV2Request + c1.api.app.v2.SetAppResourceOwnersV2Response: + description: SetAppResourceOwnersV2Response is the empty response for setting app resource owners. + title: Set App Resource Owners V 2 Response + type: object + x-speakeasy-name-override: SetAppResourceOwnersV2Response + c1.api.app.v2.SetAppUserOwnersV2RequestInput: + description: SetAppUserOwnersV2Request is the request for setting the owners of an app user for a given role. + properties: + appEntitlementRefs: + description: The appEntitlementRefs field. items: - enum: - - AUTOMATION_EXECUTION_STATE_UNSPECIFIED - - AUTOMATION_EXECUTION_STATE_PENDING - - AUTOMATION_EXECUTION_STATE_CREATING - - AUTOMATION_EXECUTION_STATE_GET_STEP - - AUTOMATION_EXECUTION_STATE_PROCESS_STEP - - AUTOMATION_EXECUTION_STATE_COMPLETE_STEP - - AUTOMATION_EXECUTION_STATE_DONE - - AUTOMATION_EXECUTION_STATE_ERROR - - AUTOMATION_EXECUTION_STATE_TERMINATE - - AUTOMATION_EXECUTION_STATE_WAITING - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - expandMask: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationExecutionExpandMask' - pageSize: - description: Maximum number of results to return per page. - format: int32 - readOnly: false - type: integer - pageToken: - description: Pagination token from a previous SearchAllAutomationExecutionsResponse. - readOnly: false + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + roleSlug: + description: The roleSlug field. type: string - subjectUserIds: - description: Filter to executions where one or more C1 users are subjects. + userRefs: + description: The userRefs field. items: - type: string - nullable: true - readOnly: false - type: array - title: Search All Automation Executions Request + $ref: '#/components/schemas/c1.api.user.v1.UserRef' + type: + - array + - "null" + title: Set App User Owners V 2 Request type: object - x-speakeasy-name-override: SearchAllAutomationExecutionsRequest - c1.api.automations.v1.SearchAllAutomationExecutionsResponse: - description: The SearchAllAutomationExecutionsResponse message. + x-speakeasy-name-override: SetAppUserOwnersV2Request + c1.api.app.v2.SetAppUserOwnersV2Response: + description: SetAppUserOwnersV2Response is the empty response for setting app user owners. + title: Set App User Owners V 2 Response + type: object + x-speakeasy-name-override: SetAppUserOwnersV2Response + c1.api.app.v2.SetConnectorOwnersV2RequestInput: + description: SetConnectorOwnersV2Request is the request for setting the owners of a connector for a given role. properties: - expanded: - description: Related objects requested via the expand mask. + appEntitlementRefs: + description: The appEntitlementRefs field. items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - list: - description: The page of execution views matching the search criteria. + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + roleSlug: + description: The role slug for this ownership grant. Required. + type: string + userRefs: + description: The userRefs field. items: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationExecutionView' - nullable: true - readOnly: false - type: array - nextPageToken: - description: Token to retrieve the next page of results, empty when no more results exist. - readOnly: false + $ref: '#/components/schemas/c1.api.user.v1.UserRef' + type: + - array + - "null" + title: Set Connector Owners V 2 Request + type: object + x-speakeasy-name-override: SetConnectorOwnersV2Request + c1.api.app.v2.SetConnectorOwnersV2Response: + description: SetConnectorOwnersV2Response is the empty response for setting connector owners. + title: Set Connector Owners V 2 Response + type: object + x-speakeasy-name-override: SetConnectorOwnersV2Response + c1.api.attribute.v1.AttributeType: + description: AttributeType defines the type of an attribute. + properties: + id: + description: The ID of the AttributeType. type: string - title: Search All Automation Executions Response + name: + description: The name of the AttributeType. + type: string + title: Attribute Type type: object - x-speakeasy-name-override: SearchAllAutomationExecutionsResponse - c1.api.automations.v1.SearchAutomationExecutionsRequest: - description: The SearchAutomationExecutionsRequest message. + x-speakeasy-name-override: AttributeType + c1.api.attribute.v1.AttributeValue: + description: AttributeValue is the value of an attribute of a defined type. properties: - automationTemplateId: - description: Filter results to executions of this automation template. - readOnly: false + attributeTypeId: + description: The ID of the AttributeType that this AttributeValue belongs to. type: string - executionId: - description: Filter results to a specific execution by its numeric identifier. - format: int64 - readOnly: false + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + id: + description: The ID of the AttributeValue. type: string - executionStepStates: - description: Filter results to executions in any of the specified states. - items: - enum: - - AUTOMATION_EXECUTION_STATE_UNSPECIFIED - - AUTOMATION_EXECUTION_STATE_PENDING - - AUTOMATION_EXECUTION_STATE_CREATING - - AUTOMATION_EXECUTION_STATE_GET_STEP - - AUTOMATION_EXECUTION_STATE_PROCESS_STEP - - AUTOMATION_EXECUTION_STATE_COMPLETE_STEP - - AUTOMATION_EXECUTION_STATE_DONE - - AUTOMATION_EXECUTION_STATE_ERROR - - AUTOMATION_EXECUTION_STATE_TERMINATE - - AUTOMATION_EXECUTION_STATE_WAITING - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - expandMask: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationExecutionExpandMask' - pageSize: - description: Maximum number of results to return per page. - format: int32 - readOnly: false - type: integer - pageToken: - description: Pagination token from a previous SearchAutomationExecutionsResponse. - readOnly: false + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + value: + description: The value of the AttributeValue. This is the string that will be displayed to the user. type: string - query: - description: Free-text search query to filter executions. - readOnly: false + title: Attribute Value + type: object + x-speakeasy-name-override: AttributeValue + c1.api.attribute.v1.CreateAttributeValueRequest: + description: The CreateAttributeValueRequest message. + properties: + attributeTypeId: + description: The attributeTypeId field. type: string - refs: - description: Restrict results to specific execution references. - items: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationExecutionRef' - nullable: true - readOnly: false - type: array - title: Search Automation Executions Request + value: + description: The value field. + type: string + title: Create Attribute Value Request type: object - x-speakeasy-name-override: SearchAutomationExecutionsRequest - c1.api.automations.v1.SearchAutomationExecutionsResponse: - description: The SearchAutomationExecutionsResponse message. + x-speakeasy-name-override: CreateAttributeValueRequest + c1.api.attribute.v1.CreateAttributeValueResponse: + description: CreateAttributeValueResponse is the response for creating an attribute value. + properties: + value: + oneOf: + - $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' + - type: "null" + title: Create Attribute Value Response + type: object + x-speakeasy-name-override: CreateAttributeValueResponse + c1.api.attribute.v1.CreateComplianceFrameworkAttributeValueRequest: + description: The CreateComplianceFrameworkAttributeValueRequest message. + properties: + value: + description: The value field. + type: string + title: Create Compliance Framework Attribute Value Request + type: object + x-speakeasy-name-override: CreateComplianceFrameworkAttributeValueRequest + c1.api.attribute.v1.CreateComplianceFrameworkAttributeValueResponse: + description: The CreateComplianceFrameworkAttributeValueResponse message. + properties: + value: + oneOf: + - $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' + - type: "null" + title: Create Compliance Framework Attribute Value Response + type: object + x-speakeasy-name-override: CreateComplianceFrameworkAttributeValueResponse + c1.api.attribute.v1.CreateRiskLevelAttributeValueRequest: + description: The CreateRiskLevelAttributeValueRequest message. + properties: + value: + description: The value field. + type: string + title: Create Risk Level Attribute Value Request + type: object + x-speakeasy-name-override: CreateRiskLevelAttributeValueRequest + c1.api.attribute.v1.CreateRiskLevelAttributeValueResponse: + description: The CreateRiskLevelAttributeValueResponse message. + properties: + value: + oneOf: + - $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' + - type: "null" + title: Create Risk Level Attribute Value Response + type: object + x-speakeasy-name-override: CreateRiskLevelAttributeValueResponse + c1.api.attribute.v1.DeleteAttributeValueRequestInput: + description: The DeleteAttributeValueRequest message. + title: Delete Attribute Value Request + type: object + x-speakeasy-name-override: DeleteAttributeValueRequest + c1.api.attribute.v1.DeleteAttributeValueResponse: + description: DeleteAttributeValueResponse is the empty response for deleting an attribute value. + title: Delete Attribute Value Response + type: object + x-speakeasy-name-override: DeleteAttributeValueResponse + c1.api.attribute.v1.DeleteComplianceFrameworkAttributeValueRequestInput: + description: The DeleteComplianceFrameworkAttributeValueRequest message. + title: Delete Compliance Framework Attribute Value Request + type: object + x-speakeasy-name-override: DeleteComplianceFrameworkAttributeValueRequest + c1.api.attribute.v1.DeleteComplianceFrameworkAttributeValueResponse: + description: The DeleteComplianceFrameworkAttributeValueResponse message. + title: Delete Compliance Framework Attribute Value Response + type: object + x-speakeasy-name-override: DeleteComplianceFrameworkAttributeValueResponse + c1.api.attribute.v1.DeleteRiskLevelAttributeValueRequestInput: + description: The DeleteRiskLevelAttributeValueRequest message. + title: Delete Risk Level Attribute Value Request + type: object + x-speakeasy-name-override: DeleteRiskLevelAttributeValueRequest + c1.api.attribute.v1.DeleteRiskLevelAttributeValueResponse: + description: The DeleteRiskLevelAttributeValueResponse message. + title: Delete Risk Level Attribute Value Response + type: object + x-speakeasy-name-override: DeleteRiskLevelAttributeValueResponse + c1.api.attribute.v1.GetAttributeValueResponse: + description: GetAttributeValueResponse is the response for getting an attribute value by id. + properties: + value: + oneOf: + - $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' + - type: "null" + title: Get Attribute Value Response + type: object + x-speakeasy-name-override: GetAttributeValueResponse + c1.api.attribute.v1.GetComplianceFrameworkAttributeValueResponse: + description: The GetComplianceFrameworkAttributeValueResponse message. + properties: + value: + oneOf: + - $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' + - type: "null" + title: Get Compliance Framework Attribute Value Response + type: object + x-speakeasy-name-override: GetComplianceFrameworkAttributeValueResponse + c1.api.attribute.v1.GetRiskLevelAttributeValueResponse: + description: The GetRiskLevelAttributeValueResponse message. + properties: + value: + oneOf: + - $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' + - type: "null" + title: Get Risk Level Attribute Value Response + type: object + x-speakeasy-name-override: GetRiskLevelAttributeValueResponse + c1.api.attribute.v1.ListAttributeTypesResponse: + description: ListAttributeTypesResponse is the response for listing attribute types. properties: - expanded: - description: Related objects requested via the expand mask. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array list: - description: The page of execution views matching the search criteria. + description: The list of AttributeTypes. items: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationExecutionView' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.attribute.v1.AttributeType' + type: + - array + - "null" nextPageToken: - description: Token to retrieve the next page of results, empty when no more results exist. - readOnly: false + description: |- + The nextPageToken is shown for the next page if the number of results is larger than the max page size. + The server returns one page of results and the nextPageToken until all results are retreived. + To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. type: string - title: Search Automation Executions Response + title: List Attribute Types Response type: object - x-speakeasy-name-override: SearchAutomationExecutionsResponse - c1.api.automations.v1.SearchAutomationTemplateVersionsRequest: - description: The SearchAutomationTemplateVersionsRequest message. + x-speakeasy-name-override: ListAttributeTypesResponse + c1.api.attribute.v1.ListAttributeValuesResponse: + description: ListAttributeValuesResponse is the response for listing attribute values for a given AttributeType. properties: - automationTemplateId: - description: The automation template whose version history to search. - readOnly: false - type: string - pageSize: - description: Maximum number of results to return per page. - format: int32 - readOnly: false - type: integer - pageToken: - description: Pagination token from a previous SearchAutomationTemplateVersionsResponse. - readOnly: false + list: + description: The list of AttributeValues. + items: + $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' + type: + - array + - "null" + nextPageToken: + description: |- + The nextPageToken is shown for the next page if the number of results is larger than the max page size. + The server returns one page of results and the nextPageToken until all results are retreived. + To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. type: string - title: Search Automation Template Versions Request + title: List Attribute Values Response type: object - x-speakeasy-name-override: SearchAutomationTemplateVersionsRequest - c1.api.automations.v1.SearchAutomationTemplateVersionsResponse: - description: The SearchAutomationTemplateVersionsResponse message. + x-speakeasy-name-override: ListAttributeValuesResponse + c1.api.attribute.v1.ListComplianceFrameworksResponse: + description: ListComplianceFrameworksResponse is the response for listing compliance framework attribute values. properties: list: - description: The page of template versions matching the search criteria. + description: The list of compliance framework attribute values. items: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationTemplateVersion' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' + type: + - array + - "null" nextPageToken: - description: Token to retrieve the next page of results, empty when no more results exist. - readOnly: false + description: The token to retrieve the next page of results, or empty if there are no more results. type: string - title: Search Automation Template Versions Response + title: List Compliance Frameworks Response type: object - x-speakeasy-name-override: SearchAutomationTemplateVersionsResponse - c1.api.automations.v1.SearchAutomationsRequest: - description: The SearchAutomationsRequest message. + x-speakeasy-name-override: ListComplianceFrameworksResponse + c1.api.attribute.v1.ListRiskLevelsResponse: + description: ListRiskLevelsResponse is the response for listing risk level attribute values. properties: - appId: - description: Filter results to automations belonging to this application. - readOnly: false + list: + description: The list of risk level attribute values. + items: + $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' + type: + - array + - "null" + nextPageToken: + description: The token to retrieve the next page of results, or empty if there are no more results. type: string - appIds: - description: |- - Filter results to automations belonging to any of the specified apps. - Supersedes the singular `app_id` field when non-empty; when empty, the - server falls back to `app_id` for backward compatibility. + title: List Risk Levels Response + type: object + x-speakeasy-name-override: ListRiskLevelsResponse + c1.api.attribute.v1.SearchAttributeValuesRequest: + description: Search Attributes by a few properties. + properties: + attributeTypeIds: + description: The attribute type ids for what type of attributes to search for. items: type: string - nullable: true - readOnly: false - type: array - direction: - description: |- - Direction to sort in. Unspecified falls back to ASC when sort_field is set; - when sort_field is also unspecified, the server default order (created_at - DESC) applies. - enum: - - SORT_DIRECTION_UNSPECIFIED - - SORT_DIRECTION_ASC - - SORT_DIRECTION_DESC - readOnly: false - type: string - x-speakeasy-unknown-values: allow - isDraft: - description: |- - Tri-state draft filter. Unset = include both drafts and published; - `true` = drafts only; `false` = published only. - nullable: true - readOnly: false - type: boolean + type: + - array + - "null" + excludeIds: + description: Exclude attributes with these ids from the search results. + items: + type: string + type: + - array + - "null" + ids: + description: Include attributes with these ids in the search results. + items: + type: string + type: + - array + - "null" pageSize: - description: Maximum number of results to return per page. + description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) format: int32 - readOnly: false type: integer pageToken: - description: Pagination token from a previous SearchAutomationsResponse. - readOnly: false + description: The pageToken field. type: string query: - description: Free-text search query to filter automations by name or description. - readOnly: false + description: Query the attributes with a fuzzy search on display name and description. type: string - refs: - description: Restrict results to automations matching these template references. + value: + description: Search for attributes with a case insensitive match on the attribute value which is the attribute name. + type: string + title: Search Attribute Values Request + type: object + x-speakeasy-name-override: SearchAttributeValuesRequest + c1.api.attribute.v1.SearchAttributeValuesResponse: + description: SearchAttributeValuesResponse is the response for searching AttributeValues. + properties: + list: + description: The list of returned AttributeValues. items: - $ref: '#/components/schemas/c1.api.automations.v1.AutomationTemplateRef' - nullable: true - readOnly: false - type: array - sortField: - description: Column to sort by. Unspecified (0) means sort by created_at desc (server default). - enum: - - AUTOMATION_SORT_FIELD_UNSPECIFIED - - AUTOMATION_SORT_FIELD_DISPLAY_NAME - - AUTOMATION_SORT_FIELD_CREATED_AT - - AUTOMATION_SORT_FIELD_LAST_EXECUTED_AT - - AUTOMATION_SORT_FIELD_ENABLED - - AUTOMATION_SORT_FIELD_PRIMARY_TRIGGER_TYPE - readOnly: false + $ref: '#/components/schemas/c1.api.attribute.v1.AttributeValue' + type: + - array + - "null" + nextPageToken: + description: |- + The nextPageToken is shown for the next page if the number of results is larger than the max page size. + The server returns one page of results and the nextPageToken until all results are retreived. + To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. type: string - x-speakeasy-unknown-values: allow - statuses: + title: Search Attribute Values Response + type: object + x-speakeasy-name-override: SearchAttributeValuesResponse + c1.api.auth.v1.IntrospectResponse: + description: IntrospectResponse contains information about the current user who is authenticated. + properties: + deviceClientId: description: |- - Filter results by automation status. Empty or containing both ON and OFF - applies no status filter. + The OAuth client_id of the device client registered for this token. Present + only on tokens issued by the device registration grant; the client reads it + once and presents it on the subsequent token exchange. Empty for all other + tokens. + type: string + disabledModules: + description: |- + The modules turned off for the tenant the logged in user belongs to. Absent + from this list means enabled: every module is on by default. Clients MUST + treat an unrecognized value as "a module this client does not know about is + disabled". items: enum: - - AUTOMATION_STATUS_FILTER_UNSPECIFIED - - AUTOMATION_STATUS_FILTER_ON - - AUTOMATION_STATUS_FILTER_OFF + - MODULE_ID_UNSPECIFIED + - MODULE_ID_SECRET_SHARING type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - triggerTypes: - description: Filter results to automations with any of the specified trigger types. + type: + - array + - "null" + features: + description: The list of feature flags enabled for the tenant the logged in user belongs to. items: - enum: - - TRIGGER_TYPE_UNSPECIFIED - - TRIGGER_TYPE_USER_PROFILE_CHANGE - - TRIGGER_TYPE_APP_USER_CREATE - - TRIGGER_TYPE_APP_USER_UPDATE - - TRIGGER_TYPE_UNUSED_ACCESS - - TRIGGER_TYPE_USER_CREATED - - TRIGGER_TYPE_GRANT_FOUND - - TRIGGER_TYPE_GRANT_DELETED - - TRIGGER_TYPE_WEBHOOK - - TRIGGER_TYPE_SCHEDULE - - TRIGGER_TYPE_FORM - - TRIGGER_TYPE_SCHEDULE_APP_USER - - TRIGGER_TYPE_ACCESS_CONFLICT - - TRIGGER_TYPE_SCHEDULE_NO_USER + type: string + type: + - array + - "null" + permissions: + description: The list of permissions that the current logged in user has. + items: + type: string + type: + - array + - "null" + principleId: + description: The principleID of the current logged in user. + type: string + roles: + description: The list of roles that the current logged in user has. + items: + type: string + type: + - array + - "null" + tenantId: + description: The tenantID from the authenticated caller's passport. + type: string + userId: + description: The userID of the current logged in user. + type: string + title: Introspect Response + type: object + x-speakeasy-name-override: IntrospectResponse + c1.api.auth_config.v1.AuthConfigC1Local: + description: The AuthConfigC1Local message. + properties: + delegatedVerifiers: + description: The delegatedVerifiers field. + items: + enum: + - DELEGATED_VERIFIER_TYPE_UNSPECIFIED + - DELEGATED_VERIFIER_TYPE_GOOGLE + - DELEGATED_VERIFIER_TYPE_MICROSOFT + - DELEGATED_VERIFIER_TYPE_GITHUB type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - title: Search Automations Request + type: + - array + - "null" + title: Auth Config C 1 Local type: object - x-speakeasy-name-override: SearchAutomationsRequest - c1.api.automations.v1.SearchAutomationsResponse: - description: The SearchAutomationsResponse message. + x-speakeasy-name-override: AuthConfigC1Local + c1.api.auth_config.v1.AuthConfigGoogle: + description: The AuthConfigGoogle message. properties: - list: - description: The page of automations matching the search criteria. + additionalHostedDomains: + description: Additional hosted domains accepted at login beyond hosted_domains. items: - $ref: '#/components/schemas/c1.api.automations.v1.Automation' - nullable: true - readOnly: false - type: array - nextPageToken: - description: Token to retrieve the next page of results, empty when no more results exist. - readOnly: false - type: string - title: Search Automations Response + type: string + readOnly: true + type: + - array + - "null" + hostedDomains: + description: The hostedDomains field. + items: + type: string + type: + - array + - "null" + title: Auth Config Google type: object - x-speakeasy-name-override: SearchAutomationsResponse - c1.api.automations.v1.SendEmail: - description: The SendEmail message. - nullable: true + x-speakeasy-name-override: AuthConfigGoogle + c1.api.auth_config.v1.AuthConfigJumpCloud: + description: The AuthConfigJumpCloud message. properties: - body: - description: The body field. - readOnly: false - type: string - email: - deprecated: true - description: |- - Deprecated: use email_cel instead. Static email field shipped behind FF 541 (SKU_MANUAL) - with zero tenant enablement. CEL subsumes static: '"ops@example.com"' is valid CEL. - readOnly: false + oidcClientId: + description: The oidcClientId field. type: string - emailCel: - description: |- - CEL expression resolving to one or more email addresses (string or list). - Evaluated against the workflow execution context (trigger + completed steps). - Static emails work too: '"ops@example.com"' is valid CEL. - Supports list for multiple recipients: '["a@x.com", "b@x.com"]'. - Requires the tenant to have a TenantEmailProvider configured. - readOnly: false + oidcClientSecret: + description: Write-only. Never returned in get/list. type: string - subject: - description: The subject field. - readOnly: false + title: Auth Config Jump Cloud + type: object + x-speakeasy-name-override: AuthConfigJumpCloud + c1.api.auth_config.v1.AuthConfigMicrosoft: + description: The AuthConfigMicrosoft message. + properties: + tenantIds: + description: The tenantIds field. + items: + type: string + type: + - array + - "null" + title: Auth Config Microsoft + type: object + x-speakeasy-name-override: AuthConfigMicrosoft + c1.api.auth_config.v1.AuthConfigOIDC: + description: The AuthConfigOIDC message. + properties: + exactMatchClaims: + additionalProperties: + type: string + description: The exactMatchClaims field. + type: object + issuerId: + description: The issuerId field. type: string - title: - description: The title field. - readOnly: false + oidcClientId: + description: The oidcClientId field. type: string - useSubjectUser: - description: If true, the step will use the subject user of the automation as the subject. - readOnly: false - type: boolean - userIdsCel: - description: The userIdsCel field. - readOnly: false + oidcClientSecret: + description: The oidcClientSecret field. type: string - userRefs: - description: The userRefs field. + scopes: + description: The scopes field. items: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - nullable: true - readOnly: false - type: array - title: Send Email + type: string + type: + - array + - "null" + title: Auth Config Oidc type: object - x-speakeasy-name-override: SendEmail - c1.api.automations.v1.SendSlackMessage: - description: | - SendSlackMessage posts to a channel or DMs one or more users. Delivery mode is - inferred from which fields are populated: DM if any user field is set - (use_subject_user, user_ids_cel, user_refs), otherwise channel. Priority for DM - recipient resolution: use_subject_user > user_ids_cel > user_refs. - - This message contains a oneof named channel. Only a single field of the following list may be set at a time: - - channelName - - channelNameCel - nullable: true + x-speakeasy-name-override: AuthConfigOIDC + c1.api.auth_config.v1.AuthConfigOkta: + description: The AuthConfigOkta message. properties: - body: - description: The body field. - readOnly: false - type: string - channelName: - description: |- - The channelName field. - This field is part of the `channel` oneof. - See the documentation for `c1.api.automations.v1.SendSlackMessage` for more details. - nullable: true - readOnly: false + domain: + description: The domain field. type: string - channelNameCel: - description: |- - The channelNameCel field. - This field is part of the `channel` oneof. - See the documentation for `c1.api.automations.v1.SendSlackMessage` for more details. - nullable: true - readOnly: false + oidcClientId: + description: The oidcClientId field. type: string - useSubjectUser: - description: The useSubjectUser field. - readOnly: false - type: boolean - userIdsCel: - description: The userIdsCel field. - readOnly: false + oidcClientSecret: + description: Write-only. Never returned in get/list. type: string - userRefs: - description: The userRefs field. - items: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - nullable: true - readOnly: false - type: array - title: Send Slack Message + title: Auth Config Okta type: object - x-speakeasy-name-override: SendSlackMessage - c1.api.automations.v1.SetCredential: - description: | - SetCredential submits a RotateCredentials baton task to the target connector, - re-encrypting the given password CEL expression with the connector's public JWK. - - This message contains a oneof named connector_identifier. Only a single field of the following list may be set at a time: - - connectorRef - nullable: true + x-speakeasy-name-override: AuthConfigOkta + c1.api.auth_config.v1.AuthConfigOneLogin: + description: The AuthConfigOneLogin message. properties: - accountIdCel: - description: The accountIdCel field. - readOnly: false + domain: + description: The domain field. type: string - connectorRef: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorRef' - passwordCel: - description: The passwordCel field. - readOnly: false + oidcClientId: + description: The oidcClientId field. type: string - title: Set Credential + oidcClientSecret: + description: The oidcClientSecret field. + type: string + title: Auth Config One Login type: object - x-speakeasy-name-override: SetCredential - c1.api.automations.v1.StoreCredential: - description: |- - StoreCredential stores a credential from GeneratePassword in a vault. - Supports Paper Vault (SSO/email) and App Vault (entitlement-bound). - nullable: true + x-speakeasy-name-override: AuthConfigOneLogin + c1.api.auth_config.v1.AuthConfigPingOne: + description: The AuthConfigPingOne message. properties: - appIdCel: - description: CEL expression that resolves to app ID (App Vault only) - readOnly: false - type: string - authType: - description: Authentication type for the paper vault recipient (Paper Vault only) - enum: - - STORE_CREDENTIAL_AUTH_TYPE_UNSPECIFIED - - STORE_CREDENTIAL_AUTH_TYPE_SSO_INTERNAL - - STORE_CREDENTIAL_AUTH_TYPE_VERIFY_EMAIL - readOnly: false + environmentId: + description: The environmentId field. type: string - x-speakeasy-unknown-values: allow - credentialCel: - description: CEL expression that resolves to the encrypted credential from GeneratePassword - readOnly: false + oidcClientId: + description: The oidcClientId field. type: string - expiry: - format: duration - readOnly: false + oidcClientSecret: + description: The oidcClientSecret field. type: string - labelCel: - description: Optional display label for the vault - readOnly: false + title: Auth Config Ping One + type: object + x-speakeasy-name-override: AuthConfigPingOne + c1.api.auth_config.v1.TenantAuthConfig: + description: | + The TenantAuthConfig message. + + This message contains a oneof named provider_config. Only a single field of the following list may be set at a time: + - google + - microsoft + - okta + - onelogin + - jumpcloud + - pingone + - oidc + - c1Local + properties: + bootstrapDomains: + description: 'Bootstrap routing: email domains that route unknown users to this config.' + items: + type: string + type: + - array + - "null" + c1Local: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigC1Local' + - type: "null" + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + deprecationDeadline: + format: date-time + type: + - string + - "null" + deprecationMessage: + description: User-visible message shown when status=DEPRECATED. type: string - maxViews: - description: Maximum number of views (0 = unlimited, default 1) (Paper Vault only) - format: uint32 - readOnly: false - type: integer - recipientCel: - description: CEL expression resolving to the C1 user ID of the recipient (SSO_INTERNAL / App Vault) - readOnly: false + displayName: + description: The displayName field. type: string - recipientEmailCel: - description: CEL expression resolving to a recipient email address (Paper Vault + VERIFY_EMAIL only) - readOnly: false + google: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigGoogle' + - type: "null" + id: + description: The id field. type: string - ttl: - format: duration - readOnly: false + isDefaultBootstrap: + description: The isDefaultBootstrap field. + type: boolean + jumpcloud: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigJumpCloud' + - type: "null" + microsoft: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigMicrosoft' + - type: "null" + oidc: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigOIDC' + - type: "null" + okta: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigOkta' + - type: "null" + onelogin: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigOneLogin' + - type: "null" + pingone: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigPingOne' + - type: "null" + providerType: + description: Provider type (read-only after creation — provider config determines type). + enum: + - AUTH_CONFIG_PROVIDER_TYPE_UNSPECIFIED + - AUTH_CONFIG_PROVIDER_TYPE_GOOGLE + - AUTH_CONFIG_PROVIDER_TYPE_MICROSOFT + - AUTH_CONFIG_PROVIDER_TYPE_OKTA + - AUTH_CONFIG_PROVIDER_TYPE_ONELOGIN + - AUTH_CONFIG_PROVIDER_TYPE_JUMPCLOUD + - AUTH_CONFIG_PROVIDER_TYPE_PINGONE + - AUTH_CONFIG_PROVIDER_TYPE_OIDC + - AUTH_CONFIG_PROVIDER_TYPE_C1_LOCAL + readOnly: true type: string - vaultType: - description: 'Vault type selector (default: PAPER_VAULT for backward compatibility)' + x-speakeasy-unknown-values: allow + status: + description: The status field. enum: - - STORE_CREDENTIAL_VAULT_TYPE_UNSPECIFIED - - STORE_CREDENTIAL_VAULT_TYPE_PAPER_VAULT - - STORE_CREDENTIAL_VAULT_TYPE_APP_VAULT - readOnly: false + - AUTH_CONFIG_STATUS_UNSPECIFIED + - AUTH_CONFIG_STATUS_ACTIVE + - AUTH_CONFIG_STATUS_DEPRECATED + - AUTH_CONFIG_STATUS_DISABLED type: string x-speakeasy-unknown-values: allow - title: Store Credential + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Tenant Auth Config type: object - x-speakeasy-name-override: StoreCredential - c1.api.automations.v1.TaskAction: + x-speakeasy-name-override: TenantAuthConfig + c1.api.auth_config.v1.TenantAuthConfigServiceCreateRequest: description: | - The TaskAction message. + The TenantAuthConfigServiceCreateRequest message. - This message contains a oneof named action. Only a single field of the following list may be set at a time: - - close - - reassign - nullable: true + This message contains a oneof named provider_config. Only a single field of the following list may be set at a time: + - google + - microsoft + - okta + - onelogin + - jumpcloud + - pingone + - oidc + - c1Local properties: - close: - $ref: '#/components/schemas/c1.api.automations.v1.CloseAction' - reassign: - $ref: '#/components/schemas/c1.api.automations.v1.ReassignAction' - taskTypes: - description: The taskTypes field. + bootstrapDomains: + description: Email domains that route unknown users to this authentication provider during login. items: - enum: - - TASK_TYPE_UNSPECIFIED - - TASK_TYPE_REQUEST - - TASK_TYPE_REVOKE - - TASK_TYPE_REVIEW type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - taskUserRelation: - description: The taskUserRelation field. + type: + - array + - "null" + c1Local: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigC1Local' + - type: "null" + deprecationDeadline: + format: date-time + type: + - string + - "null" + deprecationMessage: + description: A user-visible message explaining why the provider is deprecated. + type: string + displayName: + description: The human-readable name for this authentication provider. + type: string + google: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigGoogle' + - type: "null" + isDefaultBootstrap: + description: Whether this provider is the default for users whose email domain has no explicit mapping. + type: boolean + jumpcloud: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigJumpCloud' + - type: "null" + microsoft: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigMicrosoft' + - type: "null" + oidc: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigOIDC' + - type: "null" + okta: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigOkta' + - type: "null" + onelogin: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigOneLogin' + - type: "null" + pingone: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.AuthConfigPingOne' + - type: "null" + status: + description: The initial status of the authentication provider. enum: - - TASK_USER_RELATION_UNSPECIFIED - - TASK_USER_RELATION_ASSIGNEE - - TASK_USER_RELATION_SUBJECT - readOnly: false + - AUTH_CONFIG_STATUS_UNSPECIFIED + - AUTH_CONFIG_STATUS_ACTIVE + - AUTH_CONFIG_STATUS_DEPRECATED + - AUTH_CONFIG_STATUS_DISABLED type: string x-speakeasy-unknown-values: allow - title: Task Action + required: + - displayName + title: Tenant Auth Config Service Create Request type: object - x-speakeasy-name-override: TaskAction - c1.api.automations.v1.TerminateAutomationRequestInput: - description: The TerminateAutomationRequest message. - title: Terminate Automation Request + x-speakeasy-name-override: TenantAuthConfigServiceCreateRequest + c1.api.auth_config.v1.TenantAuthConfigServiceCreateResponse: + description: The TenantAuthConfigServiceCreateResponse message. + properties: + authConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfig' + - type: "null" + title: Tenant Auth Config Service Create Response type: object - x-speakeasy-name-override: TerminateAutomationRequest - c1.api.automations.v1.TerminateAutomationResponse: - description: The TerminateAutomationResponse message. - title: Terminate Automation Response + x-speakeasy-name-override: TenantAuthConfigServiceCreateResponse + c1.api.auth_config.v1.TenantAuthConfigServiceDeleteRequestInput: + description: The TenantAuthConfigServiceDeleteRequest message. + title: Tenant Auth Config Service Delete Request type: object - x-speakeasy-name-override: TerminateAutomationResponse - c1.api.automations.v1.UnenrollFromAllAccessProfiles: - description: The UnenrollFromAllAccessProfiles message. - nullable: true + x-speakeasy-name-override: TenantAuthConfigServiceDeleteRequest + c1.api.auth_config.v1.TenantAuthConfigServiceDeleteResponse: + description: The TenantAuthConfigServiceDeleteResponse message. + title: Tenant Auth Config Service Delete Response + type: object + x-speakeasy-name-override: TenantAuthConfigServiceDeleteResponse + c1.api.auth_config.v1.TenantAuthConfigServiceGetResponse: + description: The TenantAuthConfigServiceGetResponse message. properties: - catalogIds: - description: Optional list of catalog IDs to unenroll from. If empty, unenroll from all catalogs. + authConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfig' + - type: "null" + title: Tenant Auth Config Service Get Response + type: object + x-speakeasy-name-override: TenantAuthConfigServiceGetResponse + c1.api.auth_config.v1.TenantAuthConfigServiceListResponse: + description: The TenantAuthConfigServiceListResponse message. + properties: + list: + description: The list of authentication provider configurations. items: - type: string - nullable: true - readOnly: false - type: array - catalogIdsCel: - description: CEL expression to dynamically select catalog IDs. If provided, overrides catalog_ids. - readOnly: false - type: string - useSubjectUser: - description: If true, the step will use the subject user of the automation as the subject. - readOnly: false - type: boolean - userIdsCel: - description: The userIdsCel field. - readOnly: false + $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfig' + type: + - array + - "null" + nextPageToken: + description: A token to retrieve the next page of results, or empty if there are no more results. type: string - userRefs: - description: The userRefs field. - items: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - nullable: true - readOnly: false - type: array - title: Unenroll From All Access Profiles + title: Tenant Auth Config Service List Response type: object - x-speakeasy-name-override: UnenrollFromAllAccessProfiles - c1.api.automations.v1.UpdateAutomationRequestInput: - description: The UpdateAutomationRequest message. + x-speakeasy-name-override: TenantAuthConfigServiceListResponse + c1.api.auth_config.v1.TenantAuthConfigServiceUpdateRequestInput: + description: The TenantAuthConfigServiceUpdateRequest message. properties: - automation: - $ref: '#/components/schemas/c1.api.automations.v1.Automation' + authConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfig' + - type: "null" updateMask: - nullable: true - readOnly: false - type: string - title: Update Automation Request + type: + - string + - "null" + title: Tenant Auth Config Service Update Request type: object - x-speakeasy-name-override: UpdateAutomationRequest - c1.api.automations.v1.UpdateAutomationResponse: - description: The UpdateAutomationResponse message. + x-speakeasy-name-override: TenantAuthConfigServiceUpdateRequest + c1.api.auth_config.v1.TenantAuthConfigServiceUpdateResponse: + description: The TenantAuthConfigServiceUpdateResponse message. properties: - automation: - $ref: '#/components/schemas/c1.api.automations.v1.Automation' - webhookCapabilityUrl: - description: |- - One-time absolute webhook URL for capability URL authentication, shown once when the trigger is saved. - Contains the full URL including the embedded token (e.g. https://tenant.conductorone.com/api/v1/webhooks/incoming/{id}/t/{token}). - Populated only when the webhook trigger uses capability URL authentication. - readOnly: false - type: string - webhookHmacSecret: - description: |- - One-time HMAC shared secret, shown once when the trigger is saved. - Populated only when the webhook trigger uses HMAC authentication. - readOnly: false - type: string - title: Update Automation Response + authConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfig' + - type: "null" + title: Tenant Auth Config Service Update Response type: object - x-speakeasy-name-override: UpdateAutomationResponse - c1.api.automations.v1.UpdateUser: + x-speakeasy-name-override: TenantAuthConfigServiceUpdateResponse + c1.api.authorization.v1.ActorObjectPermissions: + description: ActorObjectPermissions describes which actions the calling user is permitted to perform on an object, as determined by policy. + properties: + delete: + description: The delete field. + type: boolean + edit: + description: The edit field. + type: boolean + extra: + additionalProperties: + type: boolean + description: The extra field. + type: object + read: + description: The read field. + type: boolean + title: Actor Object Permissions + type: object + x-speakeasy-name-override: UserActorObjectPermissions + c1.api.automations.v1.AccessConflictTrigger: description: | - The UpdateUser message. - - This message contains a oneof named user. Only a single field of the following list may be set at a time: - - userIdCel - - userRef - + The AccessConflictTrigger message. - This message contains a oneof named user_status. Only a single field of the following list may be set at a time: - - userStatusEnum - - userStatusCel - nullable: true + This message contains a oneof named conflict_monitor_selector. Only a single field of the following list may be set at a time: + - conflictMonitorRefs + - allConflictMonitors properties: - useSubjectUser: - description: If true, the step will use the subject user of the automation as the subject. - readOnly: false - type: boolean - userIdCel: + allConflictMonitors: description: |- - The userIdCel field. - This field is part of the `user` oneof. - See the documentation for `c1.api.automations.v1.UpdateUser` for more details. - nullable: true - readOnly: false - type: string - userRef: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - userStatusCel: - description: |- - The userStatusCel field. - This field is part of the `user_status` oneof. - See the documentation for `c1.api.automations.v1.UpdateUser` for more details. - nullable: true - readOnly: false - type: string - userStatusEnum: - description: |- - The userStatusEnum field. - This field is part of the `user_status` oneof. - See the documentation for `c1.api.automations.v1.UpdateUser` for more details. - enum: - - UNKNOWN - - ENABLED - - DISABLED - - DELETED - nullable: true - readOnly: false - type: string - x-speakeasy-unknown-values: allow - title: Update User + The allConflictMonitors field. + This field is part of the `conflict_monitor_selector` oneof. + See the documentation for `c1.api.automations.v1.AccessConflictTrigger` for more details. + type: + - boolean + - "null" + conflictMonitorRefs: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.ConflictMonitorRefs' + - type: "null" + title: Access Conflict Trigger type: object - x-speakeasy-name-override: UpdateUser - c1.api.automations.v1.UsageBasedRevocationTrigger: + x-speakeasy-name-override: AccessConflictTrigger + c1.api.automations.v1.AccountInContext: + description: The AccountInContext message. + title: Account In Context + type: object + x-speakeasy-name-override: AccountInContext + c1.api.automations.v1.AccountLifecycleAction: description: | - The UsageBasedRevocationTrigger message. + The AccountLifecycleAction message. - This message contains a oneof named cold_start_schedule. Only a single field of the following list may be set at a time: - - runImmediately - - runDelayed - nullable: true + This message contains a oneof named account_identifier. Only a single field of the following list may be set at a time: + - accountRef + - accountInContext properties: - appId: - description: The appId field. - readOnly: false - type: string - enabledAt: - format: date-time - readOnly: false + accountInContext: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.AccountInContext' + - type: "null" + accountRef: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.AccountRef' + - type: "null" + actionName: + description: The actionName field. type: string - excludedGroupRefs: - description: The excludedGroupRefs field. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - excludedUserRefs: - description: The excludedUserRefs field. - items: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - nullable: true - readOnly: false - type: array - includeUsersWithNoActivity: - description: The includeUsersWithNoActivity field. - readOnly: false - type: boolean - runDelayed: - $ref: '#/components/schemas/c1.api.automations.v1.RunDelayed' - runImmediately: - $ref: '#/components/schemas/c1.api.automations.v1.RunImmediately' - targetedAppUserTypes: - description: The targetedAppUserTypes field. - items: - enum: - - APP_USER_TYPE_UNSPECIFIED - - APP_USER_TYPE_USER - - APP_USER_TYPE_SERVICE_ACCOUNT - - APP_USER_TYPE_SYSTEM_ACCOUNT - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - targetedEntitlementRefs: - description: The targetedEntitlementRefs field. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - unusedForDays: - description: The unusedForDays field. - format: uint32 - readOnly: false - type: integer - title: Usage Based Revocation Trigger + connectorRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.ConnectorRef' + - type: "null" + title: Account Lifecycle Action type: object - x-speakeasy-name-override: UsageBasedRevocationTrigger - c1.api.automations.v1.UserCreatedTrigger: - description: The UserCreatedTrigger message. - nullable: true + x-speakeasy-name-override: AccountLifecycleAction + c1.api.automations.v1.AccountRef: + description: The AccountRef message. properties: - condition: - description: The condition field. - readOnly: false + accountIdCel: + description: The accountIdCel field. type: string - title: User Created Trigger + title: Account Ref type: object - x-speakeasy-name-override: UserCreatedTrigger - c1.api.automations.v1.UserProfileChangeTrigger: - description: The UserProfileChangeTrigger message. - nullable: true + x-speakeasy-name-override: AccountRef + c1.api.automations.v1.AppUserCreatedTrigger: + description: | + The AppUserCreatedTrigger message. + + This message contains a oneof named app_identifier. Only a single field of the following list may be set at a time: + - appId + - appIdCel properties: + appId: + description: |- + The appId field. + This field is part of the `app_identifier` oneof. + See the documentation for `c1.api.automations.v1.AppUserCreatedTrigger` for more details. + type: + - string + - "null" + appIdCel: + description: |- + The appIdCel field. + This field is part of the `app_identifier` oneof. + See the documentation for `c1.api.automations.v1.AppUserCreatedTrigger` for more details. + type: + - string + - "null" condition: description: The condition field. - readOnly: false - type: string - title: User Profile Change Trigger - type: object - x-speakeasy-name-override: UserProfileChangeTrigger - c1.api.automations.v1.UserProperties: - description: The UserProperties message. - nullable: true - properties: - displayNameCel: - description: The displayNameCel field. - readOnly: false - type: string - emailCel: - description: The emailCel field. - readOnly: false - type: string - profileAttributeCel: - description: The profileAttributeCel field. - readOnly: false - type: string - usernameCel: - description: The usernameCel field. - readOnly: false - type: string - title: User Properties - type: object - x-speakeasy-name-override: UserProperties - c1.api.automations.v1.WaitForDuration: - description: The WaitForDuration message. - nullable: true - properties: - duration: - format: duration - readOnly: false type: string - title: Wait For Duration + title: App User Created Trigger type: object - x-speakeasy-name-override: WaitForDuration - c1.api.automations.v1.Webhook: + x-speakeasy-name-override: AppUserCreatedTrigger + c1.api.automations.v1.AppUserUpdatedTrigger: description: | - The Webhook message. + The AppUserUpdatedTrigger message. - This message contains a oneof named webhook_identifier. Only a single field of the following list may be set at a time: - - webhookId - - webhookIdCel - nullable: true + This message contains a oneof named app_identifier. Only a single field of the following list may be set at a time: + - appId + - appIdCel properties: - payload: - additionalProperties: true - readOnly: false - type: object - webhookId: + appId: description: |- - The webhookId field. - This field is part of the `webhook_identifier` oneof. - See the documentation for `c1.api.automations.v1.Webhook` for more details. - nullable: true - readOnly: false - type: string - webhookIdCel: + The appId field. + This field is part of the `app_identifier` oneof. + See the documentation for `c1.api.automations.v1.AppUserUpdatedTrigger` for more details. + type: + - string + - "null" + appIdCel: description: |- - The webhookIdCel field. - This field is part of the `webhook_identifier` oneof. - See the documentation for `c1.api.automations.v1.Webhook` for more details. - nullable: true - readOnly: false + The appIdCel field. + This field is part of the `app_identifier` oneof. + See the documentation for `c1.api.automations.v1.AppUserUpdatedTrigger` for more details. + type: + - string + - "null" + condition: + description: The condition field. type: string - title: Webhook + title: App User Updated Trigger type: object - x-speakeasy-name-override: Webhook - c1.api.automations.v1.WebhookAutomationTrigger: + x-speakeasy-name-override: AppUserUpdatedTrigger + c1.api.automations.v1.Automation: description: | - The WebhookAutomationTrigger message. + The Automation message. - This message contains a oneof named auth_config. Only a single field of the following list may be set at a time: - - jwt - - hmac - - capabilityUrl - nullable: true - properties: - capabilityUrl: - $ref: '#/components/schemas/c1.api.automations.v1.WebhookListenerAuthCapabilityURL' - hmac: - $ref: '#/components/schemas/c1.api.automations.v1.WebhookListenerAuthHMAC' - jwt: - $ref: '#/components/schemas/c1.api.automations.v1.WebhookListenerAuthJWT' - listenerId: - description: Optional existing listener ID (hidden field from frontend) - readOnly: false - type: string - title: Webhook Automation Trigger - type: object - x-speakeasy-name-override: WebhookAutomationTrigger - c1.api.automations.v1.WebhookListenerAuthCapabilityURL: - description: |- - Capability URL authentication: the URL itself contains an unguessable token that acts - as the credential. This is simpler to integrate but less secure than JWT or HMAC because - the token can leak via server logs, referrer headers, and URL sharing. - See https://www.w3.org/TR/capability-urls/ for background. - nullable: true - title: Webhook Listener Auth Capability Url - type: object - x-speakeasy-name-override: WebhookListenerAuthCapabilityURL - c1.api.automations.v1.WebhookListenerAuthHMAC: - description: The WebhookListenerAuthHMAC message. - nullable: true - title: Webhook Listener Auth Hmac - type: object - x-speakeasy-name-override: WebhookListenerAuthHMAC - c1.api.automations.v1.WebhookListenerAuthJWT: - description: The WebhookListenerAuthJWT message. - nullable: true + This message contains a oneof named disabled_reason. Only a single field of the following list may be set at a time: + - circuitBreaker properties: - jwksUrl: - description: The jwksUrl field. - readOnly: false - type: string - title: Webhook Listener Auth Jwt - type: object - x-speakeasy-name-override: WebhookListenerAuthJWT - c1.api.directory.v1.Directory: - description: | - This object indicates that an app is also a directory. + annotations: + additionalProperties: + type: string + description: |- + Bounded key/value metadata bag for IaC marking and customer tags. + See .rfcs/object-annotations.md §2. Limits: ≤16 entries; keys 1–128 + chars matching ^[A-Za-z][A-Za-z0-9._/-]{0,127}$; values 0–256 chars + URL-safe ASCII; total serialized ≤ 4096 bytes. Keys matching ^c1/ + are reserved. - This message contains a oneof named account_filter. Only a single field of the following list may be set at a time: - - all - - celExpression - properties: - all: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryAccountFilterAll' + Well-known keys: `managed_by`, `iac_workspace`, + `iac_resource_address`, `iac_tool_version`. + type: object + x-speakeasy-terraform-plan-modifier: + imports: + - github.com/conductorone/terraform-provider-conductorone/internal/annotations + schemaDefinition: annotations.PlanModifier() appId: - description: The ID of the app associated with the directory. - readOnly: true + description: the app id this workflow_template belongs to type: string - celExpression: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryAccountFilterCel' + automationSteps: + description: The automationSteps field. + items: + $ref: '#/components/schemas/c1.api.automations.v1.AutomationStep' + type: + - array + - "null" + circuitBreaker: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.DisabledReasonCircuitBreaker' + - type: "null" + circuitBreakerMax: + description: |- + Circuit breaker rate cap: disable this automation if it executes more + than circuit_breaker_max times in the trailing circuit_breaker_period. + 0 = circuit breaker off (default). + format: uint32 + type: integer + circuitBreakerPeriod: + description: The circuitBreakerPeriod field. + enum: + - CIRCUIT_BREAKER_PERIOD_UNSPECIFIED + - CIRCUIT_BREAKER_PERIOD_HOUR + - CIRCUIT_BREAKER_PERIOD_DAY + - CIRCUIT_BREAKER_PERIOD_WEEK + - CIRCUIT_BREAKER_PERIOD_MONTH + type: string + x-speakeasy-unknown-values: allow + context: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.AutomationContext' + - type: "null" createdAt: format: date-time - readOnly: true + type: + - string + - "null" + currentVersion: + description: The currentVersion field. + format: int64 type: string - deletedAt: - format: date-time + description: + description: The description field. + type: string + displayName: + description: The displayName field. + type: string + draftAutomationSteps: + description: The draftAutomationSteps field. + items: + $ref: '#/components/schemas/c1.api.automations.v1.AutomationStep' + type: + - array + - "null" + draftTriggers: + description: The draftTriggers field. + items: + $ref: '#/components/schemas/c1.api.automations.v1.AutomationTrigger' + type: + - array + - "null" + enabled: + description: The enabled field. + type: boolean + id: + description: The id field. readOnly: true type: string - mergeConfig: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryMergeConfig' - updatedAt: + isDraft: + description: The isDraft field. + type: boolean + lastExecutedAt: format: date-time - readOnly: true + type: + - string + - "null" + primaryTriggerType: + description: The primaryTriggerType field. + enum: + - TRIGGER_TYPE_UNSPECIFIED + - TRIGGER_TYPE_USER_PROFILE_CHANGE + - TRIGGER_TYPE_APP_USER_CREATE + - TRIGGER_TYPE_APP_USER_UPDATE + - TRIGGER_TYPE_UNUSED_ACCESS + - TRIGGER_TYPE_USER_CREATED + - TRIGGER_TYPE_GRANT_FOUND + - TRIGGER_TYPE_GRANT_DELETED + - TRIGGER_TYPE_WEBHOOK + - TRIGGER_TYPE_SCHEDULE + - TRIGGER_TYPE_FORM + - TRIGGER_TYPE_SCHEDULE_APP_USER + - TRIGGER_TYPE_ACCESS_CONFLICT + - TRIGGER_TYPE_SCHEDULE_NO_USER type: string - title: Directory + x-speakeasy-unknown-values: allow + triggers: + description: The triggers field. + items: + $ref: '#/components/schemas/c1.api.automations.v1.AutomationTrigger' + type: + - array + - "null" + title: Automation type: object - x-speakeasy-name-override: Directory - c1.api.directory.v1.DirectoryAccountFilterAll: - description: The DirectoryAccountFilterAll message. - nullable: true - title: Directory Account Filter All + x-speakeasy-entity: Automation + x-speakeasy-name-override: Automation + c1.api.automations.v1.AutomationContext: + description: The AutomationContext message. + properties: + context: + additionalProperties: true + type: + - object + - "null" + title: Automation Context type: object - x-speakeasy-name-override: DirectoryAccountFilterAll - c1.api.directory.v1.DirectoryAccountFilterCel: - description: The DirectoryAccountFilterCel message. - nullable: true + x-speakeasy-name-override: AutomationContext + c1.api.automations.v1.AutomationExecution: + description: The AutomationExecution message. properties: - expression: - description: The expression field. - readOnly: false + automationTemplateId: + description: The automationTemplateId field. type: string - title: Directory Account Filter Cel + completedAt: + format: date-time + type: + - string + - "null" + context: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.AutomationContext' + - type: "null" + createdAt: + format: date-time + type: + - string + - "null" + currentVersion: + description: The currentVersion field. + format: int32 + type: integer + deletedAt: + format: date-time + type: + - string + - "null" + duration: + format: duration + type: + - string + - "null" + id: + description: The id field. + format: int64 + type: string + isDraft: + description: The isDraft field. + type: boolean + state: + description: The state field. + enum: + - AUTOMATION_EXECUTION_STATE_UNSPECIFIED + - AUTOMATION_EXECUTION_STATE_PENDING + - AUTOMATION_EXECUTION_STATE_CREATING + - AUTOMATION_EXECUTION_STATE_GET_STEP + - AUTOMATION_EXECUTION_STATE_PROCESS_STEP + - AUTOMATION_EXECUTION_STATE_COMPLETE_STEP + - AUTOMATION_EXECUTION_STATE_DONE + - AUTOMATION_EXECUTION_STATE_ERROR + - AUTOMATION_EXECUTION_STATE_TERMINATE + - AUTOMATION_EXECUTION_STATE_WAITING + - AUTOMATION_EXECUTION_STATE_PAUSED_BY_CIRCUIT_BREAKER + type: string + x-speakeasy-unknown-values: allow + updatedAt: + format: date-time + type: + - string + - "null" + title: Automation Execution type: object - x-speakeasy-name-override: DirectoryAccountFilterCel - c1.api.directory.v1.DirectoryExpandMask: - description: The fields to be included in the directory response. + x-speakeasy-name-override: AutomationExecution + c1.api.automations.v1.AutomationExecutionExpandMask: + description: The AutomationExecutionExpandMask message. properties: paths: - description: An array of fields to be included in the directory response. + description: The paths field. items: type: string - nullable: true - readOnly: false - type: array - title: Directory Expand Mask + type: + - array + - "null" + title: Automation Execution Expand Mask type: object - x-speakeasy-name-override: DirectoryExpandMask - c1.api.directory.v1.DirectoryMergeConfig: - description: DirectoryMergeConfig configures how AppUsers from this directory are matched to C1 Users. + x-speakeasy-name-override: AutomationExecutionExpandMask + c1.api.automations.v1.AutomationExecutionRef: + description: The AutomationExecutionRef message. properties: - matchCases: - description: Ordered list of match cases evaluated in sequence. First match wins. - items: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryMergeMatchCase' - nullable: true - readOnly: false - type: array - title: Directory Merge Config + id: + description: The id field. + format: int64 + type: string + title: Automation Execution Ref type: object - x-speakeasy-name-override: DirectoryMergeConfig - c1.api.directory.v1.DirectoryMergeMatchCase: - description: DirectoryMergeMatchCase defines a pair of CEL key extractors for matching. + x-speakeasy-name-override: AutomationExecutionRef + c1.api.automations.v1.AutomationExecutionView: + description: The AutomationExecutionView message. properties: - appUserKeyCel: - description: CEL expression evaluated against an AppUser to produce match key(s). - readOnly: false + automationExecution: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.AutomationExecution' + - type: "null" + automationExecutionTriggerPath: + description: The automationExecutionTriggerPath field. type: string - userKeyCel: - description: CEL expression evaluated against a User to produce match key(s). - readOnly: false + automationPath: + description: The automationPath field. type: string - title: Directory Merge Match Case + title: Automation Execution View type: object - x-speakeasy-name-override: DirectoryMergeMatchCase - c1.api.directory.v1.DirectoryServiceCreateRequest: + x-speakeasy-name-override: AutomationExecutionView + c1.api.automations.v1.AutomationStep: description: | - Uplevel an app into a full directory. + The AutomationStep message. - This message contains a oneof named account_filter. Only a single field of the following list may be set at a time: - - all - - celExpression + This message contains a oneof named kind. Only a single field of the following list may be set at a time: + - createAccessReview + - waitForDuration + - unenrollFromAllAccessProfiles + - createRevokeTasks + - createRevokeTasksV2 + - sendEmail + - removeFromDelegation + - runAutomation + - updateUser + - taskAction + - webhook + - connectorAction + - connectorCreateAccount + - grantEntitlements + - sendSlackMessage + - callFunction + - accountLifecycleAction + - generatePassword + - evaluateExpressions + - setCredential + - storeCredential properties: - all: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryAccountFilterAll' - appId: - description: The AppID to make into a directory, providing identities and more for the C1 app. - readOnly: false + accountLifecycleAction: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.AccountLifecycleAction' + - type: "null" + callFunction: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.CallFunction' + - type: "null" + connectorAction: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.ConnectorAction' + - type: "null" + connectorCreateAccount: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.ConnectorCreateAccount' + - type: "null" + createAccessReview: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.CreateAccessReview' + - type: "null" + createRevokeTasks: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.CreateRevokeTasks' + - type: "null" + createRevokeTasksV2: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.CreateRevokeTasksV2' + - type: "null" + evaluateExpressions: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.EvaluateExpressions' + - type: "null" + generatePassword: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.GeneratePassword' + - type: "null" + grantEntitlements: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.GrantEntitlements' + - type: "null" + removeFromDelegation: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.RemoveFromDelegation' + - type: "null" + runAutomation: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.RunAutomation' + - type: "null" + sendEmail: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.SendEmail' + - type: "null" + sendSlackMessage: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.SendSlackMessage' + - type: "null" + setCredential: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.SetCredential' + - type: "null" + skipIfTrueCel: + description: The skipIfTrueCel field. type: string - celExpression: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryAccountFilterCel' - expandMask: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryExpandMask' - mergeConfig: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryMergeConfig' - title: Directory Service Create Request + stepDisplayName: + description: The stepDisplayName field. + type: string + stepName: + description: The stepName field. + type: string + storeCredential: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.StoreCredential' + - type: "null" + taskAction: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.TaskAction' + - type: "null" + unenrollFromAllAccessProfiles: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.UnenrollFromAllAccessProfiles' + - type: "null" + updateUser: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.UpdateUser' + - type: "null" + waitForDuration: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.WaitForDuration' + - type: "null" + webhook: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.Webhook' + - type: "null" + title: Automation Step type: object - x-speakeasy-name-override: DirectoryServiceCreateRequest - c1.api.directory.v1.DirectoryServiceCreateResponse: - description: The DirectoryServiceCreateResponse message. + x-speakeasy-name-override: AutomationStep + c1.api.automations.v1.AutomationTemplateRef: + description: The AutomationTemplateRef message. properties: - directoryView: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryView' - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - title: Directory Service Create Response - type: object - x-speakeasy-name-override: DirectoryServiceCreateResponse - c1.api.directory.v1.DirectoryServiceDeleteRequestInput: - description: DirectoryServiceDeleteRequest is the request message for deleting a directory. It uses URL values for input. - title: Directory Service Delete Request - type: object - x-speakeasy-name-override: DirectoryServiceDeleteRequest - c1.api.directory.v1.DirectoryServiceDeleteResponse: - description: Empty response with a status code indicating success. - title: Directory Service Delete Response - type: object - x-speakeasy-name-override: DirectoryServiceDeleteResponse - c1.api.directory.v1.DirectoryServiceGetResponse: - description: |- - The Directory Service Get Response returns a directory view with a directory and JSONPATHs indicating the - location in the expanded array that items are expanded as indicated by the expand mask in the request. - properties: - directoryView: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryView' - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - title: Directory Service Get Response + id: + description: The id field. + type: string + title: Automation Template Ref type: object - x-speakeasy-name-override: DirectoryServiceGetResponse - c1.api.directory.v1.DirectoryServiceListResponse: - description: The DirectoryServiceListResponse message contains a list of results and a nextPageToken if applicable. + x-speakeasy-name-override: AutomationTemplateRef + c1.api.automations.v1.AutomationTemplateVersion: + description: The AutomationTemplateVersion message. properties: - expanded: - description: |- - The nextPageToken is shown for the next page if the number of results is larger than the max page size. - The server returns one page of results and the nextPageToken until all results are retreived. - To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. + automationSteps: + description: The automationSteps field. items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - list: - description: The list of results containing up to X results, where X is the page size defined in the request. + $ref: '#/components/schemas/c1.api.automations.v1.AutomationStep' + type: + - array + - "null" + automationTemplateId: + description: The automationTemplateId field. + type: string + createdAt: + format: date-time + type: + - string + - "null" + deletedAt: + format: date-time + type: + - string + - "null" + triggers: + description: The triggers field. items: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryView' - nullable: true - readOnly: false - type: array - nextPageToken: - description: List of serialized related objects. - readOnly: false + $ref: '#/components/schemas/c1.api.automations.v1.AutomationTrigger' + type: + - array + - "null" + updatedAt: + format: date-time + type: + - string + - "null" + version: + description: The version field. + format: int64 type: string - title: Directory Service List Response + title: Automation Template Version type: object - x-speakeasy-name-override: DirectoryServiceListResponse - c1.api.directory.v1.DirectoryServiceUpdateRequestInput: + x-speakeasy-name-override: AutomationTemplateVersion + c1.api.automations.v1.AutomationTrigger: description: | - Update a directory by app_id. + Automation Triggers - This message contains a oneof named account_filter. Only a single field of the following list may be set at a time: - - all - - celExpression - properties: - all: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryAccountFilterAll' - celExpression: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryAccountFilterCel' - expandMask: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryExpandMask' - mergeConfig: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryMergeConfig' - title: Directory Service Update Request - type: object - x-speakeasy-name-override: DirectoryServiceUpdateRequest - c1.api.directory.v1.DirectoryServiceUpdateResponse: - description: The DirectoryServiceUpdateResponse message. + This message contains a oneof named kind. Only a single field of the following list may be set at a time: + - userProfileChange + - appUserCreated + - appUserUpdated + - usageBasedRevocation + - userCreated + - grantFound + - grantDeleted + - webhook + - schedule + - scheduleAppUser + - accessConflict + - scheduleNoUser properties: - directoryView: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryView' - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - title: Directory Service Update Response + accessConflict: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.AccessConflictTrigger' + - type: "null" + appUserCreated: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.AppUserCreatedTrigger' + - type: "null" + appUserUpdated: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.AppUserUpdatedTrigger' + - type: "null" + grantDeleted: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.GrantDeletedTrigger' + - type: "null" + grantFound: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.GrantFoundTrigger' + - type: "null" + schedule: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.ScheduleTrigger' + - type: "null" + scheduleAppUser: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.ScheduleTriggerAppUser' + - type: "null" + scheduleNoUser: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.ScheduleTriggerNoUser' + - type: "null" + usageBasedRevocation: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.UsageBasedRevocationTrigger' + - type: "null" + userCreated: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.UserCreatedTrigger' + - type: "null" + userProfileChange: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.UserProfileChangeTrigger' + - type: "null" + webhook: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.WebhookAutomationTrigger' + - type: "null" + title: Automation Trigger type: object - x-speakeasy-name-override: DirectoryServiceUpdateResponse - c1.api.directory.v1.DirectoryView: - description: The directory view contains a directory and an app_path which is a JSONPATH set to the location in the expand mask that the expanded app will live if requested by the expander. + x-speakeasy-name-override: AutomationTrigger + c1.api.automations.v1.CallFunction: + description: The CallFunction message. properties: - appPath: - description: JSONPATH expression indicating the location of the App object in the array. - readOnly: false + args: + additionalProperties: + type: string + description: |- + Arg name → CEL expression. Each value is evaluated against the + workflow execution context (subject + completed step outputs) and the + resolved values are passed to the function as JSON. Plain literals + must be quoted as CEL strings (e.g. "'static-value'"). + type: object + functionId: + description: The functionId field. type: string - directory: - $ref: '#/components/schemas/c1.api.directory.v1.Directory' - title: Directory View + title: Call Function type: object - x-speakeasy-name-override: DirectoryView - c1.api.editor.v1.EditorMarker: - description: The EditorMarker message. + x-speakeasy-name-override: CallFunction + c1.api.automations.v1.ClearAutomationCircuitBreakerRequestInput: + description: The ClearAutomationCircuitBreakerRequest message. properties: - endColumn: - description: The endColumn field. - format: int32 - readOnly: false - type: integer - endLineNumber: - description: The endLineNumber field. - format: int32 - readOnly: false - type: integer - message: - description: The message field. - readOnly: false - type: string - severity: - description: The severity field. + decision: + description: |- + What to do with paused executions. UNSPECIFIED means clear the breaker + only (backward-compatible default). RUN or CANCEL creates a bulk action + to resolve them asynchronously. enum: - - UNKNOWN - - HINT - - INFO - - WARNING - - ERROR - readOnly: false + - PAUSED_EXECUTION_DECISION_UNSPECIFIED + - PAUSED_EXECUTION_DECISION_RUN + - PAUSED_EXECUTION_DECISION_CANCEL type: string x-speakeasy-unknown-values: allow - startColumn: - description: The startColumn field. - format: int32 - readOnly: false - type: integer - startLineNumber: - description: The startLineNumber field. - format: int32 - readOnly: false - type: integer - title: Editor Marker - type: object - x-speakeasy-name-override: EditorMarker - c1.api.finding.v1.AcceptRiskAction: - description: AcceptRiskAction parameters for UpdateFindingState. - nullable: true - properties: - expiresAt: - format: date-time - readOnly: false - type: string - justification: - description: The justification field. - readOnly: false - type: string - title: Accept Risk Action - type: object - x-speakeasy-name-override: AcceptRiskAction - c1.api.finding.v1.AppUserTarget: - description: The AppUserTarget message. - nullable: true - properties: - appId: - description: The appId field. - readOnly: false - type: string - appUserId: - description: The appUserId field. - readOnly: false + reason: + description: Admin-supplied reason when decision is CANCEL. Up to 1024 bytes. type: string - title: App User Target + title: Clear Automation Circuit Breaker Request type: object - x-speakeasy-name-override: AppUserTarget - c1.api.finding.v1.BulkAcceptRiskAction: - description: The BulkAcceptRiskAction message. - nullable: true + x-speakeasy-name-override: ClearAutomationCircuitBreakerRequest + c1.api.automations.v1.ClearAutomationCircuitBreakerResponse: + description: The ClearAutomationCircuitBreakerResponse message. properties: - expiresAt: - format: date-time - readOnly: false - type: string - justification: - description: The justification field. - readOnly: false + bulkActionId: + description: |- + The bulk action ID if a bulk action was created to resolve paused + executions. Empty when decision is UNSPECIFIED or there were no + paused executions. type: string - title: Bulk Accept Risk Action + title: Clear Automation Circuit Breaker Response type: object - x-speakeasy-name-override: BulkAcceptRiskAction - c1.api.finding.v1.BulkAssignOwnerAction: - description: The BulkAssignOwnerAction message. - nullable: true + x-speakeasy-name-override: ClearAutomationCircuitBreakerResponse + c1.api.automations.v1.CloseAction: + description: | + The CloseAction message. + + This message contains a oneof named user_identifier. Only a single field of the following list may be set at a time: + - userIdCel + - userRef properties: - owner: - $ref: '#/components/schemas/c1.api.finding.v1.FindingOwnerRef' - title: Bulk Assign Owner Action + useSubjectUser: + description: If true, the step will use the subject user of the automation as the subject. + type: boolean + userIdCel: + description: |- + The userIdCel field. + This field is part of the `user_identifier` oneof. + See the documentation for `c1.api.automations.v1.CloseAction` for more details. + type: + - string + - "null" + userRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + title: Close Action type: object - x-speakeasy-name-override: BulkAssignOwnerAction - c1.api.finding.v1.BulkCreateFindingTasksRequest: - description: The BulkCreateFindingTasksRequest message. + x-speakeasy-name-override: CloseAction + c1.api.automations.v1.ConflictMonitorRefs: + description: The ConflictMonitorRefs message. properties: - policyId: - description: Optional policy ID to use for the created tasks. Defaults to the app's grant policy. - readOnly: false - type: string - refs: - description: Individual finding references to create tasks for (by-ID mode). + conflictMonitorRefs: + description: The conflictMonitorRefs field. items: - $ref: '#/components/schemas/c1.api.finding.v1.FindingRef' - nullable: true - readOnly: false - type: array - searchRequest: - $ref: '#/components/schemas/c1.api.finding.v1.FindingSearchRequest' - title: Bulk Create Finding Tasks Request - type: object - x-speakeasy-name-override: BulkCreateFindingTasksRequest - c1.api.finding.v1.BulkCreateFindingTasksResponse: - description: The BulkCreateFindingTasksResponse message. - properties: - bulkActionId: - description: The ID of the asynchronous bulk action, which can be used to track progress. - readOnly: false - type: string - title: Bulk Create Finding Tasks Response - type: object - x-speakeasy-name-override: BulkCreateFindingTasksResponse - c1.api.finding.v1.BulkReopenAction: - description: The BulkReopenAction message. - nullable: true - title: Bulk Reopen Action + $ref: '#/components/schemas/c1.api.accessconflict.v1.ConflictMonitorRef' + type: + - array + - "null" + title: Conflict Monitor Refs type: object - x-speakeasy-name-override: BulkReopenAction - c1.api.finding.v1.BulkSnoozeAction: - description: The BulkSnoozeAction message. - nullable: true + x-speakeasy-name-override: ConflictMonitorRefs + c1.api.automations.v1.ConnectorAction: + description: | + The ConnectorAction message. + + This message contains a oneof named connector_identifier. Only a single field of the following list may be set at a time: + - connectorRef properties: - reason: - description: The reason field. - readOnly: false - type: string - snoozeUntil: - format: date-time - readOnly: false + actionName: + description: The actionName field. type: string - title: Bulk Snooze Action - type: object - x-speakeasy-name-override: BulkSnoozeAction - c1.api.finding.v1.BulkSuppressAction: - description: The BulkSuppressAction message. - nullable: true - properties: - reason: - description: The reason field. - readOnly: false + argsTemplate: + additionalProperties: true + type: + - object + - "null" + connectorRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.ConnectorRef' + - type: "null" + resourceTypeId: + description: The resourceTypeId field. type: string - title: Bulk Suppress Action - type: object - x-speakeasy-name-override: BulkSuppressAction - c1.api.finding.v1.BulkUnsuppressAction: - deprecated: true - description: The BulkUnsuppressAction message. - nullable: true - title: Bulk Unsuppress Action + title: Connector Action type: object - x-speakeasy-name-override: BulkUnsuppressAction - c1.api.finding.v1.BulkUpdateFindingStateRequest: + x-speakeasy-name-override: ConnectorAction + c1.api.automations.v1.ConnectorCreateAccount: description: | - The BulkUpdateFindingStateRequest message. + The ConnectorCreateAccount message. - This message contains a oneof named action. Only a single field of the following list may be set at a time: - - snooze - - suppress - - acceptRisk - - unsuppress - - assignOwner - - reopen - properties: - acceptRisk: - $ref: '#/components/schemas/c1.api.finding.v1.BulkAcceptRiskAction' - assignOwner: - $ref: '#/components/schemas/c1.api.finding.v1.BulkAssignOwnerAction' - refs: - description: 'By-ID mode: specify individual finding refs.' - items: - $ref: '#/components/schemas/c1.api.finding.v1.FindingRef' - nullable: true - readOnly: false - type: array - reopen: - $ref: '#/components/schemas/c1.api.finding.v1.BulkReopenAction' - searchRequest: - $ref: '#/components/schemas/c1.api.finding.v1.FindingSearchRequest' - snooze: - $ref: '#/components/schemas/c1.api.finding.v1.BulkSnoozeAction' - suppress: - $ref: '#/components/schemas/c1.api.finding.v1.BulkSuppressAction' - unsuppress: - $ref: '#/components/schemas/c1.api.finding.v1.BulkUnsuppressAction' - title: Bulk Update Finding State Request - type: object - x-speakeasy-name-override: BulkUpdateFindingStateRequest - c1.api.finding.v1.BulkUpdateFindingStateResponse: - description: The BulkUpdateFindingStateResponse message. - properties: - bulkActionId: - description: The ID of the asynchronous bulk action, which can be used to track progress. - readOnly: false - type: string - title: Bulk Update Finding State Response - type: object - x-speakeasy-name-override: BulkUpdateFindingStateResponse - c1.api.finding.v1.CreateFindingRoutingRuleRequest: - description: The CreateFindingRoutingRuleRequest message. - properties: - routingRule: - $ref: '#/components/schemas/c1.api.finding.v1.FindingRoutingRule' - title: Create Finding Routing Rule Request - type: object - x-speakeasy-name-override: CreateFindingRoutingRuleRequest - c1.api.finding.v1.CreateFindingRoutingRuleResponse: - description: The CreateFindingRoutingRuleResponse message. - properties: - routingRule: - $ref: '#/components/schemas/c1.api.finding.v1.FindingRoutingRule' - title: Create Finding Routing Rule Response - type: object - x-speakeasy-name-override: CreateFindingRoutingRuleResponse - c1.api.finding.v1.CreateFindingTaskRequestInput: - description: The CreateFindingTaskRequest message. + This message contains a oneof named create_account_arguments. Only a single field of the following list may be set at a time: + - userIdCel + - userProperties properties: - policyId: + connectorRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.ConnectorRef' + - type: "null" + passwordCel: description: |- - Optional policy ID. Defaults to the app's grant policy or the built-in - "Finding Review" policy. - readOnly: false + CEL expression referencing a GeneratePassword step output (e.g. "genStep.password"). + When set, the resolved password is encrypted for the connector and sent as CredentialOptions.EncryptedPassword. type: string - title: Create Finding Task Request + userIdCel: + description: |- + The userIdCel field. + This field is part of the `create_account_arguments` oneof. + See the documentation for `c1.api.automations.v1.ConnectorCreateAccount` for more details. + type: + - string + - "null" + userProperties: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.UserProperties' + - type: "null" + title: Connector Create Account type: object - x-speakeasy-name-override: CreateFindingTaskRequest - c1.api.finding.v1.CreateFindingTaskResponse: - description: The CreateFindingTaskResponse message. + x-speakeasy-name-override: ConnectorCreateAccount + c1.api.automations.v1.CreateAccessReview: + description: The CreateAccessReview message. properties: - finding: - $ref: '#/components/schemas/c1.api.finding.v1.Finding' - taskId: - description: The ID of the created task. - readOnly: false + accessReviewTemplateCel: + description: The accessReviewTemplateCel field. type: string - title: Create Finding Task Response - type: object - x-speakeasy-name-override: CreateFindingTaskResponse - c1.api.finding.v1.CreateTaskAction: - description: The CreateTaskAction message. - nullable: true - properties: - policyId: - description: The policyId field. - readOnly: false + accessReviewTemplateId: + description: The accessReviewTemplateId field. type: string - title: Create Task Action - type: object - x-speakeasy-name-override: CreateTaskAction - c1.api.finding.v1.DeleteFindingRoutingRuleRequestInput: - description: The DeleteFindingRoutingRuleRequest message. - title: Delete Finding Routing Rule Request - type: object - x-speakeasy-name-override: DeleteFindingRoutingRuleRequest - c1.api.finding.v1.DeleteFindingRoutingRuleResponse: - description: The DeleteFindingRoutingRuleResponse message. - title: Delete Finding Routing Rule Response - type: object - x-speakeasy-name-override: DeleteFindingRoutingRuleResponse - c1.api.finding.v1.Finding: - description: | - The Finding message. - - This message contains a oneof named finding_type. Only a single field of the following list may be set at a time: - - similarUsernameMatch - - serviceAccountMisclassification - - - This message contains a oneof named target. Only a single field of the following list may be set at a time: - - identityUserTarget - - appUserTarget - - - This message contains a oneof named evidence. Only a single field of the following list may be set at a time: - - similarUsernameMatchEvidence - - serviceAccountMisclassificationEvidence - properties: - appId: - description: The appId field. - readOnly: false + campaignName: + description: Optional campaign name. If not provided, the campaign name will be the access review template name. type: string - appUserTarget: - $ref: '#/components/schemas/c1.api.finding.v1.AppUserTarget' - assignedOwner: - $ref: '#/components/schemas/c1.api.finding.v1.FindingOwnerRef' - computedOwner: - $ref: '#/components/schemas/c1.api.finding.v1.FindingOwnerRef' - createdAt: - format: date-time - readOnly: false + useSubjectUser: + description: If true, the step will use the subject user of the automation as the subject. + type: boolean + userIdsCel: + description: The userIdsCel field. type: string - customTags: + userRefs: + description: The userRefs field. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserRef' + type: + - array + - "null" + title: Create Access Review + type: object + x-speakeasy-name-override: CreateAccessReview + c1.api.automations.v1.CreateAutomationRequest: + description: The CreateAutomationRequest message. + properties: + annotations: additionalProperties: type: string - description: The customTags field. - readOnly: false + description: |- + Bounded key/value metadata bag for IaC marking and customer tags. + See .rfcs/object-annotations.md §2. Limits: ≤16 entries; keys 1–128 + chars matching ^[A-Za-z][A-Za-z0-9._/-]{0,127}$; values 0–256 chars + matching URL-safe ASCII; total serialized ≤4096 bytes. Keys starting + with `c1/` are reserved for server-managed use and rejected on write. + + Well-known keys: `managed_by`, `iac_workspace`, + `iac_resource_address`, `iac_tool_version`. type: object - fingerprint: - description: The fingerprint field. - readOnly: false - type: string - firstObservedAt: - format: date-time - readOnly: false - type: string - id: - description: The id field. - readOnly: false - type: string - identityUserTarget: - $ref: '#/components/schemas/c1.api.finding.v1.IdentityUserTarget' - lastObservedAt: - format: date-time - readOnly: false + x-speakeasy-terraform-plan-modifier: + imports: + - github.com/conductorone/terraform-provider-conductorone/internal/annotations + schemaDefinition: annotations.PlanModifier() + appId: + description: the app id this workflow_template belongs to type: string - recurrenceCount: - description: The recurrenceCount field. + automationSteps: + description: Ordered list of steps that the automation executes. + items: + $ref: '#/components/schemas/c1.api.automations.v1.AutomationStep' + type: + - array + - "null" + circuitBreakerMax: + description: Circuit breaker rate cap. See Automation.circuit_breaker_max for semantics. format: uint32 - readOnly: false type: integer - remediationDescription: - description: The remediationDescription field. - readOnly: false - type: string - resolvedAt: - format: date-time - readOnly: false - type: string - riskAcceptanceExpiresAt: - format: date-time - readOnly: false - type: string - riskAcceptanceJustification: - description: The riskAcceptanceJustification field. - readOnly: false - type: string - riskScore: - $ref: '#/components/schemas/c1.api.finding.v1.FindingRiskScore' - serviceAccountMisclassification: - $ref: '#/components/schemas/c1.api.finding.v1.ServiceAccountMisclassificationType' - serviceAccountMisclassificationEvidence: - $ref: '#/components/schemas/c1.api.finding.v1.ServiceAccountMisclassificationEvidence' - severity: - description: The severity field. + circuitBreakerPeriod: + description: The circuitBreakerPeriod field. enum: - - FINDING_SEVERITY_UNSPECIFIED - - FINDING_SEVERITY_INFO - - FINDING_SEVERITY_LOW - - FINDING_SEVERITY_MEDIUM - - FINDING_SEVERITY_HIGH - - FINDING_SEVERITY_CRITICAL - readOnly: false + - CIRCUIT_BREAKER_PERIOD_UNSPECIFIED + - CIRCUIT_BREAKER_PERIOD_HOUR + - CIRCUIT_BREAKER_PERIOD_DAY + - CIRCUIT_BREAKER_PERIOD_WEEK + - CIRCUIT_BREAKER_PERIOD_MONTH type: string x-speakeasy-unknown-values: allow - similarUsernameMatch: - $ref: '#/components/schemas/c1.api.finding.v1.SimilarUsernameMatchType' - similarUsernameMatchEvidence: - $ref: '#/components/schemas/c1.api.finding.v1.SimilarUsernameMatchEvidence' - snoozeReason: - description: The snoozeReason field. - readOnly: false - type: string - snoozeUntil: - format: date-time - readOnly: false + context: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.AutomationContext' + - type: "null" + description: + description: Optional description explaining the automation's purpose. type: string - sourceDetectorId: - description: The sourceDetectorId field. - readOnly: false + displayName: + description: Human-readable name for the automation. type: string - state: - description: The state field. - enum: - - FINDING_STATE_UNSPECIFIED - - FINDING_STATE_OPEN - - FINDING_STATE_IN_PROGRESS - - FINDING_STATE_RESOLVED - - FINDING_STATE_SNOOZED - - FINDING_STATE_RISK_ACCEPTED - - FINDING_STATE_SUPPRESSED - readOnly: false + draftAutomationSteps: + description: Steps saved as a draft that have not yet been published. + items: + $ref: '#/components/schemas/c1.api.automations.v1.AutomationStep' + type: + - array + - "null" + draftTriggers: + description: Triggers saved as a draft that have not yet been published. + items: + $ref: '#/components/schemas/c1.api.automations.v1.AutomationTrigger' + type: + - array + - "null" + enabled: + description: Whether the automation is active and eligible for execution. + type: boolean + isDraft: + description: Whether this automation is in draft mode. Draft automations are not eligible for trigger-based execution. + type: boolean + triggers: + description: Triggers that determine when the automation runs. + items: + $ref: '#/components/schemas/c1.api.automations.v1.AutomationTrigger' + type: + - array + - "null" + title: Create Automation Request + type: object + x-speakeasy-name-override: AutomationsCreateAutomationRequest + c1.api.automations.v1.CreateAutomationResponse: + description: The CreateAutomationResponse message. + properties: + automation: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.Automation' + - type: "null" + webhookCapabilityUrl: + description: |- + One-time absolute webhook URL for capability URL authentication, shown once at creation time. + Contains the full URL including the embedded token (e.g. https://tenant.conductorone.com/api/v1/webhooks/incoming/{id}/t/{token}). + Populated only when the webhook trigger uses capability URL authentication. type: string - x-speakeasy-unknown-values: allow - stateUpdatedById: - description: The stateUpdatedById field. - readOnly: false + webhookHmacSecret: + description: |- + One-time HMAC shared secret, shown once at creation time. + Populated only when the webhook trigger uses HMAC authentication. type: string - suppressReason: - description: The suppressReason field. - readOnly: false + title: Create Automation Response + type: object + x-speakeasy-name-override: AutomationsCreateAutomationResponse + c1.api.automations.v1.CreateRevokeTasks: + description: The CreateRevokeTasks message. + properties: + appEntitlementRefs: + description: The appEntitlementRefs field. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + appEntitlementRefsCel: + description: The appEntitlementRefsCel field. type: string - taskId: - description: The taskId field. - readOnly: false + excludedAppEntitlementRefs: + description: The excludedAppEntitlementRefs field. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + excludedAppEntitlementRefsCel: + description: The excludedAppEntitlementRefsCel field. type: string - updatedAt: - format: date-time - readOnly: false + revokeAll: + description: The revokeAll field. + type: boolean + useSubjectUser: + description: If true, the step will use the subject user of the automation as the subject. + type: boolean + userIdCel: + description: The userIdCel field. type: string - title: Finding + userRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + title: Create Revoke Tasks type: object - x-speakeasy-name-override: Finding - c1.api.finding.v1.FindingOwnerRef: + x-speakeasy-name-override: CreateRevokeTasks + c1.api.automations.v1.CreateRevokeTasksV2: description: | - The FindingOwnerRef message. + The CreateRevokeTasksV2 message. - This message contains a oneof named owner. Only a single field of the following list may be set at a time: - - identityUserId - - appOwnerAppId - - managerOfUserId - - userSetId + This message contains a oneof named user. Only a single field of the following list may be set at a time: + - userIdCel + - userRef + - useSubjectUser + + + This message contains a oneof named inclusion. Only a single field of the following list may be set at a time: + - inclusionList + - inclusionAll + - inclusionCriteria + - inclusionListCel + - inclusionAccessOnly + + + This message contains a oneof named exclusion. Only a single field of the following list may be set at a time: + - exclusionNone + - exclusionList + - exclusionCriteria + - exclusionListCel properties: - appOwnerAppId: - description: |- - The appOwnerAppId field. - This field is part of the `owner` oneof. - See the documentation for `c1.api.finding.v1.FindingOwnerRef` for more details. - nullable: true - readOnly: false - type: string - identityUserId: + exclusionCriteria: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementExclusionCriteria' + - type: "null" + exclusionList: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementExclusionList' + - type: "null" + exclusionListCel: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementExclusionListCel' + - type: "null" + exclusionNone: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementExclusionNone' + - type: "null" + grantSourceFilter: description: |- - The identityUserId field. - This field is part of the `owner` oneof. - See the documentation for `c1.api.finding.v1.FindingOwnerRef` for more details. - nullable: true - readOnly: false + Restricts the step to grants of either DIRECT (grants the user holds directly, + including grants that are also inherited) or UNSPECIFIED (all grants). + Composes with every inclusion mode, including inclusion_list_cel. + enum: + - GRANT_SOURCE_FILTER_UNSPECIFIED + - GRANT_SOURCE_FILTER_DIRECT type: string - managerOfUserId: + x-speakeasy-unknown-values: allow + inclusionAccessOnly: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementInclusionAccessOnly' + - type: "null" + inclusionAll: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementInclusionAll' + - type: "null" + inclusionCriteria: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementInclusionCriteria' + - type: "null" + inclusionList: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementInclusionList' + - type: "null" + inclusionListCel: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementInclusionListCel' + - type: "null" + useSubjectUser: description: |- - The managerOfUserId field. - This field is part of the `owner` oneof. - See the documentation for `c1.api.finding.v1.FindingOwnerRef` for more details. - nullable: true - readOnly: false - type: string - userSetId: + The useSubjectUser field. + This field is part of the `user` oneof. + See the documentation for `c1.api.automations.v1.CreateRevokeTasksV2` for more details. + type: + - boolean + - "null" + userIdCel: description: |- - The userSetId field. - This field is part of the `owner` oneof. - See the documentation for `c1.api.finding.v1.FindingOwnerRef` for more details. - nullable: true - readOnly: false - type: string - title: Finding Owner Ref + The userIdCel field. + This field is part of the `user` oneof. + See the documentation for `c1.api.automations.v1.CreateRevokeTasksV2` for more details. + type: + - string + - "null" + userRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + title: Create Revoke Tasks V 2 type: object - x-speakeasy-name-override: FindingOwnerRef - c1.api.finding.v1.FindingRef: - description: The FindingRef message. - properties: - id: - description: The ID of the finding. - readOnly: false - type: string - title: Finding Ref + x-speakeasy-name-override: CreateRevokeTasksV2 + c1.api.automations.v1.DeleteAutomationRequestInput: + description: The DeleteAutomationRequest message. + title: Delete Automation Request type: object - x-speakeasy-name-override: FindingRef - c1.api.finding.v1.FindingRiskFactor: - description: The FindingRiskFactor message. + x-speakeasy-name-override: AutomationsDeleteAutomationRequest + c1.api.automations.v1.DeleteAutomationResponse: + description: The DeleteAutomationResponse message. + title: Delete Automation Response + type: object + x-speakeasy-name-override: AutomationsDeleteAutomationResponse + c1.api.automations.v1.DisabledReasonCircuitBreaker: + description: |- + DisabledReasonCircuitBreaker carries the trip context when an automation + has been auto-disabled by its rate cap. Returned on the parent Automation + when read; not directly settable. properties: - description: - description: The description field. - readOnly: false - type: string - name: - description: The name field. - readOnly: false - type: string - severity: - description: The severity field. + observedCount: + description: Observed execution count in the period at trip time. + format: uint32 + type: integer + period: + description: Snapshot of the period at trip time. enum: - - FINDING_SEVERITY_UNSPECIFIED - - FINDING_SEVERITY_INFO - - FINDING_SEVERITY_LOW - - FINDING_SEVERITY_MEDIUM - - FINDING_SEVERITY_HIGH - - FINDING_SEVERITY_CRITICAL - readOnly: false + - CIRCUIT_BREAKER_PERIOD_UNSPECIFIED + - CIRCUIT_BREAKER_PERIOD_HOUR + - CIRCUIT_BREAKER_PERIOD_DAY + - CIRCUIT_BREAKER_PERIOD_WEEK + - CIRCUIT_BREAKER_PERIOD_MONTH type: string x-speakeasy-unknown-values: allow - weight: - description: The weight field. + threshold: + description: Snapshot of the threshold at trip time. format: uint32 - readOnly: false type: integer - title: Finding Risk Factor + trippedAt: + format: date-time + type: + - string + - "null" + title: Disabled Reason Circuit Breaker type: object - x-speakeasy-name-override: FindingRiskFactor - c1.api.finding.v1.FindingRiskScore: - description: The FindingRiskScore message. + x-speakeasy-name-override: DisabledReasonCircuitBreaker + c1.api.automations.v1.EntitlementExclusionCriteria: + description: The EntitlementExclusionCriteria message. properties: - originalScore: - description: The originalScore field. - format: uint32 - readOnly: false - type: integer - overrideByUserId: - description: The overrideByUserId field. - readOnly: false - type: string - overrideScore: - description: The overrideScore field. - format: uint32 - readOnly: false - type: integer - riskFactors: - description: The riskFactors field. + excludedAppIds: + description: The excludedAppIds field. items: - $ref: '#/components/schemas/c1.api.finding.v1.FindingRiskFactor' - nullable: true - readOnly: false - type: array - score: - description: The score field. - format: uint32 - readOnly: false - type: integer - systemScore: - description: The systemScore field. - format: uint32 - readOnly: false - type: integer - title: Finding Risk Score + type: string + type: + - array + - "null" + excludedComplianceFrameworkIds: + description: The excludedComplianceFrameworkIds field. + items: + type: string + type: + - array + - "null" + excludedResourceTypeIds: + description: The excludedResourceTypeIds field. + items: + type: string + type: + - array + - "null" + excludedRiskLevelIds: + description: The excludedRiskLevelIds field. + items: + type: string + type: + - array + - "null" + title: Entitlement Exclusion Criteria type: object - x-speakeasy-name-override: FindingRiskScore - c1.api.finding.v1.FindingRoutingRule: - description: The FindingRoutingRule message. + x-speakeasy-name-override: EntitlementExclusionCriteria + c1.api.automations.v1.EntitlementExclusionList: + description: The EntitlementExclusionList message. properties: - action: - $ref: '#/components/schemas/c1.api.finding.v1.FindingRoutingRuleAction' - appId: - description: The appId field. - readOnly: false - type: string - condition: - description: The condition field. - readOnly: false - type: string - createdAt: - format: date-time - readOnly: false - type: string - description: - description: The description field. - readOnly: false - type: string - displayName: - description: The displayName field. - readOnly: false - type: string - enabled: - description: The enabled field. - readOnly: false - type: boolean - id: - description: The id field. - readOnly: false - type: string - priority: - description: The priority field. - format: int32 - readOnly: false - type: integer - templateId: - description: The templateId field. - readOnly: false - type: string - updatedAt: - format: date-time - readOnly: false - type: string - title: Finding Routing Rule + excludedAppEntitlementRefs: + description: The excludedAppEntitlementRefs field. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + title: Entitlement Exclusion List type: object - x-speakeasy-name-override: FindingRoutingRule - c1.api.finding.v1.FindingRoutingRuleAction: - description: | - The FindingRoutingRuleAction message. - - This message contains a oneof named action. Only a single field of the following list may be set at a time: - - createTask - - suppress - - notify + x-speakeasy-name-override: EntitlementExclusionList + c1.api.automations.v1.EntitlementExclusionListCel: + description: The EntitlementExclusionListCel message. properties: - createTask: - $ref: '#/components/schemas/c1.api.finding.v1.CreateTaskAction' - notify: - $ref: '#/components/schemas/c1.api.finding.v1.NotifyAction' - suppress: - $ref: '#/components/schemas/c1.api.finding.v1.SuppressRoutingAction' - title: Finding Routing Rule Action + excludedAppEntitlementRefsCel: + description: The excludedAppEntitlementRefsCel field. + type: string + title: Entitlement Exclusion List Cel type: object - x-speakeasy-name-override: FindingRoutingRuleAction - c1.api.finding.v1.FindingSearchRequest: - description: The FindingSearchRequest message. + x-speakeasy-name-override: EntitlementExclusionListCel + c1.api.automations.v1.EntitlementExclusionNone: + description: The EntitlementExclusionNone message. + title: Entitlement Exclusion None + type: object + x-speakeasy-name-override: EntitlementExclusionNone + c1.api.automations.v1.EntitlementInclusionAccessOnly: + description: |- + EntitlementInclusionAccessOnly resolves to the system-managed access + entitlement on every app the subject user has an AppUser on. Use this to + deprovision app accounts without fanning out to every group, role, or + permission inside each app — produces at most one revoke ticket per app. + title: Entitlement Inclusion Access Only + type: object + x-speakeasy-name-override: EntitlementInclusionAccessOnly + c1.api.automations.v1.EntitlementInclusionAll: + description: The EntitlementInclusionAll message. + title: Entitlement Inclusion All + type: object + x-speakeasy-name-override: EntitlementInclusionAll + c1.api.automations.v1.EntitlementInclusionCriteria: + description: The EntitlementInclusionCriteria message. properties: appIds: - description: Filter by app IDs (OR within field). - items: - type: string - nullable: true - readOnly: false - type: array - appUserIds: - description: |- - Filter by app user IDs (OR within field). Matches findings whose - target.app_user_target.app_user_id is in this list. + description: The appIds field. items: type: string - nullable: true - readOnly: false - type: array - findingTypes: - description: Filter by finding type discriminators (OR within field). + type: + - array + - "null" + complianceFrameworkIds: + description: The complianceFrameworkIds field. items: type: string - nullable: true - readOnly: false - type: array - pageSize: - description: Maximum number of findings to return per page. - format: int32 - readOnly: false - type: integer - pageToken: - description: Pagination token from a previous response. - readOnly: false - type: string - query: - description: Free text search query. - readOnly: false - type: string - severities: - description: Filter by severities (OR within field). + type: + - array + - "null" + resourceTypeIds: + description: The resourceTypeIds field. items: - enum: - - FINDING_SEVERITY_UNSPECIFIED - - FINDING_SEVERITY_INFO - - FINDING_SEVERITY_LOW - - FINDING_SEVERITY_MEDIUM - - FINDING_SEVERITY_HIGH - - FINDING_SEVERITY_CRITICAL type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - states: - description: Filter by states (OR within field). + type: + - array + - "null" + riskLevelIds: + description: The riskLevelIds field. items: - enum: - - FINDING_STATE_UNSPECIFIED - - FINDING_STATE_OPEN - - FINDING_STATE_IN_PROGRESS - - FINDING_STATE_RESOLVED - - FINDING_STATE_SNOOZED - - FINDING_STATE_RISK_ACCEPTED - - FINDING_STATE_SUPPRESSED type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - title: Finding Search Request + type: + - array + - "null" + title: Entitlement Inclusion Criteria type: object - x-speakeasy-name-override: FindingSearchRequest - c1.api.finding.v1.FindingSearchResponse: - description: The FindingSearchResponse message. + x-speakeasy-name-override: EntitlementInclusionCriteria + c1.api.automations.v1.EntitlementInclusionList: + description: The EntitlementInclusionList message. properties: - list: - description: The list field. + appEntitlementRefs: + description: The appEntitlementRefs field. items: - $ref: '#/components/schemas/c1.api.finding.v1.Finding' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The nextPageToken field. - readOnly: false + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + title: Entitlement Inclusion List + type: object + x-speakeasy-name-override: EntitlementInclusionList + c1.api.automations.v1.EntitlementInclusionListCel: + description: The EntitlementInclusionListCel message. + properties: + appEntitlementRefsCel: + description: The appEntitlementRefsCel field. type: string - title: Finding Search Response + title: Entitlement Inclusion List Cel type: object - x-speakeasy-name-override: FindingSearchResponse - c1.api.finding.v1.GetFindingResponse: - description: The GetFindingResponse message. + x-speakeasy-name-override: EntitlementInclusionListCel + c1.api.automations.v1.EvaluateExpressions: + deprecated: true + description: The EvaluateExpressions message. properties: - expanded: - description: The expanded field. + expressions: + description: The expressions field. items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - finding: - $ref: '#/components/schemas/c1.api.finding.v1.Finding' - title: Get Finding Response + $ref: '#/components/schemas/c1.api.automations.v1.Expression' + type: + - array + - "null" + title: Evaluate Expressions type: object - x-speakeasy-name-override: GetFindingResponse - c1.api.finding.v1.GetFindingRoutingRuleResponse: - description: The GetFindingRoutingRuleResponse message. + x-speakeasy-name-override: EvaluateExpressions + c1.api.automations.v1.ExecuteAutomationRequestInput: + description: The ExecuteAutomationRequest message. properties: - routingRule: - $ref: '#/components/schemas/c1.api.finding.v1.FindingRoutingRule' - title: Get Finding Routing Rule Response + context: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.AutomationContext' + - type: "null" + title: Execute Automation Request type: object - x-speakeasy-name-override: GetFindingRoutingRuleResponse - c1.api.finding.v1.IdentityUserTarget: - description: The IdentityUserTarget message. - nullable: true + x-speakeasy-name-override: ExecuteAutomationRequest + c1.api.automations.v1.ExecuteAutomationResponse: + description: The ExecuteAutomationResponse message. properties: - identityUserId: - description: The identityUserId field. - readOnly: false + executionId: + description: The unique identifier of the newly created execution. + format: int64 type: string - title: Identity User Target + title: Execute Automation Response type: object - x-speakeasy-name-override: IdentityUserTarget - c1.api.finding.v1.ListFindingRoutingRulesResponse: - description: The ListFindingRoutingRulesResponse message. + x-speakeasy-name-override: ExecuteAutomationResponse + c1.api.automations.v1.Expression: + deprecated: true + description: The Expression message. properties: - list: - description: The list field. - items: - $ref: '#/components/schemas/c1.api.finding.v1.FindingRoutingRule' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The nextPageToken field. - readOnly: false + expressionCel: + description: The expressionCel field. type: string - title: List Finding Routing Rules Response - type: object - x-speakeasy-name-override: ListFindingRoutingRulesResponse - c1.api.finding.v1.NotifyAction: - description: The NotifyAction message. - nullable: true - title: Notify Action - type: object - x-speakeasy-name-override: NotifyAction - c1.api.finding.v1.ReopenAction: - description: ReopenAction parameters for UpdateFindingState. - nullable: true - title: Reopen Action + isSecret: + description: The isSecret field. + type: boolean + key: + description: The key field. + type: string + title: Expression type: object - x-speakeasy-name-override: ReopenAction - c1.api.finding.v1.ResolveAction: - description: ResolveAction parameters for UpdateFindingState (manual resolve). - nullable: true + x-speakeasy-name-override: Expression + c1.api.automations.v1.GeneratePassword: + description: The GeneratePassword message. properties: - reason: - description: The reason field. - readOnly: false + passwordPolicyId: + deprecated: true + description: 'Deprecated: password policy ID lookup is no longer used.' type: string - title: Resolve Action + policy: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.GeneratePasswordPolicy' + - type: "null" + title: Generate Password type: object - x-speakeasy-name-override: ResolveAction - c1.api.finding.v1.ServiceAccountMisclassificationEvidence: - description: The ServiceAccountMisclassificationEvidence message. - nullable: true + x-speakeasy-name-override: GeneratePassword + c1.api.automations.v1.GeneratePasswordPolicy: + description: | + GeneratePasswordPolicy defines inline password generation rules. + + This message contains a oneof named character_rules. Only a single field of the following list may be set at a time: + - noRestrictions + - customCharacters + - excludedCharacters properties: - detectionReason: - description: The detectionReason field. - readOnly: false - type: string - title: Service Account Misclassification Evidence + customCharacters: + description: |- + The customCharacters field. + This field is part of the `character_rules` oneof. + See the documentation for `c1.api.automations.v1.GeneratePasswordPolicy` for more details. + type: + - string + - "null" + excludedCharacters: + description: |- + The excludedCharacters field. + This field is part of the `character_rules` oneof. + See the documentation for `c1.api.automations.v1.GeneratePasswordPolicy` for more details. + type: + - string + - "null" + maxCharacterCount: + description: The maxCharacterCount field. + format: int32 + type: integer + minCharacterCount: + description: The minCharacterCount field. + format: int32 + type: integer + noRestrictions: + description: |- + The noRestrictions field. + This field is part of the `character_rules` oneof. + See the documentation for `c1.api.automations.v1.GeneratePasswordPolicy` for more details. + type: + - boolean + - "null" + requireLowercase: + description: The requireLowercase field. + type: boolean + requireNumbers: + description: The requireNumbers field. + type: boolean + requireSpecialCharacters: + description: The requireSpecialCharacters field. + type: boolean + requireUppercase: + description: The requireUppercase field. + type: boolean + title: Generate Password Policy type: object - x-speakeasy-name-override: ServiceAccountMisclassificationEvidence - c1.api.finding.v1.ServiceAccountMisclassificationType: - description: The ServiceAccountMisclassificationType message. - nullable: true + x-speakeasy-name-override: GeneratePasswordPolicy + c1.api.automations.v1.GetAutomationExecutionResponse: + description: The GetAutomationExecutionResponse message. properties: - currentAccountType: - description: The currentAccountType field. - enum: - - APP_USER_TYPE_UNSPECIFIED - - APP_USER_TYPE_USER - - APP_USER_TYPE_SERVICE_ACCOUNT - - APP_USER_TYPE_SYSTEM_ACCOUNT - readOnly: false - type: string - x-speakeasy-unknown-values: allow - detectedAccountType: - description: The detectedAccountType field. - enum: - - APP_USER_TYPE_UNSPECIFIED - - APP_USER_TYPE_USER - - APP_USER_TYPE_SERVICE_ACCOUNT - - APP_USER_TYPE_SYSTEM_ACCOUNT - readOnly: false - type: string - x-speakeasy-unknown-values: allow - title: Service Account Misclassification Type + automationExecution: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.AutomationExecution' + - type: "null" + expanded: + description: Related objects requested via the expand mask. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + view: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.AutomationExecutionView' + - type: "null" + title: Get Automation Execution Response type: object - x-speakeasy-name-override: ServiceAccountMisclassificationType - c1.api.finding.v1.SimilarUsernameMatchEvidence: - description: The SimilarUsernameMatchEvidence message. - nullable: true + x-speakeasy-name-override: GetAutomationExecutionResponse + c1.api.automations.v1.GetAutomationResponse: + description: The GetAutomationResponse message. properties: - appUsername: - description: The appUsername field. - readOnly: false - type: string - identityUsername: - description: The identityUsername field. - readOnly: false - type: string - similarityScore: - description: The similarityScore field. - readOnly: false - type: number - title: Similar Username Match Evidence + automation: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.Automation' + - type: "null" + title: Get Automation Response type: object - x-speakeasy-name-override: SimilarUsernameMatchEvidence - c1.api.finding.v1.SimilarUsernameMatchType: - description: The SimilarUsernameMatchType message. - nullable: true + x-speakeasy-name-override: GetAutomationResponse + c1.api.automations.v1.GrantDeletedTrigger: + description: The GrantDeletedTrigger message. properties: - proposedIdentityUserId: - description: The proposedIdentityUserId field. - readOnly: false - type: string - title: Similar Username Match Type + grantTriggerFilter: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.GrantTriggerFilter' + - type: "null" + title: Grant Deleted Trigger type: object - x-speakeasy-name-override: SimilarUsernameMatchType - c1.api.finding.v1.SnoozeAction: - description: SnoozeAction parameters for UpdateFindingState. - nullable: true + x-speakeasy-name-override: GrantDeletedTrigger + c1.api.automations.v1.GrantEntitlementExclusionCriteria: + description: The GrantEntitlementExclusionCriteria message. properties: - reason: - description: The reason field. - readOnly: false - type: string - snoozeUntil: - format: date-time - readOnly: false - type: string - title: Snooze Action + excludedAppIds: + description: The excludedAppIds field. + items: + type: string + type: + - array + - "null" + excludedComplianceFrameworkIds: + description: The excludedComplianceFrameworkIds field. + items: + type: string + type: + - array + - "null" + excludedRiskLevelIds: + description: The excludedRiskLevelIds field. + items: + type: string + type: + - array + - "null" + title: Grant Entitlement Exclusion Criteria type: object - x-speakeasy-name-override: SnoozeAction - c1.api.finding.v1.SuppressRoutingAction: - description: The SuppressRoutingAction message. - nullable: true + x-speakeasy-name-override: GrantEntitlementExclusionCriteria + c1.api.automations.v1.GrantEntitlementExclusionList: + description: The GrantEntitlementExclusionList message. properties: - reason: - description: The reason field. - readOnly: false - type: string - title: Suppress Routing Action + excludedAppEntitlementRefs: + description: The excludedAppEntitlementRefs field. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + title: Grant Entitlement Exclusion List type: object - x-speakeasy-name-override: SuppressRoutingAction - c1.api.finding.v1.SuppressStateAction: - description: SuppressStateAction parameters for UpdateFindingState. - nullable: true + x-speakeasy-name-override: GrantEntitlementExclusionList + c1.api.automations.v1.GrantEntitlementExclusionListCel: + description: The GrantEntitlementExclusionListCel message. properties: - reason: - description: The reason field. - readOnly: false + excludedAppEntitlementRefsCel: + description: The excludedAppEntitlementRefsCel field. type: string - title: Suppress State Action + title: Grant Entitlement Exclusion List Cel type: object - x-speakeasy-name-override: SuppressStateAction - c1.api.finding.v1.UnsuppressAction: - deprecated: true - description: UnsuppressAction parameters for UpdateFindingState. - nullable: true - title: Unsuppress Action + x-speakeasy-name-override: GrantEntitlementExclusionListCel + c1.api.automations.v1.GrantEntitlementExclusionNone: + description: The GrantEntitlementExclusionNone message. + title: Grant Entitlement Exclusion None type: object - x-speakeasy-name-override: UnsuppressAction - c1.api.finding.v1.UpdateFindingRoutingRuleRequestInput: - description: The UpdateFindingRoutingRuleRequest message. + x-speakeasy-name-override: GrantEntitlementExclusionNone + c1.api.automations.v1.GrantEntitlementInclusionCriteria: + description: The GrantEntitlementInclusionCriteria message. properties: - routingRule: - $ref: '#/components/schemas/c1.api.finding.v1.FindingRoutingRule' - title: Update Finding Routing Rule Request + appIds: + description: The appIds field. + items: + type: string + type: + - array + - "null" + complianceFrameworkIds: + description: The complianceFrameworkIds field. + items: + type: string + type: + - array + - "null" + riskLevelIds: + description: The riskLevelIds field. + items: + type: string + type: + - array + - "null" + title: Grant Entitlement Inclusion Criteria type: object - x-speakeasy-name-override: UpdateFindingRoutingRuleRequest - c1.api.finding.v1.UpdateFindingRoutingRuleResponse: - description: The UpdateFindingRoutingRuleResponse message. + x-speakeasy-name-override: GrantEntitlementInclusionCriteria + c1.api.automations.v1.GrantEntitlementInclusionList: + description: The GrantEntitlementInclusionList message. properties: - routingRule: - $ref: '#/components/schemas/c1.api.finding.v1.FindingRoutingRule' - title: Update Finding Routing Rule Response + appEntitlementRefs: + description: The appEntitlementRefs field. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + title: Grant Entitlement Inclusion List type: object - x-speakeasy-name-override: UpdateFindingRoutingRuleResponse - c1.api.finding.v1.UpdateFindingStateRequestInput: + x-speakeasy-name-override: GrantEntitlementInclusionList + c1.api.automations.v1.GrantEntitlementInclusionListCel: + description: The GrantEntitlementInclusionListCel message. + properties: + appEntitlementRefsCel: + description: The appEntitlementRefsCel field. + type: string + title: Grant Entitlement Inclusion List Cel + type: object + x-speakeasy-name-override: GrantEntitlementInclusionListCel + c1.api.automations.v1.GrantEntitlements: description: | - The UpdateFindingStateRequest message. + The GrantEntitlements message. - This message contains a oneof named action. Only a single field of the following list may be set at a time: - - snooze - - suppress - - acceptRisk - - unsuppress - - resolve - - reopen + This message contains a oneof named inclusion. Only a single field of the following list may be set at a time: + - inclusionList + - inclusionCriteria + - inclusionListCel + + + This message contains a oneof named exclusion. Only a single field of the following list may be set at a time: + - exclusionNone + - exclusionList + - exclusionCriteria + - exclusionListCel properties: - acceptRisk: - $ref: '#/components/schemas/c1.api.finding.v1.AcceptRiskAction' - reopen: - $ref: '#/components/schemas/c1.api.finding.v1.ReopenAction' - resolve: - $ref: '#/components/schemas/c1.api.finding.v1.ResolveAction' - snooze: - $ref: '#/components/schemas/c1.api.finding.v1.SnoozeAction' - suppress: - $ref: '#/components/schemas/c1.api.finding.v1.SuppressStateAction' - unsuppress: - $ref: '#/components/schemas/c1.api.finding.v1.UnsuppressAction' - title: Update Finding State Request + exclusionCriteria: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.GrantEntitlementExclusionCriteria' + - type: "null" + exclusionList: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.GrantEntitlementExclusionList' + - type: "null" + exclusionListCel: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.GrantEntitlementExclusionListCel' + - type: "null" + exclusionNone: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.GrantEntitlementExclusionNone' + - type: "null" + inclusionCriteria: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.GrantEntitlementInclusionCriteria' + - type: "null" + inclusionList: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.GrantEntitlementInclusionList' + - type: "null" + inclusionListCel: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.GrantEntitlementInclusionListCel' + - type: "null" + useSubjectUser: + description: If true, the step will use the subject user of the automation as the subject. + type: boolean + userIdCel: + description: The userIdCel field. + type: string + userRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + title: Grant Entitlements type: object - x-speakeasy-name-override: UpdateFindingStateRequest - c1.api.finding.v1.UpdateFindingStateResponse: - description: The UpdateFindingStateResponse message. + x-speakeasy-name-override: GrantEntitlements + c1.api.automations.v1.GrantFoundTrigger: + description: The GrantFoundTrigger message. properties: - finding: - $ref: '#/components/schemas/c1.api.finding.v1.Finding' - title: Update Finding State Response + grantTriggerFilter: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.GrantTriggerFilter' + - type: "null" + title: Grant Found Trigger type: object - x-speakeasy-name-override: UpdateFindingStateResponse - c1.api.form.v1.AdminProviderConfig: - description: The AdminProviderConfig message. - nullable: true + x-speakeasy-name-override: GrantFoundTrigger + c1.api.automations.v1.GrantTriggerFilter: + description: | + The GrantTriggerFilter message. + + This message contains a oneof named entitlement_inclusion. Only a single field of the following list may be set at a time: + - inclusionList + - inclusionAll + - inclusionCriteria + - inclusionListCel properties: - defaultValueCel: - description: The defaultValueCel field. - readOnly: false - type: string - showToUser: - description: The showToUser field. - readOnly: false - type: boolean - title: Admin Provider Config + accountFilter: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.GrantTriggerFilter.AccountFilter' + - type: "null" + grantFilter: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.GrantTriggerFilter.GrantFilter' + - type: "null" + inclusionAll: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementInclusionAll' + - type: "null" + inclusionCriteria: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementInclusionCriteria' + - type: "null" + inclusionList: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementInclusionList' + - type: "null" + inclusionListCel: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.EntitlementInclusionListCel' + - type: "null" + title: Grant Trigger Filter type: object - x-speakeasy-name-override: AdminProviderConfig - c1.api.form.v1.AppResourceFilter: - description: The AppResourceFilter message. - nullable: true + x-speakeasy-name-override: GrantTriggerFilter + c1.api.automations.v1.GrantTriggerFilter.AccountFilter: + description: The AccountFilter message. properties: - appId: - description: The appId field. - readOnly: false - type: string - resourceTypeId: - description: The resourceTypeId field. - readOnly: false + accountType: + description: The accountType field. + enum: + - APP_USER_TYPE_UNSPECIFIED + - APP_USER_TYPE_USER + - APP_USER_TYPE_SERVICE_ACCOUNT + - APP_USER_TYPE_SYSTEM_ACCOUNT type: string - title: App Resource Filter + x-speakeasy-unknown-values: allow + title: Account Filter type: object - x-speakeasy-name-override: AppResourceFilter - c1.api.form.v1.AppUserFilter: - description: The AppUserFilter message. - nullable: true + x-speakeasy-name-override: AccountFilter + c1.api.automations.v1.GrantTriggerFilter.GrantFilter: + description: The GrantFilter message. properties: - appId: - description: The appId field. - readOnly: false + grantFilterType: + description: The grantFilterType field. + enum: + - GRANT_FILTER_TYPE_UNSPECIFIED + - GRANT_FILTER_TYPE_PERMANENT + - GRANT_FILTER_TYPE_TEMPORARY type: string - title: App User Filter - type: object - x-speakeasy-name-override: AppUserFilter - c1.api.form.v1.AtLeastOne: - description: The AtLeastOne message. - nullable: true - title: At Least One + x-speakeasy-unknown-values: allow + grantJustificationType: + description: The grantJustificationType field. + enum: + - GRANT_JUSTIFICATION_TYPE_UNSPECIFIED + - GRANT_JUSTIFICATION_TYPE_ALL + - GRANT_JUSTIFICATION_TYPE_CONDUCTOR_ONE + - GRANT_JUSTIFICATION_TYPE_DIRECT + type: string + x-speakeasy-unknown-values: allow + grantSourceFilter: + description: The grantSourceFilter field. + enum: + - GRANT_SOURCE_FILTER_UNSPECIFIED + - GRANT_SOURCE_FILTER_DIRECT + - GRANT_SOURCE_FILTER_INHERITED + type: string + x-speakeasy-unknown-values: allow + title: Grant Filter type: object - x-speakeasy-name-override: AtLeastOne - c1.api.form.v1.BoolField: - description: | - The BoolField message. - - This message contains a oneof named view. Only a single field of the following list may be set at a time: - - checkboxField - - toggleField - nullable: true + x-speakeasy-name-override: GrantFilter + c1.api.automations.v1.ListAutomationExecutionsResponse: + description: The ListAutomationExecutionsResponse message. properties: - checkboxField: - $ref: '#/components/schemas/c1.api.form.v1.CheckboxField' - defaultValue: - description: The defaultValue field. - readOnly: false - type: boolean - rules: - $ref: '#/components/schemas/validate.BoolRules' - toggleField: - $ref: '#/components/schemas/c1.api.form.v1.ToggleField' - title: Bool Field - type: object - x-speakeasy-name-override: BoolField - c1.api.form.v1.C1UserFilter: - description: |- - C1UserFilter is used to configure a picker for selecting ConductorOne users. - This is distinct from AppUserFilter which selects accounts within a connected app. - nullable: true - title: C 1 User Filter - type: object - x-speakeasy-name-override: C1UserFilter - c1.api.form.v1.CheckboxField: - description: The CheckboxField message. - nullable: true - title: Checkbox Field - type: object - x-speakeasy-name-override: CheckboxField - c1.api.form.v1.ChipsField: - description: The ChipsField message. - nullable: true - title: Chips Field + automationExecutions: + description: The page of automation executions. + items: + $ref: '#/components/schemas/c1.api.automations.v1.AutomationExecution' + type: + - array + - "null" + nextPageToken: + description: Token to retrieve the next page of results, empty when no more results exist. + type: string + title: List Automation Executions Response type: object - x-speakeasy-name-override: ChipsField - c1.api.form.v1.DependentOn: - description: |- - DependentOn means the fields in field_names are only valid if all fields - in dependency_field_names are also present - nullable: true + x-speakeasy-name-override: ListAutomationExecutionsResponse + c1.api.automations.v1.ListAutomationsResponse: + description: The ListAutomationsResponse message. properties: - dependencyFieldNames: - description: The fields that must be present for the primary field_names to be valid + list: + description: The page of automations. items: - type: string - nullable: true - readOnly: false - type: array - title: Dependent On + $ref: '#/components/schemas/c1.api.automations.v1.Automation' + type: + - array + - "null" + nextPageToken: + description: Token to retrieve the next page of results, empty when no more results exist. + type: string + title: List Automations Response type: object - x-speakeasy-name-override: DependentOn - c1.api.form.v1.Field: + x-speakeasy-name-override: ListAutomationsResponse + c1.api.automations.v1.ReassignAction: description: | - A field is a single input meant to collect a piece of data from a user + The ReassignAction message. - This message contains a oneof named type. Only a single field of the following list may be set at a time: - - stringField - - boolField - - stringSliceField - - int64Field - - fileField - - oauth2Field - - stringMapField + This message contains a oneof named assignee_user_identifier. Only a single field of the following list may be set at a time: + - assigneeUserIdCel + - assigneeUserRef - This message contains a oneof named provider_config. Only a single field of the following list may be set at a time: - - userConfig - - adminConfig - - sharedConfig + This message contains a oneof named subject_user_identifier. Only a single field of the following list may be set at a time: + - subjectUserIdCel + - subjectUserRef properties: - adminConfig: - $ref: '#/components/schemas/c1.api.form.v1.AdminProviderConfig' - boolField: - $ref: '#/components/schemas/c1.api.form.v1.BoolField' - description: - description: The description field. - readOnly: false - type: string - displayName: - description: The displayName field. - readOnly: false - type: string - fileField: - $ref: '#/components/schemas/c1.api.form.v1.FileField' - int64Field: - $ref: '#/components/schemas/c1.api.form.v1.Int64Field' - name: - description: The name field. - readOnly: false - type: string - oauth2Field: - $ref: '#/components/schemas/c1.api.form.v1.Oauth2Field' - required: - description: The required field. - readOnly: false + assigneeUserIdCel: + description: |- + The assigneeUserIdCel field. + This field is part of the `assignee_user_identifier` oneof. + See the documentation for `c1.api.automations.v1.ReassignAction` for more details. + type: + - string + - "null" + assigneeUserRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + subjectUserIdCel: + description: |- + The subjectUserIdCel field. + This field is part of the `subject_user_identifier` oneof. + See the documentation for `c1.api.automations.v1.ReassignAction` for more details. + type: + - string + - "null" + subjectUserRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + useSubjectUser: + description: If true, the step will use the subject user of the automation as the subject. type: boolean - sharedConfig: - $ref: '#/components/schemas/c1.api.form.v1.SharedProviderConfig' - stringField: - $ref: '#/components/schemas/c1.api.form.v1.StringField' - stringMapField: - $ref: '#/components/schemas/c1.api.form.v1.StringMapField' - stringSliceField: - $ref: '#/components/schemas/c1.api.form.v1.StringSliceField' - userConfig: - $ref: '#/components/schemas/c1.api.form.v1.UserProviderConfig' - title: Field + title: Reassign Action type: object - x-speakeasy-name-override: FormField - c1.api.form.v1.FieldGroup: - description: The FieldGroup message. + x-speakeasy-name-override: ReassignAction + c1.api.automations.v1.RemoveFromDelegation: + description: | + RemoveFromDelegation: find all users that have the target user as their delegated user, and modify the delegation. + + This message contains a oneof named replacement_user. Only a single field of the following list may be set at a time: + - replacementUserIdCel + - replacementUserRef properties: - default: - description: The default field. - readOnly: false + replacementUserIdCel: + description: |- + The user who will replace the target user's delegation + This field is part of the `replacement_user` oneof. + See the documentation for `c1.api.automations.v1.RemoveFromDelegation` for more details. + type: + - string + - "null" + replacementUserRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + useSubjectUser: + description: If true, the step will use the subject user of the automation as the subject. type: boolean - displayName: - description: The displayName field. - readOnly: false + userIdCel: + description: The userIdCel field. type: string - fields: - description: The fields field. - items: - type: string - nullable: true - readOnly: false - type: array - helpText: - description: The helpText field. - readOnly: false + userRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + title: Remove From Delegation + type: object + x-speakeasy-name-override: RemoveFromDelegation + c1.api.automations.v1.ResolvePausedAutomationExecutionsRequestInput: + description: The ResolvePausedAutomationExecutionsRequest message. + properties: + decision: + description: Whether to run or cancel the paused executions. + enum: + - PAUSED_EXECUTION_DECISION_UNSPECIFIED + - PAUSED_EXECUTION_DECISION_RUN + - PAUSED_EXECUTION_DECISION_CANCEL type: string - name: - description: The name field. - readOnly: false + x-speakeasy-unknown-values: allow + reason: + description: |- + Optional human-readable reason for the resolution decision. Stored on + the audit row (paused_run / paused_cancelled events) for post-mortem + and compliance use. Surfaced in the FE as a required field on CANCEL + so admins capture why bulk-cancellation happened. Up to 1024 bytes. type: string - title: Field Group + title: Resolve Paused Automation Executions Request type: object - x-speakeasy-name-override: FormFieldGroup - c1.api.form.v1.FieldRelationship: - description: | - FieldRelationships can be used during form validation, or they can represent - information that is necessary to when it comes to visually rendering the form - - This message contains a oneof named kind. Only a single field of the following list may be set at a time: - - requiredTogether - - atLeastOne - - mutuallyExclusive - - dependentOn + x-speakeasy-name-override: ResolvePausedAutomationExecutionsRequest + c1.api.automations.v1.ResolvePausedAutomationExecutionsResponse: + description: The ResolvePausedAutomationExecutionsResponse message. properties: - atLeastOne: - $ref: '#/components/schemas/c1.api.form.v1.AtLeastOne' - dependentOn: - $ref: '#/components/schemas/c1.api.form.v1.DependentOn' - fieldNames: - description: The names of the fields that share this relationship - items: - type: string - nullable: true - readOnly: false - type: array - mutuallyExclusive: - $ref: '#/components/schemas/c1.api.form.v1.MutuallyExclusive' - requiredTogether: - $ref: '#/components/schemas/c1.api.form.v1.RequiredTogether' - title: Field Relationship + bulkActionId: + description: |- + The bulk action ID created to resolve the paused executions. Track + progress via the BulkAction API. + type: string + erroredCount: + deprecated: true + description: 'Deprecated: see paused_count.' + format: uint32 + type: integer + pausedCount: + deprecated: true + description: |- + Deprecated: previously returned inline resolution counts. Now returns + the bulk action ID for async tracking. + format: uint32 + type: integer + title: Resolve Paused Automation Executions Response type: object - x-speakeasy-name-override: FieldRelationship - c1.api.form.v1.FileField: + x-speakeasy-name-override: ResolvePausedAutomationExecutionsResponse + c1.api.automations.v1.RunAutomation: description: | - The FileField message. + RunAutomation: kick off the execution of an automation template. - This message contains a oneof named view. Only a single field of the following list may be set at a time: - - fileInputField - nullable: true + This message contains a oneof named automation_template. Only a single field of the following list may be set at a time: + - automationTemplateRef + - automationTemplateIdCel properties: - acceptedFileTypes: - description: The acceptedFileTypes field. - items: - type: string - nullable: true - readOnly: false - type: array - fileInputField: - $ref: '#/components/schemas/c1.api.form.v1.FileInputField' - maxFileSize: - description: The maxFileSize field. - format: int64 - nullable: true - readOnly: false - type: string - title: File Field + automationTemplateIdCel: + description: |- + The automationTemplateIdCel field. + This field is part of the `automation_template` oneof. + See the documentation for `c1.api.automations.v1.RunAutomation` for more details. + type: + - string + - "null" + automationTemplateRef: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.AutomationTemplateRef' + - type: "null" + context: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.AutomationContext' + - type: "null" + title: Run Automation type: object - x-speakeasy-name-override: FileField - c1.api.form.v1.FileInputField: - description: The FileInputField message. - nullable: true - title: File Input Field + x-speakeasy-name-override: RunAutomation + c1.api.automations.v1.RunDelayed: + description: The RunDelayed message. + properties: + coldStartDelayDays: + description: The coldStartDelayDays field. + format: uint32 + type: integer + required: + - coldStartDelayDays + title: Run Delayed type: object - x-speakeasy-name-override: FileInputField - c1.api.form.v1.Form: - description: A form is a collection of fields to be filled out by a user + x-speakeasy-name-override: RunDelayed + c1.api.automations.v1.RunImmediately: + description: No fields needed; this just indicates the trigger should run immediately + title: Run Immediately + type: object + x-speakeasy-name-override: RunImmediately + c1.api.automations.v1.ScheduleTrigger: + description: The ScheduleTrigger message. properties: - description: - description: The description field. - readOnly: false - type: string - displayName: - description: The displayName field. - readOnly: false + advanced: + description: The advanced field. + type: boolean + condition: + description: The condition field. type: string - fieldGroups: - description: The fieldGroups field. - items: - $ref: '#/components/schemas/c1.api.form.v1.FieldGroup' - nullable: true - readOnly: false - type: array - fieldRelationships: - description: The fieldRelationships field. - items: - $ref: '#/components/schemas/c1.api.form.v1.FieldRelationship' - nullable: true - readOnly: false - type: array - fields: - description: The fields field. - items: - $ref: '#/components/schemas/c1.api.form.v1.Field' - nullable: true - readOnly: false - type: array - id: - description: The id field. - readOnly: false + cronSpec: + description: The cronSpec field. type: string - title: Form - type: object - x-speakeasy-entity: Request_Schema - x-speakeasy-name-override: RequestSchemaForm - c1.api.form.v1.Int64Field: - description: | - The Int64Field message. - - This message contains a oneof named view. Only a single field of the following list may be set at a time: - - numberField - nullable: true - properties: - defaultValue: - description: The defaultValue field. - format: int64 - nullable: true - readOnly: false + skipIfTrueCel: + deprecated: true + description: The skipIfTrueCel field. type: string - numberField: - $ref: '#/components/schemas/c1.api.form.v1.NumberField' - placeholder: - description: The placeholder field. - readOnly: false + start: + format: date-time + type: + - string + - "null" + timezone: + description: The timezone field. type: string - rules: - $ref: '#/components/schemas/validate.Int64Rules' - title: Int 64 Field - type: object - x-speakeasy-name-override: Int64Field - c1.api.form.v1.MutuallyExclusive: - description: The MutuallyExclusive message. - nullable: true - title: Mutually Exclusive + title: Schedule Trigger type: object - x-speakeasy-name-override: MutuallyExclusive - c1.api.form.v1.NumberField: - description: The NumberField message. - nullable: true + x-speakeasy-name-override: ScheduleTrigger + c1.api.automations.v1.ScheduleTriggerAppUser: + description: The ScheduleTriggerAppUser message. properties: - maxValue: - description: The maxValue field. - format: int64 - readOnly: false + appId: + description: The appId field. type: string - minValue: - description: The minValue field. - format: int64 - readOnly: false + condition: + description: The condition field. type: string - step: - description: The step field. - format: int64 - readOnly: false + cronSpec: + description: The cronSpec field. type: string - title: Number Field + start: + format: date-time + type: + - string + - "null" + timezone: + description: The timezone field. + type: string + title: Schedule Trigger App User type: object - x-speakeasy-name-override: NumberField - c1.api.form.v1.Oauth2Field: - description: | - The Oauth2Field message. - - This message contains a oneof named view. Only a single field of the following list may be set at a time: - - oauth2FieldView - nullable: true + x-speakeasy-name-override: ScheduleTriggerAppUser + c1.api.automations.v1.ScheduleTriggerNoUser: + description: |- + ScheduleTriggerNoUser fires on a cron schedule with no subject user (e.g. reports, syncs, orchestration). + Minimum cron interval is enforced at 1 hour in validation. properties: - oauth2FieldView: - $ref: '#/components/schemas/c1.api.form.v1.Oauth2FieldView' - title: Oauth 2 Field - type: object - x-speakeasy-name-override: Oauth2Field - c1.api.form.v1.Oauth2FieldView: - description: The Oauth2FieldView message. - nullable: true - title: Oauth 2 Field View - type: object - x-speakeasy-name-override: Oauth2FieldView - c1.api.form.v1.PasswordField: - description: The PasswordField message. - nullable: true - title: Password Field + advanced: + description: The advanced field. + type: boolean + cronSpec: + description: The cronSpec field. + type: string + start: + format: date-time + type: + - string + - "null" + timezone: + description: The timezone field. + type: string + title: Schedule Trigger No User type: object - x-speakeasy-name-override: PasswordField - c1.api.form.v1.PickerField: - description: | - The PickerField message. - - This message contains a oneof named type. Only a single field of the following list may be set at a time: - - appUserPicker - - resourcePicker - - c1UserPicker - nullable: true + x-speakeasy-name-override: ScheduleTriggerNoUser + c1.api.automations.v1.SearchAllAutomationExecutionsRequest: + description: The SearchAllAutomationExecutionsRequest message. properties: - appUserPicker: - $ref: '#/components/schemas/c1.api.form.v1.AppUserFilter' - c1UserPicker: - $ref: '#/components/schemas/c1.api.form.v1.C1UserFilter' - resourcePicker: - $ref: '#/components/schemas/c1.api.form.v1.AppResourceFilter' - title: Picker Field - type: object - x-speakeasy-name-override: PickerField - c1.api.form.v1.RequiredTogether: - description: The RequiredTogether message. - nullable: true - title: Required Together + appIds: + description: Filter to executions associated with one or more apps. + items: + type: string + type: + - array + - "null" + automationTemplateIds: + description: Filter to one or more specific automation templates. + items: + type: string + type: + - array + - "null" + executionStates: + description: Filter by execution state (e.g. DONE, ERROR). + items: + enum: + - AUTOMATION_EXECUTION_STATE_UNSPECIFIED + - AUTOMATION_EXECUTION_STATE_PENDING + - AUTOMATION_EXECUTION_STATE_CREATING + - AUTOMATION_EXECUTION_STATE_GET_STEP + - AUTOMATION_EXECUTION_STATE_PROCESS_STEP + - AUTOMATION_EXECUTION_STATE_COMPLETE_STEP + - AUTOMATION_EXECUTION_STATE_DONE + - AUTOMATION_EXECUTION_STATE_ERROR + - AUTOMATION_EXECUTION_STATE_TERMINATE + - AUTOMATION_EXECUTION_STATE_WAITING + - AUTOMATION_EXECUTION_STATE_PAUSED_BY_CIRCUIT_BREAKER + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.AutomationExecutionExpandMask' + - type: "null" + pageSize: + description: Maximum number of results to return per page. + format: int32 + type: integer + pageToken: + description: Pagination token from a previous SearchAllAutomationExecutionsResponse. + type: string + subjectUserIds: + description: Filter to executions where one or more C1 users are subjects. + items: + type: string + type: + - array + - "null" + title: Search All Automation Executions Request type: object - x-speakeasy-name-override: RequiredTogether - c1.api.form.v1.SelectField: - description: The SelectField message. - nullable: true + x-speakeasy-name-override: SearchAllAutomationExecutionsRequest + c1.api.automations.v1.SearchAllAutomationExecutionsResponse: + description: The SearchAllAutomationExecutionsResponse message. properties: - options: - description: The options field. + expanded: + description: Related objects requested via the expand mask. items: - $ref: '#/components/schemas/c1.api.form.v1.SelectOption' - nullable: true - readOnly: false - type: array - type: - description: The type field. - enum: - - SELECT_TYPE_UNSPECIFIED - - SELECT_TYPE_DROPDOWN - - SELECT_TYPE_RADIO - - SELECT_TYPE_BUTTONS - readOnly: false + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + list: + description: The page of execution views matching the search criteria. + items: + $ref: '#/components/schemas/c1.api.automations.v1.AutomationExecutionView' + type: + - array + - "null" + nextPageToken: + description: Token to retrieve the next page of results, empty when no more results exist. type: string - x-speakeasy-unknown-values: allow - title: Select Field + title: Search All Automation Executions Response type: object - x-speakeasy-name-override: SelectField - c1.api.form.v1.SelectOption: - description: The SelectOption message. + x-speakeasy-name-override: SearchAllAutomationExecutionsResponse + c1.api.automations.v1.SearchAutomationExecutionsRequest: + description: The SearchAutomationExecutionsRequest message. properties: - description: - description: Used for type BUTTONS - readOnly: false + automationTemplateId: + description: Filter results to executions of this automation template. type: string - displayName: - description: The displayName field. - readOnly: false + executionId: + description: Filter results to a specific execution by its numeric identifier. + format: int64 type: string - value: - description: The value field. - readOnly: false + executionStepStates: + description: Filter results to executions in any of the specified states. + items: + enum: + - AUTOMATION_EXECUTION_STATE_UNSPECIFIED + - AUTOMATION_EXECUTION_STATE_PENDING + - AUTOMATION_EXECUTION_STATE_CREATING + - AUTOMATION_EXECUTION_STATE_GET_STEP + - AUTOMATION_EXECUTION_STATE_PROCESS_STEP + - AUTOMATION_EXECUTION_STATE_COMPLETE_STEP + - AUTOMATION_EXECUTION_STATE_DONE + - AUTOMATION_EXECUTION_STATE_ERROR + - AUTOMATION_EXECUTION_STATE_TERMINATE + - AUTOMATION_EXECUTION_STATE_WAITING + - AUTOMATION_EXECUTION_STATE_PAUSED_BY_CIRCUIT_BREAKER + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.AutomationExecutionExpandMask' + - type: "null" + pageSize: + description: Maximum number of results to return per page. + format: int32 + type: integer + pageToken: + description: Pagination token from a previous SearchAutomationExecutionsResponse. type: string - title: Select Option + query: + description: Free-text search query to filter executions. + type: string + refs: + description: Restrict results to specific execution references. + items: + $ref: '#/components/schemas/c1.api.automations.v1.AutomationExecutionRef' + type: + - array + - "null" + title: Search Automation Executions Request type: object - x-speakeasy-name-override: SelectOption - c1.api.form.v1.SharedProviderConfig: - description: The SharedProviderConfig message. - nullable: true + x-speakeasy-name-override: SearchAutomationExecutionsRequest + c1.api.automations.v1.SearchAutomationExecutionsResponse: + description: The SearchAutomationExecutionsResponse message. properties: - defaultValueCel: - description: The defaultValueCel field. - readOnly: false - type: string - inputTransformationCel: - description: The inputTransformationCel field. - readOnly: false + expanded: + description: Related objects requested via the expand mask. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + list: + description: The page of execution views matching the search criteria. + items: + $ref: '#/components/schemas/c1.api.automations.v1.AutomationExecutionView' + type: + - array + - "null" + nextPageToken: + description: Token to retrieve the next page of results, empty when no more results exist. type: string - lockDefaultValues: - description: The lockDefaultValues field. - readOnly: false - type: boolean - title: Shared Provider Config + title: Search Automation Executions Response type: object - x-speakeasy-name-override: SharedProviderConfig - c1.api.form.v1.StringField: - description: | - The StringField message. - - This message contains a oneof named view. Only a single field of the following list may be set at a time: - - textField - - passwordField - - selectField - - pickerField - nullable: true + x-speakeasy-name-override: SearchAutomationExecutionsResponse + c1.api.automations.v1.SearchAutomationTemplateVersionsRequest: + description: The SearchAutomationTemplateVersionsRequest message. properties: - defaultValue: - description: The defaultValue field. - readOnly: false + automationTemplateId: + description: The automation template whose version history to search. type: string - passwordField: - $ref: '#/components/schemas/c1.api.form.v1.PasswordField' - pickerField: - $ref: '#/components/schemas/c1.api.form.v1.PickerField' - placeholder: - description: The placeholder field. - readOnly: false + pageSize: + description: Maximum number of results to return per page. + format: int32 + type: integer + pageToken: + description: Pagination token from a previous SearchAutomationTemplateVersionsResponse. type: string - rules: - $ref: '#/components/schemas/validate.StringRules' - selectField: - $ref: '#/components/schemas/c1.api.form.v1.SelectField' - textField: - $ref: '#/components/schemas/c1.api.form.v1.TextField' - title: String Field + title: Search Automation Template Versions Request type: object - x-speakeasy-name-override: FormStringField - c1.api.form.v1.StringMapField: - description: The StringMapField message. - nullable: true + x-speakeasy-name-override: SearchAutomationTemplateVersionsRequest + c1.api.automations.v1.SearchAutomationTemplateVersionsResponse: + description: The SearchAutomationTemplateVersionsResponse message. properties: - defaultValue: - additionalProperties: - type: string - description: The defaultValue field. - readOnly: false - type: object - rules: - $ref: '#/components/schemas/c1.api.form.v1.StringMapRules' - title: String Map Field + list: + description: The page of template versions matching the search criteria. + items: + $ref: '#/components/schemas/c1.api.automations.v1.AutomationTemplateVersion' + type: + - array + - "null" + nextPageToken: + description: Token to retrieve the next page of results, empty when no more results exist. + type: string + title: Search Automation Template Versions Response type: object - x-speakeasy-name-override: FormStringMapField - c1.api.form.v1.StringMapRules: - description: The StringMapRules message. - nullable: true + x-speakeasy-name-override: SearchAutomationTemplateVersionsResponse + c1.api.automations.v1.SearchAutomationsRequest: + description: The SearchAutomationsRequest message. properties: - isRequired: - description: The isRequired field. - readOnly: false - type: boolean - validateEmpty: - description: The validateEmpty field. - readOnly: false - type: boolean - title: String Map Rules - type: object - x-speakeasy-name-override: StringMapRules - c1.api.form.v1.StringSliceField: - description: | - The StringSliceField message. - - This message contains a oneof named view. Only a single field of the following list may be set at a time: - - chipsField - - pickerField - nullable: true - properties: - chipsField: - $ref: '#/components/schemas/c1.api.form.v1.ChipsField' - defaultValues: - description: The defaultValues field. + appId: + description: Filter results to automations belonging to this application. + type: string + appIds: + description: |- + Filter results to automations belonging to any of the specified apps. + Supersedes the singular `app_id` field when non-empty; when empty, the + server falls back to `app_id` for backward compatibility. items: type: string - nullable: true - readOnly: false - type: array - pickerField: - $ref: '#/components/schemas/c1.api.form.v1.PickerField' - placeholder: - description: The placeholder field. - readOnly: false + type: + - array + - "null" + direction: + description: |- + Direction to sort in. Unspecified falls back to ASC when sort_field is set; + when sort_field is also unspecified, the server default order (created_at + DESC) applies. + enum: + - SORT_DIRECTION_UNSPECIFIED + - SORT_DIRECTION_ASC + - SORT_DIRECTION_DESC type: string - rules: - $ref: '#/components/schemas/validate.RepeatedRules' - title: String Slice Field - type: object - x-speakeasy-name-override: StringSliceField - c1.api.form.v1.TextField: - description: The TextField message. - nullable: true - properties: - multiline: - description: The multiline field. - readOnly: false - type: boolean - suffix: - description: Static text displayed as an end adornment (e.g. ".example.com" for domain fields). - nullable: true - readOnly: false + x-speakeasy-unknown-values: allow + isDraft: + description: |- + Tri-state draft filter. Unset = include both drafts and published; + `true` = drafts only; `false` = published only. + type: + - boolean + - "null" + pageSize: + description: Maximum number of results to return per page. + format: int32 + type: integer + pageToken: + description: Pagination token from a previous SearchAutomationsResponse. type: string - title: Text Field - type: object - x-speakeasy-name-override: TextField - c1.api.form.v1.ToggleField: - description: The ToggleField message. - nullable: true - title: Toggle Field + query: + description: Free-text search query to filter automations by name or description. + type: string + refs: + description: Restrict results to automations matching these template references. + items: + $ref: '#/components/schemas/c1.api.automations.v1.AutomationTemplateRef' + type: + - array + - "null" + sortField: + description: Column to sort by. Unspecified (0) means sort by created_at desc (server default). + enum: + - AUTOMATION_SORT_FIELD_UNSPECIFIED + - AUTOMATION_SORT_FIELD_DISPLAY_NAME + - AUTOMATION_SORT_FIELD_CREATED_AT + - AUTOMATION_SORT_FIELD_LAST_EXECUTED_AT + - AUTOMATION_SORT_FIELD_ENABLED + - AUTOMATION_SORT_FIELD_PRIMARY_TRIGGER_TYPE + type: string + x-speakeasy-unknown-values: allow + statuses: + description: |- + Filter results by automation status. Empty or containing both ON and OFF + applies no status filter. + items: + enum: + - AUTOMATION_STATUS_FILTER_UNSPECIFIED + - AUTOMATION_STATUS_FILTER_ON + - AUTOMATION_STATUS_FILTER_OFF + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + triggerTypes: + description: Filter results to automations with any of the specified trigger types. + items: + enum: + - TRIGGER_TYPE_UNSPECIFIED + - TRIGGER_TYPE_USER_PROFILE_CHANGE + - TRIGGER_TYPE_APP_USER_CREATE + - TRIGGER_TYPE_APP_USER_UPDATE + - TRIGGER_TYPE_UNUSED_ACCESS + - TRIGGER_TYPE_USER_CREATED + - TRIGGER_TYPE_GRANT_FOUND + - TRIGGER_TYPE_GRANT_DELETED + - TRIGGER_TYPE_WEBHOOK + - TRIGGER_TYPE_SCHEDULE + - TRIGGER_TYPE_FORM + - TRIGGER_TYPE_SCHEDULE_APP_USER + - TRIGGER_TYPE_ACCESS_CONFLICT + - TRIGGER_TYPE_SCHEDULE_NO_USER + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + title: Search Automations Request type: object - x-speakeasy-name-override: ToggleField - c1.api.form.v1.UserProviderConfig: - description: The UserProviderConfig message. - nullable: true + x-speakeasy-name-override: SearchAutomationsRequest + c1.api.automations.v1.SearchAutomationsResponse: + description: The SearchAutomationsResponse message. properties: - inputTransformationCel: - description: The inputTransformationCel field. - readOnly: false + list: + description: The page of automations matching the search criteria. + items: + $ref: '#/components/schemas/c1.api.automations.v1.Automation' + type: + - array + - "null" + nextPageToken: + description: Token to retrieve the next page of results, empty when no more results exist. type: string - title: User Provider Config + title: Search Automations Response type: object - x-speakeasy-name-override: UserProviderConfig - c1.api.functions.v1.Function: - description: Function represents a customer-provided code extension in the API + x-speakeasy-name-override: SearchAutomationsResponse + c1.api.automations.v1.SendEmail: + description: The SendEmail message. properties: - createdAt: - format: date-time - readOnly: true - type: string - deletedAt: - format: date-time - readOnly: true - type: string - description: - description: The description field. - readOnly: false + body: + description: The body field. type: string - displayName: - description: The displayName field. - readOnly: false + email: + deprecated: true + description: |- + Deprecated: use email_cel instead. Static email field shipped behind FF 541 (SKU_MANUAL) + with zero tenant enablement. CEL subsumes static: '"ops@example.com"' is valid CEL. type: string - functionType: - description: The functionType field. - enum: - - FUNCTION_TYPE_UNSPECIFIED - - FUNCTION_TYPE_ANY - - FUNCTION_TYPE_CODE_MODE - readOnly: false + emailCel: + description: |- + CEL expression resolving to one or more email addresses (string or list). + Evaluated against the workflow execution context (trigger + completed steps). + Static emails work too: '"ops@example.com"' is valid CEL. + Supports list for multiple recipients: '["a@x.com", "b@x.com"]'. + Requires the tenant to have a TenantEmailProvider configured. type: string - x-speakeasy-unknown-values: allow - head: - description: The head field. - readOnly: false + subject: + description: The subject field. type: string - id: - description: The id field. - readOnly: false + title: + description: The title field. type: string - isDraft: - description: The isDraft field. - readOnly: false + useSubjectUser: + description: If true, the step will use the subject user of the automation as the subject. type: boolean - outboundNetworkAllowlist: - description: The outboundNetworkAllowlist field. - items: - type: string - nullable: true - readOnly: false - type: array - publishedCommitId: - description: The publishedCommitId field. - readOnly: false + userIdsCel: + description: The userIdsCel field. type: string - scopedRoleIds: - description: |- - Scoped role IDs define the permissions granted to this function when calling - ConductorOne APIs. These are role IDs (not service roles) that get resolved - to their service roles at authentication time. - - Currently only the "Read-Only Administrator" role (system:viewer) is supported. - The role ID can be obtained from the roles API. + userRefs: + description: The userRefs field. items: - type: string - nullable: true - readOnly: false - type: array - secret: - additionalProperties: - type: string - description: The secret field. - readOnly: false - type: object - updatedAt: - format: date-time - readOnly: true + $ref: '#/components/schemas/c1.api.user.v1.UserRef' + type: + - array + - "null" + title: Send Email + type: object + x-speakeasy-name-override: SendEmail + c1.api.automations.v1.SendSlackMessage: + description: | + SendSlackMessage posts to a channel or DMs one or more users. Delivery mode is + inferred from which fields are populated: DM if any user field is set + (use_subject_user, user_ids_cel, user_refs), otherwise channel. Priority for DM + recipient resolution: use_subject_user > user_ids_cel > user_refs. + + This message contains a oneof named channel. Only a single field of the following list may be set at a time: + - channelName + - channelNameCel + properties: + body: + description: The body field. type: string - useSpn: + channelIsId: description: |- - FN-347 transition flag. When true, the function authenticates to c1-api - as user: via the AssumeIdentity token exchange using its - ServicePrincipalBinding; when false, it authenticates as - function:. Read-only from clients: set by CreateFunction (when the - tenant has completed the FunctionsToSPN migration) and by the migration - itself, never by UpdateFunction. Retired once all functions are on SPN. - readOnly: true + When true, the channel value (channel_name / channel_name_cel) is a Slack + channel ID rather than a name. The backend looks the channel up by ID and + fails permanently if it does not exist or the bot cannot access it — it does + not create or search by name. Only applies to channel delivery. type: boolean - title: Function + channelName: + description: |- + The channelName field. + This field is part of the `channel` oneof. + See the documentation for `c1.api.automations.v1.SendSlackMessage` for more details. + type: + - string + - "null" + channelNameCel: + description: |- + The channelNameCel field. + This field is part of the `channel` oneof. + See the documentation for `c1.api.automations.v1.SendSlackMessage` for more details. + type: + - string + - "null" + useSubjectUser: + description: The useSubjectUser field. + type: boolean + userIdsCel: + description: The userIdsCel field. + type: string + userRefs: + description: The userRefs field. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserRef' + type: + - array + - "null" + title: Send Slack Message type: object - x-speakeasy-entity: Function - x-speakeasy-name-override: Function - c1.api.functions.v1.FunctionCommit: - description: FunctionCommit represents a single commit in a function's history + x-speakeasy-name-override: SendSlackMessage + c1.api.automations.v1.SetCredential: + description: | + SetCredential submits a RotateCredentials baton task to the target connector, + re-encrypting the given password CEL expression with the connector's public JWK. + + This message contains a oneof named connector_identifier. Only a single field of the following list may be set at a time: + - connectorRef properties: - author: - description: The author field. - readOnly: false - type: string - createdAt: - format: date-time - readOnly: false - type: string - functionId: - description: The functionId field. - readOnly: false - type: string - id: - description: The id field. - readOnly: false + accountIdCel: + description: The accountIdCel field. type: string - message: - description: The message field. - readOnly: false + connectorRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.ConnectorRef' + - type: "null" + passwordCel: + description: The passwordCel field. type: string - title: Function Commit + title: Set Credential type: object - x-speakeasy-name-override: FunctionCommit - c1.api.functions.v1.FunctionInvocation: - description: The FunctionInvocation message. + x-speakeasy-name-override: SetCredential + c1.api.automations.v1.StoreCredential: + description: |- + StoreCredential stores a credential from GeneratePassword in a vault. + Supports Paper Vault (SSO/email) and App Vault (entitlement-bound). properties: - commitId: - description: The commitId field. - readOnly: false + appIdCel: + description: CEL expression that resolves to app ID (App Vault only) type: string - createdAt: - format: date-time - readOnly: false + authType: + description: Authentication type for the paper vault recipient (Paper Vault only) + enum: + - STORE_CREDENTIAL_AUTH_TYPE_UNSPECIFIED + - STORE_CREDENTIAL_AUTH_TYPE_SSO_INTERNAL + - STORE_CREDENTIAL_AUTH_TYPE_VERIFY_EMAIL type: string - error: - description: The error field. - readOnly: false + x-speakeasy-unknown-values: allow + credentialCel: + description: CEL expression that resolves to the encrypted credential from GeneratePassword type: string - functionId: - description: The functionId field. - readOnly: false + expiry: + format: duration + type: + - string + - "null" + labelCel: + description: Optional display label for the vault type: string - id: - description: The id field. - readOnly: false + maxViews: + description: Maximum number of views (0 = unlimited, default 1) (Paper Vault only) + format: uint32 + type: integer + recipientCel: + description: |- + CEL expression resolving to one or more recipient C1 user IDs — a string or list, + e.g. '["u1","u2"]' (SSO_INTERNAL / App Vault). App Vault accepts a single user only. type: string - input: - additionalProperties: true - readOnly: false - type: object - output: - additionalProperties: true - readOnly: false - type: object - status: - description: The status field. + recipientEmailCel: + description: |- + CEL expression resolving to one or more recipient email addresses — a string or list, + e.g. '["a@x.com","b@x.com"]' (Paper Vault + VERIFY_EMAIL only). + type: string + ttl: + format: duration + type: + - string + - "null" + vaultType: + description: 'Vault type selector (default: PAPER_VAULT for backward compatibility)' enum: - - FUNCTION_INVOCATION_STATUS_UNSPECIFIED - - FUNCTION_INVOCATION_STATUS_PENDING - - FUNCTION_INVOCATION_STATUS_RUNNING - - FUNCTION_INVOCATION_STATUS_SUCCESS - - FUNCTION_INVOCATION_STATUS_ERROR - readOnly: false + - STORE_CREDENTIAL_VAULT_TYPE_UNSPECIFIED + - STORE_CREDENTIAL_VAULT_TYPE_PAPER_VAULT + - STORE_CREDENTIAL_VAULT_TYPE_APP_VAULT type: string x-speakeasy-unknown-values: allow - updatedAt: - format: date-time - readOnly: false - type: string - title: Function Invocation + title: Store Credential type: object - x-speakeasy-name-override: FunctionInvocation - c1.api.functions.v1.FunctionTestResult: - description: FunctionTestResult contains the result of a single test case execution. + x-speakeasy-name-override: StoreCredential + c1.api.automations.v1.TaskAction: + description: | + The TaskAction message. + + This message contains a oneof named action. Only a single field of the following list may be set at a time: + - close + - reassign properties: - assertions: - description: The assertions evaluated during the test. - items: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionTestResult.FunctionTestResultAssertion' - nullable: true - readOnly: false - type: array - error: - description: Error message if the test errored (distinct from assertion failure). - readOnly: false - type: string - logs: - description: The log entries captured during the test. + close: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.CloseAction' + - type: "null" + reassign: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.ReassignAction' + - type: "null" + taskTypes: + description: The taskTypes field. items: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionTestResult.FunctionTestResultLog' - nullable: true - readOnly: false - type: array - name: - description: The test name. - readOnly: false - type: string - status: - description: The test result status. + enum: + - TASK_TYPE_UNSPECIFIED + - TASK_TYPE_REQUEST + - TASK_TYPE_REVOKE + - TASK_TYPE_REVIEW + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + taskUserRelation: + description: The taskUserRelation field. enum: - - FUNCTION_TEST_RESULT_STATUS_UNSPECIFIED - - FUNCTION_TEST_RESULT_STATUS_OK - - FUNCTION_TEST_RESULT_STATUS_FAIL - - FUNCTION_TEST_RESULT_STATUS_SKIPPED - readOnly: false + - TASK_USER_RELATION_UNSPECIFIED + - TASK_USER_RELATION_ASSIGNEE + - TASK_USER_RELATION_SUBJECT type: string x-speakeasy-unknown-values: allow - title: Function Test Result + title: Task Action type: object - x-speakeasy-name-override: FunctionTestResult - c1.api.functions.v1.FunctionTestResult.FunctionTestResultAssertion: - description: A single assertion within a test. - properties: - actual: - description: The actual value. - readOnly: false - type: string - at: - description: Source location of the assertion. - readOnly: false - type: string - description: - description: Description of the assertion. - readOnly: false - type: string - expected: - description: The expected value. - readOnly: false - type: string - operator: - description: The comparison operator (e.g., "==", "!="). - readOnly: false - type: string - pass: - description: Whether the assertion passed. - readOnly: false - type: boolean - title: Function Test Result Assertion + x-speakeasy-name-override: TaskAction + c1.api.automations.v1.TerminateAutomationRequestInput: + description: The TerminateAutomationRequest message. + title: Terminate Automation Request type: object - x-speakeasy-name-override: FunctionTestResultAssertion - c1.api.functions.v1.FunctionTestResult.FunctionTestResultLog: - description: A log entry captured during a test. + x-speakeasy-name-override: TerminateAutomationRequest + c1.api.automations.v1.TerminateAutomationResponse: + description: The TerminateAutomationResponse message. + title: Terminate Automation Response + type: object + x-speakeasy-name-override: TerminateAutomationResponse + c1.api.automations.v1.UnenrollFromAllAccessProfiles: + description: The UnenrollFromAllAccessProfiles message. properties: - level: - description: The log level (e.g., "info", "error"). - readOnly: false - type: string - log: - description: The log message content. - readOnly: false + catalogIds: + description: Optional list of catalog IDs to unenroll from. If empty, unenroll from all catalogs. + items: + type: string + type: + - array + - "null" + catalogIdsCel: + description: CEL expression to dynamically select catalog IDs. If provided, overrides catalog_ids. type: string - source: - description: The log source (e.g., "stdout", "stderr"). - readOnly: false + useSubjectUser: + description: If true, the step will use the subject user of the automation as the subject. + type: boolean + userIdsCel: + description: The userIdsCel field. type: string - title: Function Test Result Log + userRefs: + description: The userRefs field. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserRef' + type: + - array + - "null" + title: Unenroll From All Access Profiles type: object - x-speakeasy-name-override: FunctionTestResultLog - c1.api.functions.v1.FunctionsInvocationSearchRequestInput: - description: |- - FunctionsInvocationSearchRequest is the request for searching function invocations. - Results are returned in descending order by created_at (newest first). + x-speakeasy-name-override: UnenrollFromAllAccessProfiles + c1.api.automations.v1.UpdateAutomationRequestInput: + description: The UpdateAutomationRequest message. properties: - pageSize: - description: The number of results to return per page. - format: int32 - readOnly: false - type: integer - pageToken: - description: The pagination token for fetching the next page. - readOnly: false - type: string - title: Functions Invocation Search Request + automation: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.Automation' + - type: "null" + updateMask: + type: + - string + - "null" + title: Update Automation Request type: object - x-speakeasy-name-override: FunctionsInvocationSearchRequest - c1.api.functions.v1.FunctionsInvocationSearchResponse: - description: FunctionsInvocationSearchResponse is the response for searching function invocations. + x-speakeasy-name-override: UpdateAutomationRequest + c1.api.automations.v1.UpdateAutomationResponse: + description: The UpdateAutomationResponse message. properties: - list: - description: The list of function invocations, ordered by created_at descending. - items: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionInvocation' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The pagination token for fetching the next page. - readOnly: false + automation: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.Automation' + - type: "null" + webhookCapabilityUrl: + description: |- + One-time absolute webhook URL for capability URL authentication, shown once when the trigger is saved. + Contains the full URL including the embedded token (e.g. https://tenant.conductorone.com/api/v1/webhooks/incoming/{id}/t/{token}). + Populated only when the webhook trigger uses capability URL authentication. type: string - title: Functions Invocation Search Response + webhookHmacSecret: + description: |- + One-time HMAC shared secret, shown once when the trigger is saved. + Populated only when the webhook trigger uses HMAC authentication. + type: string + title: Update Automation Response type: object - x-speakeasy-name-override: FunctionsInvocationSearchResponse - c1.api.functions.v1.FunctionsInvocationServiceGetResponse: - description: The FunctionsInvocationServiceGetResponse message. - properties: - invocation: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionInvocation' - title: Functions Invocation Service Get Response - type: object - x-speakeasy-name-override: FunctionsInvocationServiceGetResponse - c1.api.functions.v1.FunctionsInvocationServiceListResponse: - description: The FunctionsInvocationServiceListResponse message. + x-speakeasy-name-override: UpdateAutomationResponse + c1.api.automations.v1.UpdateUser: + description: | + The UpdateUser message. + + This message contains a oneof named user. Only a single field of the following list may be set at a time: + - userIdCel + - userRef + + + This message contains a oneof named user_status. Only a single field of the following list may be set at a time: + - userStatusEnum + - userStatusCel properties: - list: - description: The list field. - items: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionInvocation' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The nextPageToken field. - readOnly: false - type: string - title: Functions Invocation Service List Response + useSubjectUser: + description: If true, the step will use the subject user of the automation as the subject. + type: boolean + userIdCel: + description: |- + The userIdCel field. + This field is part of the `user` oneof. + See the documentation for `c1.api.automations.v1.UpdateUser` for more details. + type: + - string + - "null" + userRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + userStatusCel: + description: |- + The userStatusCel field. + This field is part of the `user_status` oneof. + See the documentation for `c1.api.automations.v1.UpdateUser` for more details. + type: + - string + - "null" + userStatusEnum: + description: |- + The userStatusEnum field. + This field is part of the `user_status` oneof. + See the documentation for `c1.api.automations.v1.UpdateUser` for more details. + enum: + - UNKNOWN + - ENABLED + - DISABLED + - DELETED + type: + - string + - "null" + x-speakeasy-unknown-values: allow + title: Update User type: object - x-speakeasy-name-override: FunctionsInvocationServiceListResponse - c1.api.functions.v1.FunctionsSearchRequest: - description: The FunctionsSearchRequest message. + x-speakeasy-name-override: UpdateUser + c1.api.automations.v1.UsageBasedRevocationTrigger: + description: | + The UsageBasedRevocationTrigger message. + + This message contains a oneof named cold_start_schedule. Only a single field of the following list may be set at a time: + - runImmediately + - runDelayed properties: - functionTypes: - description: The functionTypes field. + appId: + description: The appId field. + type: string + enabledAt: + format: date-time + type: + - string + - "null" + excludedGroupRefs: + description: The excludedGroupRefs field. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + excludedUserRefs: + description: The excludedUserRefs field. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserRef' + type: + - array + - "null" + includeUsersWithNoActivity: + description: The includeUsersWithNoActivity field. + type: boolean + runDelayed: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.RunDelayed' + - type: "null" + runImmediately: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.RunImmediately' + - type: "null" + targetedAppUserTypes: + description: The targetedAppUserTypes field. items: enum: - - FUNCTION_TYPE_UNSPECIFIED - - FUNCTION_TYPE_ANY - - FUNCTION_TYPE_CODE_MODE + - APP_USER_TYPE_UNSPECIFIED + - APP_USER_TYPE_USER + - APP_USER_TYPE_SERVICE_ACCOUNT + - APP_USER_TYPE_SYSTEM_ACCOUNT type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - pageSize: - description: The pageSize field. - format: int32 - readOnly: false + type: + - array + - "null" + targetedEntitlementRefs: + description: The targetedEntitlementRefs field. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + unusedForDays: + description: The unusedForDays field. + format: uint32 type: integer - pageToken: - description: The pageToken field. - readOnly: false - type: string - query: - description: The query field. - readOnly: false - type: string - title: Functions Search Request + title: Usage Based Revocation Trigger type: object - x-speakeasy-name-override: FunctionsSearchRequest - c1.api.functions.v1.FunctionsSearchResponse: - description: The FunctionsSearchResponse message. + x-speakeasy-name-override: UsageBasedRevocationTrigger + c1.api.automations.v1.UserCreatedTrigger: + description: The UserCreatedTrigger message. properties: - list: - description: The list field. - items: - $ref: '#/components/schemas/c1.api.functions.v1.Function' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The nextPageToken field. - readOnly: false + condition: + description: The condition field. type: string - title: Functions Search Response - type: object - x-speakeasy-name-override: FunctionsSearchResponse - c1.api.functions.v1.FunctionsServiceCreateFinalCommitRequestInput: - description: The FunctionsServiceCreateFinalCommitRequest message. - title: Functions Service Create Final Commit Request + title: User Created Trigger type: object - x-speakeasy-name-override: FunctionsServiceCreateFinalCommitRequest - c1.api.functions.v1.FunctionsServiceCreateFinalCommitResponse: - description: The FunctionsServiceCreateFinalCommitResponse message. + x-speakeasy-name-override: UserCreatedTrigger + c1.api.automations.v1.UserProfileChangeTrigger: + description: The UserProfileChangeTrigger message. properties: - commit: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionCommit' - title: Functions Service Create Final Commit Response + condition: + description: The condition field. + type: string + title: User Profile Change Trigger type: object - x-speakeasy-name-override: FunctionsServiceCreateFinalCommitResponse - c1.api.functions.v1.FunctionsServiceCreateFunctionRequest: - description: The FunctionsServiceCreateFunctionRequest message. + x-speakeasy-name-override: UserProfileChangeTrigger + c1.api.automations.v1.UserProperties: + description: The UserProperties message. properties: - commitMessage: - description: The commit message describing the initial code submission. - readOnly: false + displayNameCel: + description: The displayNameCel field. type: string - description: - description: A description of what the function does. - readOnly: false + emailCel: + description: The emailCel field. type: string - displayName: - description: The human-readable name for the function. - readOnly: false + profileAttributeCel: + description: The profileAttributeCel field. type: string - functionType: - description: The type of function to create, controlling its execution environment and capabilities. - enum: - - FUNCTION_TYPE_UNSPECIFIED - - FUNCTION_TYPE_ANY - - FUNCTION_TYPE_CODE_MODE - readOnly: false + usernameCel: + description: The usernameCel field. type: string - x-speakeasy-unknown-values: allow - initialContent: - additionalProperties: - format: base64 - type: string - description: Map of filename to file content for the initial code commit. - readOnly: false - type: object - title: Functions Service Create Function Request + title: User Properties type: object - x-speakeasy-name-override: FunctionsServiceCreateFunctionRequest - c1.api.functions.v1.FunctionsServiceCreateFunctionResponse: - description: The FunctionsServiceCreateFunctionResponse message. + x-speakeasy-name-override: UserProperties + c1.api.automations.v1.WaitForDuration: + description: The WaitForDuration message. properties: - commit: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionCommit' - function: - $ref: '#/components/schemas/c1.api.functions.v1.Function' - title: Functions Service Create Function Response + duration: + format: duration + type: + - string + - "null" + title: Wait For Duration type: object - x-speakeasy-name-override: FunctionsServiceCreateFunctionResponse - c1.api.functions.v1.FunctionsServiceCreateInitialCommitRequestInput: - description: The FunctionsServiceCreateInitialCommitRequest message. + x-speakeasy-name-override: WaitForDuration + c1.api.automations.v1.Webhook: + description: | + The Webhook message. + + This message contains a oneof named webhook_identifier. Only a single field of the following list may be set at a time: + - webhookId + - webhookIdCel properties: - commitMessage: - description: The commitMessage field. - readOnly: false + payload: + additionalProperties: true + type: + - object + - "null" + webhookId: + description: |- + The webhookId field. + This field is part of the `webhook_identifier` oneof. + See the documentation for `c1.api.automations.v1.Webhook` for more details. + type: + - string + - "null" + webhookIdCel: + description: |- + The webhookIdCel field. + This field is part of the `webhook_identifier` oneof. + See the documentation for `c1.api.automations.v1.Webhook` for more details. + type: + - string + - "null" + title: Webhook + type: object + x-speakeasy-name-override: Webhook + c1.api.automations.v1.WebhookAutomationTrigger: + description: | + The WebhookAutomationTrigger message. + + This message contains a oneof named auth_config. Only a single field of the following list may be set at a time: + - jwt + - hmac + - capabilityUrl + properties: + capabilityUrl: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.WebhookListenerAuthCapabilityURL' + - type: "null" + hmac: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.WebhookListenerAuthHMAC' + - type: "null" + jwt: + oneOf: + - $ref: '#/components/schemas/c1.api.automations.v1.WebhookListenerAuthJWT' + - type: "null" + listenerId: + description: Optional existing listener ID (hidden field from frontend) type: string - filenames: - description: The filenames field. - items: - type: string - nullable: true - readOnly: false - type: array - title: Functions Service Create Initial Commit Request + title: Webhook Automation Trigger type: object - x-speakeasy-name-override: FunctionsServiceCreateInitialCommitRequest - c1.api.functions.v1.FunctionsServiceCreateInitialCommitResponse: - description: The FunctionsServiceCreateInitialCommitResponse message. + x-speakeasy-name-override: WebhookAutomationTrigger + c1.api.automations.v1.WebhookListenerAuthCapabilityURL: + description: |- + Capability URL authentication: the URL itself contains an unguessable token that acts + as the credential. This is simpler to integrate but less secure than JWT or HMAC because + the token can leak via server logs, referrer headers, and URL sharing. + See https://www.w3.org/TR/capability-urls/ for background. + title: Webhook Listener Auth Capability Url + type: object + x-speakeasy-name-override: WebhookListenerAuthCapabilityURL + c1.api.automations.v1.WebhookListenerAuthHMAC: + description: The WebhookListenerAuthHMAC message. + title: Webhook Listener Auth Hmac + type: object + x-speakeasy-name-override: WebhookListenerAuthHMAC + c1.api.automations.v1.WebhookListenerAuthJWT: + description: The WebhookListenerAuthJWT message. properties: - commitId: - description: The commitId field. - readOnly: false + jwksUrl: + description: The jwksUrl field. type: string - uploadUrls: - additionalProperties: - type: string - description: The uploadUrls field. - readOnly: false - type: object - title: Functions Service Create Initial Commit Response + title: Webhook Listener Auth Jwt type: object - x-speakeasy-name-override: FunctionsServiceCreateInitialCommitResponse - c1.api.functions.v1.FunctionsServiceCreateTagRequestInput: - description: The FunctionsServiceCreateTagRequest message. + x-speakeasy-name-override: WebhookListenerAuthJWT + c1.api.connector_authoring.v1.ConnectorAuthoringServiceActivateRevisionRequest: + description: The ConnectorAuthoringServiceActivateRevisionRequest message. properties: - commitId: - description: The commitId field. - readOnly: false + approvalTokenId: + description: The approvalTokenId field. type: string - name: - description: The name field. - readOnly: false + catalogId: + description: The catalogId field. type: string - title: Functions Service Create Tag Request - type: object - x-speakeasy-name-override: FunctionsServiceCreateTagRequest - c1.api.functions.v1.FunctionsServiceCreateTagResponse: - description: The FunctionsServiceCreateTagResponse message. - title: Functions Service Create Tag Response - type: object - x-speakeasy-name-override: FunctionsServiceCreateTagResponse - c1.api.functions.v1.FunctionsServiceDeleteFunctionRequestInput: - description: The FunctionsServiceDeleteFunctionRequest message. - title: Functions Service Delete Function Request + idempotencyKey: + description: |- + Optional, reserved for a future replay-result cache. It is accepted but + currently unused: the single-use approval token is the double-activate + mechanism, so no key is required today. Bounded so a future key stays sane. + type: string + instanceAppId: + description: The instanceAppId field. + type: string + instanceConnectorId: + description: The instanceConnectorId field. + type: string + revisionId: + description: The revisionId field. + type: string + title: Connector Authoring Service Activate Revision Request type: object - x-speakeasy-name-override: FunctionsServiceDeleteFunctionRequest - c1.api.functions.v1.FunctionsServiceDeleteFunctionResponse: - description: The FunctionsServiceDeleteFunctionResponse message. - title: Functions Service Delete Function Response + x-speakeasy-name-override: ConnectorAuthoringServiceActivateRevisionRequest + c1.api.connector_authoring.v1.ConnectorAuthoringServiceActivateRevisionResponse: + description: The ConnectorAuthoringServiceActivateRevisionResponse message. + properties: + activationEpoch: + description: The activationEpoch field. + format: uint64 + type: string + revisionId: + description: The revisionId field. + type: string + title: Connector Authoring Service Activate Revision Response type: object - x-speakeasy-name-override: FunctionsServiceDeleteFunctionResponse - c1.api.functions.v1.FunctionsServiceGetCommitContentResponse: - description: FunctionsServiceGetCommitContentResponse contains a commit and all its file contents. + x-speakeasy-name-override: ConnectorAuthoringServiceActivateRevisionResponse + c1.api.connector_authoring.v1.ConnectorAuthoringServiceRollbackRevisionRequest: + description: The ConnectorAuthoringServiceRollbackRevisionRequest message. properties: - commit: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionCommit' - files: - additionalProperties: - format: base64 - type: string - description: Map of filename to file content bytes. - readOnly: false - type: object - title: Functions Service Get Commit Content Response + approvalTokenId: + description: The approvalTokenId field. + type: string + catalogId: + description: The catalogId field. + type: string + instanceAppId: + description: The instanceAppId field. + type: string + instanceConnectorId: + description: The instanceConnectorId field. + type: string + reason: + description: Optional operator justification, recorded on the audit event. + type: string + targetRevisionId: + description: |- + The previously activated revision the published + instance pointers roll + back TO. Caller-chosen and explicit so the audit trail records an exact, + human-selected target. + type: string + title: Connector Authoring Service Rollback Revision Request type: object - x-speakeasy-name-override: FunctionsServiceGetCommitContentResponse - c1.api.functions.v1.FunctionsServiceGetFunctionResponse: - description: The FunctionsServiceGetFunctionResponse message. + x-speakeasy-name-override: ConnectorAuthoringServiceRollbackRevisionRequest + c1.api.connector_authoring.v1.ConnectorAuthoringServiceRollbackRevisionResponse: + description: The ConnectorAuthoringServiceRollbackRevisionResponse message. properties: - function: - $ref: '#/components/schemas/c1.api.functions.v1.Function' - title: Functions Service Get Function Response + activationEpoch: + description: The activationEpoch field. + format: uint64 + type: string + revisionId: + description: The revision now published (the rollback target). + type: string + title: Connector Authoring Service Rollback Revision Response type: object - x-speakeasy-name-override: FunctionsServiceGetFunctionResponse - c1.api.functions.v1.FunctionsServiceGetLockFileResponse: - description: FunctionsServiceGetLockFileResponse returns the deno lock file content for a commit. + x-speakeasy-name-override: ConnectorAuthoringServiceRollbackRevisionResponse + c1.api.conversations.v1.EnsureOnboardingSessionRequest: + description: Requests the active onboarding conversation for the caller's tenant. + title: Ensure Onboarding Session Request + type: object + x-speakeasy-name-override: EnsureOnboardingSessionRequest + c1.api.conversations.v1.EnsureOnboardingSessionResponse: + description: Returns the active onboarding conversation and whether this call created it. properties: - content: - description: The raw content of the deno lock file (empty if not found). - format: base64 - readOnly: false + conversationId: + description: The active onboarding conversation ID. type: string - exists: - description: Whether the lock file exists for this commit. - readOnly: false + created: + description: True only when this call created and started the conversation. type: boolean - title: Functions Service Get Lock File Response + title: Ensure Onboarding Session Response type: object - x-speakeasy-name-override: FunctionsServiceGetLockFileResponse - c1.api.functions.v1.FunctionsServiceInvokeRequestInput: - description: | - The FunctionsServiceInvokeRequest message. - - This message contains a oneof named arg. Only a single field of the following list may be set at a time: - - json + x-speakeasy-name-override: EnsureOnboardingSessionResponse + c1.api.credential_inventory.v1.CredentialInventoryPolicy: + description: |- + CredentialInventoryPolicy defines which credential types your users may + enroll and the rules for each type. properties: - commitId: - description: The commit ID specifying which version of the function code to run. - readOnly: false + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + delegated: + oneOf: + - $ref: '#/components/schemas/c1.api.credential_inventory.v1.DelegatedConstraints' + - type: "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + displayName: + description: A human-readable name for the policy. type: string - json: - description: |- - The JSON-encoded input data passed to the function. - This field is part of the `arg` oneof. - See the documentation for `c1.api.functions.v1.FunctionsServiceInvokeRequest` for more details. - format: base64 - nullable: true - readOnly: false + emailOtp: + oneOf: + - $ref: '#/components/schemas/c1.api.credential_inventory.v1.EmailOTPConstraints' + - type: "null" + enabledTypes: + description: The credential types users are permitted to enroll under this policy. + items: + enum: + - CREDENTIAL_TYPE_UNSPECIFIED + - CREDENTIAL_TYPE_PASSKEY + - CREDENTIAL_TYPE_PASSWORD + - CREDENTIAL_TYPE_TOTP + - CREDENTIAL_TYPE_EMAIL_OTP + - CREDENTIAL_TYPE_RECOVERY_CODE + - CREDENTIAL_TYPE_DELEGATED_GOOGLE + - CREDENTIAL_TYPE_DELEGATED_MICROSOFT + - CREDENTIAL_TYPE_UPSTREAM_IDP + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + id: + description: Unique identifier for the policy. + readOnly: true type: string - vfsId: - description: Optional VFS volume ID to attach to this invocation. If empty, VFS operations will error. - readOnly: false + isBuiltin: + description: |- + True for built-in policies provided by ConductorOne. Built-in policies + cannot be edited or deleted. + readOnly: true + type: boolean + passkey: + oneOf: + - $ref: '#/components/schemas/c1.api.credential_inventory.v1.PasskeyConstraints' + - type: "null" + password: + oneOf: + - $ref: '#/components/schemas/c1.api.credential_inventory.v1.PasswordConstraints' + - type: "null" + priority: + description: |- + When a user matches more than one policy, the policy with the highest + priority applies. + format: int32 + type: integer + totp: + oneOf: + - $ref: '#/components/schemas/c1.api.credential_inventory.v1.TOTPConstraints' + - type: "null" + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Credential Inventory Policy + type: object + x-speakeasy-entity: CredentialInventoryPolicy + x-speakeasy-name-override: CredentialInventoryPolicy + c1.api.credential_inventory.v1.CredentialInventoryPolicyRef: + description: CredentialInventoryPolicyRef is a lightweight reference to a policy by ID. + properties: + id: + description: The id field. type: string - title: Functions Service Invoke Request + title: Credential Inventory Policy Ref type: object - x-speakeasy-name-override: FunctionsServiceInvokeRequest - c1.api.functions.v1.FunctionsServiceInvokeResponse: - description: | - The FunctionsServiceInvokeResponse message. - - This message contains a oneof named resp. Only a single field of the following list may be set at a time: - - json + x-speakeasy-name-override: CredentialInventoryPolicyRef + c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceCreateRequest: + description: The CredentialInventoryPolicyServiceCreateRequest message. properties: - invocationId: - description: The ID of the created invocation, used to track execution status and retrieve results. - readOnly: false + delegated: + oneOf: + - $ref: '#/components/schemas/c1.api.credential_inventory.v1.DelegatedConstraints' + - type: "null" + displayName: + description: A human-readable name for the policy. type: string - json: - deprecated: true + emailOtp: + oneOf: + - $ref: '#/components/schemas/c1.api.credential_inventory.v1.EmailOTPConstraints' + - type: "null" + enabledTypes: + description: The credential types users are permitted to enroll under this policy. + items: + enum: + - CREDENTIAL_TYPE_UNSPECIFIED + - CREDENTIAL_TYPE_PASSKEY + - CREDENTIAL_TYPE_PASSWORD + - CREDENTIAL_TYPE_TOTP + - CREDENTIAL_TYPE_EMAIL_OTP + - CREDENTIAL_TYPE_RECOVERY_CODE + - CREDENTIAL_TYPE_DELEGATED_GOOGLE + - CREDENTIAL_TYPE_DELEGATED_MICROSOFT + - CREDENTIAL_TYPE_UPSTREAM_IDP + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + passkey: + oneOf: + - $ref: '#/components/schemas/c1.api.credential_inventory.v1.PasskeyConstraints' + - type: "null" + password: + oneOf: + - $ref: '#/components/schemas/c1.api.credential_inventory.v1.PasswordConstraints' + - type: "null" + priority: description: |- - Deprecated. The JSON-encoded output returned by the function. - This field is part of the `resp` oneof. - See the documentation for `c1.api.functions.v1.FunctionsServiceInvokeResponse` for more details. - format: base64 - nullable: true - readOnly: false - type: string - title: Functions Service Invoke Response - type: object - x-speakeasy-name-override: FunctionsServiceInvokeResponse - c1.api.functions.v1.FunctionsServiceListCommitsResponse: - description: The FunctionsServiceListCommitsResponse message. + When a user matches more than one policy, the policy with the highest + priority applies. + format: int32 + type: integer + totp: + oneOf: + - $ref: '#/components/schemas/c1.api.credential_inventory.v1.TOTPConstraints' + - type: "null" + required: + - displayName + title: Credential Inventory Policy Service Create Request + type: object + x-speakeasy-entity: CredentialInventoryPolicy + x-speakeasy-name-override: CredentialInventoryPolicyServiceCreateRequest + c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceCreateResponse: + description: The CredentialInventoryPolicyServiceCreateResponse message. + properties: + credentialInventoryPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.credential_inventory.v1.CredentialInventoryPolicy' + - type: "null" + title: Credential Inventory Policy Service Create Response + type: object + x-speakeasy-name-override: CredentialInventoryPolicyServiceCreateResponse + c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceDeleteRequestInput: + description: The CredentialInventoryPolicyServiceDeleteRequest message. + title: Credential Inventory Policy Service Delete Request + type: object + x-speakeasy-entity: CredentialInventoryPolicy + x-speakeasy-name-override: CredentialInventoryPolicyServiceDeleteRequest + c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceDeleteResponse: + description: The CredentialInventoryPolicyServiceDeleteResponse message. + title: Credential Inventory Policy Service Delete Response + type: object + x-speakeasy-name-override: CredentialInventoryPolicyServiceDeleteResponse + c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceGetResponse: + description: The CredentialInventoryPolicyServiceGetResponse message. + properties: + credentialInventoryPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.credential_inventory.v1.CredentialInventoryPolicy' + - type: "null" + title: Credential Inventory Policy Service Get Response + type: object + x-speakeasy-name-override: CredentialInventoryPolicyServiceGetResponse + c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceListResponse: + description: The CredentialInventoryPolicyServiceListResponse message. properties: list: - description: The list field. + description: The page of policies. items: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionCommit' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.credential_inventory.v1.CredentialInventoryPolicy' + type: + - array + - "null" nextPageToken: - description: The nextPageToken field. - readOnly: false + description: A token to fetch the next page, or empty if there are no more results. type: string - title: Functions Service List Commits Response + title: Credential Inventory Policy Service List Response type: object - x-speakeasy-name-override: FunctionsServiceListCommitsResponse - c1.api.functions.v1.FunctionsServiceListFunctionsResponse: - description: The FunctionsServiceListFunctionsResponse message. + x-speakeasy-name-override: CredentialInventoryPolicyServiceListResponse + c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceSearchRequest: + description: The CredentialInventoryPolicyServiceSearchRequest message. + properties: + pageSize: + description: The maximum number of results to return per page. + format: int32 + type: integer + pageToken: + description: A pagination token from a previous Search response. + type: string + query: + description: Free-text search over the policy name. Empty matches all policies. + type: string + refs: + description: Restrict results to these specific policies. Empty matches all policies. + items: + $ref: '#/components/schemas/c1.api.credential_inventory.v1.CredentialInventoryPolicyRef' + type: + - array + - "null" + title: Credential Inventory Policy Service Search Request + type: object + x-speakeasy-name-override: CredentialInventoryPolicyServiceSearchRequest + c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceSearchResponse: + description: The CredentialInventoryPolicyServiceSearchResponse message. properties: list: - description: The list field. + description: The page of matching policies. items: - $ref: '#/components/schemas/c1.api.functions.v1.Function' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.credential_inventory.v1.CredentialInventoryPolicy' + type: + - array + - "null" nextPageToken: - description: The nextPageToken field. - readOnly: false + description: A token to fetch the next page, or empty if there are no more results. type: string - title: Functions Service List Functions Response + title: Credential Inventory Policy Service Search Response type: object - x-speakeasy-name-override: FunctionsServiceListFunctionsResponse - c1.api.functions.v1.FunctionsServiceListTagsResponse: - description: The FunctionsServiceListTagsResponse message. + x-speakeasy-name-override: CredentialInventoryPolicyServiceSearchResponse + c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceUpdateRequestInput: + description: The CredentialInventoryPolicyServiceUpdateRequest message. properties: - tags: - additionalProperties: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionCommit' - description: The tags field. - readOnly: false - type: object - title: Functions Service List Tags Response - type: object - x-speakeasy-name-override: FunctionsServiceListTagsResponse - c1.api.functions.v1.FunctionsServiceTestRequestInput: - description: FunctionsServiceTestRequest runs tests for a function at a specific commit. + credentialInventoryPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.credential_inventory.v1.CredentialInventoryPolicy' + - type: "null" + updateMask: + type: + - string + - "null" + title: Credential Inventory Policy Service Update Request + type: object + x-speakeasy-name-override: CredentialInventoryPolicyServiceUpdateRequest + c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceUpdateResponse: + description: The CredentialInventoryPolicyServiceUpdateResponse message. + properties: + credentialInventoryPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.credential_inventory.v1.CredentialInventoryPolicy' + - type: "null" + title: Credential Inventory Policy Service Update Response + type: object + x-speakeasy-name-override: CredentialInventoryPolicyServiceUpdateResponse + c1.api.credential_inventory.v1.DelegatedConstraints: + description: |- + DelegatedConstraints controls which third-party sign-in providers are + accepted as proof of email ownership, and how they are scoped. properties: - commitId: - description: The commit ID to test. If empty, the published commit is used. - readOnly: false - type: string - title: Functions Service Test Request + googleEnabled: + description: Accept "Sign in with Google". + type: boolean + googleHostedDomains: + description: Restrict Google sign-in to these Google Workspace domains. Empty = any domain. + items: + type: string + type: + - array + - "null" + microsoftEnabled: + description: Accept "Sign in with Microsoft". + type: boolean + microsoftTenantIds: + description: Restrict Microsoft sign-in to these Microsoft tenant IDs. Empty = any tenant. + items: + type: string + type: + - array + - "null" + title: Delegated Constraints type: object - x-speakeasy-name-override: FunctionsServiceTestRequest - c1.api.functions.v1.FunctionsServiceTestResponse: - description: FunctionsServiceTestResponse contains test execution results. + x-speakeasy-name-override: DelegatedConstraints + c1.api.credential_inventory.v1.EmailOTPConstraints: + description: EmailOTPConstraints configures one-time codes delivered by email. properties: - result: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionTestResult' - results: - description: All test results. - items: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionTestResult' - nullable: true - readOnly: false - type: array - title: Functions Service Test Response + codeLength: + description: Number of digits in each code. + format: int32 + type: integer + maxAttempts: + description: Number of incorrect attempts allowed before the code is invalidated. + format: int32 + type: integer + ttlSeconds: + description: How long a code remains valid, in seconds. + format: int32 + type: integer + title: Email Otp Constraints type: object - x-speakeasy-name-override: FunctionsServiceTestResponse - c1.api.functions.v1.FunctionsServiceUpdateFunctionRequest: - description: The FunctionsServiceUpdateFunctionRequest message. + x-speakeasy-name-override: EmailOTPConstraints + c1.api.credential_inventory.v1.PasskeyConstraints: + description: PasskeyConstraints controls how users may enroll passkeys (FIDO2 / WebAuthn). properties: - function: - $ref: '#/components/schemas/c1.api.functions.v1.Function' - updateMask: - nullable: true - readOnly: false + allowedAaguids: + description: |- + Allowed authenticator models, by AAGUID. Leave empty to permit any + authenticator. + items: + format: base64 + type: string + type: + - array + - "null" + attestation: + description: How strictly the authenticator's origin must be attested. + enum: + - ATTESTATION_REQUIREMENT_UNSPECIFIED + - ATTESTATION_REQUIREMENT_NONE + - ATTESTATION_REQUIREMENT_INDIRECT + - ATTESTATION_REQUIREMENT_DIRECT + - ATTESTATION_REQUIREMENT_ENTERPRISE type: string - title: Functions Service Update Function Request + x-speakeasy-unknown-values: allow + requireUserVerification: + description: Require the authenticator to verify the user (PIN or biometric) at enrollment. + type: boolean + title: Passkey Constraints type: object - x-speakeasy-name-override: FunctionsServiceUpdateFunctionRequest - c1.api.functions.v1.FunctionsServiceUpdateFunctionResponse: - description: The FunctionsServiceUpdateFunctionResponse message. + x-speakeasy-name-override: PasskeyConstraints + c1.api.credential_inventory.v1.PasswordConstraints: + description: PasswordConstraints sets the complexity rules a user's password must satisfy. properties: - function: - $ref: '#/components/schemas/c1.api.functions.v1.Function' - title: Functions Service Update Function Response + checkBreached: + description: Reject passwords found in known-breach corpora. + type: boolean + historyDepth: + description: Number of previous passwords to remember and disallow reuse of. + format: int32 + type: integer + minLength: + description: Minimum length, in characters. + format: int32 + type: integer + requireMixedCase: + description: Require both uppercase and lowercase letters. + type: boolean + requireNumber: + description: Require at least one digit. + type: boolean + requireSymbol: + description: Require at least one symbol. + type: boolean + title: Password Constraints type: object - x-speakeasy-name-override: FunctionsServiceUpdateFunctionResponse - c1.api.hooks.v1.BuiltInPattern: - description: | - BuiltInPattern references a ConductorOne-maintained DLP pattern. - The specific pattern and its configuration are encoded as a oneof. - - This message contains a oneof named config. Only a single field of the following list may be set at a time: - - piiRedaction - - creditCardBlocking - - queryScopeLimit - - writeAuthorization - - sensitiveFileGuard - nullable: true - properties: - creditCardBlocking: - $ref: '#/components/schemas/c1.api.hooks.v1.CreditCardBlockingConfig' - piiRedaction: - $ref: '#/components/schemas/c1.api.hooks.v1.PIIRedactionConfig' - queryScopeLimit: - $ref: '#/components/schemas/c1.api.hooks.v1.QueryScopeLimitConfig' - sensitiveFileGuard: - $ref: '#/components/schemas/c1.api.hooks.v1.SensitiveFileGuardConfig' - writeAuthorization: - $ref: '#/components/schemas/c1.api.hooks.v1.WriteAuthorizationConfig' - title: Built In Pattern - type: object - x-speakeasy-name-override: BuiltInPattern - c1.api.hooks.v1.BusinessHours: - description: BusinessHours defines a weekly time window in a specific timezone. - properties: - days: - description: 0=Sun, 1=Mon, ..., 6=Sat. - items: - format: int32 - type: integer - nullable: true - readOnly: false - type: array - end: - description: '"HH:MM" in 24-hour format.' - readOnly: false - type: string - start: - description: '"HH:MM" in 24-hour format.' - readOnly: false - type: string - timezone: - description: The timezone field. - readOnly: false - type: string - title: Business Hours - type: object - x-speakeasy-name-override: BusinessHours - c1.api.hooks.v1.CreditCardBlockingConfig: + x-speakeasy-name-override: PasswordConstraints + c1.api.credential_inventory.v1.RecoveryPolicy: description: |- - CreditCardBlockingConfig denies any tool call whose output contains a - Luhn-valid credit card number. No configuration fields today; the - presence of the oneof arm is the whole configuration. - nullable: true - title: Credit Card Blocking Config - type: object - x-speakeasy-name-override: CreditCardBlockingConfig - c1.api.hooks.v1.Hook: - description: | - Hook represents a customer-configured interception point for tool calls. - - This message contains a oneof named hook_type. Only a single field of the following list may be set at a time: - - function - - builtinPattern + RecoveryPolicy defines how users recover access when they lose their + credentials. properties: - builtinPattern: - $ref: '#/components/schemas/c1.api.hooks.v1.BuiltInPattern' + allowedRecoveryTypes: + description: The credential types a user may use to recover access under this policy. + items: + enum: + - CREDENTIAL_TYPE_UNSPECIFIED + - CREDENTIAL_TYPE_PASSKEY + - CREDENTIAL_TYPE_PASSWORD + - CREDENTIAL_TYPE_TOTP + - CREDENTIAL_TYPE_EMAIL_OTP + - CREDENTIAL_TYPE_RECOVERY_CODE + - CREDENTIAL_TYPE_DELEGATED_GOOGLE + - CREDENTIAL_TYPE_DELEGATED_MICROSOFT + - CREDENTIAL_TYPE_UPSTREAM_IDP + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" createdAt: format: date-time readOnly: true - type: string - description: - description: The description field. - readOnly: false - type: string + type: + - string + - "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" displayName: - description: The displayName field. - readOnly: false + description: A human-readable name for the policy. type: string - enabled: - description: The enabled field. - readOnly: false + id: + description: Unique identifier for the policy. + readOnly: true + type: string + isBuiltin: + description: |- + True for built-in policies provided by ConductorOne. Built-in policies + cannot be edited or deleted. + readOnly: true type: boolean - event: - description: The event field. + minRecoveryAuthLevel: + description: The minimum assurance level a recovery ceremony must reach for this policy. enum: - - HOOK_EVENT_TYPE_UNSPECIFIED - - HOOK_EVENT_TYPE_PRE_TOOL_USE - - HOOK_EVENT_TYPE_POST_TOOL_USE - readOnly: false + - AUTH_LEVEL_UNSPECIFIED + - AUTH_LEVEL_NONE + - AUTH_LEVEL_SINGLE_FACTOR + - AUTH_LEVEL_MULTI_FACTOR + - AUTH_LEVEL_PHR + - AUTH_LEVEL_PHRH type: string x-speakeasy-unknown-values: allow - filter: - $ref: '#/components/schemas/c1.api.hooks.v1.HookFilter' - function: - $ref: '#/components/schemas/c1.api.hooks.v1.HookFunctionRef' - id: - description: The id field. - readOnly: false - type: string priority: - description: The priority field. + description: |- + When a user matches more than one policy, the policy with the highest + priority applies. format: int32 - readOnly: false type: integer + revokeOnRecovery: + description: |- + When true, a successful recovery revokes the user's existing credentials + and forces re-enrollment. When false, recovery adds to the existing set. + type: boolean updatedAt: format: date-time readOnly: true - type: string - title: Hook + type: + - string + - "null" + title: Recovery Policy type: object - x-speakeasy-name-override: Hook - c1.api.hooks.v1.HookFilter: - description: HookFilter determines which tool calls a hook applies to. + x-speakeasy-entity: RecoveryPolicy + x-speakeasy-name-override: RecoveryPolicy + c1.api.credential_inventory.v1.RecoveryPolicyRef: + description: RecoveryPolicyRef is a lightweight reference to a recovery policy by ID. properties: - celExpression: - description: |- - CEL expression evaluated against tool call context. - Available variable: ctx.tool_name (string). - Must evaluate to bool. Empty matches all tools. - readOnly: false + id: + description: The id field. type: string - title: Hook Filter + title: Recovery Policy Ref type: object - x-speakeasy-name-override: HookFilter - c1.api.hooks.v1.HookFunctionRef: - description: HookFunctionRef identifies a customer-authored function to invoke. - nullable: true + x-speakeasy-name-override: RecoveryPolicyRef + c1.api.credential_inventory.v1.RecoveryPolicyServiceCreateRequest: + description: The RecoveryPolicyServiceCreateRequest message. properties: - commitId: - description: If empty, the function's published commit is used at invocation time. - readOnly: false + allowedRecoveryTypes: + description: The credential types a user may use to recover access. + items: + enum: + - CREDENTIAL_TYPE_UNSPECIFIED + - CREDENTIAL_TYPE_PASSKEY + - CREDENTIAL_TYPE_PASSWORD + - CREDENTIAL_TYPE_TOTP + - CREDENTIAL_TYPE_EMAIL_OTP + - CREDENTIAL_TYPE_RECOVERY_CODE + - CREDENTIAL_TYPE_DELEGATED_GOOGLE + - CREDENTIAL_TYPE_DELEGATED_MICROSOFT + - CREDENTIAL_TYPE_UPSTREAM_IDP + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + displayName: + description: A human-readable name for the policy. type: string - functionId: - description: The functionId field. - readOnly: false + minRecoveryAuthLevel: + description: The minimum assurance level a recovery ceremony must reach. + enum: + - AUTH_LEVEL_UNSPECIFIED + - AUTH_LEVEL_NONE + - AUTH_LEVEL_SINGLE_FACTOR + - AUTH_LEVEL_MULTI_FACTOR + - AUTH_LEVEL_PHR + - AUTH_LEVEL_PHRH type: string - title: Hook Function Ref - type: object - x-speakeasy-name-override: HookFunctionRef - c1.api.hooks.v1.HookRef: - description: The HookRef message. + x-speakeasy-unknown-values: allow + priority: + description: |- + When a user matches more than one policy, the policy with the highest + priority applies. + format: int32 + type: integer + revokeOnRecovery: + description: |- + When true, a successful recovery revokes existing credentials and forces + re-enrollment. + type: boolean + required: + - displayName + title: Recovery Policy Service Create Request + type: object + x-speakeasy-entity: RecoveryPolicy + x-speakeasy-name-override: RecoveryPolicyServiceCreateRequest + c1.api.credential_inventory.v1.RecoveryPolicyServiceCreateResponse: + description: The RecoveryPolicyServiceCreateResponse message. + properties: + recoveryPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.credential_inventory.v1.RecoveryPolicy' + - type: "null" + title: Recovery Policy Service Create Response + type: object + x-speakeasy-name-override: RecoveryPolicyServiceCreateResponse + c1.api.credential_inventory.v1.RecoveryPolicyServiceDeleteRequestInput: + description: The RecoveryPolicyServiceDeleteRequest message. + title: Recovery Policy Service Delete Request + type: object + x-speakeasy-entity: RecoveryPolicy + x-speakeasy-name-override: RecoveryPolicyServiceDeleteRequest + c1.api.credential_inventory.v1.RecoveryPolicyServiceDeleteResponse: + description: The RecoveryPolicyServiceDeleteResponse message. + title: Recovery Policy Service Delete Response + type: object + x-speakeasy-name-override: RecoveryPolicyServiceDeleteResponse + c1.api.credential_inventory.v1.RecoveryPolicyServiceGetResponse: + description: The RecoveryPolicyServiceGetResponse message. + properties: + recoveryPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.credential_inventory.v1.RecoveryPolicy' + - type: "null" + title: Recovery Policy Service Get Response + type: object + x-speakeasy-name-override: RecoveryPolicyServiceGetResponse + c1.api.credential_inventory.v1.RecoveryPolicyServiceListResponse: + description: The RecoveryPolicyServiceListResponse message. properties: - id: - description: The id field. - readOnly: false + list: + description: The page of policies. + items: + $ref: '#/components/schemas/c1.api.credential_inventory.v1.RecoveryPolicy' + type: + - array + - "null" + nextPageToken: + description: A token to fetch the next page, or empty if there are no more results. type: string - title: Hook Ref + title: Recovery Policy Service List Response type: object - x-speakeasy-name-override: HookRef - c1.api.hooks.v1.HooksSearchRequest: - description: The HooksSearchRequest message. + x-speakeasy-name-override: RecoveryPolicyServiceListResponse + c1.api.credential_inventory.v1.RecoveryPolicyServiceSearchRequest: + description: The RecoveryPolicyServiceSearchRequest message. properties: pageSize: - description: The pageSize field. + description: The maximum number of results to return per page. format: int32 - readOnly: false type: integer pageToken: - description: The pageToken field. - readOnly: false + description: A pagination token from a previous Search response. type: string query: - description: The query field. - readOnly: false + description: Free-text search over the policy name. Empty matches all policies. type: string refs: - description: The refs field. + description: Restrict results to these specific policies. Empty matches all policies. items: - $ref: '#/components/schemas/c1.api.hooks.v1.HookRef' - nullable: true - readOnly: false - type: array - title: Hooks Search Request + $ref: '#/components/schemas/c1.api.credential_inventory.v1.RecoveryPolicyRef' + type: + - array + - "null" + title: Recovery Policy Service Search Request type: object - x-speakeasy-name-override: HooksSearchRequest - c1.api.hooks.v1.HooksSearchResponse: - description: The HooksSearchResponse message. + x-speakeasy-name-override: RecoveryPolicyServiceSearchRequest + c1.api.credential_inventory.v1.RecoveryPolicyServiceSearchResponse: + description: The RecoveryPolicyServiceSearchResponse message. properties: list: - description: The list field. + description: The page of matching policies. items: - $ref: '#/components/schemas/c1.api.hooks.v1.Hook' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.credential_inventory.v1.RecoveryPolicy' + type: + - array + - "null" nextPageToken: - description: The nextPageToken field. - readOnly: false + description: A token to fetch the next page, or empty if there are no more results. type: string - title: Hooks Search Response + title: Recovery Policy Service Search Response type: object - x-speakeasy-name-override: HooksSearchResponse - c1.api.hooks.v1.HooksServiceCreateRequest: - description: | - The HooksServiceCreateRequest message. - - This message contains a oneof named hook_type. Only a single field of the following list may be set at a time: - - function - - builtinPattern + x-speakeasy-name-override: RecoveryPolicyServiceSearchResponse + c1.api.credential_inventory.v1.RecoveryPolicyServiceUpdateRequestInput: + description: The RecoveryPolicyServiceUpdateRequest message. properties: - builtinPattern: - $ref: '#/components/schemas/c1.api.hooks.v1.BuiltInPattern' + recoveryPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.credential_inventory.v1.RecoveryPolicy' + - type: "null" + updateMask: + type: + - string + - "null" + title: Recovery Policy Service Update Request + type: object + x-speakeasy-name-override: RecoveryPolicyServiceUpdateRequest + c1.api.credential_inventory.v1.RecoveryPolicyServiceUpdateResponse: + description: The RecoveryPolicyServiceUpdateResponse message. + properties: + recoveryPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.credential_inventory.v1.RecoveryPolicy' + - type: "null" + title: Recovery Policy Service Update Response + type: object + x-speakeasy-name-override: RecoveryPolicyServiceUpdateResponse + c1.api.credential_inventory.v1.TOTPConstraints: + description: TOTPConstraints configures authenticator-app one-time codes (RFC 6238). + properties: + codeLength: + description: Number of digits in each code. + format: int32 + type: integer + periodSeconds: + description: How often a new code is generated, in seconds (typically 30 or 60). + format: int32 + type: integer + skewTolerance: + description: How many adjacent time windows to accept, to tolerate clock drift. + format: int32 + type: integer + title: Totp Constraints + type: object + x-speakeasy-name-override: TOTPConstraints + c1.api.cross_app_access.v1.XAAAccessProfile: + description: XAAAccessProfile is a requestable bundle of scopes for one resource server. + properties: + appEntitlementId: + description: The AppEntitlement created for this profile. + type: string + appId: + description: The application that owns the resource server. + type: string + createdAt: + format: date-time + type: + - string + - "null" + deletedAt: + format: date-time + type: + - string + - "null" description: - description: The description field. - readOnly: false + description: Description of what access this profile grants. type: string displayName: - description: The displayName field. - readOnly: false + description: Display name for the profile. type: string - enabled: - description: The enabled field. - readOnly: false - type: boolean - event: - description: The event field. - enum: - - HOOK_EVENT_TYPE_UNSPECIFIED - - HOOK_EVENT_TYPE_PRE_TOOL_USE - - HOOK_EVENT_TYPE_POST_TOOL_USE - readOnly: false + id: + description: Unique identifier for this access profile. type: string - x-speakeasy-unknown-values: allow - filter: - $ref: '#/components/schemas/c1.api.hooks.v1.HookFilter' - function: - $ref: '#/components/schemas/c1.api.hooks.v1.HookFunctionRef' - priority: - description: The priority field. + scopeCount: + description: The number of scopes currently bound to this profile. format: int32 - readOnly: false type: integer - required: - - displayName - title: Hooks Service Create Request - type: object - x-speakeasy-name-override: HooksServiceCreateRequest - c1.api.hooks.v1.HooksServiceCreateResponse: - description: The HooksServiceCreateResponse message. - properties: - hook: - $ref: '#/components/schemas/c1.api.hooks.v1.Hook' - title: Hooks Service Create Response - type: object - x-speakeasy-name-override: HooksServiceCreateResponse - c1.api.hooks.v1.HooksServiceDeleteRequestInput: - description: The HooksServiceDeleteRequest message. - title: Hooks Service Delete Request - type: object - x-speakeasy-name-override: HooksServiceDeleteRequest - c1.api.hooks.v1.HooksServiceDeleteResponse: - description: The HooksServiceDeleteResponse message. - title: Hooks Service Delete Response + updatedAt: + format: date-time + type: + - string + - "null" + xaaResourceServerId: + description: The resource server this profile grants access to. + type: string + title: Xaa Access Profile type: object - x-speakeasy-name-override: HooksServiceDeleteResponse - c1.api.hooks.v1.HooksServiceGetResponse: - description: The HooksServiceGetResponse message. + x-speakeasy-name-override: XAAAccessProfile + c1.api.cross_app_access.v1.XAAAccessProfileHistoryEntry: + description: |- + XAAAccessProfileHistoryEntry is one version of an access profile and its + history metadata. properties: - hook: - $ref: '#/components/schemas/c1.api.hooks.v1.Hook' - title: Hooks Service Get Response - type: object - x-speakeasy-name-override: HooksServiceGetResponse - c1.api.hooks.v1.HooksServiceListResponse: - description: The HooksServiceListResponse message. + metadata: + oneOf: + - $ref: '#/components/schemas/c1.api.history.v1.HistoryEntryMetadata' + - type: "null" + snapshot: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfile' + - type: "null" + title: Xaa Access Profile History Entry + type: object + x-speakeasy-name-override: XAAAccessProfileHistoryEntry + c1.api.cross_app_access.v1.XAAAccessProfileRef: + description: |- + XAAAccessProfileRef is a lightweight reference to an access profile, used for + websocket notifications and search filter refs. properties: - list: - description: The list field. - items: - $ref: '#/components/schemas/c1.api.hooks.v1.Hook' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The nextPageToken field. - readOnly: false + appId: + description: The appId field. type: string - title: Hooks Service List Response + id: + description: The id field. + type: string + title: Xaa Access Profile Ref type: object - x-speakeasy-name-override: HooksServiceListResponse - c1.api.hooks.v1.HooksServiceUpdateRequestInput: - description: The HooksServiceUpdateRequest message. + x-speakeasy-name-override: XAAAccessProfileRef + c1.api.cross_app_access.v1.XAAAccessProfileScopeBinding: + description: |- + XAAAccessProfileScopeBinding is a binding between an access profile and a + scope. Both ends belong to one resource server. properties: - hook: - $ref: '#/components/schemas/c1.api.hooks.v1.Hook' - updateMask: - nullable: true - readOnly: false + accessProfileId: + description: The access profile end of the binding. type: string - title: Hooks Service Update Request + appId: + description: The application that owns the resource server. + type: string + createdAt: + format: date-time + type: + - string + - "null" + deletedAt: + format: date-time + type: + - string + - "null" + updatedAt: + format: date-time + type: + - string + - "null" + xaaResourceServerId: + description: The resource server both ends belong to. + type: string + xaaScopeId: + description: The scope end of the binding. + type: string + title: Xaa Access Profile Scope Binding type: object - x-speakeasy-name-override: HooksServiceUpdateRequest - c1.api.hooks.v1.HooksServiceUpdateResponse: - description: The HooksServiceUpdateResponse message. + x-speakeasy-name-override: XAAAccessProfileScopeBinding + c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingRef: + description: |- + XAAAccessProfileScopeBindingRef is a lightweight reference to a binding, used + for websocket notifications and search filter refs. properties: - hook: - $ref: '#/components/schemas/c1.api.hooks.v1.Hook' - title: Hooks Service Update Response + accessProfileId: + description: The accessProfileId field. + type: string + appId: + description: The appId field. + type: string + xaaScopeId: + description: The xaaScopeId field. + type: string + title: Xaa Access Profile Scope Binding Ref type: object - x-speakeasy-name-override: HooksServiceUpdateResponse - c1.api.hooks.v1.PIIRedactionConfig: - description: PIIRedactionConfig configures post-tool-use redaction of sensitive fields. - nullable: true + x-speakeasy-name-override: XAAAccessProfileScopeBindingRef + c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingServiceCreateRequestInput: + description: XAAAccessProfileScopeBindingServiceCreateRequest binds scopes to a profile. properties: - redactFields: - description: The redactFields field. + xaaScopeIds: + description: Scope IDs to bind to the access profile. items: type: string - nullable: true - readOnly: false - type: array - replacement: - description: The replacement field. - readOnly: false - type: string - title: Pii Redaction Config + type: + - array + - "null" + title: Xaa Access Profile Scope Binding Service Create Request type: object - x-speakeasy-name-override: PIIRedactionConfig - c1.api.hooks.v1.QueryScopeLimitConfig: - description: |- - QueryScopeLimitConfig caps numeric fields (e.g. limit, page_size) in tool - input so callers cannot request unbounded data. - nullable: true + x-speakeasy-name-override: XAAAccessProfileScopeBindingServiceCreateRequest + c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingServiceCreateResponse: + description: XAAAccessProfileScopeBindingServiceCreateResponse returns created bindings. properties: - fields: - description: The fields field. + bindings: + description: The created scope bindings. items: - type: string - nullable: true - readOnly: false - type: array - maxLimit: - description: The maxLimit field. - format: int32 - readOnly: false - type: integer - title: Query Scope Limit Config + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileScopeBinding' + type: + - array + - "null" + title: Xaa Access Profile Scope Binding Service Create Response type: object - x-speakeasy-name-override: QueryScopeLimitConfig - c1.api.hooks.v1.SensitiveFileGuardConfig: + x-speakeasy-name-override: XAAAccessProfileScopeBindingServiceCreateResponse + c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingServiceDeleteRequestInput: description: |- - SensitiveFileGuardConfig blocks tool calls that reference sensitive file - paths or directories. - nullable: true + XAAAccessProfileScopeBindingServiceDeleteRequest unbinds scopes from a + profile. properties: - blockedDirectories: - description: The blockedDirectories field. + xaaScopeIds: + description: Scope IDs to unbind from the access profile. items: type: string - nullable: true - readOnly: false - type: array - blockedPatterns: - description: The blockedPatterns field. + type: + - array + - "null" + title: Xaa Access Profile Scope Binding Service Delete Request + type: object + x-speakeasy-name-override: XAAAccessProfileScopeBindingServiceDeleteRequest + c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingServiceDeleteResponse: + description: XAAAccessProfileScopeBindingServiceDeleteResponse confirms deletion. + title: Xaa Access Profile Scope Binding Service Delete Response + type: object + x-speakeasy-name-override: XAAAccessProfileScopeBindingServiceDeleteResponse + c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingServiceListResponse: + description: XAAAccessProfileScopeBindingServiceListResponse returns scope bindings. + properties: + bindings: + description: The page of scope bindings. items: - type: string - nullable: true - readOnly: false - type: array - title: Sensitive File Guard Config + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileScopeBinding' + type: + - array + - "null" + nextPageToken: + description: Token for the next page, or empty if there are no more results. + type: string + title: Xaa Access Profile Scope Binding Service List Response type: object - x-speakeasy-name-override: SensitiveFileGuardConfig - c1.api.hooks.v1.WriteAuthorizationConfig: - description: |- - WriteAuthorizationConfig blocks tool calls whose ToolClassification is in - blocked_classifications, optionally permitting them within business hours. - nullable: true + x-speakeasy-name-override: XAAAccessProfileScopeBindingServiceListResponse + c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingServiceSearchRequest: + description: XAAAccessProfileScopeBindingServiceSearchRequest searches scope bindings. properties: - blockedClassifications: + accessProfileIds: + description: Optional filter by access profiles. Empty matches any access profile. + items: + type: string + type: + - array + - "null" + appId: + description: The application that owns the resource server (required). + type: string + pageSize: + description: Page size (max 100). + format: int32 + type: integer + pageToken: + description: Page token for pagination. + type: string + refs: description: |- - Tool classifications to block. Must have at least one entry; a hook - with no blocked classifications would be a silent misconfiguration. + Optional: fetch a specific set of bindings by ref (used by websocket + notify to re-fetch individual rows). + items: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingRef' + type: + - array + - "null" + xaaScopeIds: + description: |- + Optional filter by scopes (impact analysis: which profiles contain a + scope). Empty matches any scope. items: - enum: - - TOOL_CLASSIFICATION_UNSPECIFIED - - TOOL_CLASSIFICATION_READ - - TOOL_CLASSIFICATION_WRITE - - TOOL_CLASSIFICATION_DESTRUCTIVE - - TOOL_CLASSIFICATION_SENSITIVE - - TOOL_CLASSIFICATION_DANGEROUS type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - businessHours: - $ref: '#/components/schemas/c1.api.hooks.v1.BusinessHours' - title: Write Authorization Config + type: + - array + - "null" + title: Xaa Access Profile Scope Binding Service Search Request type: object - x-speakeasy-name-override: WriteAuthorizationConfig - c1.api.iam.v1.ActorObjectPermissions: - description: The ActorObjectPermissions message. + x-speakeasy-name-override: XAAAccessProfileScopeBindingServiceSearchRequest + c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingServiceSearchResponse: + description: XAAAccessProfileScopeBindingServiceSearchResponse returns matching bindings. properties: - delete: - description: The delete field. - readOnly: false - type: boolean - edit: - description: The edit field. - readOnly: false - type: boolean - extra: - additionalProperties: - type: boolean - description: The extra field. - readOnly: false - type: object - read: - description: The read field. - readOnly: false - type: boolean - title: Actor Object Permissions + list: + description: Matching scope bindings. + items: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileScopeBinding' + type: + - array + - "null" + nextPageToken: + description: Token for the next page. + type: string + title: Xaa Access Profile Scope Binding Service Search Response type: object - x-speakeasy-name-override: ActorObjectPermissions - c1.api.iam.v1.ExternalClientInfo: - description: |- - ExternalClientInfo provides information about an approved external client. - Used by both List (user's own grants) and Search (admin view of all grants). + x-speakeasy-name-override: XAAAccessProfileScopeBindingServiceSearchResponse + c1.api.cross_app_access.v1.XAAAccessProfileServiceCreateRequestInput: + description: XAAAccessProfileServiceCreateRequest creates a new access profile. properties: - clientId: - description: OAuth2 client ID - canonical identifier for this connection (globally unique per DCR) - readOnly: false - type: string - clientIdType: - description: How the client_id was established. - enum: - - CLIENT_ID_TYPE_UNSPECIFIED - - CLIENT_ID_TYPE_DCR - - CLIENT_ID_TYPE_METADATA_URL - readOnly: false - type: string - x-speakeasy-unknown-values: allow - clientIdUrl: - description: |- - Original CIMD metadata URL (e.g., "https://cursor.com/.well-known/oauth-client"). - Empty for DCR clients. - readOnly: false - type: string - clientName: - description: Original client name from DCR registration - readOnly: false - type: string - createdAt: - format: date-time - readOnly: false + description: + description: Description of what access this profile grants. type: string displayName: - description: User-provided custom name (defaults to client_name if not set) - readOnly: false + description: Display name for the profile. type: string - lastUsedAt: - format: date-time - readOnly: false - type: string - mcpClientId: - description: MCP client record ID for AI governance tracking. May be empty for legacy grants. - readOnly: false + xaaResourceServerId: + description: The resource server this profile grants access to. type: string - roleIds: - description: Role IDs granted to this client - frontend can fetch display names via SearchRoles + title: Xaa Access Profile Service Create Request + type: object + x-speakeasy-name-override: XAAAccessProfileServiceCreateRequest + c1.api.cross_app_access.v1.XAAAccessProfileServiceCreateResponse: + description: XAAAccessProfileServiceCreateResponse returns the created access profile. + properties: + accessProfile: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfile' + - type: "null" + title: Xaa Access Profile Service Create Response + type: object + x-speakeasy-name-override: XAAAccessProfileServiceCreateResponse + c1.api.cross_app_access.v1.XAAAccessProfileServiceDeleteRequestInput: + description: XAAAccessProfileServiceDeleteRequest deletes an access profile (soft delete). + title: Xaa Access Profile Service Delete Request + type: object + x-speakeasy-name-override: XAAAccessProfileServiceDeleteRequest + c1.api.cross_app_access.v1.XAAAccessProfileServiceDeleteResponse: + description: XAAAccessProfileServiceDeleteResponse confirms deletion. + title: Xaa Access Profile Service Delete Response + type: object + x-speakeasy-name-override: XAAAccessProfileServiceDeleteResponse + c1.api.cross_app_access.v1.XAAAccessProfileServiceGetByAppEntitlementIdResponse: + description: |- + XAAAccessProfileServiceGetByAppEntitlementIdResponse returns the matched + profile. + properties: + accessProfile: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfile' + - type: "null" + title: Xaa Access Profile Service Get By App Entitlement Id Response + type: object + x-speakeasy-name-override: XAAAccessProfileServiceGetByAppEntitlementIdResponse + c1.api.cross_app_access.v1.XAAAccessProfileServiceGetResponse: + description: XAAAccessProfileServiceGetResponse returns a single access profile. + properties: + accessProfile: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfile' + - type: "null" + title: Xaa Access Profile Service Get Response + type: object + x-speakeasy-name-override: XAAAccessProfileServiceGetResponse + c1.api.cross_app_access.v1.XAAAccessProfileServiceListHistoryResponse: + description: |- + XAAAccessProfileServiceListHistoryResponse returns access profile history + entries. + properties: + list: + description: The page of history entries, newest first. items: - type: string - nullable: true - readOnly: false - type: array - userId: - description: The user who approved this external client (always populated) - readOnly: false - type: string - verifiedDomain: - description: |- - Verified domain from the client_id URL (e.g., "cursor.com"). - Empty for DCR clients. - readOnly: false + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileHistoryEntry' + type: + - array + - "null" + nextPageToken: + description: Pagination token for the next page, or empty if there are no more results. type: string - wellKnownClient: - description: The wellKnownClient field. - enum: - - WELL_KNOWN_CLIENT_UNSPECIFIED - - WELL_KNOWN_CLIENT_UNKNOWN - - WELL_KNOWN_CLIENT_CLAUDE_AI - - WELL_KNOWN_CLIENT_CLAUDE_DESKTOP - - WELL_KNOWN_CLIENT_CLAUDE_CODE - - WELL_KNOWN_CLIENT_MCP_INSPECTOR - - WELL_KNOWN_CLIENT_CHATGPT - - WELL_KNOWN_CLIENT_VSCODE - - WELL_KNOWN_CLIENT_CURSOR - - WELL_KNOWN_CLIENT_WINDSURF - - WELL_KNOWN_CLIENT_ZED - - WELL_KNOWN_CLIENT_JETBRAINS - - WELL_KNOWN_CLIENT_DOCKER_MCP_TOOLKIT - readOnly: false + title: Xaa Access Profile Service List History Response + type: object + x-speakeasy-name-override: XAAAccessProfileServiceListHistoryResponse + c1.api.cross_app_access.v1.XAAAccessProfileServiceListResponse: + description: XAAAccessProfileServiceListResponse returns a page of access profiles. + properties: + accessProfiles: + description: The page of access profiles. + items: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfile' + type: + - array + - "null" + nextPageToken: + description: Token for the next page, or empty if there are no more results. type: string - x-speakeasy-unknown-values: allow - title: External Client Info + title: Xaa Access Profile Service List Response type: object - x-speakeasy-name-override: ExternalClientInfo - c1.api.iam.v1.ExternalClientSearchServiceSearchRequest: - description: The ExternalClientSearchServiceSearchRequest message. + x-speakeasy-name-override: XAAAccessProfileServiceListResponse + c1.api.cross_app_access.v1.XAAAccessProfileServiceSearchRequest: + description: XAAAccessProfileServiceSearchRequest searches access profiles with filters. properties: - clientIdUrls: - description: |- - Exact-match filter on client_id values (e.g., CIMD URLs). - Returns only grants whose client_id matches one of these values. + appIds: + description: Optional filter by applications. Empty matches any application. items: type: string - nullable: true - readOnly: false - type: array + type: + - array + - "null" pageSize: - description: The pageSize field. + description: Page size (max 100). format: int32 - readOnly: false type: integer pageToken: - description: The pageToken field. - readOnly: false + description: Page token for pagination. type: string query: - description: Free-text search on client_name and user display name - readOnly: false + description: Optional text query matched against display_name. type: string - users: - description: Filter by specific user IDs + refs: + description: |- + Optional: fetch a specific set of access profiles by ref (used by + websocket notify to re-fetch individual rows). items: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - nullable: true - readOnly: false - type: array - wellKnownClients: - description: Filter by well-known client type (e.g., CLAUDE_CODE, CURSOR, etc.) + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileRef' + type: + - array + - "null" + xaaResourceServerIds: + description: Optional filter by resource servers. Empty matches any resource server. items: - enum: - - WELL_KNOWN_CLIENT_UNSPECIFIED - - WELL_KNOWN_CLIENT_UNKNOWN - - WELL_KNOWN_CLIENT_CLAUDE_AI - - WELL_KNOWN_CLIENT_CLAUDE_DESKTOP - - WELL_KNOWN_CLIENT_CLAUDE_CODE - - WELL_KNOWN_CLIENT_MCP_INSPECTOR - - WELL_KNOWN_CLIENT_CHATGPT - - WELL_KNOWN_CLIENT_VSCODE - - WELL_KNOWN_CLIENT_CURSOR - - WELL_KNOWN_CLIENT_WINDSURF - - WELL_KNOWN_CLIENT_ZED - - WELL_KNOWN_CLIENT_JETBRAINS - - WELL_KNOWN_CLIENT_DOCKER_MCP_TOOLKIT type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - title: External Client Search Service Search Request + type: + - array + - "null" + title: Xaa Access Profile Service Search Request type: object - x-speakeasy-name-override: ExternalClientSearchServiceSearchRequest - c1.api.iam.v1.ExternalClientSearchServiceSearchResponse: - description: The ExternalClientSearchServiceSearchResponse message. + x-speakeasy-name-override: XAAAccessProfileServiceSearchRequest + c1.api.cross_app_access.v1.XAAAccessProfileServiceSearchResponse: + description: XAAAccessProfileServiceSearchResponse returns matching access profiles. properties: list: - description: Uses ExternalClientInfo with user_id populated for admin views + description: Matching access profiles. items: - $ref: '#/components/schemas/c1.api.iam.v1.ExternalClientInfo' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfile' + type: + - array + - "null" nextPageToken: - description: The nextPageToken field. - readOnly: false + description: Token for the next page. type: string - title: External Client Search Service Search Response + title: Xaa Access Profile Service Search Response type: object - x-speakeasy-name-override: ExternalClientSearchServiceSearchResponse - c1.api.iam.v1.GetRolesResponse: - description: The GetRolesResponse message contains the retrieved role. + x-speakeasy-name-override: XAAAccessProfileServiceSearchResponse + c1.api.cross_app_access.v1.XAAAccessProfileServiceUpdateRequestInput: + description: XAAAccessProfileServiceUpdateRequest updates an existing access profile. properties: - role: - $ref: '#/components/schemas/c1.api.iam.v1.Role' - title: Get Roles Response - type: object - x-speakeasy-name-override: GetRolesResponse - c1.api.iam.v1.ListRolesResponse: - description: The ListRolesResponse message contains a list of results and a nextPageToken if applicable. + accessProfile: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfile' + - type: "null" + updateMask: + type: + - string + - "null" + title: Xaa Access Profile Service Update Request + type: object + x-speakeasy-name-override: XAAAccessProfileServiceUpdateRequest + c1.api.cross_app_access.v1.XAAAccessProfileServiceUpdateResponse: + description: XAAAccessProfileServiceUpdateResponse returns the updated access profile. + properties: + accessProfile: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfile' + - type: "null" + title: Xaa Access Profile Service Update Response + type: object + x-speakeasy-name-override: XAAAccessProfileServiceUpdateResponse + c1.api.cross_app_access.v1.XAAClientAudienceMapping: + description: |- + XAAClientAudienceMapping maps a client to its identifier at one resource + server. Never stores credential material. properties: - list: - description: The list of results containing up to X results, where X is the page size defined in the request. - items: - $ref: '#/components/schemas/c1.api.iam.v1.Role' - nullable: true - readOnly: false - type: array - nextPageToken: + audienceClientId: description: |- - The nextPageToken is shown for the next page if the number of results is larger than the max page size. - The server returns one page of results and the nextPageToken until all results are retreived. - To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + The client's identifier at the resource authorization server. Stamped + verbatim into the grant's client_id claim. type: string - title: List Roles Response - type: object - x-speakeasy-name-override: ListRolesResponse - c1.api.iam.v1.PersonalClient: - description: The PersonalClient message contains information about a presonal client credential. - properties: - allowSourceCidr: + clientKey: description: |- - If set, only allows the CIDRs in the array to use the credential. - Accepts IPv4 (e.g. 10.0.0.0/24) or IPv6 (e.g. 2001:db8::/32) CIDRs. - items: - type: string - nullable: true - readOnly: false - type: array - clientId: - description: The clientID of the credential. - readOnly: true + Stable client registration key. One of: a DCR client_id form + (dcr://), a CIMD client_id URL, a native C1 form + (c1://), or a raw client_id. type: string createdAt: format: date-time - readOnly: true - type: string + type: + - string + - "null" deletedAt: format: date-time - readOnly: true - type: string - displayName: - description: The display name of the personal client credential. - readOnly: false - type: string - expiresTime: - format: date-time - readOnly: false - type: string - id: - description: The unique ID of the personal client credential. - readOnly: true - type: string - lastUsedAt: - format: date-time - readOnly: true - type: string - scopedRoles: + type: + - string + - "null" + disabled: description: |- - scoped_roles provides a list of IAM Roles - that this OAuth2 Client's API permissions - are reduced to. The permissions granted to OAuth2 Client - are AND'ed against the owning User's own permissions. - items: - type: string - nullable: true - readOnly: false - type: array + When true, exchange requests from this client for this resource server are + rejected without removing the mapping (a kill switch). + type: boolean updatedAt: format: date-time - readOnly: true + type: + - string + - "null" + xaaResourceServerId: + description: The resource server this mapping applies to. type: string - userId: - description: The ID of the user that this credential is created for. - readOnly: true + title: Xaa Client Audience Mapping + type: object + x-speakeasy-name-override: XAAClientAudienceMapping + c1.api.cross_app_access.v1.XAAClientAudienceMappingHistoryEntry: + description: |- + XAAClientAudienceMappingHistoryEntry is one version of a client audience + mapping and its history metadata. + properties: + metadata: + oneOf: + - $ref: '#/components/schemas/c1.api.history.v1.HistoryEntryMetadata' + - type: "null" + snapshot: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMapping' + - type: "null" + title: Xaa Client Audience Mapping History Entry + type: object + x-speakeasy-name-override: XAAClientAudienceMappingHistoryEntry + c1.api.cross_app_access.v1.XAAClientAudienceMappingRef: + description: |- + XAAClientAudienceMappingRef is a lightweight reference to a mapping, used for + websocket notifications and search filter refs. + properties: + clientKey: + description: The clientKey field. type: string - title: Personal Client + xaaResourceServerId: + description: The xaaResourceServerId field. + type: string + title: Xaa Client Audience Mapping Ref type: object - x-speakeasy-name-override: PersonalClient - c1.api.iam.v1.PersonalClientSearchServiceSearchRequest: - description: The PersonalClientSearchServiceSearchRequest message. + x-speakeasy-name-override: XAAClientAudienceMappingRef + c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceCreateRequestInput: + description: XAAClientAudienceMappingServiceCreateRequest creates a new mapping. properties: - pageSize: - description: The maximum number of results to return per page. - format: int32 - readOnly: false - type: integer - pageToken: - description: A pagination token returned from a previous Search call. - readOnly: false + audienceClientId: + description: The client's identifier at the resource authorization server. type: string - query: - description: A text query to filter personal clients by display name. - readOnly: false + clientKey: + description: Stable client registration key. type: string - users: - description: Filter results to personal clients owned by the specified users. - items: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - nullable: true - readOnly: false - type: array - title: Personal Client Search Service Search Request + disabled: + description: When true, the mapping is created but exchange requests are rejected. + type: boolean + title: Xaa Client Audience Mapping Service Create Request type: object - x-speakeasy-name-override: PersonalClientSearchServiceSearchRequest - c1.api.iam.v1.PersonalClientSearchServiceSearchResponse: - description: The PersonalClientSearchServiceSearchResponse message. + x-speakeasy-name-override: XAAClientAudienceMappingServiceCreateRequest + c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceCreateResponse: + description: XAAClientAudienceMappingServiceCreateResponse returns the created mapping. + properties: + clientAudienceMapping: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMapping' + - type: "null" + title: Xaa Client Audience Mapping Service Create Response + type: object + x-speakeasy-name-override: XAAClientAudienceMappingServiceCreateResponse + c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceDeleteRequestInput: + description: XAAClientAudienceMappingServiceDeleteRequest deletes a mapping (soft delete). + properties: + clientKey: + description: The client key identifying the mapping. + type: string + title: Xaa Client Audience Mapping Service Delete Request + type: object + x-speakeasy-name-override: XAAClientAudienceMappingServiceDeleteRequest + c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceDeleteResponse: + description: XAAClientAudienceMappingServiceDeleteResponse confirms deletion. + title: Xaa Client Audience Mapping Service Delete Response + type: object + x-speakeasy-name-override: XAAClientAudienceMappingServiceDeleteResponse + c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceGetResponse: + description: XAAClientAudienceMappingServiceGetResponse returns a single mapping. + properties: + clientAudienceMapping: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMapping' + - type: "null" + title: Xaa Client Audience Mapping Service Get Response + type: object + x-speakeasy-name-override: XAAClientAudienceMappingServiceGetResponse + c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceListHistoryResponse: + description: |- + XAAClientAudienceMappingServiceListHistoryResponse returns client audience + mapping history entries. properties: list: - description: The list of personal client credentials matching the search criteria. + description: The page of history entries, newest first. items: - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClient' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMappingHistoryEntry' + type: + - array + - "null" nextPageToken: - description: A token to retrieve the next page of results, or empty if there are no more results. - readOnly: false + description: Pagination token for the next page, or empty if there are no more results. type: string - title: Personal Client Search Service Search Response + title: Xaa Client Audience Mapping Service List History Response type: object - x-speakeasy-name-override: PersonalClientSearchServiceSearchResponse - c1.api.iam.v1.PersonalClientServiceCreateRequest: - description: The PersonalClientServiceCreateRequest message contains the fields for creating a new personal client. + x-speakeasy-name-override: XAAClientAudienceMappingServiceListHistoryResponse + c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceListResponse: + description: XAAClientAudienceMappingServiceListResponse returns a page of mappings. properties: - allowSourceCidr: - description: |- - A list of CIDRs to restrict this credential to. - Accepts IPv4 (e.g. 10.0.0.0/24) or IPv6 (e.g. 2001:db8::/32) CIDRs. + clientAudienceMappings: + description: The page of mappings. items: - type: string - nullable: true - readOnly: false - type: array - displayName: - description: The display name for the new personal client. - readOnly: false - type: string - expires: - format: duration - readOnly: false + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMapping' + type: + - array + - "null" + nextPageToken: + description: Token for the next page, or empty if there are no more results. type: string - scopedRoles: - description: The list of roles to restrict the credential to. - items: - type: string - nullable: true - readOnly: false - type: array - title: Personal Client Service Create Request + title: Xaa Client Audience Mapping Service List Response type: object - x-speakeasy-name-override: PersonalClientServiceCreateRequest - c1.api.iam.v1.PersonalClientServiceCreateResponse: - description: The PersonalClientServiceCreateResponse message contains the created personal client and client secret. + x-speakeasy-name-override: XAAClientAudienceMappingServiceListResponse + c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceSearchRequest: + description: XAAClientAudienceMappingServiceSearchRequest searches mappings with filters. properties: - client: - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClient' - clientSecret: - description: The client secret that corresponds to the personal client. Make sure to save this, because it cannot be returned or queried again. - readOnly: false + disabled: + description: Optional filter by disabled state. + type: + - boolean + - "null" + pageSize: + description: Page size (max 100). + format: int32 + type: integer + pageToken: + description: Page token for pagination. type: string - title: Personal Client Service Create Response - type: object - x-speakeasy-name-override: PersonalClientServiceCreateResponse - c1.api.iam.v1.PersonalClientServiceDeleteRequestInput: - description: The PersonalClientServiceDeleteRequest message. - title: Personal Client Service Delete Request - type: object - x-speakeasy-name-override: PersonalClientServiceDeleteRequest - c1.api.iam.v1.PersonalClientServiceDeleteResponse: - description: The PersonalClientServiceDeleteResponse message. - title: Personal Client Service Delete Response - type: object - x-speakeasy-name-override: PersonalClientServiceDeleteResponse - c1.api.iam.v1.PersonalClientServiceGetResponse: - description: The PersonalClientServiceGetResponse message. - properties: - client: - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClient' - title: Personal Client Service Get Response + query: + description: Optional text query matched against client_key and audience_client_id. + type: string + refs: + description: |- + Optional: fetch a specific set of mappings by ref (used by websocket + notify to re-fetch individual rows). + items: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMappingRef' + type: + - array + - "null" + xaaResourceServerIds: + description: Optional filter by resource servers. Empty matches any resource server. + items: + type: string + type: + - array + - "null" + title: Xaa Client Audience Mapping Service Search Request type: object - x-speakeasy-name-override: PersonalClientServiceGetResponse - c1.api.iam.v1.PersonalClientServiceListResponse: - description: The PersonalClientServiceListResponse message. + x-speakeasy-name-override: XAAClientAudienceMappingServiceSearchRequest + c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceSearchResponse: + description: XAAClientAudienceMappingServiceSearchResponse returns matching mappings. properties: list: - description: The list of personal client credentials owned by the calling user. + description: Matching mappings. items: - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClient' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMapping' + type: + - array + - "null" nextPageToken: - description: A token to retrieve the next page of results, or empty if there are no more results. - readOnly: false + description: Token for the next page. type: string - title: Personal Client Service List Response + title: Xaa Client Audience Mapping Service Search Response type: object - x-speakeasy-name-override: PersonalClientServiceListResponse - c1.api.iam.v1.PersonalClientServiceUpdateRequestInput: - description: The PersonalClientServiceUpdateRequest message. + x-speakeasy-name-override: XAAClientAudienceMappingServiceSearchResponse + c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceUpdateRequestInput: + description: XAAClientAudienceMappingServiceUpdateRequest updates an existing mapping. properties: - client: - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClient' + clientAudienceMapping: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMapping' + - type: "null" updateMask: - nullable: true - readOnly: false - type: string - title: Personal Client Service Update Request - type: object - x-speakeasy-name-override: PersonalClientServiceUpdateRequest - c1.api.iam.v1.PersonalClientServiceUpdateResponse: - description: The PersonalClientServiceUpdateResponse message. + type: + - string + - "null" + title: Xaa Client Audience Mapping Service Update Request + type: object + x-speakeasy-name-override: XAAClientAudienceMappingServiceUpdateRequest + c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceUpdateResponse: + description: XAAClientAudienceMappingServiceUpdateResponse returns the updated mapping. + properties: + clientAudienceMapping: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMapping' + - type: "null" + title: Xaa Client Audience Mapping Service Update Response + type: object + x-speakeasy-name-override: XAAClientAudienceMappingServiceUpdateResponse + c1.api.cross_app_access.v1.XAAModifyClaimsHook: + description: |- + XAAModifyClaimsHook registers a tenant Function invoked just before a grant + is signed. The function may deny issuance or narrow the outgoing claims. It + always runs blocking and fails closed: any error, timeout, or invalid result + denies the grant. properties: - client: - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClient' - title: Personal Client Service Update Response + commitId: + description: |- + Pin to a specific commit of the function. Empty uses the function's + published commit, resolved when the resource server is saved. + type: string + disabled: + description: When true, the hook is configured but not invoked. + type: boolean + functionId: + description: The Function to invoke. + type: string + title: Xaa Modify Claims Hook type: object - x-speakeasy-name-override: PersonalClientServiceUpdateResponse - c1.api.iam.v1.Role: - description: Role is a role that can be assigned to a user in ConductorOne. + x-speakeasy-name-override: XAAModifyClaimsHook + c1.api.cross_app_access.v1.XAAResourceServer: + description: |- + XAAResourceServer is a third-party authorization server registered as a + permitted cross-app-access audience for one application. properties: + appId: + description: The application this resource server fronts. + type: string createdAt: format: date-time - readOnly: true - type: string + type: + - string + - "null" deletedAt: format: date-time - readOnly: true + type: + - string + - "null" + description: + description: Description of the resource server. type: string + disabled: + description: |- + When true, exchange requests for this resource server are rejected without + removing the registration (a kill switch). + type: boolean displayName: - description: The display name of the role. - readOnly: false + description: Display name for the resource server. type: string id: - description: The id of the role. - readOnly: true + description: Unique identifier for this resource server. type: string - name: - description: The internal name of the role. - readOnly: true + maxGrantLifetime: + format: duration + type: + - string + - "null" + modifyClaimsHook: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAModifyClaimsHook' + - type: "null" + normalizedAudience: + description: |- + The resource authorization server's issuer identifier (RFC 8414). Becomes + the audience of every grant minted for this server. Stored normalized: + lowercase scheme and host, no trailing slash, https only. Immutable after + creation. Must not equal your own tenant's issuer. type: string - permissions: - description: The list of permissions this role has. - items: - type: string - nullable: true - readOnly: false - type: array - serviceRoles: - description: The list of serviceRoles that this role has. + requireProofOfPossession: + description: |- + When true, mint proof-of-possession-bound grants for clients presenting a + DPoP proof. + type: boolean + resourceUris: + description: |- + The resource identifiers this server governs (RFC 8707). An allowlist for + the token-exchange resource parameter; empty rejects any request that + carries a resource parameter. items: type: string - nullable: true - readOnly: false - type: array - systemApiOnly: - description: This Role is intended for API keys usage only, and the user interface may not function as expected. - readOnly: true - type: boolean - systemBuiltin: - description: The system builtin field. If this field is set, the role is not editable. - readOnly: true - type: boolean + type: + - array + - "null" + sectorId: + description: |- + Optional pairwise sector override. Empty means the resource server's + audience is its own sector. Set to the well-known global sentinel sector to + opt into a correlatable shared `sub`, or to a shared value to share one + pairwise `sub` across a trust group of audiences. Immutable once set. + type: string + signingAlgorithm: + description: |- + JWS algorithm for grants minted for this server. UNSPECIFIED uses the + tenant default. Minting fails if no active signing key exists for the + resolved algorithm. + enum: + - XAA_SIGNING_ALGORITHM_UNSPECIFIED + - XAA_SIGNING_ALGORITHM_EDDSA + - XAA_SIGNING_ALGORITHM_RS256 + - XAA_SIGNING_ALGORITHM_ES256 + type: string + x-speakeasy-unknown-values: allow updatedAt: format: date-time - readOnly: true - type: string - title: Role + type: + - string + - "null" + title: Xaa Resource Server type: object - x-speakeasy-name-override: Role - c1.api.iam.v1.UpdateRoleRequestInput: - description: The UpdateRoleRequest message contains the role to update and the update mask. + x-speakeasy-name-override: XAAResourceServer + c1.api.cross_app_access.v1.XAAResourceServerHistoryEntry: + description: |- + XAAResourceServerHistoryEntry is one version of a resource server and its + history metadata. properties: - role: - $ref: '#/components/schemas/c1.api.iam.v1.Role' - updateMask: - nullable: true - readOnly: false - type: string - title: Update Role Request - type: object - x-speakeasy-name-override: UpdateRoleRequest - c1.api.iam.v1.UpdateRolesResponse: - description: UpdateRolesResponse is the response message containing the updated role. + metadata: + oneOf: + - $ref: '#/components/schemas/c1.api.history.v1.HistoryEntryMetadata' + - type: "null" + snapshot: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServer' + - type: "null" + title: Xaa Resource Server History Entry + type: object + x-speakeasy-name-override: XAAResourceServerHistoryEntry + c1.api.cross_app_access.v1.XAAResourceServerRef: + description: |- + XAAResourceServerRef is a lightweight reference to a resource server, used + for websocket notifications and search filter refs. properties: - role: - $ref: '#/components/schemas/c1.api.iam.v1.Role' - title: Update Roles Response + appId: + description: The appId field. + type: string + id: + description: The id field. + type: string + title: Xaa Resource Server Ref type: object - x-speakeasy-name-override: UpdateRolesResponse - c1.api.integration.connector.v1.CheckboxField: - description: The CheckboxField message. - nullable: true + x-speakeasy-name-override: XAAResourceServerRef + c1.api.cross_app_access.v1.XAAResourceServerServiceCreateRequestInput: + description: XAAResourceServerServiceCreateRequest registers a new resource server. properties: - checked: - description: The checked field. - readOnly: false + description: + description: Description of the resource server. + type: string + disabled: + description: |- + When true, the resource server is registered but exchange requests are + rejected. type: boolean - title: Checkbox Field - type: object - x-speakeasy-name-override: ConnectorCheckboxField - c1.api.integration.connector.v1.ConfigSchema: - description: The ConfigSchema message. - properties: displayName: - description: The displayName field. - readOnly: false + description: Display name for the resource server. type: string - fieldGroups: - description: Optional. Metadata for displaying fields in the UI. - items: - $ref: '#/components/schemas/c1.api.integration.connector.v1.FieldGroup' - nullable: true - readOnly: false - type: array - fields: - description: The fields field. + maxGrantLifetime: + format: duration + type: + - string + - "null" + modifyClaimsHook: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAModifyClaimsHook' + - type: "null" + normalizedAudience: + description: |- + The resource authorization server's issuer identifier. Must not equal your + own tenant's issuer. Normalized and immutable after creation. + type: string + requireProofOfPossession: + description: When true, mint proof-of-possession-bound grants. + type: boolean + resourceUris: + description: Resource identifiers this server governs (RFC 8707). items: - $ref: '#/components/schemas/c1.api.integration.connector.v1.Field' - nullable: true - readOnly: false - type: array - helpUrl: - description: The helpUrl field. - readOnly: false + type: string + type: + - array + - "null" + signingAlgorithm: + description: |- + JWS algorithm for grants minted for this server. UNSPECIFIED uses the + tenant default. + enum: + - XAA_SIGNING_ALGORITHM_UNSPECIFIED + - XAA_SIGNING_ALGORITHM_EDDSA + - XAA_SIGNING_ALGORITHM_RS256 + - XAA_SIGNING_ALGORITHM_ES256 type: string - iconUrl: - deprecated: true - description: The iconUrl field. - readOnly: false + x-speakeasy-unknown-values: allow + title: Xaa Resource Server Service Create Request + type: object + x-speakeasy-name-override: XAAResourceServerServiceCreateRequest + c1.api.cross_app_access.v1.XAAResourceServerServiceCreateResponse: + description: XAAResourceServerServiceCreateResponse returns the registered resource server. + properties: + resourceServer: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServer' + - type: "null" + title: Xaa Resource Server Service Create Response + type: object + x-speakeasy-name-override: XAAResourceServerServiceCreateResponse + c1.api.cross_app_access.v1.XAAResourceServerServiceDeleteRequestInput: + description: XAAResourceServerServiceDeleteRequest deletes a resource server (soft delete). + title: Xaa Resource Server Service Delete Request + type: object + x-speakeasy-name-override: XAAResourceServerServiceDeleteRequest + c1.api.cross_app_access.v1.XAAResourceServerServiceDeleteResponse: + description: XAAResourceServerServiceDeleteResponse confirms deletion. + title: Xaa Resource Server Service Delete Response + type: object + x-speakeasy-name-override: XAAResourceServerServiceDeleteResponse + c1.api.cross_app_access.v1.XAAResourceServerServiceGetResponse: + description: XAAResourceServerServiceGetResponse returns a single resource server. + properties: + resourceServer: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServer' + - type: "null" + title: Xaa Resource Server Service Get Response + type: object + x-speakeasy-name-override: XAAResourceServerServiceGetResponse + c1.api.cross_app_access.v1.XAAResourceServerServiceListHistoryResponse: + description: |- + XAAResourceServerServiceListHistoryResponse returns resource server history + entries. + properties: + list: + description: The page of history entries, newest first. + items: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServerHistoryEntry' + type: + - array + - "null" + nextPageToken: + description: Pagination token for the next page, or empty if there are no more results. type: string - isOauth2: - description: The isOauth2 field. - readOnly: false - type: boolean - requiresExternalConnector: - description: The requiresExternalConnector field. - readOnly: false - type: boolean - supportsExternalResources: - description: The supportsExternalResources field. - readOnly: false - type: boolean - title: Config Schema + title: Xaa Resource Server Service List History Response type: object - x-speakeasy-name-override: ConfigSchema - c1.api.integration.connector.v1.ConnectorCatalogServiceConfigurationSchemaRequest: - description: ConnectorCatalogServiceConfigurationSchemaRequest is the request for retrieving a connector's configuration schema. + x-speakeasy-name-override: XAAResourceServerServiceListHistoryResponse + c1.api.cross_app_access.v1.XAAResourceServerServiceListResponse: + description: XAAResourceServerServiceListResponse returns a page of resource servers. properties: - appId: - description: The ID of the app associated with the connector. Optional. - readOnly: false + nextPageToken: + description: Token for the next page, or empty if there are no more results. type: string - catalogId: - description: The catalog entry ID identifying the connector type. - readOnly: false + resourceServers: + description: The page of resource servers. + items: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServer' + type: + - array + - "null" + title: Xaa Resource Server Service List Response + type: object + x-speakeasy-name-override: XAAResourceServerServiceListResponse + c1.api.cross_app_access.v1.XAAResourceServerServiceSearchRequest: + description: XAAResourceServerServiceSearchRequest searches resource servers with filters. + properties: + appIds: + description: Optional filter by applications. Empty matches any application. + items: + type: string + type: + - array + - "null" + disabled: + description: Optional filter by disabled state. + type: + - boolean + - "null" + pageSize: + description: Page size (max 100). + format: int32 + type: integer + pageToken: + description: Page token for pagination. type: string - connectorId: - description: The ID of an existing connector to retrieve its current configuration schema. Optional. - readOnly: false + query: + description: Optional text query matched against display_name and normalized_audience. type: string - title: Connector Catalog Service Configuration Schema Request + refs: + description: |- + Optional: fetch a specific set of resource servers by ref (used by + websocket notify to re-fetch individual rows). + items: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServerRef' + type: + - array + - "null" + signingAlgorithmFilter: + description: Optional filter by signing algorithm. UNSPECIFIED means no filter. + items: + enum: + - XAA_SIGNING_ALGORITHM_UNSPECIFIED + - XAA_SIGNING_ALGORITHM_EDDSA + - XAA_SIGNING_ALGORITHM_RS256 + - XAA_SIGNING_ALGORITHM_ES256 + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + title: Xaa Resource Server Service Search Request type: object - x-speakeasy-name-override: ConnectorCatalogServiceConfigurationSchemaRequest - c1.api.integration.connector.v1.ConnectorCatalogServiceConfigurationSchemaResponse: - description: ConnectorCatalogServiceConfigurationSchemaResponse is the response containing the connector's configuration schema. + x-speakeasy-name-override: XAAResourceServerServiceSearchRequest + c1.api.cross_app_access.v1.XAAResourceServerServiceSearchResponse: + description: XAAResourceServerServiceSearchResponse returns matching resource servers. properties: - formSchema: - $ref: '#/components/schemas/c1.api.form.v1.Form' - schema: - $ref: '#/components/schemas/c1.api.integration.connector.v1.ConfigSchema' - title: Connector Catalog Service Configuration Schema Response + list: + description: Matching resource servers. + items: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServer' + type: + - array + - "null" + nextPageToken: + description: Token for the next page. + type: string + title: Xaa Resource Server Service Search Response type: object - x-speakeasy-name-override: ConnectorCatalogServiceConfigurationSchemaResponse - c1.api.integration.connector.v1.Field: - description: | - The Field message. - - This message contains a oneof named field. Only a single field of the following list may be set at a time: - - str - - select - - random - - import - - oauth2 - - readOnly - - options - - checkbox - - secret - - strList - - text - - keyValue - - stringMap + x-speakeasy-name-override: XAAResourceServerServiceSearchResponse + c1.api.cross_app_access.v1.XAAResourceServerServiceUpdateRequestInput: + description: XAAResourceServerServiceUpdateRequest updates an existing resource server. properties: - additionalPlaceholder: - description: |- - Optional. Additional placeholder text for the field - In cases where a single placeholder is not enough to describe the field - readOnly: false + resourceServer: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServer' + - type: "null" + updateMask: + type: + - string + - "null" + title: Xaa Resource Server Service Update Request + type: object + x-speakeasy-name-override: XAAResourceServerServiceUpdateRequest + c1.api.cross_app_access.v1.XAAResourceServerServiceUpdateResponse: + description: XAAResourceServerServiceUpdateResponse returns the updated resource server. + properties: + resourceServer: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServer' + - type: "null" + title: Xaa Resource Server Service Update Response + type: object + x-speakeasy-name-override: XAAResourceServerServiceUpdateResponse + c1.api.cross_app_access.v1.XAAScope: + description: |- + XAAScope is a single OAuth scope exposed by a resource server, elevated into + a governable object bound to its own entitlement. + properties: + appEntitlementId: + description: The AppEntitlement created for this scope. + type: string + appId: + description: The application that owns the resource server. + type: string + classification: + description: Risk classification. + enum: + - XAA_SCOPE_CLASSIFICATION_UNSPECIFIED + - XAA_SCOPE_CLASSIFICATION_READ + - XAA_SCOPE_CLASSIFICATION_WRITE + - XAA_SCOPE_CLASSIFICATION_DESTRUCTIVE + - XAA_SCOPE_CLASSIFICATION_SENSITIVE + - XAA_SCOPE_CLASSIFICATION_DANGEROUS + type: string + x-speakeasy-unknown-values: allow + createdAt: + format: date-time + type: + - string + - "null" + deletedAt: + format: date-time + type: + - string + - "null" + description: + description: Description of what the scope grants. type: string - checkbox: - $ref: '#/components/schemas/c1.api.integration.connector.v1.CheckboxField' - dependsOnFields: - description: The dependsOnFields field. - items: - type: string - nullable: true - readOnly: false - type: array displayName: - description: Human-readable label for this Field - readOnly: false + description: Display name for the scope. type: string - helpUrl: - description: empty or https URL - readOnly: false + id: + description: Unique identifier for this scope. type: string - import: - $ref: '#/components/schemas/c1.api.integration.connector.v1.ImportField' - keyValue: - $ref: '#/components/schemas/c1.api.integration.connector.v1.KeyValueField' - name: - description: Must not start with `C1_` and match [a-zA-Z0-9_]{2,64}. Must be unique within a connector. - readOnly: false + lastDiscoveredAt: + format: date-time + type: + - string + - "null" + scopeValue: + description: |- + The literal OAuth scope string minted into the grant. Immutable after + creation (RFC 6749 charset, max 256 bytes). type: string - oauth2: - $ref: '#/components/schemas/c1.api.integration.connector.v1.OAuth2Field' - options: - $ref: '#/components/schemas/c1.api.integration.connector.v1.OptionsField' - placeholder: - description: The placeholder field. - readOnly: false + source: + description: How C1 learned of the scope. + enum: + - XAA_SCOPE_SOURCE_UNSPECIFIED + - XAA_SCOPE_SOURCE_ADMIN_DECLARED + - XAA_SCOPE_SOURCE_DISCOVERED type: string - postCreate: - description: The postCreate field. - readOnly: false - type: boolean - random: - $ref: '#/components/schemas/c1.api.integration.connector.v1.RandomStringField' - readOnly: - $ref: '#/components/schemas/c1.api.integration.connector.v1.ReadOnlyField' - secret: - $ref: '#/components/schemas/c1.api.integration.connector.v1.RotatableSecretField' - select: - $ref: '#/components/schemas/c1.api.integration.connector.v1.SelectField' - str: - $ref: '#/components/schemas/c1.api.integration.connector.v1.StringField' - strList: - $ref: '#/components/schemas/c1.api.integration.connector.v1.StringListField' - stringMap: - $ref: '#/components/schemas/c1.api.integration.connector.v1.StringMapField' - text: - $ref: '#/components/schemas/c1.api.integration.connector.v1.TextField' - title: Field + x-speakeasy-unknown-values: allow + state: + description: Approval/lifecycle state. + enum: + - XAA_SCOPE_STATE_UNSPECIFIED + - XAA_SCOPE_STATE_PENDING_REVIEW + - XAA_SCOPE_STATE_ENABLED + - XAA_SCOPE_STATE_DISABLED + - XAA_SCOPE_STATE_REMOVED + type: string + x-speakeasy-unknown-values: allow + updatedAt: + format: date-time + type: + - string + - "null" + xaaResourceServerId: + description: The resource server this scope belongs to. + type: string + title: Xaa Scope type: object - x-speakeasy-name-override: Field - c1.api.integration.connector.v1.FieldGroup: - description: The FieldGroup message. + x-speakeasy-name-override: XAAScope + c1.api.cross_app_access.v1.XAAScopeHistoryEntry: + description: XAAScopeHistoryEntry is one version of a scope and its history metadata. properties: - default: - description: The default field. - readOnly: false - type: boolean - displayName: - description: Nice name this group (e.g. renders as a Tab label) - readOnly: false - type: string - fieldNames: - description: Field names are "guaranteed" to be unique, but can be repeated in and between lists. - items: - type: string - nullable: true - readOnly: false - type: array - helpText: - description: Optional. User-facing help text. - readOnly: false + metadata: + oneOf: + - $ref: '#/components/schemas/c1.api.history.v1.HistoryEntryMetadata' + - type: "null" + snapshot: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScope' + - type: "null" + title: Xaa Scope History Entry + type: object + x-speakeasy-name-override: XAAScopeHistoryEntry + c1.api.cross_app_access.v1.XAAScopeRef: + description: |- + XAAScopeRef is a lightweight reference to a scope, used for websocket + notifications and search filter refs. + properties: + appId: + description: The appId field. type: string - name: - description: Unique ID. - readOnly: false + id: + description: The id field. type: string - title: Field Group + title: Xaa Scope Ref type: object - x-speakeasy-name-override: FieldGroup - c1.api.integration.connector.v1.ImportField: - description: The ImportField message. - nullable: true + x-speakeasy-name-override: XAAScopeRef + c1.api.cross_app_access.v1.XAAScopeServiceCreateRequestInput: + description: XAAScopeServiceCreateRequest declares a new scope. properties: - allowedExtensions: - description: The allowedExtensions field. - items: - type: string - nullable: true - readOnly: false - type: array - secret: - description: The secret field. - readOnly: false - type: boolean - valueValidator: - $ref: '#/components/schemas/validate.StringRules' - title: Import Field + classification: + description: Risk classification. + enum: + - XAA_SCOPE_CLASSIFICATION_UNSPECIFIED + - XAA_SCOPE_CLASSIFICATION_READ + - XAA_SCOPE_CLASSIFICATION_WRITE + - XAA_SCOPE_CLASSIFICATION_DESTRUCTIVE + - XAA_SCOPE_CLASSIFICATION_SENSITIVE + - XAA_SCOPE_CLASSIFICATION_DANGEROUS + type: string + x-speakeasy-unknown-values: allow + description: + description: Description of what the scope grants. + type: string + displayName: + description: Display name for the scope. + type: string + scopeValue: + description: The literal OAuth scope string. Immutable after creation. + type: string + state: + description: Initial state. UNSPECIFIED defaults to PENDING_REVIEW. + enum: + - XAA_SCOPE_STATE_UNSPECIFIED + - XAA_SCOPE_STATE_PENDING_REVIEW + - XAA_SCOPE_STATE_ENABLED + - XAA_SCOPE_STATE_DISABLED + - XAA_SCOPE_STATE_REMOVED + type: string + x-speakeasy-unknown-values: allow + xaaResourceServerId: + description: The resource server this scope belongs to. + type: string + title: Xaa Scope Service Create Request type: object - x-speakeasy-name-override: ImportField - c1.api.integration.connector.v1.KeyValueField: - description: The KeyValueField message. - nullable: true + x-speakeasy-name-override: XAAScopeServiceCreateRequest + c1.api.cross_app_access.v1.XAAScopeServiceCreateResponse: + description: XAAScopeServiceCreateResponse returns the created scope. properties: - secret: - description: The secret field. - readOnly: false - type: boolean - supportsFileUpload: - description: When true, UI allows file uploads per key-value entry. - readOnly: false - type: boolean - title: Key Value Field + scope: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScope' + - type: "null" + title: Xaa Scope Service Create Response type: object - x-speakeasy-name-override: KeyValueField - c1.api.integration.connector.v1.OAuth2Field: - description: The OAuth2Field message. - nullable: true - title: O Auth 2 Field + x-speakeasy-name-override: XAAScopeServiceCreateResponse + c1.api.cross_app_access.v1.XAAScopeServiceDeleteRequestInput: + description: XAAScopeServiceDeleteRequest deletes a scope (soft delete). + title: Xaa Scope Service Delete Request type: object - x-speakeasy-name-override: OAuth2Field - c1.api.integration.connector.v1.OptionsField: - description: The OptionsField message. - nullable: true - title: Options Field + x-speakeasy-name-override: XAAScopeServiceDeleteRequest + c1.api.cross_app_access.v1.XAAScopeServiceDeleteResponse: + description: XAAScopeServiceDeleteResponse confirms deletion. + title: Xaa Scope Service Delete Response type: object - x-speakeasy-name-override: OptionsField - c1.api.integration.connector.v1.RandomStringField: - description: The RandomStringField message. - nullable: true + x-speakeasy-name-override: XAAScopeServiceDeleteResponse + c1.api.cross_app_access.v1.XAAScopeServiceGetResponse: + description: XAAScopeServiceGetResponse returns a single scope. properties: - length: - description: The length field. - format: int32 - readOnly: false - type: integer - title: Random String Field - type: object - x-speakeasy-name-override: RandomStringField - c1.api.integration.connector.v1.ReadOnlyField: - description: The ReadOnlyField message. - nullable: true - title: Read Only Field - type: object - x-speakeasy-name-override: ReadOnlyField - c1.api.integration.connector.v1.RotatableSecretField: - description: The RotatableSecretField message. - nullable: true - title: Rotatable Secret Field + scope: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScope' + - type: "null" + title: Xaa Scope Service Get Response type: object - x-speakeasy-name-override: RotatableSecretField - c1.api.integration.connector.v1.SelectField: - description: The SelectField message. - nullable: true + x-speakeasy-name-override: XAAScopeServiceGetResponse + c1.api.cross_app_access.v1.XAAScopeServiceListHistoryResponse: + description: XAAScopeServiceListHistoryResponse returns scope history entries. properties: - items: - description: list of items that are selected from + list: + description: The page of history entries, newest first. items: - $ref: '#/components/schemas/c1.api.integration.connector.v1.SelectField.Item' - nullable: true - readOnly: false - type: array - title: Select Field - type: object - x-speakeasy-name-override: ConnectorSelectField - c1.api.integration.connector.v1.SelectField.Item: - description: The Item message. - properties: - displayName: - description: The displayName field. - readOnly: false - type: string - value: - description: The value field. - readOnly: false + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScopeHistoryEntry' + type: + - array + - "null" + nextPageToken: + description: Pagination token for the next page, or empty if there are no more results. type: string - title: Item + title: Xaa Scope Service List History Response type: object - x-speakeasy-name-override: Item - c1.api.integration.connector.v1.StringField: - description: The StringField message. - nullable: true + x-speakeasy-name-override: XAAScopeServiceListHistoryResponse + c1.api.cross_app_access.v1.XAAScopeServiceListResponse: + description: XAAScopeServiceListResponse returns a page of scopes. properties: - secret: - description: If secret, value is write-only in UI and a password-type form is used. - readOnly: false - type: boolean - valueValidator: - $ref: '#/components/schemas/validate.StringRules' - title: String Field + nextPageToken: + description: Token for the next page, or empty if there are no more results. + type: string + scopes: + description: The page of scopes. + items: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScope' + type: + - array + - "null" + title: Xaa Scope Service List Response type: object - x-speakeasy-name-override: StringField - c1.api.integration.connector.v1.StringListField: - description: The StringListField message. - nullable: true + x-speakeasy-name-override: XAAScopeServiceListResponse + c1.api.cross_app_access.v1.XAAScopeServiceSearchRequest: + description: XAAScopeServiceSearchRequest searches scopes with filters. properties: - valueValidator: - $ref: '#/components/schemas/validate.StringRules' - title: String List Field + appIds: + description: Optional filter by applications. Empty matches any application. + items: + type: string + type: + - array + - "null" + classificationFilter: + description: Optional filter by classification. UNSPECIFIED means no filter. + items: + enum: + - XAA_SCOPE_CLASSIFICATION_UNSPECIFIED + - XAA_SCOPE_CLASSIFICATION_READ + - XAA_SCOPE_CLASSIFICATION_WRITE + - XAA_SCOPE_CLASSIFICATION_DESTRUCTIVE + - XAA_SCOPE_CLASSIFICATION_SENSITIVE + - XAA_SCOPE_CLASSIFICATION_DANGEROUS + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + pageSize: + description: Page size (max 100). + format: int32 + type: integer + pageToken: + description: Page token for pagination. + type: string + query: + description: Optional text query matched against scope_value and display_name. + type: string + refs: + description: |- + Optional: fetch a specific set of scopes by ref (used by websocket notify + to re-fetch individual rows). + items: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScopeRef' + type: + - array + - "null" + sourceFilter: + description: Optional filter by source. UNSPECIFIED means no filter. + items: + enum: + - XAA_SCOPE_SOURCE_UNSPECIFIED + - XAA_SCOPE_SOURCE_ADMIN_DECLARED + - XAA_SCOPE_SOURCE_DISCOVERED + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + stateFilter: + description: Optional filter by state. UNSPECIFIED means no filter. + items: + enum: + - XAA_SCOPE_STATE_UNSPECIFIED + - XAA_SCOPE_STATE_PENDING_REVIEW + - XAA_SCOPE_STATE_ENABLED + - XAA_SCOPE_STATE_DISABLED + - XAA_SCOPE_STATE_REMOVED + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + xaaResourceServerIds: + description: Optional filter by resource servers. Empty matches any resource server. + items: + type: string + type: + - array + - "null" + title: Xaa Scope Service Search Request type: object - x-speakeasy-name-override: StringListField - c1.api.integration.connector.v1.StringMapField: - description: The StringMapField message. - nullable: true + x-speakeasy-name-override: XAAScopeServiceSearchRequest + c1.api.cross_app_access.v1.XAAScopeServiceSearchResponse: + description: XAAScopeServiceSearchResponse returns matching scopes. properties: - optional: - description: The optional field. - readOnly: false - type: boolean - title: String Map Field + list: + description: Matching scopes. + items: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScope' + type: + - array + - "null" + nextPageToken: + description: Token for the next page. + type: string + title: Xaa Scope Service Search Response type: object - x-speakeasy-name-override: StringMapField - c1.api.integration.connector.v1.TextField: - description: The TextField message. - nullable: true + x-speakeasy-name-override: XAAScopeServiceSearchResponse + c1.api.cross_app_access.v1.XAAScopeServiceUpdateRequestInput: + description: XAAScopeServiceUpdateRequest updates an existing scope. properties: - secret: - description: The secret field. - readOnly: false - type: boolean - valueValidator: - $ref: '#/components/schemas/validate.StringRules' - title: Text Field + scope: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScope' + - type: "null" + updateMask: + type: + - string + - "null" + title: Xaa Scope Service Update Request type: object - x-speakeasy-name-override: ConnectorTextField - c1.api.local_directory.v1.LocalDirectoryConfig: - description: |- - LocalDirectoryConfig is the public representation of a C1-managed local - directory configuration. The underlying directory infrastructure is provided - by the linked App (identified by app_id). + x-speakeasy-name-override: XAAScopeServiceUpdateRequest + c1.api.cross_app_access.v1.XAAScopeServiceUpdateResponse: + description: XAAScopeServiceUpdateResponse returns the updated scope. properties: - allowSelfRegistration: - description: Whether unauthenticated users may self-register in this directory. - readOnly: false + scope: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScope' + - type: "null" + title: Xaa Scope Service Update Response + type: object + x-speakeasy-name-override: XAAScopeServiceUpdateResponse + c1.api.cross_app_access.v1.XAASettings: + description: XAASettings is the per-tenant cross-app-access issuer configuration. + properties: + allowRefreshTokenSubjects: + description: |- + When true, accept refresh tokens as the exchange subject. Must remain false + until that path ships. type: boolean - appId: - description: app_id is the identifier for this config and its linked App. Read-only after creation. - readOnly: true - type: string createdAt: format: date-time - readOnly: true - type: string - defaultProfileTypeId: - description: Optional FK to a ProfileType applied to new users created via this directory. - readOnly: false - type: string - displayName: - description: The displayName field. - readOnly: false - type: string - invitationTtl: + type: + - string + - "null" + defaultGrantLifetime: format: duration - readOnly: false + type: + - string + - "null" + defaultSigningAlgorithm: + description: Tenant-default signing algorithm. UNSPECIFIED resolves to ES256. + enum: + - XAA_SIGNING_ALGORITHM_UNSPECIFIED + - XAA_SIGNING_ALGORITHM_EDDSA + - XAA_SIGNING_ALGORITHM_RS256 + - XAA_SIGNING_ALGORITHM_ES256 type: string - isDefault: + x-speakeasy-unknown-values: allow + enabled: description: |- - Whether this is the default local directory for the tenant. - At most one config per tenant may be the default. - readOnly: false + Master switch for the cross-app-access issuer and its published metadata. + C1 also gates the feature behind an operator-controlled rollout flag; this + is the tenant administrator's intent. type: boolean - onboardingFlowId: - description: Optional FK to an onboarding flow applied by default when inviting users. - readOnly: false - type: string - organizationId: - description: Optional FK to a ThirdPartyOrganization. Empty means standalone (no vendor linkage). - readOnly: false - type: string - selfRegistrationDomains: + enabledSigningAlgorithms: description: |- - Email domain allowlist for self-registration. Empty allows any domain when - allow_self_registration is true. + Algorithms this tenant maintains signing-key families for. EdDSA is always + implicitly present. items: + enum: + - XAA_SIGNING_ALGORITHM_UNSPECIFIED + - XAA_SIGNING_ALGORITHM_EDDSA + - XAA_SIGNING_ALGORITHM_RS256 + - XAA_SIGNING_ALGORITHM_ES256 type: string - nullable: true - readOnly: false - type: array + x-speakeasy-unknown-values: allow + type: + - array + - "null" updatedAt: format: date-time - readOnly: true - type: string - title: Local Directory Config - type: object - x-speakeasy-name-override: LocalDirectoryConfig - c1.api.local_directory.v1.LocalDirectoryConfigServiceCreateRequest: - description: The LocalDirectoryConfigServiceCreateRequest message. - properties: - allowSelfRegistration: - description: The allowSelfRegistration field. - readOnly: false - type: boolean - appId: - description: FK to the existing App that will back this local directory. - readOnly: false - type: string - defaultProfileTypeId: - description: The defaultProfileTypeId field. - readOnly: false - type: string - displayName: - description: The displayName field. - readOnly: false - type: string - invitationTtl: + type: + - string + - "null" + xaaIdTokenLifetime: format: duration - readOnly: false - type: string - isDefault: - description: Whether this should be the default local directory for the tenant. - readOnly: false - type: boolean - onboardingFlowId: - description: The onboardingFlowId field. - readOnly: false - type: string - organizationId: - description: Optional FK to a ThirdPartyOrganization. - readOnly: false - type: string - selfRegistrationDomains: - description: The selfRegistrationDomains field. - items: - type: string - nullable: true - readOnly: false - type: array - required: - - appId - - displayName - title: Local Directory Config Service Create Request - type: object - x-speakeasy-name-override: LocalDirectoryConfigServiceCreateRequest - c1.api.local_directory.v1.LocalDirectoryConfigServiceCreateResponse: - description: The LocalDirectoryConfigServiceCreateResponse message. - properties: - localDirectoryConfig: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfig' - title: Local Directory Config Service Create Response - type: object - x-speakeasy-name-override: LocalDirectoryConfigServiceCreateResponse - c1.api.local_directory.v1.LocalDirectoryConfigServiceDeleteRequestInput: - description: The LocalDirectoryConfigServiceDeleteRequest message. - title: Local Directory Config Service Delete Request - type: object - x-speakeasy-name-override: LocalDirectoryConfigServiceDeleteRequest - c1.api.local_directory.v1.LocalDirectoryConfigServiceDeleteResponse: - description: The LocalDirectoryConfigServiceDeleteResponse message. - title: Local Directory Config Service Delete Response + type: + - string + - "null" + title: Xaa Settings type: object - x-speakeasy-name-override: LocalDirectoryConfigServiceDeleteResponse - c1.api.local_directory.v1.LocalDirectoryConfigServiceGetResponse: - description: The LocalDirectoryConfigServiceGetResponse message. + x-speakeasy-name-override: XAASettings + c1.api.cross_app_access.v1.XAASettingsHistoryEntry: + description: |- + XAASettingsHistoryEntry is one version of the cross-app-access settings and + its history metadata. properties: - localDirectoryConfig: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfig' - title: Local Directory Config Service Get Response - type: object - x-speakeasy-name-override: LocalDirectoryConfigServiceGetResponse - c1.api.local_directory.v1.LocalDirectoryConfigServiceListResponse: - description: The LocalDirectoryConfigServiceListResponse message. + metadata: + oneOf: + - $ref: '#/components/schemas/c1.api.history.v1.HistoryEntryMetadata' + - type: "null" + snapshot: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAASettings' + - type: "null" + title: Xaa Settings History Entry + type: object + x-speakeasy-name-override: XAASettingsHistoryEntry + c1.api.cross_app_access.v1.XAASettingsServiceGetResponse: + description: XAASettingsServiceGetResponse returns the tenant's cross-app-access settings. + properties: + settings: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAASettings' + - type: "null" + title: Xaa Settings Service Get Response + type: object + x-speakeasy-name-override: XAASettingsServiceGetResponse + c1.api.cross_app_access.v1.XAASettingsServiceListHistoryResponse: + description: |- + XAASettingsServiceListHistoryResponse returns cross-app-access settings + history entries. properties: list: - description: The list field. + description: The page of history entries, newest first. items: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfig' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAASettingsHistoryEntry' + type: + - array + - "null" nextPageToken: - description: The nextPageToken field. - readOnly: false + description: Pagination token for the next page, or empty if there are no more results. type: string - title: Local Directory Config Service List Response + title: Xaa Settings Service List History Response type: object - x-speakeasy-name-override: LocalDirectoryConfigServiceListResponse - c1.api.local_directory.v1.LocalDirectoryConfigServiceUpdateRequestInput: - description: The LocalDirectoryConfigServiceUpdateRequest message. + x-speakeasy-name-override: XAASettingsServiceListHistoryResponse + c1.api.cross_app_access.v1.XAASettingsServiceUpdateRequest: + description: |- + XAASettingsServiceUpdateRequest updates the tenant's cross-app-access + settings. properties: - localDirectoryConfig: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfig' + settings: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAASettings' + - type: "null" updateMask: - nullable: true - readOnly: false - type: string - title: Local Directory Config Service Update Request - type: object - x-speakeasy-name-override: LocalDirectoryConfigServiceUpdateRequest - c1.api.local_directory.v1.LocalDirectoryConfigServiceUpdateResponse: - description: The LocalDirectoryConfigServiceUpdateResponse message. - properties: - localDirectoryConfig: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfig' - title: Local Directory Config Service Update Response - type: object - x-speakeasy-name-override: LocalDirectoryConfigServiceUpdateResponse - c1.api.local_directory.v1.LocalUserInvitation: - description: LocalUserInvitation is the public representation of a per-directory user invitation. + type: + - string + - "null" + title: Xaa Settings Service Update Request + type: object + x-speakeasy-name-override: XAASettingsServiceUpdateRequest + c1.api.cross_app_access.v1.XAASettingsServiceUpdateResponse: + description: XAASettingsServiceUpdateResponse returns the updated settings. + properties: + settings: + oneOf: + - $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAASettings' + - type: "null" + title: Xaa Settings Service Update Response + type: object + x-speakeasy-name-override: XAASettingsServiceUpdateResponse + c1.api.decoy.v1.Decoy: + description: |- + Decoy is the read projection of a planted honey-credential. All + fields except annotations are server-managed. properties: - acceptedAt: - format: date-time - readOnly: true - type: string + annotations: + additionalProperties: + type: string + description: |- + Customer-defined grouping/filtering bag. PATCH semantics on Update: + keys in the request overwrite, keys missing stay, keys set to empty + string delete. Copied onto the Finding produced when a decoy fires, + so routing rules can condition on the same keys. + type: object + x-speakeasy-terraform-plan-modifier: + imports: + - github.com/conductorone/terraform-provider-conductorone/internal/annotations + schemaDefinition: annotations.PlanModifier() createdAt: format: date-time readOnly: true + type: + - string + - "null" + description: + description: The description field. type: string - createdUserId: - description: Set when status = ACCEPTED. FK to the created User. Read-only. - readOnly: true - type: string - directoryAppId: - description: FK to the LocalDirectoryConfig (app_id) this invitation belongs to. Read-only after creation. - readOnly: true - type: string + disabled: + description: Admin-disabled. + type: boolean displayName: - description: Display name to pre-populate on the new user account. - readOnly: false - type: string - email: - description: Email address the invitation was sent to. - readOnly: false - type: string - expiresAt: - format: date-time - readOnly: true + description: The displayName field. type: string id: - description: Unique KSUID identifier. Read-only. - readOnly: true - type: string - initialRoleIds: - description: Optional initial role IDs to assign to the user upon acceptance. - items: - type: string - nullable: true - readOnly: false - type: array - invitedByUserId: - description: FK to the User who created the invitation. Read-only. + description: The id field. readOnly: true type: string - jobId: - description: Optional FK to a ThirdPartyJob. - readOnly: false - type: string - onboardingFlowId: - description: Optional onboarding flow override for this invitation. - readOnly: false - type: string - purpose: - description: Human-readable reason this user was invited. - readOnly: false - type: string - sponsorUserId: - description: Optional sponsor User override for this invitation. - readOnly: false - type: string - status: - description: Current lifecycle status. Read-only. + kind: + description: The kind field. enum: - - LOCAL_INVITATION_STATUS_UNSPECIFIED - - LOCAL_INVITATION_STATUS_PENDING - - LOCAL_INVITATION_STATUS_ACCEPTED - - LOCAL_INVITATION_STATUS_REVOKED - - LOCAL_INVITATION_STATUS_EXPIRED + - DECOY_KIND_UNSPECIFIED + - DECOY_KIND_USER_CLIENT_CREDENTIAL + - DECOY_KIND_CONNECTOR_CLIENT + - DECOY_KIND_WORKLOAD_FEDERATION + - DECOY_KIND_ACCESS_TOKEN readOnly: true type: string x-speakeasy-unknown-values: allow - updatedAt: + lastUsedAt: format: date-time readOnly: true + type: + - string + - "null" + materialFingerprintSha256: + description: |- + Hex-encoded SHA256 of the secret string vended at Create / Rotate. + Stable for the decoy's current material; changes only on Rotate. + Empty for WorkloadFederation decoys (no server-vended secret). + readOnly: true type: string - title: Local User Invitation + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Decoy type: object - x-speakeasy-name-override: LocalUserInvitation - c1.api.local_directory.v1.LocalUserInvitationServiceCreateRequestInput: - description: The LocalUserInvitationServiceCreateRequest message. + x-speakeasy-name-override: Decoy + c1.api.decoy.v1.DecoyAccessTokenInput: + description: |- + DecoyAccessTokenInput mints a session access-token decoy under an + existing User. properties: - displayName: - description: The displayName field. - readOnly: false - type: string - email: - description: The email field. - readOnly: false - type: string - initialRoleIds: - description: Optional initial role IDs to assign upon acceptance. - items: - type: string - nullable: true - readOnly: false - type: array - jobId: - description: Optional FK to a ThirdPartyJob. - readOnly: false - type: string - onboardingFlowId: - description: Optional onboarding flow override. - readOnly: false - type: string - purpose: - description: Human-readable reason for the invitation. - readOnly: false - type: string - sponsorUserId: - description: Optional sponsor User override. - readOnly: false + expiresIn: + format: duration + type: + - string + - "null" + subjectUserId: + description: Existing User the access token's subject claim references. type: string - required: - - email - - displayName - title: Local User Invitation Service Create Request + title: Decoy Access Token Input type: object - x-speakeasy-name-override: LocalUserInvitationServiceCreateRequest - c1.api.local_directory.v1.LocalUserInvitationServiceCreateResponse: - description: The LocalUserInvitationServiceCreateResponse message. + x-speakeasy-name-override: DecoyAccessTokenInput + c1.api.decoy.v1.DecoyAccessTokenMaterial: + description: DecoyAccessTokenMaterial is returned for AccessToken decoys. properties: - invitation: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitation' - title: Local User Invitation Service Create Response + accessToken: + description: The accessToken field. + type: string + title: Decoy Access Token Material type: object - x-speakeasy-name-override: LocalUserInvitationServiceCreateResponse - c1.api.local_directory.v1.LocalUserInvitationServiceGetResponse: - description: The LocalUserInvitationServiceGetResponse message. + x-speakeasy-name-override: DecoyAccessTokenMaterial + c1.api.decoy.v1.DecoyClientCredentialMaterial: + description: |- + DecoyClientCredentialMaterial is returned for UserClientCredential and + ConnectorClient decoys. properties: - invitation: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitation' - title: Local User Invitation Service Get Response - type: object - x-speakeasy-name-override: LocalUserInvitationServiceGetResponse - c1.api.local_directory.v1.LocalUserInvitationServiceRevokeRequestInput: - description: The LocalUserInvitationServiceRevokeRequest message. - title: Local User Invitation Service Revoke Request + clientId: + description: The clientId field. + type: string + clientSecret: + description: The clientSecret field. + type: string + title: Decoy Client Credential Material type: object - x-speakeasy-name-override: LocalUserInvitationServiceRevokeRequest - c1.api.local_directory.v1.LocalUserInvitationServiceRevokeResponse: - description: The LocalUserInvitationServiceRevokeResponse message. - properties: - invitation: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitation' - title: Local User Invitation Service Revoke Response + x-speakeasy-name-override: DecoyClientCredentialMaterial + c1.api.decoy.v1.DecoyConnectorClientInput: + description: |- + DecoyConnectorClientInput plants a connector-shaped credential decoy. + The server allocates placement under the tenant's ConductorOne app; + the customer makes no app/connector choice. + title: Decoy Connector Client Input type: object - x-speakeasy-name-override: LocalUserInvitationServiceRevokeResponse - c1.api.local_directory.v1.LocalUserInvitationServiceSearchRequest: - description: The LocalUserInvitationServiceSearchRequest message. + x-speakeasy-name-override: DecoyConnectorClientInput + c1.api.decoy.v1.DecoySearchRequest: + description: The DecoySearchRequest message. properties: - directoryAppId: - description: The directoryAppId field. - readOnly: false - type: string + annotationKeys: + description: |- + Filter to decoys that have at least one of these annotation keys + set. Empty means no annotation filter. Per-key constraints match + the c1api annotation-bag standard (min_len 1, max_len 128, same + regex used by every annotation-bag-typed field across c1api). + items: + type: string + type: + - array + - "null" + hasBeenUsed: + description: |- + Filter to decoys that have been used at least once. False / unset + means no filter (show all). The "never used" case is not covered + in this filter; add an explicit field if needed. + type: boolean + kinds: + description: Filter by kind (OR within the list). Empty means any kind. + items: + enum: + - DECOY_KIND_UNSPECIFIED + - DECOY_KIND_USER_CLIENT_CREDENTIAL + - DECOY_KIND_CONNECTOR_CLIENT + - DECOY_KIND_WORKLOAD_FEDERATION + - DECOY_KIND_ACCESS_TOKEN + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" pageSize: description: The pageSize field. format: int32 - readOnly: false type: integer pageToken: description: The pageToken field. - readOnly: false type: string - statusFilter: - description: Optional filter by invitation status. - enum: - - LOCAL_INVITATION_STATUS_UNSPECIFIED - - LOCAL_INVITATION_STATUS_PENDING - - LOCAL_INVITATION_STATUS_ACCEPTED - - LOCAL_INVITATION_STATUS_REVOKED - - LOCAL_INVITATION_STATUS_EXPIRED - readOnly: false + query: + description: |- + Free-text query against display_name and description. Empty means + no text filter. type: string - x-speakeasy-unknown-values: allow - title: Local User Invitation Service Search Request + statuses: + description: Filter by status (OR within the list). Empty means any status. + items: + enum: + - DECOY_STATUS_FILTER_UNSPECIFIED + - DECOY_STATUS_FILTER_ACTIVE + - DECOY_STATUS_FILTER_DISABLED + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + title: Decoy Search Request type: object - x-speakeasy-name-override: LocalUserInvitationServiceSearchRequest - c1.api.local_directory.v1.LocalUserInvitationServiceSearchResponse: - description: The LocalUserInvitationServiceSearchResponse message. + x-speakeasy-name-override: DecoySearchRequest + c1.api.decoy.v1.DecoySearchResponse: + description: The DecoySearchResponse message. properties: list: description: The list field. items: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitation' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.decoy.v1.Decoy' + type: + - array + - "null" nextPageToken: description: The nextPageToken field. - readOnly: false type: string - title: Local User Invitation Service Search Response + title: Decoy Search Response type: object - x-speakeasy-name-override: LocalUserInvitationServiceSearchResponse - c1.api.policy.v1.Accept: - description: This policy step indicates that a ticket should have an approved outcome. This is a terminal approval state and is used to explicitly define the end of approval steps. - nullable: true + x-speakeasy-name-override: DecoySearchResponse + c1.api.decoy.v1.DecoyServiceCreateRequest: + description: | + The DecoyServiceCreateRequest message. + + This message contains a oneof named create_input. Only a single field of the following list may be set at a time: + - userClientCredential + - connectorClient + - workloadFed + - accessToken + properties: + accessToken: + oneOf: + - $ref: '#/components/schemas/c1.api.decoy.v1.DecoyAccessTokenInput' + - type: "null" + annotations: + additionalProperties: + type: string + description: The annotations field. + type: object + connectorClient: + oneOf: + - $ref: '#/components/schemas/c1.api.decoy.v1.DecoyConnectorClientInput' + - type: "null" + description: + description: The description field. + type: string + displayName: + description: The displayName field. + type: string + userClientCredential: + oneOf: + - $ref: '#/components/schemas/c1.api.decoy.v1.DecoyUserClientCredentialInput' + - type: "null" + workloadFed: + oneOf: + - $ref: '#/components/schemas/c1.api.decoy.v1.DecoyWorkloadFederationInput' + - type: "null" + title: Decoy Service Create Request + type: object + x-speakeasy-name-override: DecoyServiceCreateRequest + c1.api.decoy.v1.DecoyServiceCreateResponse: + description: The DecoyServiceCreateResponse message. + properties: + decoy: + oneOf: + - $ref: '#/components/schemas/c1.api.decoy.v1.Decoy' + - type: "null" + material: + oneOf: + - $ref: '#/components/schemas/c1.api.decoy.v1.DecoyVendingMaterial' + - type: "null" + title: Decoy Service Create Response + type: object + x-speakeasy-name-override: DecoyServiceCreateResponse + c1.api.decoy.v1.DecoyServiceDeleteRequestInput: + description: The DecoyServiceDeleteRequest message. + title: Decoy Service Delete Request + type: object + x-speakeasy-name-override: DecoyServiceDeleteRequest + c1.api.decoy.v1.DecoyServiceDeleteResponse: + description: The DecoyServiceDeleteResponse message. + title: Decoy Service Delete Response + type: object + x-speakeasy-name-override: DecoyServiceDeleteResponse + c1.api.decoy.v1.DecoyServiceGetResponse: + description: The DecoyServiceGetResponse message. + properties: + decoy: + oneOf: + - $ref: '#/components/schemas/c1.api.decoy.v1.Decoy' + - type: "null" + title: Decoy Service Get Response + type: object + x-speakeasy-name-override: DecoyServiceGetResponse + c1.api.decoy.v1.DecoyServiceListResponse: + description: The DecoyServiceListResponse message. properties: - acceptMessage: - description: An optional message to include in the comments when a task is automatically accepted. - readOnly: false + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.decoy.v1.Decoy' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - title: Accept - type: object - x-speakeasy-name-override: Accept - c1.api.policy.v1.AcceptInstance: + title: Decoy Service List Response + type: object + x-speakeasy-name-override: DecoyServiceListResponse + c1.api.decoy.v1.DecoyServiceRotateRequestInput: + description: The DecoyServiceRotateRequest message. + title: Decoy Service Rotate Request + type: object + x-speakeasy-name-override: DecoyServiceRotateRequest + c1.api.decoy.v1.DecoyServiceRotateResponse: + description: The DecoyServiceRotateResponse message. + properties: + decoy: + oneOf: + - $ref: '#/components/schemas/c1.api.decoy.v1.Decoy' + - type: "null" + material: + oneOf: + - $ref: '#/components/schemas/c1.api.decoy.v1.DecoyVendingMaterial' + - type: "null" + title: Decoy Service Rotate Response + type: object + x-speakeasy-name-override: DecoyServiceRotateResponse + c1.api.decoy.v1.DecoyServiceUpdateRequestInput: + description: The DecoyServiceUpdateRequest message. + properties: + decoy: + oneOf: + - $ref: '#/components/schemas/c1.api.decoy.v1.Decoy' + - type: "null" + updateMask: + type: + - string + - "null" + title: Decoy Service Update Request + type: object + x-speakeasy-name-override: DecoyServiceUpdateRequest + c1.api.decoy.v1.DecoyServiceUpdateResponse: + description: The DecoyServiceUpdateResponse message. + properties: + decoy: + oneOf: + - $ref: '#/components/schemas/c1.api.decoy.v1.Decoy' + - type: "null" + title: Decoy Service Update Response + type: object + x-speakeasy-name-override: DecoyServiceUpdateResponse + c1.api.decoy.v1.DecoyUserClientCredentialInput: description: |- - This policy step indicates that a ticket should have an approved outcome. This is a terminal approval state and is used to explicitly define the end of approval steps. - The instance is just a marker for it being copied into an active policy. - nullable: true + DecoyUserClientCredentialInput plants a client-credential decoy + under an existing User. The User must be typ=HUMAN or typ=SERVICE. properties: - acceptMessage: - description: An optional message to include in the comments when a task is automatically accepted. - readOnly: false + userId: + description: Existing User to plant the decoy credential under. type: string - title: Accept Instance - type: object - x-speakeasy-name-override: AcceptInstance - c1.api.policy.v1.Action: - description: | - The Action message. - - This message contains a oneof named target. Only a single field of the following list may be set at a time: - - automation - - batonResourceAction - - clientIdApproval - nullable: true - properties: - automation: - $ref: '#/components/schemas/c1.api.policy.v1.ActionTargetAutomation' - batonResourceAction: - $ref: '#/components/schemas/c1.api.policy.v1.ActionTargetBatonResourceAction' - clientIdApproval: - $ref: '#/components/schemas/c1.api.policy.v1.ActionTargetClientIdApproval' - title: Action + title: Decoy User Client Credential Input type: object - x-speakeasy-name-override: Action - c1.api.policy.v1.ActionInstance: + x-speakeasy-name-override: DecoyUserClientCredentialInput + c1.api.decoy.v1.DecoyVendingMaterial: description: | - The ActionInstance message. + DecoyVendingMaterial carries the freshly-vended secret material returned + exactly once at Create or Rotate. - This message contains a oneof named target_instance. Only a single field of the following list may be set at a time: - - automation - - batonResourceActionInstance - - clientIdApprovalInstance - - - This message contains a oneof named outcome. Only a single field of the following list may be set at a time: - - success - - denied - - error - - cancelled - nullable: true + This message contains a oneof named material. Only a single field of the following list may be set at a time: + - clientCredential + - accessToken + - workloadFederation + properties: + accessToken: + oneOf: + - $ref: '#/components/schemas/c1.api.decoy.v1.DecoyAccessTokenMaterial' + - type: "null" + clientCredential: + oneOf: + - $ref: '#/components/schemas/c1.api.decoy.v1.DecoyClientCredentialMaterial' + - type: "null" + workloadFederation: + oneOf: + - $ref: '#/components/schemas/c1.api.decoy.v1.DecoyWorkloadFederationMaterial' + - type: "null" + title: Decoy Vending Material + type: object + x-speakeasy-name-override: DecoyVendingMaterial + c1.api.decoy.v1.DecoyWorkloadFederationInput: + description: |- + DecoyWorkloadFederationInput plants a workload-federation-trust decoy + under an existing Provider. The Provider must already be registered + so its JWKS is reachable for signature verification. properties: - action: - $ref: '#/components/schemas/c1.api.policy.v1.Action' - automation: - $ref: '#/components/schemas/c1.api.policy.v1.ActionTargetAutomationInstance' - batonResourceActionInstance: - $ref: '#/components/schemas/c1.api.policy.v1.ActionTargetBatonResourceActionInstance' - cancelled: - $ref: '#/components/schemas/c1.api.policy.v1.ActionOutcomeCancelled' - clientIdApprovalInstance: - $ref: '#/components/schemas/c1.api.policy.v1.ActionTargetClientIdApprovalInstance' - denied: - $ref: '#/components/schemas/c1.api.policy.v1.ActionOutcomeDenied' - error: - $ref: '#/components/schemas/c1.api.policy.v1.ActionOutcomeError' - state: - description: The current state of the action execution. - enum: - - ACTION_INSTANCE_STATE_UNSPECIFIED - - ACTION_INSTANCE_STATE_INIT - - ACTION_INSTANCE_STATE_RUNNING - - ACTION_INSTANCE_STATE_DONE - - ACTION_INSTANCE_STATE_ERROR - readOnly: false + conditionExpression: + description: |- + CEL boolean evaluated against the presented JWT's claims map. Same + shape as the regular WorkloadFederationTrust condition expression. + Example: `claims.sub.startsWith("repo:acme/fake-infra:")`. type: string - x-speakeasy-unknown-values: allow - success: - $ref: '#/components/schemas/c1.api.policy.v1.ActionOutcomeSuccess' - title: Action Instance - type: object - x-speakeasy-name-override: ActionInstance - c1.api.policy.v1.ActionOutcomeCancelled: - description: The ActionOutcomeCancelled message. - nullable: true - properties: - outcomeTime: - format: date-time - readOnly: false + providerId: + description: Existing WorkloadFederationProvider to bind the decoy Trust under. type: string - title: Action Outcome Cancelled + servicePrincipalUserId: + description: Existing SERVICE-typed User the Trust would act-as on match. + type: string + title: Decoy Workload Federation Input type: object - x-speakeasy-name-override: ActionOutcomeCancelled - c1.api.policy.v1.ActionOutcomeDenied: - description: The ActionOutcomeDenied message. - nullable: true + x-speakeasy-name-override: DecoyWorkloadFederationInput + c1.api.decoy.v1.DecoyWorkloadFederationMaterial: + description: |- + DecoyWorkloadFederationMaterial is returned for WorkloadFederation + decoys. No vended secret; the operator binds the trust on the IdP side. properties: - outcomeTime: - format: date-time - readOnly: false + workloadFederationTrustId: + description: The workloadFederationTrustId field. type: string - title: Action Outcome Denied + title: Decoy Workload Federation Material type: object - x-speakeasy-name-override: ActionOutcomeDenied - c1.api.policy.v1.ActionOutcomeError: - description: The ActionOutcomeError message. - nullable: true + x-speakeasy-name-override: DecoyWorkloadFederationMaterial + c1.api.directory.v1.Directory: + description: | + This object indicates that an app is also a directory. + + This message contains a oneof named account_filter. Only a single field of the following list may be set at a time: + - all + - celExpression properties: - errorCode: - description: The errorCode field. - readOnly: false - type: string - errorMessage: - description: The errorMessage field. - readOnly: false + all: + oneOf: + - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryAccountFilterAll' + - type: "null" + appId: + description: The ID of the app associated with the directory. + readOnly: true type: string - outcomeTime: + celExpression: + oneOf: + - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryAccountFilterCel' + - type: "null" + createdAt: format: date-time - readOnly: false - type: string - title: Action Outcome Error + readOnly: true + type: + - string + - "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + mergeConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryMergeConfig' + - type: "null" + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Directory type: object - x-speakeasy-name-override: ActionOutcomeError - c1.api.policy.v1.ActionOutcomeSuccess: - description: The ActionOutcomeSuccess message. - nullable: true + x-speakeasy-name-override: Directory + c1.api.directory.v1.DirectoryAccountFilterAll: + description: The DirectoryAccountFilterAll message. + title: Directory Account Filter All + type: object + x-speakeasy-name-override: DirectoryAccountFilterAll + c1.api.directory.v1.DirectoryAccountFilterCel: + description: The DirectoryAccountFilterCel message. properties: - outcomeTime: - format: date-time - readOnly: false + expression: + description: The expression field. type: string - title: Action Outcome Success + title: Directory Account Filter Cel type: object - x-speakeasy-name-override: ActionOutcomeSuccess - c1.api.policy.v1.ActionProvision: - description: This provision step indicates that account lifecycle action should be called to provision this entitlement. - nullable: true + x-speakeasy-name-override: DirectoryAccountFilterCel + c1.api.directory.v1.DirectoryExpandMask: + description: The fields to be included in the directory response. properties: - actionName: - description: The actionName field. - readOnly: false - type: string - appId: - description: The appId field. - readOnly: false - type: string - connectorId: - description: The connectorId field. - readOnly: false - type: string - displayName: - description: The displayName field. - readOnly: false - type: string - title: Action Provision + paths: + description: An array of fields to be included in the directory response. + items: + type: string + type: + - array + - "null" + title: Directory Expand Mask type: object - x-speakeasy-name-override: ActionProvision - c1.api.policy.v1.ActionTargetAutomation: - description: ActionTargetAutomation targets automation templates for policy actions. - nullable: true + x-speakeasy-name-override: DirectoryExpandMask + c1.api.directory.v1.DirectoryMergeConfig: + description: DirectoryMergeConfig configures how AppUsers from this directory are matched to C1 Users. properties: - automationTemplateId: - description: The automationTemplateId field. - readOnly: false - type: string - title: Action Target Automation + matchCases: + description: Ordered list of match cases evaluated in sequence. First match wins. + items: + $ref: '#/components/schemas/c1.api.directory.v1.DirectoryMergeMatchCase' + type: + - array + - "null" + title: Directory Merge Config type: object - x-speakeasy-name-override: ActionTargetAutomation - c1.api.policy.v1.ActionTargetAutomationInstance: - description: The ActionTargetAutomationInstance message. - nullable: true + x-speakeasy-name-override: DirectoryMergeConfig + c1.api.directory.v1.DirectoryMergeMatchCase: + description: DirectoryMergeMatchCase defines a pair of CEL key extractors for matching. properties: - automationExecutionId: - description: The automationExecutionId field. - readOnly: false + appUserKeyCel: + description: CEL expression evaluated against an AppUser to produce match key(s). type: string - title: Action Target Automation Instance + userKeyCel: + description: CEL expression evaluated against a User to produce match key(s). + type: string + title: Directory Merge Match Case type: object - x-speakeasy-name-override: ActionTargetAutomationInstance - c1.api.policy.v1.ActionTargetBatonResourceAction: - description: ActionTargetResource targets resource actions for policy actions. - nullable: true + x-speakeasy-name-override: DirectoryMergeMatchCase + c1.api.directory.v1.DirectoryServiceCreateRequest: + description: | + Uplevel an app into a full directory. + + This message contains a oneof named account_filter. Only a single field of the following list may be set at a time: + - all + - celExpression properties: - batonResourceActionId: - description: The batonResourceActionId field. - readOnly: false + all: + oneOf: + - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryAccountFilterAll' + - type: "null" + appId: + description: The AppID to make into a directory, providing identities and more for the C1 app. type: string - title: Action Target Baton Resource Action + celExpression: + oneOf: + - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryAccountFilterCel' + - type: "null" + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryExpandMask' + - type: "null" + mergeConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryMergeConfig' + - type: "null" + title: Directory Service Create Request type: object - x-speakeasy-name-override: ActionTargetBatonResourceAction - c1.api.policy.v1.ActionTargetBatonResourceActionInstance: - description: The ActionTargetBatonResourceActionInstance message. - nullable: true + x-speakeasy-name-override: DirectoryServiceCreateRequest + c1.api.directory.v1.DirectoryServiceCreateResponse: + description: The DirectoryServiceCreateResponse message. properties: - batonActionInvocationId: - description: The batonActionInvocationId field. - readOnly: false - type: string - title: Action Target Baton Resource Action Instance + directoryView: + oneOf: + - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryView' + - type: "null" + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + title: Directory Service Create Response type: object - x-speakeasy-name-override: ActionTargetBatonResourceActionInstance - c1.api.policy.v1.ActionTargetClientIdApproval: - description: |- - ActionTargetClientIdApproval targets administrator review of an external - OAuth client registration (CIMD or DCR) for policy actions. - nullable: true - title: Action Target Client Id Approval + x-speakeasy-name-override: DirectoryServiceCreateResponse + c1.api.directory.v1.DirectoryServiceDeleteRequestInput: + description: DirectoryServiceDeleteRequest is the request message for deleting a directory. It uses URL values for input. + title: Directory Service Delete Request type: object - x-speakeasy-name-override: ActionTargetClientIdApproval - c1.api.policy.v1.ActionTargetClientIdApprovalInstance: - description: |- - ActionTargetClientIdApprovalInstance carries the registration key of the - external OAuth client that is being reviewed. - nullable: true - properties: - clientIdUrl: - description: The clientIdUrl field. - readOnly: false - type: string - title: Action Target Client Id Approval Instance + x-speakeasy-name-override: DirectoryServiceDeleteRequest + c1.api.directory.v1.DirectoryServiceDeleteResponse: + description: Empty response with a status code indicating success. + title: Directory Service Delete Response type: object - x-speakeasy-name-override: ActionTargetClientIdApprovalInstance - c1.api.policy.v1.AgentApproval: - description: The agent to assign the task to. - nullable: true + x-speakeasy-name-override: DirectoryServiceDeleteResponse + c1.api.directory.v1.DirectoryServiceGetResponse: + description: |- + The Directory Service Get Response returns a directory view with a directory and JSONPATHs indicating the + location in the expanded array that items are expanded as indicated by the expand mask in the request. properties: - agentFailureAction: - description: The action to take if the agent fails to approve, deny, or reassign the task. - enum: - - APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED - - APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS - - APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS - - APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP - readOnly: false - type: string - x-speakeasy-unknown-values: allow - agentMode: - description: The mode of the agent, full control, change policy only, or comment only. - enum: - - APPROVAL_AGENT_MODE_UNSPECIFIED - - APPROVAL_AGENT_MODE_FULL_CONTROL - - APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY - - APPROVAL_AGENT_MODE_COMMENT_ONLY - readOnly: false - type: string - x-speakeasy-unknown-values: allow - agentUserId: - description: The agent user ID to assign the task to. - readOnly: false - type: string - instructions: - description: Instructions for the agent. - readOnly: false - type: string - policyIds: - description: The allow list of policy IDs to re-route the task to. - items: - type: string - nullable: true - readOnly: false - type: array - reassignToUserIds: - description: The users to reassign the task to if the agent failure action is reassign to users. + directoryView: + oneOf: + - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryView' + - type: "null" + expanded: + description: List of serialized related objects. items: - type: string - nullable: true - readOnly: false - type: array - title: Agent Approval - type: object - x-speakeasy-name-override: AgentApproval - c1.api.policy.v1.AppEntitlementReference: - description: This object references an app entitlement's ID and AppID. - properties: - appEntitlementId: - description: The ID of the Entitlement. - readOnly: false - type: string - appId: - description: The ID of the App this entitlement belongs to. - readOnly: false - type: string - title: App Entitlement Reference + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + title: Directory Service Get Response type: object - x-speakeasy-name-override: AppEntitlementReference - c1.api.policy.v1.AppGroupApproval: - description: The AppGroupApproval object provides the configuration for setting a group as the approvers of an approval policy step. - nullable: true + x-speakeasy-name-override: DirectoryServiceGetResponse + c1.api.directory.v1.DirectoryServiceListResponse: + description: The DirectoryServiceListResponse message contains a list of results and a nextPageToken if applicable. properties: - allowSelfApproval: - description: Configuration to allow self approval if the target user is a member of the group during this step. - readOnly: false - type: boolean - appGroupId: - description: The ID of the group specified for approval. - readOnly: false - type: string - appId: - description: The ID of the app that contains the group specified for approval. - readOnly: false - type: string - fallback: - description: Configuration to allow a fallback if the group is empty. - readOnly: false - type: boolean - fallbackGroupIds: - description: Configuration to specify which groups to fallback to if fallback is enabled and the group is empty. + expanded: + description: |- + The nextPageToken is shown for the next page if the number of results is larger than the max page size. + The server returns one page of results and the nextPageToken until all results are retreived. + To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. items: - $ref: '#/components/schemas/c1.api.policy.v1.AppEntitlementReference' - nullable: true - readOnly: false - type: array - fallbackUserIds: - description: Configuration to specific which users to fallback to if fallback is enabled and the group is empty. + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + list: + description: The list of results containing up to X results, where X is the page size defined in the request. items: - type: string - nullable: true - readOnly: false - type: array - isGroupFallbackEnabled: - description: Configuration to enable fallback for group fallback. - readOnly: false - type: boolean - requireDistinctApprovers: - description: Configuration to require distinct approvers across approval steps of a rule. - readOnly: false - type: boolean - title: App Group Approval + $ref: '#/components/schemas/c1.api.directory.v1.DirectoryView' + type: + - array + - "null" + nextPageToken: + description: List of serialized related objects. + type: string + title: Directory Service List Response type: object - x-speakeasy-name-override: AppGroupApproval - c1.api.policy.v1.AppOwnerApproval: - description: App owner approval provides the configuration for an approval step when the app owner is the target. - nullable: true + x-speakeasy-name-override: DirectoryServiceListResponse + c1.api.directory.v1.DirectoryServiceUpdateRequestInput: + description: | + Update a directory by app_id. + + This message contains a oneof named account_filter. Only a single field of the following list may be set at a time: + - all + - celExpression properties: - allowSelfApproval: - description: Configuration that allows a user to self approve if they are an app owner during this approval step. - readOnly: false - type: boolean - requireDistinctApprovers: - description: Configuration to require distinct approvers across approval steps of a rule. - readOnly: false - type: boolean - title: App Owner Approval + all: + oneOf: + - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryAccountFilterAll' + - type: "null" + celExpression: + oneOf: + - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryAccountFilterCel' + - type: "null" + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryExpandMask' + - type: "null" + mergeConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryMergeConfig' + - type: "null" + title: Directory Service Update Request type: object - x-speakeasy-name-override: AppOwnerApproval - c1.api.policy.v1.AppOwnerProvisioner: - description: AppOwnerProvisioner resolves to app owners. - nullable: true + x-speakeasy-name-override: DirectoryServiceUpdateRequest + c1.api.directory.v1.DirectoryServiceUpdateResponse: + description: The DirectoryServiceUpdateResponse message. properties: - allowReassignment: - description: Whether the provisioner can reassign the task. - readOnly: false - type: boolean - fallbackUserIds: - description: Fallback user IDs if no app owners are found. + directoryView: + oneOf: + - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryView' + - type: "null" + expanded: + description: List of serialized related objects. items: - type: string - nullable: true - readOnly: false - type: array - title: App Owner Provisioner + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + title: Directory Service Update Response type: object - x-speakeasy-name-override: AppOwnerProvisioner - c1.api.policy.v1.Approval: - description: | - The Approval message. - - This message contains a oneof named typ. Only a single field of the following list may be set at a time: - - users - - manager - - appOwners - - group - - self - - entitlementOwners - - expression - - webhook - - resourceOwners - - agent - nullable: true + x-speakeasy-name-override: DirectoryServiceUpdateResponse + c1.api.directory.v1.DirectoryView: + description: The directory view contains a directory and an app_path which is a JSONPATH set to the location in the expand mask that the expanded app will live if requested by the expander. properties: - agent: - $ref: '#/components/schemas/c1.api.policy.v1.AgentApproval' - allowDelegation: - description: Whether ticket delegation is allowed for this step. - readOnly: false - type: boolean - allowReassignment: - description: Configuration to allow reassignment by reviewers during this step. - readOnly: false - type: boolean - allowedReassignees: - description: List of users for whom this step can be reassigned. - items: - type: string - nullable: true - readOnly: false - type: array - appOwners: - $ref: '#/components/schemas/c1.api.policy.v1.AppOwnerApproval' - assigned: - description: A field indicating whether this step is assigned. - readOnly: true - type: boolean - entitlementOwners: - $ref: '#/components/schemas/c1.api.policy.v1.EntitlementOwnerApproval' - escalation: - $ref: '#/components/schemas/c1.api.policy.v1.Escalation' - escalationEnabled: - description: Whether escalation is enabled for this step. - readOnly: false - type: boolean - expression: - $ref: '#/components/schemas/c1.api.policy.v1.ExpressionApproval' - group: - $ref: '#/components/schemas/c1.api.policy.v1.AppGroupApproval' - manager: - $ref: '#/components/schemas/c1.api.policy.v1.ManagerApproval' - requireApprovalReason: - description: Configuration to require a reason when approving this step. - readOnly: false - type: boolean - requireDenialReason: - description: Configuration to require a reason when denying this step. - readOnly: false - type: boolean - requireReassignmentReason: - description: Configuration to require a reason when reassigning this step. - readOnly: false - type: boolean - requiresStepUpProviderId: - description: |- - The ID of a step-up authentication provider that will be required for approvals on this step. - If set, approvers must complete the step-up authentication flow before they can approve. - readOnly: false + appPath: + description: JSONPATH expression indicating the location of the App object in the array. type: string - resourceOwners: - $ref: '#/components/schemas/c1.api.policy.v1.ResourceOwnerApproval' - self: - $ref: '#/components/schemas/c1.api.policy.v1.SelfApproval' - users: - $ref: '#/components/schemas/c1.api.policy.v1.UserApproval' - webhook: - $ref: '#/components/schemas/c1.api.policy.v1.WebhookApproval' - title: Approval + directory: + oneOf: + - $ref: '#/components/schemas/c1.api.directory.v1.Directory' + - type: "null" + title: Directory View type: object - x-speakeasy-name-override: Approval - c1.api.policy.v1.ApprovalInstance: - description: | - The approval instance object describes the way a policy step should be approved as well as its outcomes and state. - - This message contains a oneof named outcome. Only a single field of the following list may be set at a time: - - approved - - denied - - reassigned - - restarted - - reassignedByError - - skipped - nullable: true + x-speakeasy-name-override: DirectoryView + c1.api.editor.v1.EditorMarker: + description: The EditorMarker message. properties: - approval: - $ref: '#/components/schemas/c1.api.policy.v1.Approval' - approved: - $ref: '#/components/schemas/c1.api.policy.v1.ApprovedAction' - assignedAt: - format: date-time - readOnly: true + endColumn: + description: The endColumn field. + format: int32 + type: integer + endLineNumber: + description: The endLineNumber field. + format: int32 + type: integer + message: + description: The message field. type: string - denied: - $ref: '#/components/schemas/c1.api.policy.v1.DeniedAction' - escalationInstance: - $ref: '#/components/schemas/c1.api.policy.v1.EscalationInstance' - reassigned: - $ref: '#/components/schemas/c1.api.policy.v1.ReassignedAction' - reassignedByError: - $ref: '#/components/schemas/c1.api.policy.v1.ReassignedByErrorAction' - restarted: - $ref: '#/components/schemas/c1.api.policy.v1.RestartAction' - skipped: - $ref: '#/components/schemas/c1.api.policy.v1.SkippedAction' - state: - description: The state of the approval instance + severity: + description: The severity field. enum: - - APPROVAL_INSTANCE_STATE_UNSPECIFIED - - APPROVAL_INSTANCE_STATE_INIT - - APPROVAL_INSTANCE_STATE_SENDING_NOTIFICATIONS - - APPROVAL_INSTANCE_STATE_WAITING - - APPROVAL_INSTANCE_STATE_DONE - readOnly: true + - UNKNOWN + - HINT + - INFO + - WARNING + - ERROR type: string x-speakeasy-unknown-values: allow - title: Approval Instance + startColumn: + description: The startColumn field. + format: int32 + type: integer + startLineNumber: + description: The startLineNumber field. + format: int32 + type: integer + title: Editor Marker type: object - x-speakeasy-name-override: ApprovalInstance - c1.api.policy.v1.ApprovedAction: - description: The approved action indicates that the approvalinstance had an outcome of approved. - nullable: true + x-speakeasy-name-override: EditorMarker + c1.api.finding.v1.AcceptRiskAction: + description: AcceptRiskAction parameters for UpdateFindingState. properties: - approvedAt: + expiresAt: format: date-time - readOnly: true - type: string - entitlements: - description: The entitlements that were approved. This will only ever be a list of one entitlement. - items: - $ref: '#/components/schemas/c1.api.policy.v1.AppEntitlementReference' - nullable: true - readOnly: true - type: array - stepUpTransactionId: - description: The ID of the step-up transaction that was used for this approval, if step-up was required. - readOnly: true - type: string - userId: - description: The UserID that approved this step. - readOnly: true + type: + - string + - "null" + justification: + description: The justification field. type: string - title: Approved Action + title: Accept Risk Action type: object - x-speakeasy-name-override: ApprovedAction - c1.api.policy.v1.CancelledAction: - description: The outcome of a provision instance that is cancelled. - nullable: true + x-speakeasy-name-override: AcceptRiskAction + c1.api.finding.v1.AcceptRiskRoutingAction: + description: |- + AcceptRiskRoutingAction accepts the risk for a matched finding for a + relative duration (resolved to risk_acceptance_expires_at = now + duration + at execution time). properties: - cancelledAt: - format: date-time - readOnly: false - type: string - cancelledByUserId: - description: The userID, usually the system, that cancells a provision instance. - readOnly: false + duration: + format: duration + type: + - string + - "null" + reason: + description: The reason field. type: string - title: Cancelled Action + title: Accept Risk Routing Action type: object - x-speakeasy-name-override: CancelledAction - c1.api.policy.v1.CompletedAction: - description: The outcome of a provision instance that has been completed succesfully. - nullable: true + x-speakeasy-name-override: AcceptRiskRoutingAction + c1.api.finding.v1.AppResourceTarget: + description: AppResourceTarget points at the app resource the finding is about. properties: - completedAt: - format: date-time - readOnly: false + appId: + description: The appId field. type: string - entitlements: - description: The list of entitlements that were provisioned. This is leftover from an older design, and is only ever going to be a single entitlement. - items: - $ref: '#/components/schemas/c1.api.policy.v1.AppEntitlementReference' - nullable: true - readOnly: false - type: array - userId: - description: The UserID of who completed provisioning. For connector provisioning this is the system user id, for manual provisioning this is who clicked "provision complete" - readOnly: false + appResourceId: + description: The appResourceId field. type: string - title: Completed Action - type: object - x-speakeasy-name-override: CompletedAction - c1.api.policy.v1.ConnectorProvision: - description: | - Indicates that a connector should perform the provisioning. This object has no fields. - - This message contains a oneof named provision_type. Only a single field of the following list may be set at a time: - - defaultBehavior - - account - - deleteAccount - nullable: true - properties: - account: - $ref: '#/components/schemas/c1.api.policy.v1.ConnectorProvision.AccountProvision' - defaultBehavior: - $ref: '#/components/schemas/c1.api.policy.v1.ConnectorProvision.DefaultBehavior' - deleteAccount: - $ref: '#/components/schemas/c1.api.policy.v1.ConnectorProvision.DeleteAccount' - title: Connector Provision + appResourceTypeId: + description: The appResourceTypeId field. + type: string + title: App Resource Target type: object - x-speakeasy-name-override: ConnectorProvision - c1.api.policy.v1.ConnectorProvision.AccountProvision: - description: | - The AccountProvision message. - - This message contains a oneof named storage_type. Only a single field of the following list may be set at a time: - - saveToVault - - doNotSave - nullable: true + x-speakeasy-name-override: AppResourceTarget + c1.api.finding.v1.AppUserTarget: + description: The AppUserTarget message. properties: - config: - additionalProperties: true - readOnly: false - type: object - connectorId: - description: The connectorId field. - readOnly: false + appId: + description: The appId field. type: string - doNotSave: - $ref: '#/components/schemas/c1.api.policy.v1.ConnectorProvision.DoNotSave' - saveToVault: - $ref: '#/components/schemas/c1.api.policy.v1.ConnectorProvision.SaveToVault' - schemaId: - description: The schemaId field. - readOnly: false + appUserId: + description: The appUserId field. type: string - title: Account Provision + title: App User Target type: object - x-speakeasy-name-override: AccountProvision - c1.api.policy.v1.ConnectorProvision.DefaultBehavior: - description: The DefaultBehavior message. - nullable: true + x-speakeasy-name-override: AppUserTarget + c1.api.finding.v1.BulkAcceptRiskAction: + description: The BulkAcceptRiskAction message. properties: - connectorId: - description: |- - this checks if the entitlement is enabled by provisioning in a specific connector - this can happen automatically and doesn't need any extra info - readOnly: false + expiresAt: + format: date-time + type: + - string + - "null" + justification: + description: The justification field. type: string - title: Default Behavior + title: Bulk Accept Risk Action type: object - x-speakeasy-name-override: DefaultBehavior - c1.api.policy.v1.ConnectorProvision.DeleteAccount: - description: The DeleteAccount message. - nullable: true + x-speakeasy-name-override: BulkAcceptRiskAction + c1.api.finding.v1.BulkAssignOwnerAction: + description: The BulkAssignOwnerAction message. properties: - connectorId: - description: The connectorId field. - readOnly: false - type: string - title: Delete Account - type: object - x-speakeasy-name-override: DeleteAccount - c1.api.policy.v1.ConnectorProvision.DoNotSave: - description: The DoNotSave message. - nullable: true - title: Do Not Save + owner: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingOwnerRef' + - type: "null" + title: Bulk Assign Owner Action type: object - x-speakeasy-name-override: DoNotSave - c1.api.policy.v1.ConnectorProvision.SaveToVault: - description: The SaveToVault message. - nullable: true + x-speakeasy-name-override: BulkAssignOwnerAction + c1.api.finding.v1.BulkCreateFindingTasksRequest: + description: The BulkCreateFindingTasksRequest message. properties: - vaultIds: - description: The vaultIds field. + policyId: + description: Optional policy ID to use for the created tasks. Defaults to the app's grant policy. + type: string + refs: + description: Individual finding references to create tasks for (by-ID mode). items: - type: string - nullable: true - readOnly: false - type: array - title: Save To Vault + $ref: '#/components/schemas/c1.api.finding.v1.FindingRef' + type: + - array + - "null" + searchRequest: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingSearchRequest' + - type: "null" + title: Bulk Create Finding Tasks Request type: object - x-speakeasy-name-override: SaveToVault - c1.api.policy.v1.CreatePolicyRequest: - description: The CreatePolicyRequest message is used to create a new policy. + x-speakeasy-name-override: BulkCreateFindingTasksRequest + c1.api.finding.v1.BulkCreateFindingTasksResponse: + description: The BulkCreateFindingTasksResponse message. properties: - description: - description: The description of the new policy. - readOnly: false - type: string - displayName: - description: The display name of the new policy. - readOnly: false + bulkActionId: + description: The ID of the asynchronous bulk action, which can be used to track progress. type: string - policySteps: - additionalProperties: - $ref: '#/components/schemas/c1.api.policy.v1.PolicySteps' + title: Bulk Create Finding Tasks Response + type: object + x-speakeasy-name-override: BulkCreateFindingTasksResponse + c1.api.finding.v1.BulkReopenAction: + description: The BulkReopenAction message. + title: Bulk Reopen Action + type: object + x-speakeasy-name-override: BulkReopenAction + c1.api.finding.v1.BulkReprocessAction: + description: |- + BulkReprocessAction re-evaluates eligible findings against transformation + and routing rules using each finding's original detector-created state + (original severity, original annotations) rather than any rule-mutated + current state. + + `override_human_edits` chooses how far re-derivation goes for + human-attributed edits: + + - Open findings are re-derived and re-routed in both modes. + - Findings parked by a rule (snoozed, suppressed, or risk-accepted by a + routing rule with no subsequent human action) are released to open, + re-derived, and re-routed in both modes. + - Findings parked by a person re-derive their content in both modes, but + the state is only released, and a human severity override only cleared, + when `override_human_edits` is true. + - Findings in progress re-derive their content and keep both their state + and any linked ticket in both modes. + - Resolved, archived, and deleted findings are skipped in both modes. + + Assigned owners and ticket links are never touched; rules do not derive them. + properties: + overrideHumanEdits: description: |- - Step sequences for this policy. The map must include a baseline entry keyed - by the lowercased policy type (e.g., "grant"). Additional entries with - opaque keys can be added for conditional routing via the rules array. - readOnly: false - type: object - policyType: - description: The type of policy to create (grant, revoke, or certify). - enum: - - POLICY_TYPE_UNSPECIFIED - - POLICY_TYPE_GRANT - - POLICY_TYPE_REVOKE - - POLICY_TYPE_CERTIFY - - POLICY_TYPE_ACCESS_REQUEST - - POLICY_TYPE_PROVISION - readOnly: false - type: string - x-speakeasy-unknown-values: allow - postActions: - description: Ordered actions to execute after the policy completes processing. - items: - $ref: '#/components/schemas/c1.api.policy.v1.PolicyPostActions' - nullable: true - readOnly: false - type: array - reassignTasksToDelegates: - deprecated: true - description: This field is no longer used. Configure delegate reassignment in the policy step instead. - readOnly: false + When false (the default), a person's parked state and severity override + survive the re-derivation. When true, reprocessing additionally releases + findings a person parked and clears human severity overrides. type: boolean - rules: - description: Conditional routing rules. See the Policy message for details on evaluation order. - items: - $ref: '#/components/schemas/c1.api.policy.v1.Rule' - nullable: true - readOnly: false - type: array - required: - - displayName - title: Create Policy Request + runDispatchers: + description: |- + When true, matched rules may re-send notification dispatches for + findings your team may have already seen. Off by default. + type: boolean + title: Bulk Reprocess Action type: object - x-speakeasy-entity: Policy - x-speakeasy-name-override: CreatePolicyRequest - c1.api.policy.v1.CreatePolicyResponse: - description: The CreatePolicyResponse message contains the created policy object. + x-speakeasy-name-override: BulkReprocessAction + c1.api.finding.v1.BulkSnoozeAction: + description: The BulkSnoozeAction message. properties: - policy: - $ref: '#/components/schemas/c1.api.policy.v1.Policy' - title: Create Policy Response + reason: + description: The reason field. + type: string + snoozeUntil: + format: date-time + type: + - string + - "null" + title: Bulk Snooze Action type: object - x-speakeasy-name-override: CreatePolicyResponse - c1.api.policy.v1.DelegatedProvision: - description: This provision step indicates that we should delegate provisioning to the configuration of another app entitlement. This app entitlement does not have to be one from the same app, but MUST be configured as a proxy binding leading into this entitlement. - nullable: true + x-speakeasy-name-override: BulkSnoozeAction + c1.api.finding.v1.BulkSuppressAction: + description: The BulkSuppressAction message. properties: - appId: - description: The AppID of the entitlement to delegate provisioning to. - readOnly: false - type: string - entitlementId: - description: The ID of the entitlement we are delegating provisioning to. - readOnly: false + reason: + description: The reason field. type: string - implicit: - description: If true, a binding will be automatically created from the entitlement of the parent app. - readOnly: false - type: boolean - title: Delegated Provision + title: Bulk Suppress Action type: object - x-speakeasy-name-override: DelegatedProvision - c1.api.policy.v1.DeletePolicyRequestInput: - description: The DeletePolicyRequest message contains the ID of the policy to delete. It uses URL value for input. - title: Delete Policy Request + x-speakeasy-name-override: BulkSuppressAction + c1.api.finding.v1.BulkUnsuppressAction: + deprecated: true + description: The BulkUnsuppressAction message. + title: Bulk Unsuppress Action type: object - x-speakeasy-entity: Policy - x-speakeasy-name-override: DeletePolicyRequest - c1.api.policy.v1.DeletePolicyResponse: - description: Empty response with a status code indicating success. - title: Delete Policy Response + x-speakeasy-name-override: BulkUnsuppressAction + c1.api.finding.v1.BulkUpdateFindingStateRequest: + description: | + The BulkUpdateFindingStateRequest message. + + This message contains a oneof named action. Only a single field of the following list may be set at a time: + - snooze + - suppress + - acceptRisk + - unsuppress + - assignOwner + - reopen + - reprocess + properties: + acceptRisk: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.BulkAcceptRiskAction' + - type: "null" + assignOwner: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.BulkAssignOwnerAction' + - type: "null" + refs: + description: 'By-ID mode: specify individual finding refs.' + items: + $ref: '#/components/schemas/c1.api.finding.v1.FindingRef' + type: + - array + - "null" + reopen: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.BulkReopenAction' + - type: "null" + reprocess: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.BulkReprocessAction' + - type: "null" + searchRequest: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingSearchRequest' + - type: "null" + snooze: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.BulkSnoozeAction' + - type: "null" + suppress: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.BulkSuppressAction' + - type: "null" + unsuppress: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.BulkUnsuppressAction' + - type: "null" + title: Bulk Update Finding State Request type: object - x-speakeasy-name-override: DeletePolicyResponse - c1.api.policy.v1.DeniedAction: - description: The denied action indicates that the c1.api.policy.v1.ApprovalInstance had an outcome of denied. - nullable: true + x-speakeasy-name-override: BulkUpdateFindingStateRequest + c1.api.finding.v1.BulkUpdateFindingStateResponse: + description: The BulkUpdateFindingStateResponse message. properties: - deniedAt: - format: date-time - readOnly: true - type: string - userId: - description: The UserID that denied this step. - readOnly: true + bulkActionId: + description: The ID of the asynchronous bulk action, which can be used to track progress. type: string - title: Denied Action + title: Bulk Update Finding State Response type: object - x-speakeasy-name-override: DeniedAction - c1.api.policy.v1.EditorValidateRequest: - description: The EditorValidateRequest message. + x-speakeasy-name-override: BulkUpdateFindingStateResponse + c1.api.finding.v1.ConnectorAnomalyDetectionDisabledType: + description: |- + ConnectorAnomalyDetectionDisabledType: a connector has sync anomaly + detection turned off, so a sudden drop in synced data will not trip the + circuit breaker. Target: ConnectorTarget. + title: Connector Anomaly Detection Disabled Type + type: object + x-speakeasy-name-override: ConnectorAnomalyDetectionDisabledType + c1.api.finding.v1.ConnectorSyncFailingEvidence: + description: |- + ConnectorSyncFailingEvidence describes the failure streak behind a + CONNECTOR_SYNC_FAILING finding, refreshed on every re-observation. properties: - text: - description: The text field. - readOnly: false + consecutiveFailureCount: + description: The consecutiveFailureCount field. + format: uint32 + type: integer + lastFailedAt: + format: date-time + type: + - string + - "null" + lastSyncLifecycleId: + description: |- + Id of the newest failing sync run, not a copy of its error text -- see the + c1models message for why the error itself is deliberately not carried here. type: string - title: Editor Validate Request + streakStartedAt: + format: date-time + type: + - string + - "null" + title: Connector Sync Failing Evidence type: object - x-speakeasy-name-override: PolicyEditorValidateRequest - c1.api.policy.v1.EditorValidateResponse: - description: The EditorValidateResponse message. - properties: - markers: - description: The markers field. - items: - $ref: '#/components/schemas/c1.api.editor.v1.EditorMarker' - nullable: true - readOnly: false - type: array - title: Editor Validate Response + x-speakeasy-name-override: ConnectorSyncFailingEvidence + c1.api.finding.v1.ConnectorSyncFailingType: + description: |- + ConnectorSyncFailingType: a connector's completed sync runs have ended in + error for at least two consecutive runs, with no intervening success. + Target: ConnectorTarget. + title: Connector Sync Failing Type type: object - x-speakeasy-name-override: PolicyEditorValidateResponse - c1.api.policy.v1.EntitlementOwnerApproval: - description: The entitlement owner approval allows configuration of the approval step when the target approvers are the entitlement owners. - nullable: true + x-speakeasy-name-override: ConnectorSyncFailingType + c1.api.finding.v1.ConnectorTarget: + description: ConnectorTarget points at the connector that produced this finding. properties: - allowSelfApproval: - description: Configuration to allow self approval if the target user is an entitlement owner during this step. - readOnly: false - type: boolean - fallback: - description: Configuration to allow a fallback if the entitlement owner cannot be identified. - readOnly: false - type: boolean - fallbackGroupIds: - description: Configuration to specify which groups to fallback to if fallback is enabled and the entitlement owner cannot be identified. - items: - $ref: '#/components/schemas/c1.api.policy.v1.AppEntitlementReference' - nullable: true - readOnly: false - type: array - fallbackUserIds: - description: Configuration to specific which users to fallback to if fallback is enabled and the entitlement owner cannot be identified. - items: - type: string - nullable: true - readOnly: false - type: array - isGroupFallbackEnabled: - description: Configuration to enable fallback for group fallback. - readOnly: false - type: boolean - requireDistinctApprovers: - description: Configuration to require distinct approvers across approval steps of a rule. - readOnly: false - type: boolean - title: Entitlement Owner Approval + appId: + description: The appId field. + type: string + connectorId: + description: The connectorId field. + type: string + title: Connector Target type: object - x-speakeasy-name-override: EntitlementOwnerApproval - c1.api.policy.v1.EntitlementOwnerProvisioner: - description: EntitlementOwnerProvisioner resolves to entitlement owners. - nullable: true + x-speakeasy-name-override: ConnectorTarget + c1.api.finding.v1.CreateFindingRequest: + description: | + The CreateFindingRequest message. + + This message contains a oneof named target. Only a single field of the following list may be set at a time: + - identityUserTarget + - appUserTarget + - decoyTarget + - appResourceTarget + - connectorTarget + - tenantTarget properties: - allowReassignment: - description: Whether the provisioner can reassign the task. - readOnly: false - type: boolean - fallbackUserIds: - description: Fallback user IDs if no entitlement owners are found. + annotations: + additionalProperties: + type: string + description: Arbitrary metadata attached to the finding; filterable by routing rules. + type: object + appResourceTarget: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.AppResourceTarget' + - type: "null" + appUserTarget: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.AppUserTarget' + - type: "null" + connectorTarget: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.ConnectorTarget' + - type: "null" + customSubType: + description: |- + User-supplied sub-classification (e.g. "shadow_it"). Part of the dedup + identity and filterable via FindingSearch. + type: string + decoyTarget: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.DecoyTarget' + - type: "null" + dedupKeyParts: + description: |- + Caller-supplied dedup identity. The fingerprint is a domain-separated + SHA-256 over ("custom", custom_sub_type, dedup_key_parts...) — see + pkg/uhash; parts cannot collide regardless of their byte content. Two + creates with the same parts collapse onto one finding. Must be non-empty + and every part must be non-empty. items: type: string - nullable: true - readOnly: false - type: array - title: Entitlement Owner Provisioner - type: object - x-speakeasy-name-override: EntitlementOwnerProvisioner - c1.api.policy.v1.ErroredAction: - description: The outcome of a provision instance that has errored. - nullable: true - properties: + type: + - array + - "null" description: - description: The description of a provision instance that has errored. - readOnly: false + description: Optional finding body (markdown by convention). type: string - errorCode: - description: The error code of a provision instance that has errored. This is only PEC-1 for now, but more will be added in the future. - readOnly: false + identityUserTarget: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.IdentityUserTarget' + - type: "null" + remediationDescription: + description: |- + Optional remediation guidance, used as the body of any task created from + this finding. type: string - erroredAt: - format: date-time - readOnly: false + severity: + description: Severity of the finding. Must be a defined, non-unspecified value. + enum: + - FINDING_SEVERITY_UNSPECIFIED + - FINDING_SEVERITY_INFO + - FINDING_SEVERITY_LOW + - FINDING_SEVERITY_MEDIUM + - FINDING_SEVERITY_HIGH + - FINDING_SEVERITY_CRITICAL type: string - title: Errored Action + x-speakeasy-unknown-values: allow + tenantTarget: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.TenantTarget' + - type: "null" + title: Create Finding Request type: object - x-speakeasy-name-override: ErroredAction - c1.api.policy.v1.Escalation: - description: | - The Escalation message. - - This message contains a oneof named escalation_policy. Only a single field of the following list may be set at a time: - - replacePolicy - - reassignToApprovers - - cancelTicket - - skipStep + x-speakeasy-name-override: CreateFindingRequest + c1.api.finding.v1.CreateFindingResponse: + description: The CreateFindingResponse message. properties: - cancelTicket: - $ref: '#/components/schemas/c1.api.policy.v1.Escalation.CancelTicket' - escalationComment: - description: The escalationComment field. - readOnly: false - type: string - expiration: - description: The expiration field. - format: int64 - readOnly: false - type: string - reassignToApprovers: - $ref: '#/components/schemas/c1.api.policy.v1.Escalation.ReassignToApprovers' - replacePolicy: - $ref: '#/components/schemas/c1.api.policy.v1.Escalation.ReplacePolicy' - skipStep: - $ref: '#/components/schemas/c1.api.policy.v1.Escalation.SkipStep' - title: Escalation + finding: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.Finding' + - type: "null" + title: Create Finding Response type: object - x-speakeasy-name-override: Escalation - c1.api.policy.v1.Escalation.CancelTicket: - description: The CancelTicket message. - nullable: true - title: Cancel Ticket + x-speakeasy-name-override: CreateFindingResponse + c1.api.finding.v1.CreateFindingRoutingRuleRequest: + description: The CreateFindingRoutingRuleRequest message. + properties: + routingRule: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingRoutingRule' + - type: "null" + title: Create Finding Routing Rule Request type: object - x-speakeasy-name-override: CancelTicket - c1.api.policy.v1.Escalation.ReassignToApprovers: - description: The ReassignToApprovers message. - nullable: true + x-speakeasy-name-override: CreateFindingRoutingRuleRequest + c1.api.finding.v1.CreateFindingRoutingRuleResponse: + description: The CreateFindingRoutingRuleResponse message. properties: - approverIds: - description: The approverIds field. - items: - type: string - nullable: true - readOnly: false - type: array - title: Reassign To Approvers + routingRule: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingRoutingRule' + - type: "null" + title: Create Finding Routing Rule Response type: object - x-speakeasy-name-override: ReassignToApprovers - c1.api.policy.v1.Escalation.ReplacePolicy: - description: The ReplacePolicy message. - nullable: true + x-speakeasy-name-override: CreateFindingRoutingRuleResponse + c1.api.finding.v1.CreateFindingTaskRequestInput: + description: The CreateFindingTaskRequest message. + properties: + policyId: + description: |- + Optional policy ID. Defaults to the app's grant policy or the built-in + "Finding Review" policy. + type: string + title: Create Finding Task Request + type: object + x-speakeasy-name-override: CreateFindingTaskRequest + c1.api.finding.v1.CreateFindingTaskResponse: + description: The CreateFindingTaskResponse message. + properties: + finding: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.Finding' + - type: "null" + taskId: + description: The ID of the created task. + type: string + title: Create Finding Task Response + type: object + x-speakeasy-name-override: CreateFindingTaskResponse + c1.api.finding.v1.CreateFindingTransformationRuleRequest: + description: The CreateFindingTransformationRuleRequest message. + properties: + transformationRule: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingTransformationRule' + - type: "null" + title: Create Finding Transformation Rule Request + type: object + x-speakeasy-name-override: CreateFindingTransformationRuleRequest + c1.api.finding.v1.CreateFindingTransformationRuleResponse: + description: The CreateFindingTransformationRuleResponse message. + properties: + transformationRule: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingTransformationRule' + - type: "null" + title: Create Finding Transformation Rule Response + type: object + x-speakeasy-name-override: CreateFindingTransformationRuleResponse + c1.api.finding.v1.CreateTaskAction: + description: The CreateTaskAction message. properties: policyId: description: The policyId field. - readOnly: false type: string - title: Replace Policy + title: Create Task Action type: object - x-speakeasy-name-override: ReplacePolicy - c1.api.policy.v1.Escalation.SkipStep: - description: The SkipStep message. - nullable: true - title: Skip Step + x-speakeasy-name-override: CreateTaskAction + c1.api.finding.v1.CredentialExpiringEvidence: + description: The CredentialExpiringEvidence message. + properties: + expired: + description: Whether the expiry was already past when last observed. + type: boolean + expiresAt: + format: date-time + type: + - string + - "null" + title: Credential Expiring Evidence type: object - x-speakeasy-name-override: SkipStep - c1.api.policy.v1.EscalationInstance: + x-speakeasy-name-override: CredentialExpiringEvidence + c1.api.finding.v1.CredentialExpiringType: description: | - The EscalationInstance message. + CredentialExpiringType: a ConductorOne-managed credential is inside the + detector's expiry warning window, or already past it. Dedup is + (credential arm, credential_id). Target: IdentityUserTarget -- the identity + holding the credential. - This message contains a oneof named escalation_policy. Only a single field of the following list may be set at a time: - - replacePolicy - - reassignToApprovers - - cancelTicket - - skipStep + This message contains a oneof named credential. Only a single field of the following list may be set at a time: + - userClientId properties: - alreadyEscalated: - description: The alreadyEscalated field. - readOnly: false + credentialDisplayName: + description: The credentialDisplayName field. + type: string + userClientId: + description: |- + Service-principal credential. + This field is part of the `credential` oneof. + See the documentation for `c1.api.finding.v1.CredentialExpiringType` for more details. + type: + - string + - "null" + title: Credential Expiring Type + type: object + x-speakeasy-name-override: CredentialExpiringType + c1.api.finding.v1.CredentialPubliclyExposedEvidence: + description: CredentialPubliclyExposedEvidence carries scanner attribution for a public exposure. + properties: + credentialRevoked: + description: The credentialRevoked field. type: boolean - cancelTicket: - $ref: '#/components/schemas/c1.api.policy.v1.EscalationInstance.CancelTicket' - escalationComment: - description: The escalationComment field. - readOnly: false + fingerprintPrefix: + description: The fingerprintPrefix field. type: string - expiresAt: + firstObservedAt: format: date-time - readOnly: false + type: + - string + - "null" + firstScannerId: + description: The firstScannerId field. type: string - reassignToApprovers: - $ref: '#/components/schemas/c1.api.policy.v1.EscalationInstance.ReassignToApprovers' - replacePolicy: - $ref: '#/components/schemas/c1.api.policy.v1.EscalationInstance.ReplacePolicy' - skipStep: - $ref: '#/components/schemas/c1.api.policy.v1.EscalationInstance.SkipStep' - title: Escalation Instance + reportingScanners: + description: The reportingScanners field. + items: + type: string + type: + - array + - "null" + revokedAt: + format: date-time + type: + - string + - "null" + sourceKind: + description: The sourceKind field. + type: string + sourceUrl: + description: The sourceUrl field. + type: string + title: Credential Publicly Exposed Evidence type: object - x-speakeasy-name-override: EscalationInstance - c1.api.policy.v1.EscalationInstance.CancelTicket: - description: The CancelTicket message. - nullable: true - title: Cancel Ticket + x-speakeasy-name-override: CredentialPubliclyExposedEvidence + c1.api.finding.v1.CredentialPubliclyExposedType: + description: | + CredentialPubliclyExposedType: a live credential was reported as publicly exposed. + Dedup is (credential arm, credential_id). + + This message contains a oneof named credential. Only a single field of the following list may be set at a time: + - userClientId + - connectorClientId + - connectorManagedCredentialId + - functionClientId + properties: + connectorClientId: + description: |- + The connectorClientId field. + This field is part of the `credential` oneof. + See the documentation for `c1.api.finding.v1.CredentialPubliclyExposedType` for more details. + type: + - string + - "null" + connectorManagedCredentialId: + description: |- + The connectorManagedCredentialId field. + This field is part of the `credential` oneof. + See the documentation for `c1.api.finding.v1.CredentialPubliclyExposedType` for more details. + type: + - string + - "null" + credentialDisplayName: + description: The credentialDisplayName field. + type: string + functionClientId: + description: |- + The functionClientId field. + This field is part of the `credential` oneof. + See the documentation for `c1.api.finding.v1.CredentialPubliclyExposedType` for more details. + type: + - string + - "null" + userClientId: + description: |- + The userClientId field. + This field is part of the `credential` oneof. + See the documentation for `c1.api.finding.v1.CredentialPubliclyExposedType` for more details. + type: + - string + - "null" + title: Credential Publicly Exposed Type + type: object + x-speakeasy-name-override: CredentialPubliclyExposedType + c1.api.finding.v1.CustomFindingType: + description: |- + CustomFindingType: a user- or integration-authored finding. The discriminator + carries no payload; the finding's content lives in description / + remediation_description / custom_tags. + title: Custom Finding Type type: object - x-speakeasy-name-override: EscalationInstanceCancelTicket - c1.api.policy.v1.EscalationInstance.ReassignToApprovers: - description: The ReassignToApprovers message. - nullable: true + x-speakeasy-name-override: CustomFindingType + c1.api.finding.v1.DeactivatedOwnerDetail: + description: |- + DeactivatedOwnerDetail is one deactivated owner found for the target at + detection time. A target can have more than one owner, and more than one + can read as deactivated. properties: - approverIds: - description: The approverIds field. + reason: + description: The reason field. + enum: + - DEACTIVATED_OWNER_REASON_UNSPECIFIED + - DEACTIVATED_OWNER_REASON_USER_DELETED + - DEACTIVATED_OWNER_REASON_USER_DISABLED + - DEACTIVATED_OWNER_REASON_EMPLOYMENT_INACTIVE + type: string + x-speakeasy-unknown-values: allow + userId: + description: The userId field. + type: string + title: Deactivated Owner Detail + type: object + x-speakeasy-name-override: DeactivatedOwnerDetail + c1.api.finding.v1.DeactivatedOwnerEvidence: + description: The DeactivatedOwnerEvidence message. + properties: + deactivatedOwners: + description: The deactivatedOwners field. items: - type: string - nullable: true - readOnly: false - type: array - title: Reassign To Approvers + $ref: '#/components/schemas/c1.api.finding.v1.DeactivatedOwnerDetail' + type: + - array + - "null" + title: Deactivated Owner Evidence type: object - x-speakeasy-name-override: EscalationInstanceReassignToApprovers - c1.api.policy.v1.EscalationInstance.ReplacePolicy: - description: The ReplacePolicy message. - nullable: true + x-speakeasy-name-override: DeactivatedOwnerEvidence + c1.api.finding.v1.DeactivatedOwnerType: + description: |- + DeactivatedOwnerType: the human responsible for a target -- either the + AppUser's own correlated identity, an ownership_v2-assigned owner, or a + secret's run-as identity is deactivated. Target: AppUserTarget or + AppResourceTarget. properties: - policyId: - description: The policyId field. - readOnly: false + source: + description: The source field. + enum: + - DEACTIVATED_OWNER_SOURCE_UNSPECIFIED + - DEACTIVATED_OWNER_SOURCE_IDENTITY_CORRELATION + - DEACTIVATED_OWNER_SOURCE_OWNERSHIP_ASSIGNED + - DEACTIVATED_OWNER_SOURCE_SECRET_RUN_AS_IDENTITY type: string - title: Replace Policy - type: object - x-speakeasy-name-override: EscalationInstanceReplacePolicy - c1.api.policy.v1.EscalationInstance.SkipStep: - description: The SkipStep message. - nullable: true - title: Skip Step + x-speakeasy-unknown-values: allow + title: Deactivated Owner Type type: object - x-speakeasy-name-override: EscalationInstanceSkipStep - c1.api.policy.v1.ExpressionApproval: - description: The ExpressionApproval message. - nullable: true + x-speakeasy-name-override: DeactivatedOwnerType + c1.api.finding.v1.DecoyCredentialUsedType: + description: |- + DecoyCredentialUsedType: a planted decoy credential authenticated + successfully. properties: - allowSelfApproval: - description: Configuration to allow self approval of if the user is specified and also the target of the ticket. - readOnly: false - type: boolean - assignedUserIds: - description: The assignedUserIds field. - items: - type: string - nullable: true - readOnly: true - type: array - expressions: - description: Array of dynamic expressions to determine the approvers. The first expression to return a non-empty list of users will be used. - items: - type: string - nullable: true - readOnly: false - type: array - fallback: - description: Configuration to allow a fallback if the expression does not return a valid list of users. - readOnly: false - type: boolean - fallbackGroupIds: - description: Configuration to specify which groups to fallback to if fallback is enabled and the expression does not return a valid list of users. - items: - $ref: '#/components/schemas/c1.api.policy.v1.AppEntitlementReference' - nullable: true - readOnly: false - type: array - fallbackUserIds: - description: Configuration to specific which users to fallback to if and the expression does not return a valid list of users. - items: - type: string - nullable: true - readOnly: false - type: array - isGroupFallbackEnabled: - description: Configuration to enable fallback for group fallback. - readOnly: false - type: boolean - requireDistinctApprovers: - description: Configuration to require distinct approvers across approval steps of a rule. - readOnly: false - type: boolean - title: Expression Approval + decoyId: + description: The decoyId field. + type: string + kind: + description: The kind field. + enum: + - DECOY_CREDENTIAL_KIND_UNSPECIFIED + - DECOY_CREDENTIAL_KIND_USER_CLIENT_CREDENTIAL + - DECOY_CREDENTIAL_KIND_CONNECTOR_CLIENT + - DECOY_CREDENTIAL_KIND_WORKLOAD_FEDERATION + - DECOY_CREDENTIAL_KIND_ACCESS_TOKEN + type: string + x-speakeasy-unknown-values: allow + title: Decoy Credential Used Type type: object - x-speakeasy-name-override: ExpressionApproval - c1.api.policy.v1.ExpressionProvisioner: - description: ExpressionProvisioner evaluates CEL expressions to determine provisioners. - nullable: true + x-speakeasy-name-override: DecoyCredentialUsedType + c1.api.finding.v1.DecoyPubliclyExposedEvidence: + description: DecoyPubliclyExposedEvidence mirrors CredentialPubliclyExposedEvidence for decoys. properties: - allowReassignment: - description: Whether the provisioner can reassign the task. - readOnly: false + credentialRevoked: + description: The credentialRevoked field. type: boolean - expressions: - description: The CEL expressions to evaluate. - items: - type: string - nullable: true - readOnly: false - type: array - fallbackUserIds: - description: Fallback user IDs if expression evaluation yields no users. + fingerprintPrefix: + description: The fingerprintPrefix field. + type: string + firstObservedAt: + format: date-time + type: + - string + - "null" + firstScannerId: + description: The firstScannerId field. + type: string + reportingScanners: + description: The reportingScanners field. items: type: string - nullable: true - readOnly: false - type: array - title: Expression Provisioner - type: object - x-speakeasy-name-override: ExpressionProvisioner - c1.api.policy.v1.ExternalTicketProvision: - description: This provision step indicates that we should check an external ticket to provision this entitlement - nullable: true - properties: - appId: - description: The appId field. - readOnly: false + type: + - array + - "null" + revokedAt: + format: date-time + type: + - string + - "null" + sourceKind: + description: The sourceKind field. type: string - connectorId: - description: The connectorId field. - readOnly: false + sourceUrl: + description: The sourceUrl field. type: string - externalTicketProvisionerConfigId: - description: The externalTicketProvisionerConfigId field. - readOnly: false + title: Decoy Publicly Exposed Evidence + type: object + x-speakeasy-name-override: DecoyPubliclyExposedEvidence + c1.api.finding.v1.DecoyPubliclyExposedType: + description: |- + DecoyPubliclyExposedType: a planted decoy was reported as publicly exposed. + Dedup is decoy_id. + properties: + decoyDisplayName: + description: The decoyDisplayName field. type: string - instructions: - description: This field indicates a text body of instructions for the provisioner to indicate. - readOnly: false + decoyId: + description: The decoyId field. type: string - title: External Ticket Provision + title: Decoy Publicly Exposed Type type: object - x-speakeasy-name-override: ExternalTicketProvision - c1.api.policy.v1.Form: - description: The Form message. - nullable: true - properties: - form: - $ref: '#/components/schemas/c1.api.form.v1.Form' - title: Form - type: object - x-speakeasy-name-override: Form - c1.api.policy.v1.FormCompletedAction: - description: The FormCompletedAction message. - nullable: true + x-speakeasy-name-override: DecoyPubliclyExposedType + c1.api.finding.v1.DecoyTarget: + description: |- + DecoyTarget points at the planted decoy that produced this finding. + Populated for findings whose subject is the decoy artifact itself + (e.g. decoy_credential_used), giving the UI and routing rules a + uniform handle to the decoy alongside the finding_type payload. properties: - completedAt: - format: date-time - readOnly: false + decoyId: + description: The decoyId field. type: string - userId: - description: The userId field. - readOnly: false - type: string - title: Form Completed Action + title: Decoy Target type: object - x-speakeasy-name-override: FormCompletedAction - c1.api.policy.v1.FormInstance: + x-speakeasy-name-override: DecoyTarget + c1.api.finding.v1.DeleteFindingRoutingRuleRequestInput: + description: The DeleteFindingRoutingRuleRequest message. + title: Delete Finding Routing Rule Request + type: object + x-speakeasy-name-override: DeleteFindingRoutingRuleRequest + c1.api.finding.v1.DeleteFindingRoutingRuleResponse: + description: The DeleteFindingRoutingRuleResponse message. + title: Delete Finding Routing Rule Response + type: object + x-speakeasy-name-override: DeleteFindingRoutingRuleResponse + c1.api.finding.v1.DeleteFindingTransformationRuleRequestInput: + description: The DeleteFindingTransformationRuleRequest message. + title: Delete Finding Transformation Rule Request + type: object + x-speakeasy-name-override: DeleteFindingTransformationRuleRequest + c1.api.finding.v1.DeleteFindingTransformationRuleResponse: + description: The DeleteFindingTransformationRuleResponse message. + title: Delete Finding Transformation Rule Response + type: object + x-speakeasy-name-override: DeleteFindingTransformationRuleResponse + c1.api.finding.v1.Finding: description: | - The FormInstance message. + The Finding message. - This message contains a oneof named outcome. Only a single field of the following list may be set at a time: - - completed - - restarted - - reassigned - - skipped - nullable: true + This message contains a oneof named finding_type. Only a single field of the following list may be set at a time: + - similarUsernameMatch + - serviceAccountMisclassification + - nhiUnowned + - serviceAccountUnowned + - decoyCredentialUsed + - custom + - connectorAnomalyDetectionDisabled + - deactivatedOwner + - unusedSecret + - credentialPubliclyExposed + - decoyPubliclyExposed + - credentialExpiring + - connectorSyncFailing + + + This message contains a oneof named target. Only a single field of the following list may be set at a time: + - identityUserTarget + - appUserTarget + - decoyTarget + - appResourceTarget + - tenantTarget + - connectorTarget + + + This message contains a oneof named evidence. Only a single field of the following list may be set at a time: + - similarUsernameMatchEvidence + - serviceAccountMisclassificationEvidence + - deactivatedOwnerEvidence + - unusedSecretEvidence + - credentialPubliclyExposedEvidence + - decoyPubliclyExposedEvidence + - credentialExpiringEvidence + - connectorSyncFailingEvidence properties: - completed: - $ref: '#/components/schemas/c1.api.policy.v1.FormCompletedAction' - data: - additionalProperties: true - readOnly: false + annotations: + additionalProperties: + type: string + description: |- + Bounded key/value metadata bag. Limits: ≤16 entries; keys 1-128 chars + matching ^[A-Za-z][A-Za-z0-9._/-]{0,127}$; values 0-256 chars; total + serialized ≤4096 bytes. Keys matching ^c1/ are reserved. Also readable + (and settable) via CEL as both finding.annotations and finding.custom_tags. type: object - form: - $ref: '#/components/schemas/c1.api.form.v1.Form' - reassigned: - $ref: '#/components/schemas/c1.api.policy.v1.ReassignedAction' - restarted: - $ref: '#/components/schemas/c1.api.policy.v1.RestartAction' - skipped: - $ref: '#/components/schemas/c1.api.policy.v1.SkippedAction' + x-speakeasy-terraform-plan-modifier: + imports: + - github.com/conductorone/terraform-provider-conductorone/internal/annotations + schemaDefinition: annotations.PlanModifier() + appId: + description: The appId field. + type: string + appResourceTarget: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.AppResourceTarget' + - type: "null" + appUserTarget: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.AppUserTarget' + - type: "null" + assignedOwner: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingOwnerRef' + - type: "null" + computedOwner: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingOwnerRef' + - type: "null" + connectorAnomalyDetectionDisabled: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.ConnectorAnomalyDetectionDisabledType' + - type: "null" + connectorSyncFailing: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.ConnectorSyncFailingType' + - type: "null" + connectorSyncFailingEvidence: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.ConnectorSyncFailingEvidence' + - type: "null" + connectorTarget: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.ConnectorTarget' + - type: "null" + createdAt: + format: date-time + type: + - string + - "null" + credentialExpiring: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.CredentialExpiringType' + - type: "null" + credentialExpiringEvidence: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.CredentialExpiringEvidence' + - type: "null" + credentialPubliclyExposed: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.CredentialPubliclyExposedType' + - type: "null" + credentialPubliclyExposedEvidence: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.CredentialPubliclyExposedEvidence' + - type: "null" + custom: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.CustomFindingType' + - type: "null" + customSubType: + description: User-supplied sub-classification for custom findings (e.g. "shadow_it"). + type: string + customTags: + additionalProperties: + type: string + deprecated: true + description: |- + Deprecated: use annotations instead. Read-only mirror of annotations; + writes to this field are ignored. + type: object + deactivatedOwner: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.DeactivatedOwnerType' + - type: "null" + deactivatedOwnerEvidence: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.DeactivatedOwnerEvidence' + - type: "null" + decoyCredentialUsed: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.DecoyCredentialUsedType' + - type: "null" + decoyPubliclyExposed: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.DecoyPubliclyExposedType' + - type: "null" + decoyPubliclyExposedEvidence: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.DecoyPubliclyExposedEvidence' + - type: "null" + decoyTarget: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.DecoyTarget' + - type: "null" + dedupKeyParts: + description: |- + Caller-supplied dedup identity for custom findings; echoed back so IaC + clients can roundtrip it. Empty for detector findings. + items: + type: string + type: + - array + - "null" + description: + description: User-authored finding body (markdown by convention). Set for custom findings. + type: string + fingerprint: + description: The fingerprint field. + type: string + firstObservedAt: + format: date-time + type: + - string + - "null" + id: + description: The id field. + type: string + identityUserTarget: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.IdentityUserTarget' + - type: "null" + lastAppearedAt: + format: date-time + type: + - string + - "null" + lastObservedAt: + format: date-time + type: + - string + - "null" + nhiUnowned: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.NhiUnownedType' + - type: "null" + recurrenceCount: + description: The recurrenceCount field. + format: uint32 + type: integer + remediationDescription: + description: The remediationDescription field. + type: string + resolvedAt: + format: date-time + type: + - string + - "null" + riskAcceptanceExpiresAt: + format: date-time + type: + - string + - "null" + riskAcceptanceJustification: + description: The riskAcceptanceJustification field. + type: string + riskScore: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingRiskScore' + - type: "null" + serviceAccountMisclassification: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.ServiceAccountMisclassificationType' + - type: "null" + serviceAccountMisclassificationEvidence: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.ServiceAccountMisclassificationEvidence' + - type: "null" + serviceAccountUnowned: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.ServiceAccountUnownedType' + - type: "null" + severity: + description: The severity field. + enum: + - FINDING_SEVERITY_UNSPECIFIED + - FINDING_SEVERITY_INFO + - FINDING_SEVERITY_LOW + - FINDING_SEVERITY_MEDIUM + - FINDING_SEVERITY_HIGH + - FINDING_SEVERITY_CRITICAL + type: string + x-speakeasy-unknown-values: allow + similarUsernameMatch: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.SimilarUsernameMatchType' + - type: "null" + similarUsernameMatchEvidence: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.SimilarUsernameMatchEvidence' + - type: "null" + snoozeReason: + description: The snoozeReason field. + type: string + snoozeUntil: + format: date-time + type: + - string + - "null" + sourceDetectorId: + description: The sourceDetectorId field. + type: string + sourceKind: + description: Who authored the finding (detector, user, external). + enum: + - FINDING_SOURCE_KIND_UNSPECIFIED + - FINDING_SOURCE_KIND_DETECTOR + - FINDING_SOURCE_KIND_EXTERNAL + type: string + x-speakeasy-unknown-values: allow state: description: The state field. enum: - - FORM_INSTANCE_STATE_UNSPECIFIED - - FORM_INSTANCE_STATE_WAITING - - FORM_INSTANCE_STATE_DONE - readOnly: false + - FINDING_STATE_UNSPECIFIED + - FINDING_STATE_OPEN + - FINDING_STATE_IN_PROGRESS + - FINDING_STATE_RESOLVED + - FINDING_STATE_SNOOZED + - FINDING_STATE_RISK_ACCEPTED + - FINDING_STATE_SUPPRESSED type: string x-speakeasy-unknown-values: allow - title: Form Instance - type: object - x-speakeasy-name-override: FormInstance - c1.api.policy.v1.GetPolicyResponse: - description: The GetPolicyResponse message contains the policy object. - properties: - policy: - $ref: '#/components/schemas/c1.api.policy.v1.Policy' - title: Get Policy Response - type: object - x-speakeasy-name-override: GetPolicyResponse - c1.api.policy.v1.GroupProvisioner: - description: GroupProvisioner resolves to members of a specific group. - nullable: true - properties: - allowReassignment: - description: Whether the provisioner can reassign the task. - readOnly: false - type: boolean - appGroupId: - description: The app group ID (entitlement ID). - readOnly: false + stateUpdatedById: + description: |- + The human who authored the CURRENT state. Empty when a routing rule or the + system authored it, so do not read a populated value as "this finding has a + human owner" -- read it as "a human set the state it is in right now". type: string - appId: - description: The app ID containing the group. - readOnly: false + suppressReason: + description: The suppressReason field. type: string - fallbackUserIds: - description: Fallback user IDs if no group members are found. - items: - type: string - nullable: true - readOnly: false - type: array - title: Group Provisioner - type: object - x-speakeasy-name-override: GroupProvisioner - c1.api.policy.v1.ListPolicyResponse: - description: The ListPolicyResponse message. - properties: - list: - description: The list of results containing up to X results, where X is the page size defined in the request - items: - $ref: '#/components/schemas/c1.api.policy.v1.Policy' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + taskId: + description: The taskId field. type: string - title: List Policy Response - type: object - x-speakeasy-name-override: ListPolicyResponse - c1.api.policy.v1.ManagerApproval: - description: The manager approval object provides configuration options for approval when the target of the approval is the manager of the user in the task. - nullable: true - properties: - allowSelfApproval: - description: Configuration to allow self approval if the target user is their own manager. This may occur if a service account has an identity user and manager specified as the same person. - readOnly: false - type: boolean - assignedUserIds: - description: The array of users determined to be the manager during processing time. - items: - type: string - nullable: true - readOnly: true - type: array - fallback: - description: Configuration to allow a fallback if no manager is found. - readOnly: false - type: boolean - fallbackGroupIds: - description: Configuration to specify which groups to fallback to if fallback is enabled and no manager is found. - items: - $ref: '#/components/schemas/c1.api.policy.v1.AppEntitlementReference' - nullable: true - readOnly: false - type: array - fallbackUserIds: - description: Configuration to specific which users to fallback to if fallback is enabled and no manager is found. - items: - type: string - nullable: true - readOnly: false - type: array - isGroupFallbackEnabled: - description: Configuration to enable fallback for group fallback. - readOnly: false - type: boolean - requireDistinctApprovers: - description: Configuration to require distinct approvers across approval steps of a rule. - readOnly: false - type: boolean - title: Manager Approval + tenantTarget: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.TenantTarget' + - type: "null" + unusedSecret: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.UnusedSecretType' + - type: "null" + unusedSecretEvidence: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.UnusedSecretEvidence' + - type: "null" + updatedAt: + format: date-time + type: + - string + - "null" + title: Finding type: object - x-speakeasy-name-override: ManagerApproval - c1.api.policy.v1.ManagerProvisioner: - description: ManagerProvisioner resolves to the user's manager. - nullable: true + x-speakeasy-name-override: Finding + c1.api.finding.v1.FindingAudience: + description: | + FindingAudience resolves to a set of identity user IDs to notify. Step-less: + notifications have no escalation ladder. An empty resolution falls back to + enabled system owners rather than notifying nobody. + + This message contains a oneof named typ. Only a single field of the following list may be set at a time: + - users properties: - allowReassignment: - description: Whether the provisioner can reassign the task. - readOnly: false - type: boolean - fallbackUserIds: - description: Fallback user IDs if no manager is found. - items: - type: string - nullable: true - readOnly: false - type: array - title: Manager Provisioner + users: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingAudienceUsers' + - type: "null" + title: Finding Audience type: object - x-speakeasy-name-override: ManagerProvisioner - c1.api.policy.v1.ManualProvision: - description: Manual provisioning indicates that a human must intervene for the provisioning of this step. - nullable: true + x-speakeasy-name-override: FindingAudience + c1.api.finding.v1.FindingAudienceUsers: + description: The FindingAudienceUsers message. properties: - assignee: - $ref: '#/components/schemas/c1.api.policy.v1.ProvisionerAssignment' - instructions: - description: This field indicates a text body of instructions for the provisioner to indicate. - readOnly: false - type: string userIds: - description: |- - An array of users that are required to provision during this step. - Deprecated: Use assignee field instead for dynamic provisioner assignment. + description: The userIds field. items: type: string - nullable: true - readOnly: false - type: array - title: Manual Provision - type: object - x-speakeasy-name-override: ManualProvision - c1.api.policy.v1.MultiStep: - description: MultiStep indicates that this provision step has multiple steps to process. - nullable: true - properties: - provisionSteps: - description: The array of provision steps to process. - items: - $ref: '#/components/schemas/c1.api.policy.v1.ProvisionPolicy' - nullable: true - readOnly: false - type: array - title: Multi Step + type: + - array + - "null" + title: Finding Audience Users type: object - x-speakeasy-name-override: MultiStep - c1.api.policy.v1.Policy: + x-speakeasy-name-override: FindingAudienceUsers + c1.api.finding.v1.FindingAuditEvent: description: |- - A policy defines a workflow (sequence of steps) that runs when processing - access requests, reviews, or revocations. Policies support conditional - routing: different conditions can trigger different step sequences, with a - baseline fallback. + FindingAuditEvent is one row in a finding's audit stream. The metadata + columns are denormalized from the side-index so the list view renders + without hydrating the full OCSF payload for every row; ocsf is set to + the parsed OCSF event JSON for callers that want the per-event detail. properties: - createdAt: - format: date-time - readOnly: true + actorPrincipalId: + description: |- + Principal id of the actor that performed the action. Empty for + system-driven events (snooze expiry, risk-acceptance expiry). type: string - deletedAt: + actorSubject: + description: |- + Display string for the actor (email for human users, "system" for + cron sweeps). + type: string + appId: + description: The appId field. + type: string + bulkOperationId: + description: Stable id grouping events from the same bulk operation. + type: string + createdAt: format: date-time - readOnly: true + type: + - string + - "null" + eventId: + description: The eventId field. type: string - description: - description: The description of the Policy. - readOnly: false + eventType: + description: The eventType field. + enum: + - FINDING_AUDIT_EVENT_TYPE_UNSPECIFIED + - FINDING_AUDIT_EVENT_TYPE_CREATED + - FINDING_AUDIT_EVENT_TYPE_STATE_CHANGED + - FINDING_AUDIT_EVENT_TYPE_SNOOZED + - FINDING_AUDIT_EVENT_TYPE_SNOOZE_EXPIRED + - FINDING_AUDIT_EVENT_TYPE_RISK_ACCEPTED + - FINDING_AUDIT_EVENT_TYPE_RISK_ACCEPTANCE_EXPIRED + - FINDING_AUDIT_EVENT_TYPE_SUPPRESSED + - FINDING_AUDIT_EVENT_TYPE_UNSUPPRESSED + - FINDING_AUDIT_EVENT_TYPE_RESOLVED + - FINDING_AUDIT_EVENT_TYPE_REOPENED + - FINDING_AUDIT_EVENT_TYPE_OWNER_CHANGED + - FINDING_AUDIT_EVENT_TYPE_SEVERITY_OVERRIDDEN + - FINDING_AUDIT_EVENT_TYPE_COMMENT + - FINDING_AUDIT_EVENT_TYPE_TASK_CREATED + - FINDING_AUDIT_EVENT_TYPE_TASK_CANCELLED + - FINDING_AUDIT_EVENT_TYPE_EVIDENCE_UPDATED + - FINDING_AUDIT_EVENT_TYPE_ROUTING_EVALUATED + - FINDING_AUDIT_EVENT_TYPE_TRANSFORMED + - FINDING_AUDIT_EVENT_TYPE_REPROCESS_REQUESTED + - FINDING_AUDIT_EVENT_TYPE_REPROCESS_COMPLETED type: string - displayName: - description: The display name of the Policy. - readOnly: false + x-speakeasy-unknown-values: allow + findingId: + description: The findingId field. type: string - id: - description: The ID of the Policy. - readOnly: true + ocsf: + additionalProperties: true + type: + - object + - "null" + severityAtEvent: + description: The severityAtEvent field. + enum: + - FINDING_SEVERITY_UNSPECIFIED + - FINDING_SEVERITY_INFO + - FINDING_SEVERITY_LOW + - FINDING_SEVERITY_MEDIUM + - FINDING_SEVERITY_HIGH + - FINDING_SEVERITY_CRITICAL type: string - policySteps: - additionalProperties: - $ref: '#/components/schemas/c1.api.policy.v1.PolicySteps' - description: |- - A map from string keys to step sequences. One entry is always the baseline, - keyed by the lowercased policy_type (e.g., "grant", "revoke", "certify"). - Additional entries have opaque keys (UUIDs) and are referenced by the rules - array for conditional routing. If no conditional rules are configured, only - the baseline entry exists. - readOnly: false - type: object - policyType: - description: |- - The type of this policy (grant, revoke, or certify). The lowercased type - name (e.g., "grant") is also the key for the baseline entry in policy_steps. + x-speakeasy-unknown-values: allow + stateAtEvent: + description: The stateAtEvent field. enum: - - POLICY_TYPE_UNSPECIFIED - - POLICY_TYPE_GRANT - - POLICY_TYPE_REVOKE - - POLICY_TYPE_CERTIFY - - POLICY_TYPE_ACCESS_REQUEST - - POLICY_TYPE_PROVISION - readOnly: false + - FINDING_STATE_UNSPECIFIED + - FINDING_STATE_OPEN + - FINDING_STATE_IN_PROGRESS + - FINDING_STATE_RESOLVED + - FINDING_STATE_SNOOZED + - FINDING_STATE_RISK_ACCEPTED + - FINDING_STATE_SUPPRESSED type: string x-speakeasy-unknown-values: allow - postActions: - description: Ordered actions to execute after the policy completes processing. - items: - $ref: '#/components/schemas/c1.api.policy.v1.PolicyPostActions' - nullable: true - readOnly: false - type: array - reassignTasksToDelegates: - deprecated: true - description: This field is no longer used. Configure delegate reassignment in the policy step instead. - readOnly: false - type: boolean - rules: - description: |- - Ordered conditional routing rules. Evaluated top-to-bottom; the first - matching rule selects a step sequence from policy_steps. If no rule matches - (or if this array is empty), the baseline entry in policy_steps is used. - items: - $ref: '#/components/schemas/c1.api.policy.v1.Rule' - nullable: true - readOnly: false - type: array - systemBuiltin: - description: Whether this policy is a builtin system policy. Builtin system policies cannot be edited. - readOnly: true - type: boolean - updatedAt: - format: date-time - readOnly: true + ticketId: + description: Ticket id when the event involved one; empty otherwise. type: string - title: Policy + title: Finding Audit Event type: object - x-speakeasy-entity: Policy - x-speakeasy-name-override: Policy - c1.api.policy.v1.PolicyInstance: - description: A policy instance is an object that contains a reference to the policy it was created from, the currently executing step, the next steps, and the history of previously completed steps. + x-speakeasy-name-override: FindingAuditEvent + c1.api.finding.v1.FindingAuditServiceSearchRequest: + description: The FindingAuditServiceSearchRequest message. properties: - current: - $ref: '#/components/schemas/c1.api.policy.v1.PolicyStepInstance' - history: - description: An array of steps that were previously processed by the ticket with their outcomes set, in order. - items: - $ref: '#/components/schemas/c1.api.policy.v1.PolicyStepInstance' - nullable: true - readOnly: true - type: array - next: - description: An array of steps that will be processed by the ticket, in order. + actorPrincipalId: + description: The actorPrincipalId field. + type: string + actorSubject: + description: |- + Partial match via full-text search over the denormalized actor email + / display name column. + type: string + appId: + description: Empty skips the filter; non-empty must be a 27-char alphanumeric id. + type: string + eventTypes: + description: Filter by one or more event types. Empty means any. items: - $ref: '#/components/schemas/c1.api.policy.v1.PolicyStep' - nullable: true - readOnly: true - type: array - policy: - $ref: '#/components/schemas/c1.api.policy.v1.Policy' - title: Policy Instance - type: object - x-speakeasy-name-override: PolicyInstance - c1.api.policy.v1.PolicyPostActions: - description: | - Actions to execute after a policy finishes processing. - - This message contains a oneof named action. Only a single field of the following list may be set at a time: - - certifyRemediateImmediately - properties: - certifyRemediateImmediately: + enum: + - FINDING_AUDIT_EVENT_TYPE_UNSPECIFIED + - FINDING_AUDIT_EVENT_TYPE_CREATED + - FINDING_AUDIT_EVENT_TYPE_STATE_CHANGED + - FINDING_AUDIT_EVENT_TYPE_SNOOZED + - FINDING_AUDIT_EVENT_TYPE_SNOOZE_EXPIRED + - FINDING_AUDIT_EVENT_TYPE_RISK_ACCEPTED + - FINDING_AUDIT_EVENT_TYPE_RISK_ACCEPTANCE_EXPIRED + - FINDING_AUDIT_EVENT_TYPE_SUPPRESSED + - FINDING_AUDIT_EVENT_TYPE_UNSUPPRESSED + - FINDING_AUDIT_EVENT_TYPE_RESOLVED + - FINDING_AUDIT_EVENT_TYPE_REOPENED + - FINDING_AUDIT_EVENT_TYPE_OWNER_CHANGED + - FINDING_AUDIT_EVENT_TYPE_SEVERITY_OVERRIDDEN + - FINDING_AUDIT_EVENT_TYPE_COMMENT + - FINDING_AUDIT_EVENT_TYPE_TASK_CREATED + - FINDING_AUDIT_EVENT_TYPE_TASK_CANCELLED + - FINDING_AUDIT_EVENT_TYPE_EVIDENCE_UPDATED + - FINDING_AUDIT_EVENT_TYPE_ROUTING_EVALUATED + - FINDING_AUDIT_EVENT_TYPE_TRANSFORMED + - FINDING_AUDIT_EVENT_TYPE_REPROCESS_REQUESTED + - FINDING_AUDIT_EVENT_TYPE_REPROCESS_COMPLETED + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + findingId: description: |- - Only valid on certify policies. When true, any revocations resulting from - the certification are applied immediately when the campaign task closes. - This field is part of the `action` oneof. - See the documentation for `c1.api.policy.v1.PolicyPostActions` for more details. - nullable: true - readOnly: false - type: boolean - title: Policy Post Actions + Filter to a single finding. The detail-page timeline uses this. + Empty skips the filter; non-empty must be a 27-char alphanumeric id. + type: string + pageSize: + description: The pageSize field. + format: int32 + type: integer + pageToken: + description: The pageToken field. + type: string + since: + format: date-time + type: + - string + - "null" + until: + format: date-time + type: + - string + - "null" + title: Finding Audit Service Search Request type: object - x-speakeasy-name-override: PolicyPostActions - c1.api.policy.v1.PolicyRef: - description: The PolicyRef message. + x-speakeasy-name-override: FindingAuditServiceSearchRequest + c1.api.finding.v1.FindingAuditServiceSearchResponse: + description: The FindingAuditServiceSearchResponse message. properties: - id: - description: The id field. - readOnly: false + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.finding.v1.FindingAuditEvent' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - title: Policy Ref + title: Finding Audit Service Search Response type: object - x-speakeasy-name-override: PolicyRef - c1.api.policy.v1.PolicyStep: - description: | - A single step in a policy workflow. Exactly one step type is set. - - This message contains a oneof named step. Only a single field of the following list may be set at a time: - - approval - - provision - - accept - - reject - - wait - - form - - action + x-speakeasy-name-override: FindingAuditServiceSearchResponse + c1.api.finding.v1.FindingDispatchOutcomeNotify: + description: FindingDispatchOutcomeNotify notifies recipients once a dispatch settles. properties: - accept: - $ref: '#/components/schemas/c1.api.policy.v1.Accept' - action: - $ref: '#/components/schemas/c1.api.policy.v1.Action' - approval: - $ref: '#/components/schemas/c1.api.policy.v1.Approval' - form: - $ref: '#/components/schemas/c1.api.policy.v1.Form' - provision: - $ref: '#/components/schemas/c1.api.policy.v1.Provision' - reject: - $ref: '#/components/schemas/c1.api.policy.v1.Reject' - wait: - $ref: '#/components/schemas/c1.api.policy.v1.Wait' - title: Policy Step + onDone: + description: The onDone field. + type: boolean + onError: + description: The onError field. + type: boolean + recipients: + description: The recipients field. + items: + type: string + type: + - array + - "null" + title: Finding Dispatch Outcome Notify type: object - x-speakeasy-name-override: PolicyStep - c1.api.policy.v1.PolicyStepInstance: + x-speakeasy-name-override: FindingDispatchOutcomeNotify + c1.api.finding.v1.FindingDispatcher: description: | - The policy step instance includes a reference to an instance of a policy step that tracks state and has a unique ID. + FindingDispatcher is one dispatch that fires when a routing rule matches (the + "Then dispatch" authoring step). A rule carries zero-to-many; every enabled + dispatcher fires, order-independent. - This message contains a oneof named instance. Only a single field of the following list may be set at a time: - - approval - - provision - - accept - - reject - - wait - - form - - action + This message contains a oneof named kind. Only a single field of the following list may be set at a time: + - triggerAutomation + - invokeFunction + - webhook + - notify properties: - accept: - $ref: '#/components/schemas/c1.api.policy.v1.AcceptInstance' - action: - $ref: '#/components/schemas/c1.api.policy.v1.ActionInstance' - approval: - $ref: '#/components/schemas/c1.api.policy.v1.ApprovalInstance' - form: - $ref: '#/components/schemas/c1.api.policy.v1.FormInstance' - id: - description: The ID of the PolicyStepInstance. This is required by many action submission endpoints to indicate what step you're approving. - readOnly: true + displayName: + description: Human-facing label. Optional. type: string - policyGenerationId: - description: The policy generation id refers to the version of the policy that this step was created from. - readOnly: false + enabled: + description: Per-dispatcher kill switch. + type: boolean + invokeFunction: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.InvokeFunctionDispatcher' + - type: "null" + key: + description: |- + Stable id within the rule; survives edits, part of the dispatch idempotency + key. Minted server-side when empty. type: string - provision: - $ref: '#/components/schemas/c1.api.policy.v1.ProvisionInstance' - reject: - $ref: '#/components/schemas/c1.api.policy.v1.RejectInstance' - state: - description: The state of the step, which is either active or done. + notify: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.NotifyDispatcher' + - type: "null" + notifyOnOutcome: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingDispatchOutcomeNotify' + - type: "null" + tierOverride: + description: Author tier override; may only tighten the derived tier. enum: - - POLICY_STEP_STATE_UNSPECIFIED - - POLICY_STEP_STATE_ACTIVE - - POLICY_STEP_STATE_DONE - readOnly: true + - FINDING_DISPATCH_TIER_UNSPECIFIED + - FINDING_DISPATCH_TIER_AUTO + - FINDING_DISPATCH_TIER_REQUIRES_APPROVAL type: string x-speakeasy-unknown-values: allow - wait: - $ref: '#/components/schemas/c1.api.policy.v1.WaitInstance' - title: Policy Step Instance - type: object - x-speakeasy-name-override: PolicyStepInstance - c1.api.policy.v1.PolicySteps: - description: A named sequence of steps that execute in order within a policy. - properties: - steps: - description: |- - Ordered array of steps. Each step is a oneof -- exactly one step type is - set per entry. Steps execute sequentially. - items: - $ref: '#/components/schemas/c1.api.policy.v1.PolicyStep' - nullable: true - readOnly: false - type: array - title: Policy Steps - type: object - x-speakeasy-name-override: PolicySteps - c1.api.policy.v1.Provision: - description: The provision step references a provision policy for this step. - nullable: true - properties: - assigned: - description: A field indicating whether this step is assigned. - readOnly: false - type: boolean - provisionPolicy: - $ref: '#/components/schemas/c1.api.policy.v1.ProvisionPolicy' - provisionTarget: - $ref: '#/components/schemas/c1.api.policy.v1.ProvisionTarget' - title: Provision + triggerAutomation: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.TriggerAutomationDispatcher' + - type: "null" + webhook: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.WebhookDispatcher' + - type: "null" + title: Finding Dispatcher type: object - x-speakeasy-name-override: Provision - c1.api.policy.v1.ProvisionInstance: + x-speakeasy-name-override: FindingDispatcher + c1.api.finding.v1.FindingOwnerRef: description: | - A provision instance describes the specific configuration of an executing provision policy step including actions taken and notification id. + The FindingOwnerRef message. - This message contains a oneof named outcome. Only a single field of the following list may be set at a time: - - completed - - cancelled - - errored - - reassignedByError - - skipped - nullable: true + This message contains a oneof named owner. Only a single field of the following list may be set at a time: + - identityUserId + - appOwnerAppId + - managerOfUserId + - userSetId properties: - batonActionInvocationId: - description: This indicates the account lifecycle action id for this step. - readOnly: false - type: string - cancelled: - $ref: '#/components/schemas/c1.api.policy.v1.CancelledAction' - completed: - $ref: '#/components/schemas/c1.api.policy.v1.CompletedAction' - errored: - $ref: '#/components/schemas/c1.api.policy.v1.ErroredAction' - externalTicketId: - description: This indicates the external ticket id for this step. - readOnly: false + appOwnerAppId: + description: |- + The appOwnerAppId field. + This field is part of the `owner` oneof. + See the documentation for `c1.api.finding.v1.FindingOwnerRef` for more details. + type: + - string + - "null" + identityUserId: + description: |- + The identityUserId field. + This field is part of the `owner` oneof. + See the documentation for `c1.api.finding.v1.FindingOwnerRef` for more details. + type: + - string + - "null" + managerOfUserId: + description: |- + The managerOfUserId field. + This field is part of the `owner` oneof. + See the documentation for `c1.api.finding.v1.FindingOwnerRef` for more details. + type: + - string + - "null" + userSetId: + description: |- + The userSetId field. + This field is part of the `owner` oneof. + See the documentation for `c1.api.finding.v1.FindingOwnerRef` for more details. + type: + - string + - "null" + title: Finding Owner Ref + type: object + x-speakeasy-name-override: FindingOwnerRef + c1.api.finding.v1.FindingRef: + description: The FindingRef message. + properties: + id: + description: The ID of the finding. type: string - externalTicketProvisionerConfigId: - description: This indicates the external ticket provisioner config id for this step. - readOnly: false + title: Finding Ref + type: object + x-speakeasy-name-override: FindingRef + c1.api.finding.v1.FindingRiskFactor: + description: The FindingRiskFactor message. + properties: + description: + description: The description field. type: string - notificationId: - description: This indicates the notification id for this step. - readOnly: false + name: + description: The name field. type: string - provision: - $ref: '#/components/schemas/c1.api.policy.v1.Provision' - reassignedByError: - $ref: '#/components/schemas/c1.api.policy.v1.ReassignedByErrorAction' - skipped: - $ref: '#/components/schemas/c1.api.policy.v1.SkippedAction' - state: - description: This property indicates the current state of this step. + severity: + description: The severity field. enum: - - PROVISION_INSTANCE_STATE_UNSPECIFIED - - PROVISION_INSTANCE_STATE_INIT - - PROVISION_INSTANCE_STATE_CREATE_CONNECTOR_ACTIONS_FOR_TARGET - - PROVISION_INSTANCE_STATE_SENDING_NOTIFICATIONS - - PROVISION_INSTANCE_STATE_WAITING - - PROVISION_INSTANCE_STATE_WEBHOOK - - PROVISION_INSTANCE_STATE_WEBHOOK_WAITING - - PROVISION_INSTANCE_STATE_EXTERNAL_TICKET - - PROVISION_INSTANCE_STATE_EXTERNAL_TICKET_WAITING - - PROVISION_INSTANCE_STATE_ACCOUNT_LIFECYCLE_ACTIONS - - PROVISION_INSTANCE_STATE_ACCOUNT_LIFECYCLE_ACTIONS_WAITING - - PROVISION_INSTANCE_STATE_DONE - readOnly: false + - FINDING_SEVERITY_UNSPECIFIED + - FINDING_SEVERITY_INFO + - FINDING_SEVERITY_LOW + - FINDING_SEVERITY_MEDIUM + - FINDING_SEVERITY_HIGH + - FINDING_SEVERITY_CRITICAL type: string x-speakeasy-unknown-values: allow - webhookId: - description: This indicates the webhook id for this step. - readOnly: false - type: string - webhookInstanceId: - description: This indicates the webhook instance id for this step. - readOnly: false - type: string - title: Provision Instance + weight: + description: The weight field. + format: uint32 + type: integer + title: Finding Risk Factor type: object - x-speakeasy-name-override: ProvisionInstance - c1.api.policy.v1.ProvisionPolicy: - description: | - ProvisionPolicy is a oneOf that indicates how a provision step should be processed. - - This message contains a oneof named typ. Only a single field of the following list may be set at a time: - - connector - - manual - - delegated - - webhook - - multiStep - - externalTicket - - unconfigured - - action + x-speakeasy-name-override: FindingRiskFactor + c1.api.finding.v1.FindingRiskScore: + description: The FindingRiskScore message. properties: - action: - $ref: '#/components/schemas/c1.api.policy.v1.ActionProvision' - connector: - $ref: '#/components/schemas/c1.api.policy.v1.ConnectorProvision' - delegated: - $ref: '#/components/schemas/c1.api.policy.v1.DelegatedProvision' - externalTicket: - $ref: '#/components/schemas/c1.api.policy.v1.ExternalTicketProvision' - manual: - $ref: '#/components/schemas/c1.api.policy.v1.ManualProvision' - multiStep: - $ref: '#/components/schemas/c1.api.policy.v1.MultiStep' - unconfigured: - $ref: '#/components/schemas/c1.api.policy.v1.UnconfiguredProvision' - webhook: - $ref: '#/components/schemas/c1.api.policy.v1.WebhookProvision' - title: Provision Policy + originalScore: + description: The originalScore field. + format: uint32 + type: integer + overrideByUserId: + description: The overrideByUserId field. + type: string + overrideScore: + description: The overrideScore field. + format: uint32 + type: integer + riskFactors: + description: The riskFactors field. + items: + $ref: '#/components/schemas/c1.api.finding.v1.FindingRiskFactor' + type: + - array + - "null" + score: + description: The score field. + format: uint32 + type: integer + systemScore: + description: The systemScore field. + format: uint32 + type: integer + title: Finding Risk Score type: object - x-speakeasy-name-override: ProvisionPolicy - c1.api.policy.v1.ProvisionTarget: - description: ProvisionTarget indicates the specific app, app entitlement, and if known, the app user and grant duration of this provision step + x-speakeasy-name-override: FindingRiskScore + c1.api.finding.v1.FindingRoutingRule: + description: The FindingRoutingRule message. properties: - appEntitlementId: - description: The app entitlement that should be provisioned. - readOnly: false - type: string + action: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingRoutingRuleAction' + - type: "null" appId: - description: The app in which the entitlement should be provisioned - readOnly: false - type: string - appUserId: - description: The app user that should be provisioned. May be unset if the app user is unknown - readOnly: false - type: string - grantDuration: - format: duration - readOnly: false + description: The appId field. type: string - title: Provision Target - type: object - x-speakeasy-name-override: ProvisionTarget - c1.api.policy.v1.ProvisionerAssignment: - description: | - ProvisionerAssignment defines how a provisioner is dynamically assigned. - - This message contains a oneof named typ. Only a single field of the following list may be set at a time: - - users - - appOwners - - group - - manager - - expression - - entitlementOwners - properties: - appOwners: - $ref: '#/components/schemas/c1.api.policy.v1.AppOwnerProvisioner' - entitlementOwners: - $ref: '#/components/schemas/c1.api.policy.v1.EntitlementOwnerProvisioner' - expression: - $ref: '#/components/schemas/c1.api.policy.v1.ExpressionProvisioner' - group: - $ref: '#/components/schemas/c1.api.policy.v1.GroupProvisioner' - manager: - $ref: '#/components/schemas/c1.api.policy.v1.ManagerProvisioner' - users: - $ref: '#/components/schemas/c1.api.policy.v1.UserProvisioner' - title: Provisioner Assignment - type: object - x-speakeasy-name-override: ProvisionerAssignment - c1.api.policy.v1.ReassignedAction: - description: The ReassignedAction object describes the outcome of a policy step that has been reassigned. - nullable: true - properties: - newPolicyStepId: - description: The ID of the policy step that was created as a result of this reassignment. - readOnly: true + condition: + description: The condition field. type: string - reassignedAt: + createdAt: format: date-time - readOnly: true - type: string - userId: - description: The UserID of the person who reassigned this step. - readOnly: true - type: string - title: Reassigned Action - type: object - x-speakeasy-name-override: ReassignedAction - c1.api.policy.v1.ReassignedByErrorAction: - description: The ReassignedByErrorAction object describes the outcome of a policy step that has been reassigned because it had an error provisioning. - nullable: true - properties: + type: + - string + - "null" description: - description: The description of the error with more details on why this was reassigned. - readOnly: true + description: The description field. type: string - errorCode: - description: Additional information about the error, like http status codes or error messages from SDKs. - readOnly: true + dispatchers: + description: Dispatchers that fire when the rule matches ("Then dispatch"). Max 10. + items: + $ref: '#/components/schemas/c1.api.finding.v1.FindingDispatcher' + type: + - array + - "null" + displayName: + description: The displayName field. type: string - errorUserId: - description: The UserID of the user who reassigned this due to an error. This will exclusively be the System's UserID. - readOnly: true + enabled: + description: The enabled field. + type: boolean + findingType: + description: The findingType field. + enum: + - FINDING_TYPE_UNSPECIFIED + - FINDING_TYPE_SIMILAR_USERNAME_MATCH + - FINDING_TYPE_SERVICE_ACCOUNT_MISCLASSIFICATION + - FINDING_TYPE_NHI_UNOWNED + - FINDING_TYPE_SERVICE_ACCOUNT_UNOWNED + - FINDING_TYPE_DECOY_CREDENTIAL_USED + - FINDING_TYPE_CUSTOM + - FINDING_TYPE_CONNECTOR_ANOMALY_DETECTION_DISABLED + - FINDING_TYPE_DEACTIVATED_OWNER + - FINDING_TYPE_UNUSED_SECRET + - FINDING_TYPE_CREDENTIAL_PUBLICLY_EXPOSED + - FINDING_TYPE_DECOY_PUBLICLY_EXPOSED + - FINDING_TYPE_CREDENTIAL_EXPIRING + - FINDING_TYPE_CONNECTOR_SYNC_FAILING type: string - erroredAt: - format: date-time - readOnly: true + x-speakeasy-unknown-values: allow + id: + description: The id field. type: string - newPolicyStepId: - description: The ID of the policy step that was created by this reassignment. - readOnly: true + priority: + description: The priority field. + format: int32 + type: integer + templateId: + description: The templateId field. type: string - reassignedAt: + updatedAt: format: date-time - readOnly: true - type: string - title: Reassigned By Error Action - type: object - x-speakeasy-name-override: ReassignedByErrorAction - c1.api.policy.v1.Reject: - description: This policy step indicates that a ticket should have a denied outcome. This is a terminal approval state and is used to explicitly define the end of approval steps. - nullable: true - properties: - rejectMessage: - description: An optional message to include in the comments when a task is automatically rejected. - readOnly: false - type: string - title: Reject + type: + - string + - "null" + title: Finding Routing Rule type: object - x-speakeasy-name-override: Reject - c1.api.policy.v1.RejectInstance: - description: |- - This policy step indicates that a ticket should have a denied outcome. This is a terminal approval state and is used to explicitly define the end of approval steps. - The instance is just a marker for it being copied into an active policy. - nullable: true + x-speakeasy-name-override: FindingRoutingRule + c1.api.finding.v1.FindingRoutingRuleAction: + description: | + The FindingRoutingRuleAction message. + + This message contains a oneof named action. Only a single field of the following list may be set at a time: + - createTask + - suppress + - snooze + - acceptRisk properties: - rejectMessage: - description: An optional message to include in the comments when a task is automatically rejected. - readOnly: false - type: string - title: Reject Instance + acceptRisk: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.AcceptRiskRoutingAction' + - type: "null" + createTask: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.CreateTaskAction' + - type: "null" + snooze: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.SnoozeRoutingAction' + - type: "null" + suppress: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.SuppressRoutingAction' + - type: "null" + title: Finding Routing Rule Action type: object - x-speakeasy-name-override: RejectInstance - c1.api.policy.v1.ResourceOwnerApproval: - description: The resource owner approval allows configuration of the approval step when the target approvers are the resource owners. - nullable: true + x-speakeasy-name-override: FindingRoutingRuleAction + c1.api.finding.v1.FindingSearchRequest: + description: The FindingSearchRequest message. properties: - allowSelfApproval: - description: Configuration to allow self approval if the target user is an resource owner during this step. - readOnly: false - type: boolean - fallback: - description: Configuration to allow a fallback if the resource owner cannot be identified. - readOnly: false - type: boolean - fallbackGroupIds: - description: Configuration to specify which groups to fallback to if fallback is enabled and the resource owner cannot be identified. + appIds: + description: Filter by app IDs (OR within field). items: - $ref: '#/components/schemas/c1.api.policy.v1.AppEntitlementReference' - nullable: true - readOnly: false - type: array - fallbackUserIds: - description: Configuration to specific which users to fallback to if fallback is enabled and the resource owner cannot be identified. + type: string + type: + - array + - "null" + appResourceIds: + description: |- + Filter by app resource IDs (OR within field). Matches findings whose + target.app_resource_target.app_resource_id is in this list. An app resource + is app-scoped, so pair with app_ids (and app_resource_type_ids) to hit the + composite (tenant_id, app_id, app_resource_type_id, app_resource_id) index. items: type: string - nullable: true - readOnly: false - type: array - isGroupFallbackEnabled: - description: Configuration to enable fallback for group fallback. - readOnly: false - type: boolean - requireDistinctApprovers: - description: Configuration to require distinct approvers across approval steps of a rule. - readOnly: false - type: boolean - title: Resource Owner Approval - type: object - x-speakeasy-name-override: ResourceOwnerApproval - c1.api.policy.v1.RestartAction: - description: The restart action describes the outcome of policy steps for when the task was restarted. This can be applied to multiple steps since restart skips all pending next steps. - nullable: true - properties: - oldPolicyStepId: - description: The step ID that was restarted. Potentially multiple "history" steps will reference this ID to indicate by what step they were restarted. - readOnly: true - type: string - restartedAt: - format: date-time - readOnly: true - type: string - userId: - description: The user that submitted the restart action. - readOnly: true - type: string - title: Restart Action - type: object - x-speakeasy-name-override: RestartAction - c1.api.policy.v1.Rule: - description: |- - A conditional routing rule that maps a CEL expression to a step sequence. - Rules are evaluated top-to-bottom; the first matching rule's policy_key - selects the step sequence from the policy's policy_steps map. If no rule - matches, the baseline entry is used. - properties: - condition: + type: + - array + - "null" + appResourceTraitIds: description: |- - A CEL expression that is evaluated against the request context. If it - returns true, the step sequence identified by policy_key is used. - readOnly: false - type: string - policyKey: + Filter to findings whose target resource's type carries any of these traits + (e.g. the builtin agent / secret trait ids). OR within field; empty = not + applied. + items: + type: string + type: + - array + - "null" + appResourceTypeIds: description: |- - A key into the policy's policy_steps map identifying which step sequence - to execute when this rule's condition matches. - readOnly: false - type: string - title: Rule - type: object - x-speakeasy-name-override: Rule - c1.api.policy.v1.SearchPoliciesRequest: - description: Search Policies by a few properties. - properties: - displayName: - description: Search for policies with a case insensitive match on the display name. - readOnly: false - type: string - excludePolicyIds: - description: The policy IDs to exclude from the search. + Filter by app resource type IDs (OR within field). Matches findings whose + target.app_resource_target.app_resource_type_id is in this list. items: type: string - nullable: true - readOnly: false - type: array - includeDeleted: - description: The includeDeleted field. - readOnly: false + type: + - array + - "null" + appUserIds: + description: |- + Filter by app user IDs (OR within field). Matches findings whose + target.app_user_target.app_user_id is in this list. + items: + type: string + type: + - array + - "null" + appUserTypes: + description: |- + Filter to findings whose target is an app user of these types (OR within + field). Empty = not applied. + items: + enum: + - APP_USER_TYPE_UNSPECIFIED + - APP_USER_TYPE_USER + - APP_USER_TYPE_SERVICE_ACCOUNT + - APP_USER_TYPE_SYSTEM_ACCOUNT + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + connectorIds: + description: |- + Filter by connector IDs (OR within field). Matches findings whose + target.connector_target.connector_id is in this list. + items: + type: string + type: + - array + - "null" + customSubTypes: + description: |- + Filter by custom sub-type (OR within field). Matches custom findings whose + custom_sub_type equals any listed value. + items: + type: string + type: + - array + - "null" + decoyIds: + description: |- + Filter by decoy IDs (OR within field). Matches findings whose + target.decoy_target.decoy_id is in this list. + items: + type: string + type: + - array + - "null" + findingTypes: + description: Filter by finding type (OR within field). + items: + enum: + - FINDING_TYPE_UNSPECIFIED + - FINDING_TYPE_SIMILAR_USERNAME_MATCH + - FINDING_TYPE_SERVICE_ACCOUNT_MISCLASSIFICATION + - FINDING_TYPE_NHI_UNOWNED + - FINDING_TYPE_SERVICE_ACCOUNT_UNOWNED + - FINDING_TYPE_DECOY_CREDENTIAL_USED + - FINDING_TYPE_CUSTOM + - FINDING_TYPE_CONNECTOR_ANOMALY_DETECTION_DISABLED + - FINDING_TYPE_DEACTIVATED_OWNER + - FINDING_TYPE_UNUSED_SECRET + - FINDING_TYPE_CREDENTIAL_PUBLICLY_EXPOSED + - FINDING_TYPE_DECOY_PUBLICLY_EXPOSED + - FINDING_TYPE_CREDENTIAL_EXPIRING + - FINDING_TYPE_CONNECTOR_SYNC_FAILING + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + includeUnassigned: + description: |- + When true, includes findings with no effective identity-user owner. An + explicit predicate for direct API callers who prefer a bool over the + "unassigned" sentinel in owner_identity_user_ids; both signals are accepted. type: boolean + nhiTypes: + description: |- + Filter to findings whose target resource's nhi_type is one of these (OR + within field). Empty = not applied; pass all NhiType values to match any + nhi resource. + items: + enum: + - NHI_TYPE_UNSPECIFIED + - NHI_TYPE_APP_REGISTRATION + - NHI_TYPE_ASSUMABLE_ROLE + - NHI_TYPE_MANAGED_IDENTITY + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + ownerIdentityUserIds: + description: |- + Filter by effective owner identity-user IDs (OR within field). Matches + findings whose effective owner (assigned_owner if set, else computed_owner) + resolves to an identity user in this list. The reserved "unassigned" + sentinel token selects findings with no effective identity-user owner; real + identity-user IDs are exactly 27 alphanumerics so the token cannot collide. + items: + type: string + type: + - array + - "null" pageSize: - description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) + description: Maximum number of findings to return per page. format: int32 - readOnly: false type: integer pageToken: - description: The pageToken field. - readOnly: false + description: Pagination token from a previous response. type: string - policyTypes: - description: The policy type to search on. This can be POLICY_TYPE_GRANT, POLICY_TYPE_REVOKE, POLICY_TYPE_CERTIFY, POLICY_TYPE_ACCESS_REQUEST, or POLICY_TYPE_PROVISION. + query: + description: Free text search query. + type: string + refs: + description: |- + Restrict results to these finding refs by ID (OR within field). Backs the + websocket-notify re-query, which refetches just the changed finding(s) to + patch a row in place or detect it dropping out of the filter; empty = not + applied. Hits the (tenant_id, id) primary key. + items: + $ref: '#/components/schemas/c1.api.finding.v1.FindingRef' + type: + - array + - "null" + scopeToAppOwner: + description: |- + When true, restricts results to findings for apps you own. The caller is + resolved from request credentials (no user id is read from the request), + so results are always limited to your own apps. + type: boolean + severities: + description: Filter by severities (OR within field). items: enum: - - POLICY_TYPE_UNSPECIFIED - - POLICY_TYPE_GRANT - - POLICY_TYPE_REVOKE - - POLICY_TYPE_CERTIFY - - POLICY_TYPE_ACCESS_REQUEST - - POLICY_TYPE_PROVISION + - FINDING_SEVERITY_UNSPECIFIED + - FINDING_SEVERITY_INFO + - FINDING_SEVERITY_LOW + - FINDING_SEVERITY_MEDIUM + - FINDING_SEVERITY_HIGH + - FINDING_SEVERITY_CRITICAL type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - query: - description: Query the policies with a fuzzy search on display name and description. - readOnly: false - type: string - refs: - description: The refs field. + type: + - array + - "null" + sourceKinds: + description: Filter by source kind (OR within field). items: - $ref: '#/components/schemas/c1.api.policy.v1.PolicyRef' - nullable: true - readOnly: false - type: array - title: Search Policies Request + enum: + - FINDING_SOURCE_KIND_UNSPECIFIED + - FINDING_SOURCE_KIND_DETECTOR + - FINDING_SOURCE_KIND_EXTERNAL + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + states: + description: Filter by states (OR within field). + items: + enum: + - FINDING_STATE_UNSPECIFIED + - FINDING_STATE_OPEN + - FINDING_STATE_IN_PROGRESS + - FINDING_STATE_RESOLVED + - FINDING_STATE_SNOOZED + - FINDING_STATE_RISK_ACCEPTED + - FINDING_STATE_SUPPRESSED + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + title: Finding Search Request type: object - x-speakeasy-name-override: SearchPoliciesRequest - c1.api.policy.v1.SearchPoliciesResponse: - description: The SearchPoliciesResponse message. + x-speakeasy-name-override: FindingSearchRequest + c1.api.finding.v1.FindingSearchResponse: + description: The FindingSearchResponse message. properties: list: description: The list field. items: - $ref: '#/components/schemas/c1.api.policy.v1.Policy' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.finding.v1.Finding' + type: + - array + - "null" nextPageToken: description: The nextPageToken field. - readOnly: false type: string - title: Search Policies Response + title: Finding Search Response type: object - x-speakeasy-name-override: SearchPoliciesResponse - c1.api.policy.v1.SelfApproval: - description: The self approval object describes the configuration of a policy step that needs to be approved by the target of the request. - nullable: true + x-speakeasy-name-override: FindingSearchResponse + c1.api.finding.v1.FindingSettingsEntry: + description: |- + FindingSettingsEntry is a requested change to one type, which is why it is a + separate message from FindingTypeSetting rather than the same one reused: an + update needs enum validation and presence on `enabled` so an omitted field is + an error, while a response always carries a value and must not make callers + handle an absent one. properties: - assignedUserIds: - description: The array of users determined to be themselves during approval. This should only ever be one person, but is saved because it may change if the owner of an app user changes while the ticket is open. - items: - type: string - nullable: true - readOnly: true - type: array - fallback: - description: Configuration to allow a fallback if the identity user of the target app user cannot be determined. - readOnly: false - type: boolean - fallbackGroupIds: - description: Configuration to specify which groups to fallback to if fallback is enabled and the identity user of the target app user cannot be determined. - items: - $ref: '#/components/schemas/c1.api.policy.v1.AppEntitlementReference' - nullable: true - readOnly: false - type: array - fallbackUserIds: - description: Configuration to specific which users to fallback to if fallback is enabled and the identity user of the target app user cannot be determined. - items: - type: string - nullable: true - readOnly: false - type: array - isGroupFallbackEnabled: - description: Configuration to enable fallback for group fallback. - readOnly: false - type: boolean - title: Self Approval + enabled: + description: |- + Target state. Required: explicit presence keeps an omitted field from + reading as false and silently switching a detector off. + type: + - boolean + - "null" + findingType: + description: The finding type to configure. Must be a detector-backed type. + enum: + - FINDING_TYPE_UNSPECIFIED + - FINDING_TYPE_SIMILAR_USERNAME_MATCH + - FINDING_TYPE_SERVICE_ACCOUNT_MISCLASSIFICATION + - FINDING_TYPE_NHI_UNOWNED + - FINDING_TYPE_SERVICE_ACCOUNT_UNOWNED + - FINDING_TYPE_DECOY_CREDENTIAL_USED + - FINDING_TYPE_CUSTOM + - FINDING_TYPE_CONNECTOR_ANOMALY_DETECTION_DISABLED + - FINDING_TYPE_DEACTIVATED_OWNER + - FINDING_TYPE_UNUSED_SECRET + - FINDING_TYPE_CREDENTIAL_PUBLICLY_EXPOSED + - FINDING_TYPE_DECOY_PUBLICLY_EXPOSED + - FINDING_TYPE_CREDENTIAL_EXPIRING + - FINDING_TYPE_CONNECTOR_SYNC_FAILING + type: string + x-speakeasy-unknown-values: allow + title: Finding Settings Entry type: object - x-speakeasy-name-override: SelfApproval - c1.api.policy.v1.SkippedAction: - description: The SkippedAction object describes the outcome of a policy step that has been skipped. - nullable: true + x-speakeasy-name-override: FindingSettingsEntry + c1.api.finding.v1.FindingTransform: + description: | + FindingTransform is a single mutation applied to a finding by a matched + transformation rule. Structured ops are the v1 authoring surface; a future + raw-CEL arm continues numbering at 103. + + This message contains a oneof named kind. Only a single field of the following list may be set at a time: + - setSeverity + - setTags + - removeTags + properties: + removeTags: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.RemoveTags' + - type: "null" + setSeverity: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.SetSeverity' + - type: "null" + setTags: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.SetTags' + - type: "null" + title: Finding Transform + type: object + x-speakeasy-name-override: FindingTransform + c1.api.finding.v1.FindingTransformationRule: + description: |- + FindingTransformationRule transforms a finding at processing time, before + routing runs. Rules fall through: every matching rule applies its transforms + in ascending evaluation_order; the last rule to write a given field wins. properties: - newPolicyStepId: - description: The ID of the policy step that was created as a result of this skipping. - readOnly: true + appId: + description: The appId field. type: string - skippedAt: + condition: + description: |- + CEL boolean over the Finding object; empty matches all. Evaluated over + base/immutable inputs only (see the transformation env). + type: string + createdAt: format: date-time - readOnly: true + type: + - string + - "null" + description: + description: The description field. type: string - userId: - description: The UserID of the user who skipped this step. - readOnly: true + displayName: + description: The displayName field. type: string - title: Skipped Action + enabled: + description: The enabled field. + type: boolean + evaluationOrder: + description: |- + Application order (ascending; last-applied rule wins per field). A sequence, + not a precedence rank. + format: int32 + type: integer + findingType: + description: The findingType field. + enum: + - FINDING_TYPE_UNSPECIFIED + - FINDING_TYPE_SIMILAR_USERNAME_MATCH + - FINDING_TYPE_SERVICE_ACCOUNT_MISCLASSIFICATION + - FINDING_TYPE_NHI_UNOWNED + - FINDING_TYPE_SERVICE_ACCOUNT_UNOWNED + - FINDING_TYPE_DECOY_CREDENTIAL_USED + - FINDING_TYPE_CUSTOM + - FINDING_TYPE_CONNECTOR_ANOMALY_DETECTION_DISABLED + - FINDING_TYPE_DEACTIVATED_OWNER + - FINDING_TYPE_UNUSED_SECRET + - FINDING_TYPE_CREDENTIAL_PUBLICLY_EXPOSED + - FINDING_TYPE_DECOY_PUBLICLY_EXPOSED + - FINDING_TYPE_CREDENTIAL_EXPIRING + - FINDING_TYPE_CONNECTOR_SYNC_FAILING + type: string + x-speakeasy-unknown-values: allow + id: + description: The id field. + type: string + templateId: + description: The templateId field. + type: string + transforms: + description: Ordered transforms applied when the rule matches. + items: + $ref: '#/components/schemas/c1.api.finding.v1.FindingTransform' + type: + - array + - "null" + updatedAt: + format: date-time + type: + - string + - "null" + title: Finding Transformation Rule type: object - x-speakeasy-name-override: SkippedAction - c1.api.policy.v1.TestAccountProvisionPolicyRequest: - description: TestAccountProvisionPolicyRequest is the request for testing an account provision policy. + x-speakeasy-name-override: FindingTransformationRule + c1.api.finding.v1.FindingTypeSetting: + description: |- + FindingTypeSetting is one finding type's detection switch as it currently + stands. Named for a single type on purpose: the stored model + c1.models.finding.v1.FindingSettings is the tenant-wide object holding every + type, and one name for both granularities reads as the same thing twice. + Display copy for the type is client-owned; this carries state only. properties: - cel: - description: The CEL expression to evaluate for the account provision policy. - readOnly: false + enabled: + description: |- + Whether the system detects this finding type. Types never configured read + back their shipped default, which is per type rather than uniformly on. + type: boolean + findingType: + description: The findingType field. + enum: + - FINDING_TYPE_UNSPECIFIED + - FINDING_TYPE_SIMILAR_USERNAME_MATCH + - FINDING_TYPE_SERVICE_ACCOUNT_MISCLASSIFICATION + - FINDING_TYPE_NHI_UNOWNED + - FINDING_TYPE_SERVICE_ACCOUNT_UNOWNED + - FINDING_TYPE_DECOY_CREDENTIAL_USED + - FINDING_TYPE_CUSTOM + - FINDING_TYPE_CONNECTOR_ANOMALY_DETECTION_DISABLED + - FINDING_TYPE_DEACTIVATED_OWNER + - FINDING_TYPE_UNUSED_SECRET + - FINDING_TYPE_CREDENTIAL_PUBLICLY_EXPOSED + - FINDING_TYPE_DECOY_PUBLICLY_EXPOSED + - FINDING_TYPE_CREDENTIAL_EXPIRING + - FINDING_TYPE_CONNECTOR_SYNC_FAILING type: string - title: Test Account Provision Policy Request + x-speakeasy-unknown-values: allow + title: Finding Type Setting type: object - x-speakeasy-name-override: TestAccountProvisionPolicyRequest - c1.api.policy.v1.TestAccountProvisionPolicyResponse: - description: TestAccountProvisionPolicyResponse is the response for testing an account provision policy. + x-speakeasy-name-override: FindingTypeSetting + c1.api.finding.v1.GetFindingResponse: + description: The GetFindingResponse message. properties: - type: - description: The data type of the computed result value. - readOnly: false - type: string - value: - description: The computed result value of the CEL expression evaluation. - readOnly: false - type: string - title: Test Account Provision Policy Response + expanded: + description: The expanded field. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + finding: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.Finding' + - type: "null" + title: Get Finding Response type: object - x-speakeasy-name-override: TestAccountProvisionPolicyResponse - c1.api.policy.v1.UnconfiguredProvision: - description: The UnconfiguredProvision message. - nullable: true - title: Unconfigured Provision + x-speakeasy-name-override: GetFindingResponse + c1.api.finding.v1.GetFindingRoutingRuleResponse: + description: The GetFindingRoutingRuleResponse message. + properties: + routingRule: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingRoutingRule' + - type: "null" + title: Get Finding Routing Rule Response type: object - x-speakeasy-name-override: UnconfiguredProvision - c1.api.policy.v1.UpdatePolicyRequestInput: - description: The UpdatePolicyRequest message contains the policy object to update and a field mask to indicate which fields to update. It uses URL value for input. + x-speakeasy-name-override: GetFindingRoutingRuleResponse + c1.api.finding.v1.GetFindingTransformationRuleResponse: + description: The GetFindingTransformationRuleResponse message. properties: - policy: - $ref: '#/components/schemas/c1.api.policy.v1.Policy' - updateMask: - nullable: true - readOnly: false + transformationRule: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingTransformationRule' + - type: "null" + title: Get Finding Transformation Rule Response + type: object + x-speakeasy-name-override: GetFindingTransformationRuleResponse + c1.api.finding.v1.IdentityUserTarget: + description: The IdentityUserTarget message. + properties: + identityUserId: + description: The identityUserId field. type: string - title: Update Policy Request + title: Identity User Target type: object - x-speakeasy-name-override: UpdatePolicyRequest - c1.api.policy.v1.UpdatePolicyResponse: - description: The UpdatePolicyResponse message contains the updated policy object. + x-speakeasy-name-override: IdentityUserTarget + c1.api.finding.v1.InvokeFunctionDispatcher: + description: InvokeFunctionDispatcher runs a published C1 function by id. properties: - policy: - $ref: '#/components/schemas/c1.api.policy.v1.Policy' - title: Update Policy Response + args: + additionalProperties: + type: string + description: |- + Arguments passed to the function, keyed by arg name (v0: verbatim values; + CEL evaluation is a later phase). + type: object + functionCommitId: + description: Optional pinned function commit; empty floats to the published commit. + type: string + functionId: + description: ID of the published function to invoke. + type: string + title: Invoke Function Dispatcher type: object - x-speakeasy-name-override: UpdatePolicyResponse - c1.api.policy.v1.UserApproval: - description: The user approval object describes the approval configuration of a policy step that needs to be approved by a specific list of users. - nullable: true + x-speakeasy-name-override: InvokeFunctionDispatcher + c1.api.finding.v1.ListFindingRoutingRulesResponse: + description: The ListFindingRoutingRulesResponse message. properties: - allowSelfApproval: - description: Configuration to allow self approval of if the user is specified and also the target of the ticket. - readOnly: false - type: boolean - requireDistinctApprovers: - description: Configuration to require distinct approvers across approval steps of a rule. - readOnly: false - type: boolean - userIds: - description: Array of users configured for approval. + list: + description: The list field. items: - type: string - nullable: true - readOnly: false - type: array - title: User Approval + $ref: '#/components/schemas/c1.api.finding.v1.FindingRoutingRule' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. + type: string + title: List Finding Routing Rules Response type: object - x-speakeasy-name-override: UserApproval - c1.api.policy.v1.UserProvisioner: - description: UserProvisioner assigns specific users as provisioners. - nullable: true + x-speakeasy-name-override: ListFindingRoutingRulesResponse + c1.api.finding.v1.ListFindingSettingsResponse: + description: The ListFindingSettingsResponse message. properties: - allowReassignment: - description: Whether the provisioner can reassign the task. - readOnly: false + configured: + description: |- + True once the tenant has explicitly saved their finding-type settings at + least once, regardless of whether any value differs from default. False + means the tenant has never saved, so every entry in `list` is the + shipped default, unconfirmed by the tenant. type: boolean - userIds: - description: The user IDs to assign as provisioners. + list: + description: |- + One entry per configurable finding type, in FindingType declaration order. + Custom findings are excluded: they arrive over CreateFinding rather than + from a detector, so there is nothing to switch off. items: - type: string - nullable: true - readOnly: false - type: array - title: User Provisioner + $ref: '#/components/schemas/c1.api.finding.v1.FindingTypeSetting' + type: + - array + - "null" + title: List Finding Settings Response type: object - x-speakeasy-name-override: UserProvisioner - c1.api.policy.v1.Wait: - description: | - Define a Wait step for a policy to wait on a condition to be met. - - This message contains a oneof named until. Only a single field of the following list may be set at a time: - - condition - - duration - - untilTime - nullable: true + x-speakeasy-name-override: ListFindingSettingsResponse + c1.api.finding.v1.ListFindingTransformationRulesResponse: + description: The ListFindingTransformationRulesResponse message. properties: - commentOnFirstWait: - description: The comment to post on first failed check. - readOnly: false - type: string - commentOnTimeout: - description: The comment to post if we timeout. - readOnly: false - type: string - condition: - $ref: '#/components/schemas/c1.api.policy.v1.WaitCondition' - duration: - $ref: '#/components/schemas/c1.api.policy.v1.WaitDuration' - name: - description: The name of our condition to show on the task details page - readOnly: false + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.finding.v1.FindingTransformationRule' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - timeoutDuration: - format: duration - readOnly: false + title: List Finding Transformation Rules Response + type: object + x-speakeasy-name-override: ListFindingTransformationRulesResponse + c1.api.finding.v1.NhiUnownedType: + description: |- + NhiUnownedType: an AppResource with a non-human-identity type has no + primary owner. Target: AppResourceTarget (the unowned NHI resource). + title: Nhi Unowned Type + type: object + x-speakeasy-name-override: NhiUnownedType + c1.api.finding.v1.NotifyDispatcher: + description: |- + NotifyDispatcher emits a notifications_v2 notification about the matched + finding. Exactly one of audience / slack_channel is set: audience notifies + people (each on whichever channels they enabled in their own notification + settings), slack_channel posts to one channel. + properties: + audience: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingAudience' + - type: "null" + batchWindowSeconds: + description: |- + Wait-group window in seconds; 0 sends immediately. A quiet-period length, + not a fixed delay — the batcher slides it forward on each arrival. + format: uint32 + type: integer + detailLevel: + description: How much the notification reveals. Defaults to SUMMARY. + enum: + - FINDING_NOTIFY_DETAIL_LEVEL_UNSPECIFIED + - FINDING_NOTIFY_DETAIL_LEVEL_SUMMARY + - FINDING_NOTIFY_DETAIL_LEVEL_FULL_DETAIL type: string - untilTime: - $ref: '#/components/schemas/c1.api.policy.v1.WaitUntilTime' - title: Wait + x-speakeasy-unknown-values: allow + slackChannel: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.SlackChannelTarget' + - type: "null" + title: Notify Dispatcher type: object - x-speakeasy-name-override: Wait - c1.api.policy.v1.WaitCondition: - description: The WaitCondition message. - nullable: true + x-speakeasy-name-override: NotifyDispatcher + c1.api.finding.v1.RemoveTags: + description: The RemoveTags message. properties: - condition: - description: The condition that has to be true for this wait condition to continue. - readOnly: false - type: string - title: Wait Condition + keys: + description: The keys field. + items: + type: string + type: + - array + - "null" + title: Remove Tags type: object - x-speakeasy-name-override: WaitCondition - c1.api.policy.v1.WaitConditionInstance: - description: Used by the policy engine to describe an instantiated condition to wait on. - nullable: true + x-speakeasy-name-override: RemoveTags + c1.api.finding.v1.ReopenAction: + description: ReopenAction parameters for UpdateFindingState. + title: Reopen Action + type: object + x-speakeasy-name-override: ReopenAction + c1.api.finding.v1.ResolveAction: + description: ResolveAction parameters for UpdateFindingState (manual resolve). properties: - condition: - description: The condition that has to be true for this wait condition instance to continue. - readOnly: false + reason: + description: The reason field. type: string - title: Wait Condition Instance + title: Resolve Action type: object - x-speakeasy-name-override: WaitConditionInstance - c1.api.policy.v1.WaitDuration: - description: The WaitDuration message. - nullable: true + x-speakeasy-name-override: ResolveAction + c1.api.finding.v1.ServiceAccountMisclassificationEvidence: + description: The ServiceAccountMisclassificationEvidence message. properties: - duration: - format: duration - readOnly: false + detectionReason: + description: The detectionReason field. type: string - title: Wait Duration + title: Service Account Misclassification Evidence type: object - x-speakeasy-name-override: WaitDuration - c1.api.policy.v1.WaitInstance: - description: | - Used by the policy engine to describe an instantiated wait step. - - This message contains a oneof named until. Only a single field of the following list may be set at a time: - - condition - - untilTime - - - This message contains a oneof named outcome. Only a single field of the following list may be set at a time: - - succeeded - - timedOut - - skipped - nullable: true + x-speakeasy-name-override: ServiceAccountMisclassificationEvidence + c1.api.finding.v1.ServiceAccountMisclassificationType: + description: The ServiceAccountMisclassificationType message. properties: - commentOnFirstWait: - description: The comment to post on first failed check. - readOnly: false - type: string - commentOnTimeout: - description: The comment to post if we timeout. - readOnly: false - type: string - condition: - $ref: '#/components/schemas/c1.api.policy.v1.WaitConditionInstance' - name: - description: The name field. - readOnly: false + currentAccountType: + description: The currentAccountType field. + enum: + - APP_USER_TYPE_UNSPECIFIED + - APP_USER_TYPE_USER + - APP_USER_TYPE_SERVICE_ACCOUNT + - APP_USER_TYPE_SYSTEM_ACCOUNT type: string - skipped: - $ref: '#/components/schemas/c1.api.policy.v1.SkippedAction' - startedWaitingAt: - format: date-time - readOnly: false + x-speakeasy-unknown-values: allow + detectedAccountType: + description: The detectedAccountType field. + enum: + - APP_USER_TYPE_UNSPECIFIED + - APP_USER_TYPE_USER + - APP_USER_TYPE_SERVICE_ACCOUNT + - APP_USER_TYPE_SYSTEM_ACCOUNT type: string - state: - description: The state field. + x-speakeasy-unknown-values: allow + title: Service Account Misclassification Type + type: object + x-speakeasy-name-override: ServiceAccountMisclassificationType + c1.api.finding.v1.ServiceAccountUnownedType: + description: |- + ServiceAccountUnownedType: a service-account-classified AppUser has no + primary owner. Target: AppUserTarget (the unowned service account). + title: Service Account Unowned Type + type: object + x-speakeasy-name-override: ServiceAccountUnownedType + c1.api.finding.v1.SetSeverity: + description: The SetSeverity message. + properties: + severity: + description: The severity field. enum: - - WAIT_INSTANCE_STATE_UNSPECIFIED - - WAIT_INSTANCE_STATE_WAITING - - WAIT_INSTANCE_STATE_COMPLETED - - WAIT_INSTANCE_STATE_TIMED_OUT - readOnly: false + - FINDING_SEVERITY_UNSPECIFIED + - FINDING_SEVERITY_INFO + - FINDING_SEVERITY_LOW + - FINDING_SEVERITY_MEDIUM + - FINDING_SEVERITY_HIGH + - FINDING_SEVERITY_CRITICAL type: string x-speakeasy-unknown-values: allow - succeeded: - $ref: '#/components/schemas/c1.api.policy.v1.WaitInstance.ConditionSucceeded' - timedOut: - $ref: '#/components/schemas/c1.api.policy.v1.WaitInstance.ConditionTimedOut' - timeout: - format: date-time - readOnly: false + title: Set Severity + type: object + x-speakeasy-name-override: SetSeverity + c1.api.finding.v1.SetTags: + description: The SetTags message. + properties: + tags: + additionalProperties: + type: string + description: The tags field. + type: object + title: Set Tags + type: object + x-speakeasy-name-override: SetTags + c1.api.finding.v1.SimilarUsernameMatchEvidence: + description: The SimilarUsernameMatchEvidence message. + properties: + appUsername: + description: The appUsername field. type: string - timeoutDuration: - format: duration - readOnly: false + identityUsername: + description: The identityUsername field. type: string - untilTime: - $ref: '#/components/schemas/c1.api.policy.v1.WaitUntilTimeInstance' - title: Wait Instance + similarityScore: + description: The similarityScore field. + type: number + title: Similar Username Match Evidence type: object - x-speakeasy-name-override: WaitInstance - c1.api.policy.v1.WaitInstance.ConditionSucceeded: - description: The ConditionSucceeded message. - nullable: true + x-speakeasy-name-override: SimilarUsernameMatchEvidence + c1.api.finding.v1.SimilarUsernameMatchType: + description: The SimilarUsernameMatchType message. properties: - succeededAt: - format: date-time - readOnly: false + proposedIdentityUserId: + description: The proposedIdentityUserId field. type: string - title: Condition Succeeded + title: Similar Username Match Type type: object - x-speakeasy-name-override: ConditionSucceeded - c1.api.policy.v1.WaitInstance.ConditionTimedOut: - description: The ConditionTimedOut message. - nullable: true + x-speakeasy-name-override: SimilarUsernameMatchType + c1.api.finding.v1.SlackChannelTarget: + description: |- + SlackChannelTarget names one Slack channel. Exactly one of channel_name / + channel_id is set; a name is resolved at send time, so an unresolvable name + fails the dispatch rather than the rule edit. properties: - timedOutAt: - format: date-time - readOnly: false + channelId: + description: The channelId field. type: string - title: Condition Timed Out + channelName: + description: The channelName field. + type: string + title: Slack Channel Target type: object - x-speakeasy-name-override: ConditionTimedOut - c1.api.policy.v1.WaitUntilTime: - description: Waits until a specific time of the day (UTC) - nullable: true + x-speakeasy-name-override: SlackChannelTarget + c1.api.finding.v1.SnoozeAction: + description: SnoozeAction parameters for UpdateFindingState. properties: - hours: - description: The hours field. - format: uint32 - readOnly: false - type: integer - minutes: - description: The minutes field. - format: uint32 - readOnly: false - type: integer - timezone: - description: The timezone field. - readOnly: false + reason: + description: The reason field. type: string - title: Wait Until Time + snoozeUntil: + format: date-time + type: + - string + - "null" + title: Snooze Action type: object - x-speakeasy-name-override: WaitUntilTime - c1.api.policy.v1.WaitUntilTimeInstance: - description: The WaitUntilTimeInstance message. - nullable: true + x-speakeasy-name-override: SnoozeAction + c1.api.finding.v1.SnoozeRoutingAction: + description: |- + SnoozeRoutingAction snoozes a matched finding for a relative duration + (resolved to snooze_until = now + duration at execution time). properties: - durationIfExists: + duration: format: duration - readOnly: false - type: string - untilTime: - format: date-time - readOnly: false + type: + - string + - "null" + reason: + description: The reason field. type: string - title: Wait Until Time Instance + title: Snooze Routing Action type: object - x-speakeasy-name-override: WaitUntilTimeInstance - c1.api.policy.v1.WebhookApproval: - description: The WebhookApproval message. - nullable: true + x-speakeasy-name-override: SnoozeRoutingAction + c1.api.finding.v1.SuppressRoutingAction: + description: The SuppressRoutingAction message. properties: - webhookId: - description: The ID of the webhook to call for approval. - readOnly: false + reason: + description: The reason field. type: string - title: Webhook Approval + title: Suppress Routing Action type: object - x-speakeasy-name-override: WebhookApproval - c1.api.policy.v1.WebhookProvision: - description: This provision step indicates that a webhook should be called to provision this entitlement. - nullable: true + x-speakeasy-name-override: SuppressRoutingAction + c1.api.finding.v1.SuppressStateAction: + description: SuppressStateAction parameters for UpdateFindingState. properties: - webhookId: - description: The ID of the webhook to call for provisioning. - readOnly: false + reason: + description: The reason field. type: string - title: Webhook Provision + title: Suppress State Action type: object - x-speakeasy-name-override: WebhookProvision - c1.api.profiletype.v1.ProfileType: - description: ProfileType represents a type of profile in the system + x-speakeasy-name-override: SuppressStateAction + c1.api.finding.v1.TenantTarget: + description: |- + TenantTarget scopes a finding to the whole tenant. It carries no subject id; + the finding's tenant is the scope. + title: Tenant Target + type: object + x-speakeasy-name-override: TenantTarget + c1.api.finding.v1.TriggerAutomationDispatcher: + description: TriggerAutomationDispatcher runs a C1 automation by id (the "Run now" path). properties: - description: - description: The description field. - readOnly: false - type: string - displayToUser: - description: Whether to display this profile type to users in profile page. Defaults to false if not set - readOnly: false - type: boolean - iconUrl: - description: The iconUrl field. - readOnly: false - type: string - id: - description: The id field. - readOnly: false - type: string - name: - description: The name field. - readOnly: false - type: string - priority: - description: The priority field. - format: uint32 - readOnly: false - type: integer - sizes: - description: icon sizes - items: - format: int32 - type: integer - nullable: true - readOnly: false - type: array - slug: - description: Add this field to allow users to reference profile type in cel expressions - readOnly: false + automationId: + description: ID of the C1 automation/workflow to run. type: string - title: Profile Type + inputMapping: + additionalProperties: + type: string + description: |- + Inputs passed to the automation, keyed by input name (v0: verbatim values; + CEL evaluation is a later phase). + type: object + title: Trigger Automation Dispatcher type: object - x-speakeasy-name-override: ProfileType - c1.api.request_schema.v1.RequestSchema: - description: A request schema defines a form template that users fill out when requesting access. + x-speakeasy-name-override: TriggerAutomationDispatcher + c1.api.finding.v1.UnsuppressAction: + deprecated: true + description: UnsuppressAction parameters for UpdateFindingState. + title: Unsuppress Action + type: object + x-speakeasy-name-override: UnsuppressAction + c1.api.finding.v1.UnusedSecretEvidence: + description: The UnusedSecretEvidence message. properties: - createdAt: - format: date-time - readOnly: false - type: string - deletedAt: - format: date-time - readOnly: false - type: string - form: - $ref: '#/components/schemas/c1.api.form.v1.Form' - id: - description: The unique identifier of this request schema. - readOnly: false - type: string - justificationVisibility: - description: Controls whether the justification field is shown or hidden on the request form. - enum: - - JUSTIFICATION_VISIBILITY_UNSPECIFIED - - JUSTIFICATION_VISIBILITY_SHOW - - JUSTIFICATION_VISIBILITY_HIDE - readOnly: false - type: string - x-speakeasy-unknown-values: allow - modifiedAt: + lastUsedAt: format: date-time - readOnly: false - type: string - title: Request Schema + type: + - string + - "null" + title: Unused Secret Evidence type: object - x-speakeasy-name-override: RequestSchema - c1.api.request_schema.v1.RequestSchemaServiceCreateEntitlementBindingRequest: - description: The request message for creating a single entitlement binding on a request schema. + x-speakeasy-name-override: UnusedSecretEvidence + c1.api.finding.v1.UnusedSecretType: + description: |- + UnusedSecretType: a secret-trait AppResource has not been used in over the + detector's staleness threshold. Target: AppResourceTarget. + title: Unused Secret Type + type: object + x-speakeasy-name-override: UnusedSecretType + c1.api.finding.v1.UpdateFindingRoutingRuleRequestInput: + description: The UpdateFindingRoutingRuleRequest message. properties: - entitlementRef: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - requestSchemaId: - description: The unique identifier of the request schema to bind the entitlement to. - readOnly: false - type: string - title: Request Schema Service Create Entitlement Binding Request + routingRule: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingRoutingRule' + - type: "null" + title: Update Finding Routing Rule Request type: object - x-speakeasy-name-override: RequestSchemaServiceCreateEntitlementBindingRequest - c1.api.request_schema.v1.RequestSchemaServiceCreateEntitlementBindingResponse: - description: The response message for creating a single entitlement binding. + x-speakeasy-name-override: UpdateFindingRoutingRuleRequest + c1.api.finding.v1.UpdateFindingRoutingRuleResponse: + description: The UpdateFindingRoutingRuleResponse message. properties: - entitlementRef: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - requestSchemaId: - description: The unique identifier of the request schema the entitlement was bound to. - readOnly: false - type: string - title: Request Schema Service Create Entitlement Binding Response + routingRule: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingRoutingRule' + - type: "null" + title: Update Finding Routing Rule Response type: object - x-speakeasy-name-override: RequestSchemaServiceCreateEntitlementBindingResponse - c1.api.request_schema.v1.RequestSchemaServiceCreateRequest: - description: The request message for creating a new request schema. + x-speakeasy-name-override: UpdateFindingRoutingRuleResponse + c1.api.finding.v1.UpdateFindingSettingsRequest: + description: The UpdateFindingSettingsRequest message. properties: - description: - description: An optional description of the request schema's purpose. - readOnly: false - type: string - fieldGroups: - description: Logical groupings of fields for display purposes. - items: - $ref: '#/components/schemas/c1.api.form.v1.FieldGroup' - nullable: true - readOnly: false - type: array - fieldRelationships: - description: Dependencies between fields that control conditional visibility or validation. - items: - $ref: '#/components/schemas/c1.api.form.v1.FieldRelationship' - nullable: true - readOnly: false - type: array - fields: - description: The form fields that users must fill out when requesting access. + settings: + description: |- + Applied as one atomic write, so an admin changing several types either + lands all of them or none. Empty is valid: a never-configured tenant's + "accept the defaults" save has nothing to diff, and the empty write still + creates the settings row. items: - $ref: '#/components/schemas/c1.api.form.v1.Field' - nullable: true - readOnly: false - type: array - justificationVisibility: - description: Controls whether the justification field is shown or hidden on the request form. - enum: - - JUSTIFICATION_VISIBILITY_UNSPECIFIED - - JUSTIFICATION_VISIBILITY_SHOW - - JUSTIFICATION_VISIBILITY_HIDE - readOnly: false - type: string - x-speakeasy-unknown-values: allow - name: - description: The human-readable name for the request schema. - readOnly: false - type: string - title: Request Schema Service Create Request + $ref: '#/components/schemas/c1.api.finding.v1.FindingSettingsEntry' + type: + - array + - "null" + title: Update Finding Settings Request type: object - x-speakeasy-name-override: RequestSchemaServiceCreateRequest - c1.api.request_schema.v1.RequestSchemaServiceCreateResponse: - description: The response message for creating a request schema. + x-speakeasy-name-override: UpdateFindingSettingsRequest + c1.api.finding.v1.UpdateFindingSettingsResponse: + description: The UpdateFindingSettingsResponse message. properties: - requestSchema: - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchema' - title: Request Schema Service Create Response - type: object - x-speakeasy-name-override: RequestSchemaServiceCreateResponse - c1.api.request_schema.v1.RequestSchemaServiceDeleteRequestInput: - description: The request message for deleting a request schema. - title: Request Schema Service Delete Request + list: + description: |- + The full catalog after the write, in the same shape ListFindingSettings + returns. + items: + $ref: '#/components/schemas/c1.api.finding.v1.FindingTypeSetting' + type: + - array + - "null" + title: Update Finding Settings Response type: object - x-speakeasy-name-override: RequestSchemaServiceDeleteRequest - c1.api.request_schema.v1.RequestSchemaServiceDeleteResponse: - description: The response message for deleting a request schema. - title: Request Schema Service Delete Response + x-speakeasy-name-override: UpdateFindingSettingsResponse + c1.api.finding.v1.UpdateFindingStateRequestInput: + description: | + The UpdateFindingStateRequest message. + + This message contains a oneof named action. Only a single field of the following list may be set at a time: + - snooze + - suppress + - acceptRisk + - unsuppress + - resolve + - reopen + properties: + acceptRisk: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.AcceptRiskAction' + - type: "null" + reopen: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.ReopenAction' + - type: "null" + resolve: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.ResolveAction' + - type: "null" + snooze: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.SnoozeAction' + - type: "null" + suppress: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.SuppressStateAction' + - type: "null" + unsuppress: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.UnsuppressAction' + - type: "null" + title: Update Finding State Request type: object - x-speakeasy-name-override: RequestSchemaServiceDeleteResponse - c1.api.request_schema.v1.RequestSchemaServiceFindBindingForAppEntitlementRequest: - description: The request message for finding which request schema is bound to a given app entitlement. + x-speakeasy-name-override: UpdateFindingStateRequest + c1.api.finding.v1.UpdateFindingStateResponse: + description: The UpdateFindingStateResponse message. properties: - entitlementRef: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - title: Request Schema Service Find Binding For App Entitlement Request + finding: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.Finding' + - type: "null" + title: Update Finding State Response type: object - x-speakeasy-name-override: RequestSchemaServiceFindBindingForAppEntitlementRequest - c1.api.request_schema.v1.RequestSchemaServiceFindBindingForAppEntitlementResponse: - description: The response message containing the binding for the specified app entitlement. + x-speakeasy-name-override: UpdateFindingStateResponse + c1.api.finding.v1.UpdateFindingTransformationRuleRequestInput: + description: The UpdateFindingTransformationRuleRequest message. properties: - entitlementRef: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - requestSchemaId: - description: The unique identifier of the request schema bound to this entitlement, if any. - readOnly: false - type: string - title: Request Schema Service Find Binding For App Entitlement Response + transformationRule: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingTransformationRule' + - type: "null" + title: Update Finding Transformation Rule Request type: object - x-speakeasy-name-override: RequestSchemaServiceFindBindingForAppEntitlementResponse - c1.api.request_schema.v1.RequestSchemaServiceGetResponse: - description: The response message for retrieving a request schema. + x-speakeasy-name-override: UpdateFindingTransformationRuleRequest + c1.api.finding.v1.UpdateFindingTransformationRuleResponse: + description: The UpdateFindingTransformationRuleResponse message. properties: - requestSchema: - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchema' - title: Request Schema Service Get Response + transformationRule: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.FindingTransformationRule' + - type: "null" + title: Update Finding Transformation Rule Response type: object - x-speakeasy-name-override: RequestSchemaServiceGetResponse - c1.api.request_schema.v1.RequestSchemaServiceRemoveEntitlementBindingRequest: - description: The request message for removing a single entitlement binding from a request schema. + x-speakeasy-name-override: UpdateFindingTransformationRuleResponse + c1.api.finding.v1.WebhookDispatcher: + description: WebhookDispatcher POSTs to a registered webhook (webhooks v3). properties: - entitlementRef: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - requestSchemaId: - description: The unique identifier of the request schema to remove the binding from. - readOnly: false + payloadTemplate: + description: Optional payload template; empty uses the default finding payload. type: string - title: Request Schema Service Remove Entitlement Binding Request - type: object - x-speakeasy-name-override: RequestSchemaServiceRemoveEntitlementBindingRequest - c1.api.request_schema.v1.RequestSchemaServiceRemoveEntitlementBindingResponse: - description: The response message for removing a single entitlement binding. - title: Request Schema Service Remove Entitlement Binding Response + webhookId: + description: ID of a registered webhook to POST to. + type: string + title: Webhook Dispatcher type: object - x-speakeasy-name-override: RequestSchemaServiceRemoveEntitlementBindingResponse - c1.api.request_schema.v1.RequestSchemaServiceUpdateRequestInput: - description: The request message for updating an existing request schema. + x-speakeasy-name-override: WebhookDispatcher + c1.api.form.v1.AdminProviderConfig: + description: The AdminProviderConfig message. properties: - requestSchema: - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchema' - updateMask: - nullable: true - readOnly: false + defaultValueCel: + description: The defaultValueCel field. type: string - title: Request Schema Service Update Request + showToUser: + description: The showToUser field. + type: boolean + title: Admin Provider Config type: object - x-speakeasy-name-override: RequestSchemaServiceUpdateRequest - c1.api.request_schema.v1.RequestSchemaServiceUpdateResponse: - description: The response message for updating a request schema. + x-speakeasy-name-override: AdminProviderConfig + c1.api.form.v1.AppResourceFilter: + description: The AppResourceFilter message. properties: - requestSchema: - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchema' - title: Request Schema Service Update Response + appId: + description: The appId field. + type: string + resourceTypeId: + description: The resourceTypeId field. + type: string + title: App Resource Filter type: object - x-speakeasy-name-override: RequestSchemaServiceUpdateResponse - c1.api.requestcatalog.v1.AppEntitlementWithUserBindings: - description: The AppEntitlementWithUserBindings message represents an app entitlement and its associated user bindings. + x-speakeasy-name-override: AppResourceFilter + c1.api.form.v1.AppUserFilter: + description: The AppUserFilter message. properties: - appEntitlementUserBindings: - description: An array of AppEntitlementUserBinding objects which represent the relationships that give app users access to the specific app entitlement. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBinding' - nullable: true - readOnly: false - type: array - entitlement: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementView' - title: App Entitlement With User Bindings + appId: + description: The appId field. + type: string + title: App User Filter type: object - x-speakeasy-name-override: AppEntitlementWithUserBindings - c1.api.requestcatalog.v1.BundleAutomation: + x-speakeasy-name-override: AppUserFilter + c1.api.form.v1.AtLeastOne: + description: The AtLeastOne message. + title: At Least One + type: object + x-speakeasy-name-override: AtLeastOne + c1.api.form.v1.BoolField: description: | - The BundleAutomation message. + The BoolField message. - This message contains a oneof named conditions. Only a single field of the following list may be set at a time: - - entitlements - - cel + This message contains a oneof named view. Only a single field of the following list may be set at a time: + - checkboxField + - toggleField properties: - cel: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomationRuleCEL' - circuitBreaker: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomationCircuitBreaker' - createTasks: - description: The createTasks field. - readOnly: false + checkboxField: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.CheckboxField' + - type: "null" + defaultValue: + description: The defaultValue field. type: boolean - createdAt: - format: date-time - readOnly: false - type: string - deletedAt: - format: date-time - readOnly: false - type: string - disableCircuitBreaker: - description: The disableCircuitBreaker field. - readOnly: false + rules: + oneOf: + - $ref: '#/components/schemas/validate.BoolRules' + - type: "null" + toggleField: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.ToggleField' + - type: "null" + title: Bool Field + type: object + x-speakeasy-name-override: BoolField + c1.api.form.v1.C1UserFilter: + description: |- + C1UserFilter is used to configure a picker for selecting ConductorOne users. + This is distinct from AppUserFilter which selects accounts within a connected app. + properties: + excludeUserIds: + description: Remove these users from the selectable set, after user_ids is applied. + items: + type: string + type: + - array + - "null" + includeDeactivated: + description: Make deactivated and deleted users selectable. Defaults to enabled-only. type: boolean - enabled: - description: The enabled field. - readOnly: false + userIds: + description: |- + Restrict the selectable set to these users. Empty means every user is selectable. + Capped at the number of refs SearchUsers accepts in one request. + items: + type: string + type: + - array + - "null" + title: C 1 User Filter + type: object + x-speakeasy-name-override: C1UserFilter + c1.api.form.v1.CheckboxField: + description: The CheckboxField message. + title: Checkbox Field + type: object + x-speakeasy-name-override: CheckboxField + c1.api.form.v1.ChipsField: + description: The ChipsField message. + title: Chips Field + type: object + x-speakeasy-name-override: ChipsField + c1.api.form.v1.DateField: + description: |- + DateField renders a date picker. The value is an ISO-8601 calendar date + ("YYYY-MM-DD") stored in the enclosing StringField's string value. + properties: + defaultToToday: + description: Default the field to the render date when the StringField has no default_value. type: boolean - entitlements: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomationRuleEntitlement' - requestCatalogId: - description: The requestCatalogId field. - readOnly: false - type: string - state: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomationLastRunState' - tenantId: - description: The tenantId field. - readOnly: false + maxDate: + description: Latest selectable date, inclusive, as "YYYY-MM-DD". Empty means unbounded. type: string - updatedAt: - format: date-time - readOnly: false + maxDaysFromToday: + description: |- + Latest selectable date expressed as an offset in days from the date the + form is rendered; negative is in the past. Set this to 365 to cap a date at + one year out. When both are set, the earlier of this and max_date applies. + Enforcement is one day slack in each direction: the picker anchors today at + the submitter's local midnight and the server anchors in UTC, so 365 admits + 366 days rather than reject a date the picker itself offered. + format: int32 + type: + - integer + - "null" + minDate: + description: Earliest selectable date, inclusive, as "YYYY-MM-DD". Empty means unbounded. type: string - title: Bundle Automation + minDaysFromToday: + description: |- + Earliest selectable date expressed as an offset in days from the date the + form is rendered; negative is in the past. Prefer this over min_date for a + rolling window, which would otherwise go stale. When both are set, the + later of the two applies. + format: int32 + type: + - integer + - "null" + title: Date Field type: object - x-speakeasy-name-override: BundleAutomation - c1.api.requestcatalog.v1.BundleAutomationCelEvaluationState: - description: The BundleAutomationCelEvaluationState message. + x-speakeasy-name-override: DateField + c1.api.form.v1.DependentOn: + description: |- + DependentOn means the fields in field_names are only valid if all fields + in dependency_field_names are also present properties: - errorMessage: - description: The errorMessage field. - readOnly: false - type: string - lastEvaluatedAt: - format: date-time - readOnly: false - type: string - matchedUsers: - description: The matchedUsers field. - format: int64 - readOnly: false - type: string - status: - description: The status field. - enum: - - BUNDLE_AUTOMATION_RUN_STATUS_UNSPECIFIED - - BUNDLE_AUTOMATION_RUN_STATUS_SUCCESS - - BUNDLE_AUTOMATION_RUN_STATUS_FAILURE - - BUNDLE_AUTOMATION_RUN_STATUS_IN_PROGRESS - - BUNDLE_AUTOMATION_RUN_STATUS_WAITING_FOR_APPROVAL - readOnly: false - type: string - x-speakeasy-unknown-values: allow - title: Bundle Automation Cel Evaluation State + dependencyFieldNames: + description: The fields that must be present for the primary field_names to be valid + items: + type: string + type: + - array + - "null" + title: Dependent On type: object - x-speakeasy-name-override: BundleAutomationCelEvaluationState - c1.api.requestcatalog.v1.BundleAutomationCircuitBreaker: - description: The BundleAutomationCircuitBreaker message. + x-speakeasy-name-override: DependentOn + c1.api.form.v1.Field: + description: | + A field is a single input meant to collect a piece of data from a user + + This message contains a oneof named type. Only a single field of the following list may be set at a time: + - stringField + - boolField + - stringSliceField + - int64Field + - fileField + - oauth2Field + - stringMapField + + + This message contains a oneof named provider_config. Only a single field of the following list may be set at a time: + - userConfig + - adminConfig + - sharedConfig properties: - removedMembersThresholdPercentage: - description: The removedMembersThresholdPercentage field. - format: int64 - readOnly: false + adminConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.AdminProviderConfig' + - type: "null" + boolField: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.BoolField' + - type: "null" + description: + description: The description field. type: string - state: - description: The state field. - enum: - - CIRCUIT_BREAKER_STATE_UNSPECIFIED - - CIRCUIT_BREAKER_STATE_TRIGGERED - - CIRCUIT_BREAKER_STATE_BYPASS - - CIRCUIT_BREAKER_STATE_SUPPORT_DISABLED - readOnly: false + displayName: + description: The displayName field. type: string - x-speakeasy-unknown-values: allow - updatedAt: - format: date-time - readOnly: false + fileField: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.FileField' + - type: "null" + int64Field: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.Int64Field' + - type: "null" + name: + description: The name field. type: string - userRef: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - title: Bundle Automation Circuit Breaker + oauth2Field: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.Oauth2Field' + - type: "null" + readOnly: + description: When true, this field is displayed to the user but cannot be edited. + type: boolean + required: + description: The required field. + type: boolean + sharedConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.SharedProviderConfig' + - type: "null" + stringField: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.StringField' + - type: "null" + stringMapField: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.StringMapField' + - type: "null" + stringSliceField: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.StringSliceField' + - type: "null" + userConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.UserProviderConfig' + - type: "null" + title: Field type: object - x-speakeasy-name-override: BundleAutomationCircuitBreaker - c1.api.requestcatalog.v1.BundleAutomationLastRunState: - description: The BundleAutomationLastRunState message. + x-speakeasy-name-override: FormField + c1.api.form.v1.FieldGroup: + description: The FieldGroup message. properties: - celEvaluation: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomationCelEvaluationState' - errorMessage: - description: The errorMessage field. - readOnly: false - type: string - lastRunAt: - format: date-time - readOnly: false + default: + description: The default field. + type: boolean + displayName: + description: The displayName field. type: string - status: - description: The status field. - enum: - - BUNDLE_AUTOMATION_RUN_STATUS_UNSPECIFIED - - BUNDLE_AUTOMATION_RUN_STATUS_SUCCESS - - BUNDLE_AUTOMATION_RUN_STATUS_FAILURE - - BUNDLE_AUTOMATION_RUN_STATUS_IN_PROGRESS - - BUNDLE_AUTOMATION_RUN_STATUS_WAITING_FOR_APPROVAL - readOnly: false + fields: + description: The fields field. + items: + type: string + type: + - array + - "null" + helpText: + description: The helpText field. type: string - x-speakeasy-unknown-values: allow - title: Bundle Automation Last Run State - type: object - x-speakeasy-name-override: BundleAutomationLastRunState - c1.api.requestcatalog.v1.BundleAutomationRuleCEL: - description: The BundleAutomationRuleCEL message. - nullable: true - properties: - expression: - description: The expression field. - readOnly: false + name: + description: The name field. type: string - title: Bundle Automation Rule Cel + title: Field Group type: object - x-speakeasy-name-override: BundleAutomationRuleCEL - c1.api.requestcatalog.v1.BundleAutomationRuleEntitlement: - description: The BundleAutomationRuleEntitlement message. - nullable: true + x-speakeasy-name-override: FormFieldGroup + c1.api.form.v1.FieldRelationship: + description: | + FieldRelationships can be used during form validation, or they can represent + information that is necessary to when it comes to visually rendering the form + + This message contains a oneof named kind. Only a single field of the following list may be set at a time: + - requiredTogether + - atLeastOne + - mutuallyExclusive + - dependentOn properties: - entitlementRefs: - description: The entitlementRefs field. + atLeastOne: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.AtLeastOne' + - type: "null" + dependentOn: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.DependentOn' + - type: "null" + fieldNames: + description: The names of the fields that share this relationship items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - title: Bundle Automation Rule Entitlement + type: string + type: + - array + - "null" + mutuallyExclusive: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.MutuallyExclusive' + - type: "null" + requiredTogether: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.RequiredTogether' + - type: "null" + title: Field Relationship type: object - x-speakeasy-name-override: BundleAutomationRuleEntitlement - c1.api.requestcatalog.v1.CreateBundleAutomationRequestInput: + x-speakeasy-name-override: FieldRelationship + c1.api.form.v1.FileField: description: | - The request message for creating a new bundle automation rule on a catalog. + The FileField message. - This message contains a oneof named conditions. Only a single field of the following list may be set at a time: - - entitlements - - cel - properties: - cel: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomationRuleCEL' - createTasks: - description: Whether to create access request tasks for matched users instead of granting directly. - readOnly: false - type: boolean - disableCircuitBreaker: - description: Whether to disable the circuit breaker that pauses the automation when excessive membership changes are detected. - readOnly: false - type: boolean - enabled: - description: Whether the automation should actively run on its schedule. - readOnly: false - type: boolean - entitlements: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomationRuleEntitlement' - title: Create Bundle Automation Request - type: object - x-speakeasy-name-override: CreateBundleAutomationRequest - c1.api.requestcatalog.v1.DeleteBundleAutomationRequestInput: - description: The request message for deleting a bundle automation from a catalog. - title: Delete Bundle Automation Request - type: object - x-speakeasy-name-override: DeleteBundleAutomationRequest - c1.api.requestcatalog.v1.DeleteBundleAutomationResponse: - description: The response message for deleting a bundle automation. - title: Delete Bundle Automation Response - type: object - x-speakeasy-name-override: DeleteBundleAutomationResponse - c1.api.requestcatalog.v1.ForceRunBundleAutomationRequestInput: - description: The request message for triggering an immediate bundle automation run. + This message contains a oneof named view. Only a single field of the following list may be set at a time: + - fileInputField properties: - refs: - description: Optional entitlement references to scope the run to specific entitlements. + acceptedFileTypes: + description: The acceptedFileTypes field. items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - title: Force Run Bundle Automation Request + type: string + type: + - array + - "null" + fileInputField: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.FileInputField' + - type: "null" + maxFileSize: + description: The maxFileSize field. + format: int64 + type: + - string + - "null" + title: File Field type: object - x-speakeasy-name-override: ForceRunBundleAutomationRequest - c1.api.requestcatalog.v1.ForceRunBundleAutomationResponse: - description: The response message for triggering a bundle automation run. - title: Force Run Bundle Automation Response + x-speakeasy-name-override: FileField + c1.api.form.v1.FileInputField: + description: The FileInputField message. + title: File Input Field type: object - x-speakeasy-name-override: ForceRunBundleAutomationResponse - c1.api.requestcatalog.v1.RequestCatalog: - description: The RequestCatalog is used for managing which entitlements are requestable, and who can request them. + x-speakeasy-name-override: FileInputField + c1.api.form.v1.Form: + description: A form is a collection of fields to be filled out by a user properties: - accessEntitlements: - description: An array of app entitlements that, if the user has, can view the contents of this catalog. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlement' - nullable: true - readOnly: false - type: array - createdAt: - format: date-time - readOnly: true - type: string - createdByUserId: - description: The id of the user this request catalog was created by. - readOnly: false - type: string - deletedAt: - format: date-time - readOnly: true - type: string description: - description: The description of the request catalog. - readOnly: false + description: The description field. type: string displayName: - description: The display name of the request catalog. - readOnly: false - type: string - enrollmentBehavior: - description: Defines how to handle the request policies of the entitlements in the catalog during enrollment. - enum: - - REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_UNSPECIFIED - - REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_BYPASS_ENTITLEMENT_REQUEST_POLICY - - REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_ENFORCE_ENTITLEMENT_REQUEST_POLICY - readOnly: false - type: string - x-speakeasy-unknown-values: allow - grantPolicyId: - description: |- - The ID of the policy to use for access requests in this catalog. - This is different from the catalog AppEntitlement's grant_policy_id, which is used for catalog membership grants. - readOnly: false + description: The displayName field. type: string + fieldGroups: + description: The fieldGroups field. + items: + $ref: '#/components/schemas/c1.api.form.v1.FieldGroup' + type: + - array + - "null" + fieldRelationships: + description: The fieldRelationships field. + items: + $ref: '#/components/schemas/c1.api.form.v1.FieldRelationship' + type: + - array + - "null" + fields: + description: The fields field. + items: + $ref: '#/components/schemas/c1.api.form.v1.Field' + type: + - array + - "null" id: - description: The id of the request catalog. - readOnly: false - type: string - published: - description: Whether or not this catalog is published. - readOnly: false - type: boolean - requestBundle: - description: Whether all the entitlements in the catalog can be requests at once. Your tenant must have the bundles feature to use this. - readOnly: false - type: boolean - unenrollmentBehavior: - description: Defines how to handle the revocation of the entitlements in the catalog during unenrollment. - enum: - - REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_UNSPECIFIED - - REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_LEAVE_ACCESS_AS_IS - - REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_REVOKE_ALL - - REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_REVOKE_UNJUSTIFIED - readOnly: false - type: string - x-speakeasy-unknown-values: allow - unenrollmentEntitlementBehavior: - description: Defines how to handle the revoke policies of the entitlements in the catalog during unenrollment. - enum: - - REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_UNSPECIFIED - - REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_BYPASS - - REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_ENFORCE - readOnly: false - type: string - x-speakeasy-unknown-values: allow - updatedAt: - format: date-time - readOnly: true + description: The id field. type: string - visibleToEveryone: - description: If this is true, the access entitlement requirement is ignored. - readOnly: false - type: boolean - title: Request Catalog + title: Form type: object - x-speakeasy-entity: Access_Profile - x-speakeasy-name-override: RequestCatalog - c1.api.requestcatalog.v1.RequestCatalogExpandMask: - description: The RequestCatalogExpandMask includes the paths in the catalog view to expand in the return value of this call. + x-speakeasy-entity: Request_Schema + x-speakeasy-name-override: RequestSchemaForm + c1.api.form.v1.Int64Field: + description: | + The Int64Field message. + + This message contains a oneof named view. Only a single field of the following list may be set at a time: + - numberField properties: - paths: - description: An array of paths to be expanded in the response. May be any combination of "*", "created_by_user_id", "app_ids", and "access_entitlements". - items: - type: string - nullable: true - readOnly: false - type: array - title: Request Catalog Expand Mask - type: object - x-speakeasy-name-override: RequestCatalogExpandMask - c1.api.requestcatalog.v1.RequestCatalogManagementServiceAddAccessEntitlementsRequestInput: - description: |- - The RequestCatalogManagementServiceAddAccessEntitlementsRequest message is used to add access entitlements to a request - catalog to determine which users can view the request catalog. - properties: - accessEntitlements: - description: List of entitlements to add to the request catalog as access entitlements. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - required: - - accessEntitlements - title: Request Catalog Management Service Add Access Entitlements Request - type: object - x-speakeasy-entity: Access_Profile_Visibility_Bindings - x-speakeasy-name-override: RequestCatalogManagementServiceAddAccessEntitlementsRequest - c1.api.requestcatalog.v1.RequestCatalogManagementServiceAddAccessEntitlementsResponse: - description: Empty response with a status code indicating success. - title: Request Catalog Management Service Add Access Entitlements Response - type: object - x-speakeasy-name-override: RequestCatalogManagementServiceAddAccessEntitlementsResponse - c1.api.requestcatalog.v1.RequestCatalogManagementServiceAddAppEntitlementsRequestInput: - description: The RequestCatalogManagementServiceAddAppEntitlementsRequest object is used to add app requestable app entitlements to a request catalog. - properties: - appEntitlements: - description: List of entitlements to add to the request catalog. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - createRequests: - description: |- - Whether or not to create requests for newly added entitlements for users in the catalog. - By default, this is false and no requests are created. - readOnly: false - type: boolean - required: - - appEntitlements - title: Request Catalog Management Service Add App Entitlements Request + defaultValue: + description: The defaultValue field. + format: int64 + type: + - string + - "null" + numberField: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.NumberField' + - type: "null" + placeholder: + description: The placeholder field. + type: string + rules: + oneOf: + - $ref: '#/components/schemas/validate.Int64Rules' + - type: "null" + title: Int 64 Field type: object - x-speakeasy-entity: Access_Profile_Requestable_Entries - x-speakeasy-name-override: RequestCatalogManagementServiceAddAppEntitlementsRequest - c1.api.requestcatalog.v1.RequestCatalogManagementServiceAddAppEntitlementsResponse: - description: Empty response with a status code indicating success. - title: Request Catalog Management Service Add App Entitlements Response + x-speakeasy-name-override: Int64Field + c1.api.form.v1.MutuallyExclusive: + description: The MutuallyExclusive message. + title: Mutually Exclusive type: object - x-speakeasy-name-override: RequestCatalogManagementServiceAddAppEntitlementsResponse - c1.api.requestcatalog.v1.RequestCatalogManagementServiceCreateRequest: - description: Create a request catalog. + x-speakeasy-name-override: MutuallyExclusive + c1.api.form.v1.NumberField: + description: The NumberField message. properties: - description: - description: The description of the new request catalog. - readOnly: false - type: string - displayName: - description: The display name of the new request catalog. - readOnly: false - type: string - enrollmentBehavior: - description: Defines how to handle the request policies of the entitlements in the catalog during enrollment. - enum: - - REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_UNSPECIFIED - - REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_BYPASS_ENTITLEMENT_REQUEST_POLICY - - REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_ENFORCE_ENTITLEMENT_REQUEST_POLICY - readOnly: false - type: string - x-speakeasy-unknown-values: allow - expandMask: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogExpandMask' - grantPolicyId: - description: The ID of the grant policy for access requests in this catalog. - readOnly: false + maxValue: + description: The maxValue field. + format: int64 type: string - published: - description: Whether or not the new catalog should be created as published. - readOnly: false - type: boolean - requestBundle: - description: Whether all the entitlements in the catalog can be requests at once. Your tenant must have the bundles feature to use this. - readOnly: false - type: boolean - unenrollmentBehavior: - description: Defines how to handle the revocation of the entitlements in the catalog during unenrollment. - enum: - - REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_UNSPECIFIED - - REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_LEAVE_ACCESS_AS_IS - - REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_REVOKE_ALL - - REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_REVOKE_UNJUSTIFIED - readOnly: false + minValue: + description: The minValue field. + format: int64 type: string - x-speakeasy-unknown-values: allow - unenrollmentEntitlementBehavior: - description: Defines how to handle the revoke policies of the entitlements in the catalog during unenrollment. - enum: - - REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_UNSPECIFIED - - REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_BYPASS - - REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_ENFORCE - readOnly: false + step: + description: The step field. + format: int64 type: string - x-speakeasy-unknown-values: allow - visibleToEveryone: - description: Whether or not the new catalog is visible to everyone by default. - readOnly: false - type: boolean - required: - - displayName - title: Request Catalog Management Service Create Request - type: object - x-speakeasy-entity: Access_Profile - x-speakeasy-name-override: RequestCatalogManagementServiceCreateRequest - c1.api.requestcatalog.v1.RequestCatalogManagementServiceCreateRequestableEntryRequestInput: - description: Create a single requestable entry - properties: - createRequests: - description: |- - Whether or not to create requests for newly added entitlement for users in the catalog. - By default, this is false and no requests are created. - readOnly: false - type: boolean - title: Request Catalog Management Service Create Requestable Entry Request + title: Number Field type: object - x-speakeasy-entity: Access_Profile_Requestable_Entry - x-speakeasy-name-override: RequestCatalogManagementServiceCreateRequestableEntryRequest - c1.api.requestcatalog.v1.RequestCatalogManagementServiceCreateRequestableEntryResponse: - description: Response containing the created requestable entry + x-speakeasy-name-override: NumberField + c1.api.form.v1.Oauth2Field: + description: | + The Oauth2Field message. + + This message contains a oneof named view. Only a single field of the following list may be set at a time: + - oauth2FieldView properties: - requestableEntry: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestableEntry' - title: Request Catalog Management Service Create Requestable Entry Response - type: object - x-speakeasy-name-override: RequestCatalogManagementServiceCreateRequestableEntryResponse - c1.api.requestcatalog.v1.RequestCatalogManagementServiceDeleteRequestInput: - description: Delete a request catalog by Id. It uses URL value for input. - title: Request Catalog Management Service Delete Request - type: object - x-speakeasy-entity: Access_Profile - x-speakeasy-name-override: RequestCatalogManagementServiceDeleteRequest - c1.api.requestcatalog.v1.RequestCatalogManagementServiceDeleteRequestableEntryRequestInput: - description: Delete a single requestable entry - title: Request Catalog Management Service Delete Requestable Entry Request + oauth2FieldView: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.Oauth2FieldView' + - type: "null" + title: Oauth 2 Field type: object - x-speakeasy-entity: Access_Profile_Requestable_Entry - x-speakeasy-name-override: RequestCatalogManagementServiceDeleteRequestableEntryRequest - c1.api.requestcatalog.v1.RequestCatalogManagementServiceDeleteRequestableEntryResponse: - description: Empty response for delete operation - title: Request Catalog Management Service Delete Requestable Entry Response + x-speakeasy-name-override: Oauth2Field + c1.api.form.v1.Oauth2FieldView: + description: The Oauth2FieldView message. + title: Oauth 2 Field View type: object - x-speakeasy-name-override: RequestCatalogManagementServiceDeleteRequestableEntryResponse - c1.api.requestcatalog.v1.RequestCatalogManagementServiceDeleteResponse: - description: Empty response with a status code indicating success. - title: Request Catalog Management Service Delete Response + x-speakeasy-name-override: Oauth2FieldView + c1.api.form.v1.PasswordField: + description: The PasswordField message. + title: Password Field type: object - x-speakeasy-name-override: RequestCatalogManagementServiceDeleteResponse - c1.api.requestcatalog.v1.RequestCatalogManagementServiceGetRequestableEntryResponse: - description: Response containing the requested entry + x-speakeasy-name-override: PasswordField + c1.api.form.v1.PickerField: + description: | + The PickerField message. + + This message contains a oneof named type. Only a single field of the following list may be set at a time: + - appUserPicker + - resourcePicker + - c1UserPicker properties: - requestableEntry: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestableEntry' - title: Request Catalog Management Service Get Requestable Entry Response + appUserPicker: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.AppUserFilter' + - type: "null" + c1UserPicker: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.C1UserFilter' + - type: "null" + resourcePicker: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.AppResourceFilter' + - type: "null" + title: Picker Field type: object - x-speakeasy-name-override: RequestCatalogManagementServiceGetRequestableEntryResponse - c1.api.requestcatalog.v1.RequestCatalogManagementServiceGetResponse: - description: The request catalog management service get response returns a request catalog view with the expanded items in the expanded array indicated by the expand mask in the request. - properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - requestCatalogView: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogView' - title: Request Catalog Management Service Get Response + x-speakeasy-name-override: PickerField + c1.api.form.v1.RequiredTogether: + description: The RequiredTogether message. + title: Required Together type: object - x-speakeasy-name-override: RequestCatalogManagementServiceGetResponse - c1.api.requestcatalog.v1.RequestCatalogManagementServiceListAllEntitlementIdsPerCatalogResponse: - description: The response message containing all requestable entitlement references in the catalog. + x-speakeasy-name-override: RequiredTogether + c1.api.form.v1.SelectField: + description: The SelectField message. properties: - refs: - description: The complete list of app entitlement references in this catalog. + options: + description: The options field. items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - title: Request Catalog Management Service List All Entitlement Ids Per Catalog Response + $ref: '#/components/schemas/c1.api.form.v1.SelectOption' + type: + - array + - "null" + type: + description: The type field. + enum: + - SELECT_TYPE_UNSPECIFIED + - SELECT_TYPE_DROPDOWN + - SELECT_TYPE_RADIO + - SELECT_TYPE_BUTTONS + type: string + x-speakeasy-unknown-values: allow + title: Select Field type: object - x-speakeasy-name-override: RequestCatalogManagementServiceListAllEntitlementIdsPerCatalogResponse - c1.api.requestcatalog.v1.RequestCatalogManagementServiceListEntitlementsForAccessResponse: - description: The RequestCatalogManagementServiceListEntitlementsForAccessResponse message contains a list of results and a nextPageToken if applicable. + x-speakeasy-name-override: SelectField + c1.api.form.v1.SelectOption: + description: The SelectOption message. properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - list: - description: The list of results containing up to X results, where X is the page size defined in the request. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementView' - nullable: true - readOnly: false - type: array - nextPageToken: - description: |- - The nextPageToken is shown for the next page if the number of results is larger than the max page size. - The server returns one page of results and the nextPageToken until all results are retreived. - To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + description: + description: Used for type BUTTONS type: string - title: Request Catalog Management Service List Entitlements For Access Response + displayName: + description: The displayName field. + type: string + value: + description: The value field. + type: string + title: Select Option type: object - x-speakeasy-name-override: RequestCatalogManagementServiceListEntitlementsForAccessResponse - c1.api.requestcatalog.v1.RequestCatalogManagementServiceListEntitlementsPerCatalogResponse: - description: The RequestCatalogManagementServiceListEntitlementsPerCatalogResponse message contains a list of results and a nextPageToken if applicable. + x-speakeasy-name-override: SelectOption + c1.api.form.v1.SharedProviderConfig: + description: The SharedProviderConfig message. properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - list: - description: The list of results containing up to X results, where X is the page size defined in the request. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementView' - nullable: true - readOnly: false - type: array - nextPageToken: - description: |- - The nextPageToken is shown for the next page if the number of results is larger than the max page size. - The server returns one page of results and the nextPageToken until all results are retreived. - To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + defaultValueCel: + description: The defaultValueCel field. type: string - title: Request Catalog Management Service List Entitlements Per Catalog Response + inputTransformationCel: + description: The inputTransformationCel field. + type: string + lockDefaultValues: + description: The lockDefaultValues field. + type: boolean + title: Shared Provider Config type: object - x-speakeasy-name-override: RequestCatalogManagementServiceListEntitlementsPerCatalogResponse - c1.api.requestcatalog.v1.RequestCatalogManagementServiceListResponse: - description: The RequestCatalogManagementServiceListResponse message. + x-speakeasy-name-override: SharedProviderConfig + c1.api.form.v1.StringField: + description: | + The StringField message. + + This message contains a oneof named view. Only a single field of the following list may be set at a time: + - textField + - passwordField + - selectField + - pickerField + - dateField properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - list: - description: The list of request catalogs. - items: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogView' - nullable: true - readOnly: false - type: array - nextPageToken: - description: |- - The nextPageToken is shown for the next page if the number of results is larger than the max page size. - The server returns one page of results and the nextPageToken until all results are retreived. - To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + dateField: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.DateField' + - type: "null" + defaultValue: + description: The defaultValue field. type: string - title: Request Catalog Management Service List Response + passwordField: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.PasswordField' + - type: "null" + pickerField: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.PickerField' + - type: "null" + placeholder: + description: The placeholder field. + type: string + rules: + oneOf: + - $ref: '#/components/schemas/validate.StringRules' + - type: "null" + selectField: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.SelectField' + - type: "null" + textField: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.TextField' + - type: "null" + title: String Field type: object - x-speakeasy-name-override: RequestCatalogManagementServiceListResponse - c1.api.requestcatalog.v1.RequestCatalogManagementServiceRemoveAccessEntitlementsRequestInput: - description: |- - The RequestCatalogManagementServiceRemoveAccessEntitlementsRequest message is used to remove access entitlements from a request catalog. - The access entitlements are used to determine which users can view the request catalog. + x-speakeasy-name-override: FormStringField + c1.api.form.v1.StringMapField: + description: The StringMapField message. properties: - accessEntitlements: - description: The list of access entitlements to remove from the catalog. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - title: Request Catalog Management Service Remove Access Entitlements Request + defaultValue: + additionalProperties: + type: string + description: The defaultValue field. + type: object + rules: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.StringMapRules' + - type: "null" + title: String Map Field type: object - x-speakeasy-entity: Access_Profile_Visibility_Bindings - x-speakeasy-name-override: RequestCatalogManagementServiceRemoveAccessEntitlementsRequest - c1.api.requestcatalog.v1.RequestCatalogManagementServiceRemoveAccessEntitlementsResponse: - description: Empty response with a status code indicating success. - title: Request Catalog Management Service Remove Access Entitlements Response + x-speakeasy-name-override: FormStringMapField + c1.api.form.v1.StringMapRules: + description: The StringMapRules message. + properties: + isRequired: + description: The isRequired field. + type: boolean + validateEmpty: + description: The validateEmpty field. + type: boolean + title: String Map Rules type: object - x-speakeasy-name-override: RequestCatalogManagementServiceRemoveAccessEntitlementsResponse - c1.api.requestcatalog.v1.RequestCatalogManagementServiceRemoveAppEntitlementsRequestInput: - description: The RequestCatalogManagementServiceRemoveAppEntitlementsRequest message is used to remove app entitlements from a request catalog. + x-speakeasy-name-override: StringMapRules + c1.api.form.v1.StringSliceField: + description: | + The StringSliceField message. + + This message contains a oneof named view. Only a single field of the following list may be set at a time: + - chipsField + - pickerField properties: - appEntitlements: - description: The list of app entitlements to remove from the catalog. + chipsField: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.ChipsField' + - type: "null" + defaultValues: + description: The defaultValues field. items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - title: Request Catalog Management Service Remove App Entitlements Request - type: object - x-speakeasy-entity: Access_Profile_Requestable_Entries - x-speakeasy-name-override: RequestCatalogManagementServiceRemoveAppEntitlementsRequest - c1.api.requestcatalog.v1.RequestCatalogManagementServiceRemoveAppEntitlementsResponse: - description: Empty response with a status code indicating success - title: Request Catalog Management Service Remove App Entitlements Response + type: string + type: + - array + - "null" + pickerField: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.PickerField' + - type: "null" + placeholder: + description: The placeholder field. + type: string + rules: + oneOf: + - $ref: '#/components/schemas/validate.RepeatedRules' + - type: "null" + title: String Slice Field type: object - x-speakeasy-name-override: RequestCatalogManagementServiceRemoveAppEntitlementsResponse - c1.api.requestcatalog.v1.RequestCatalogManagementServiceUpdateAppEntitlementsRequestInput: - description: The RequestCatalogManagementServiceUpdateAppEntitlementsRequest object is used to update app entitlements to a request catalog id. + x-speakeasy-name-override: StringSliceField + c1.api.form.v1.TextField: + description: The TextField message. properties: - appEntitlements: - description: The entitlement to get from the request catalog. - items: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - nullable: true - readOnly: false - type: array - required: - - appEntitlements - title: Request Catalog Management Service Update App Entitlements Request + multiline: + description: The multiline field. + type: boolean + suffix: + description: Static text displayed as an end adornment (e.g. ".example.com" for domain fields). + type: + - string + - "null" + title: Text Field type: object - x-speakeasy-entity: Access_Profile_Requestable_Entries - x-speakeasy-name-override: RequestCatalogManagementServiceUpdateAppEntitlementsRequest - c1.api.requestcatalog.v1.RequestCatalogManagementServiceUpdateAppEntitlementsResponse: - description: The RequestCatalogManagementServiceUpdateAppEntitlementsResponse object is is the response from UpdateAppEntitlements endpoint. - title: Request Catalog Management Service Update App Entitlements Response + x-speakeasy-name-override: TextField + c1.api.form.v1.ToggleField: + description: The ToggleField message. + title: Toggle Field type: object - x-speakeasy-name-override: RequestCatalogManagementServiceUpdateAppEntitlementsResponse - c1.api.requestcatalog.v1.RequestCatalogManagementServiceUpdateRequestInput: - description: Update a request catalog object by ID. + x-speakeasy-name-override: ToggleField + c1.api.form.v1.UserProviderConfig: + description: The UserProviderConfig message. properties: - catalog: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalog' - expandMask: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogExpandMask' - updateMask: - nullable: true - readOnly: false + inputTransformationCel: + description: The inputTransformationCel field. type: string - title: Request Catalog Management Service Update Request + title: User Provider Config type: object - x-speakeasy-name-override: RequestCatalogManagementServiceUpdateRequest - c1.api.requestcatalog.v1.RequestCatalogSearchServiceSearchEntitlementsRequest: - description: The RequestCatalogSearchServiceSearchEntitlementsRequest searches entitlements, but only ones that are available to you through the open catalogs. + x-speakeasy-name-override: UserProviderConfig + c1.api.functions.v1.Function: + description: Function represents a customer-provided code extension in the API properties: - appDisplayName: - description: Search entitlements that belong to this app name (exact match). - readOnly: false + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + description: + description: The description field. type: string - entitlementAlias: - description: Search for entitlements with this alias (exact match). - readOnly: false + displayName: + description: The displayName field. type: string - expandMask: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementExpandMask' - grantedStatus: - description: Search entitlements with this granted status for your signed in user. + functionType: + description: The functionType field. enum: - - UNSPECIFIED - - ALL - - GRANTED - - NOT_GRANTED - readOnly: false + - FUNCTION_TYPE_UNSPECIFIED + - FUNCTION_TYPE_ANY + - FUNCTION_TYPE_CODE_MODE type: string x-speakeasy-unknown-values: allow - includeDeleted: - description: Include deleted entitlements - readOnly: false + head: + description: The head field. + type: string + hookRefs: + description: |- + IDs of every non-deleted hook that still references this function. + Read-only: maintained by the Hook API, not by CreateFunction/UpdateFunction. + Non-empty means DeleteFunction will refuse to delete until these are + removed or retargeted. + items: + type: string + readOnly: true + type: + - array + - "null" + id: + description: The id field. + type: string + isDraft: + description: The isDraft field. type: boolean - pageSize: - description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) + outboundNetworkAllowlist: + description: The outboundNetworkAllowlist field. + items: + type: string + type: + - array + - "null" + provisionedConcurrency: + description: |- + Number of pre-warmed Lambda instances. 0 (default) leaves the function + cold-started on first invoke. > 0 reserves and provisions that many + execution environments via AWS Lambda provisioned concurrency. + Ignored for FUNCTION_TYPE_CODE_MODE functions — that value is driven + by AIGovernanceSettings.code_mode_concurrency. format: int32 - readOnly: false type: integer - pageToken: - description: The pageToken field. - readOnly: false - type: string - query: - description: Fuzzy search the display name of resource types. - readOnly: false + publishedCommitId: + description: The publishedCommitId field. type: string - title: Request Catalog Search Service Search Entitlements Request - type: object - x-speakeasy-name-override: RequestCatalogSearchServiceSearchEntitlementsRequest - c1.api.requestcatalog.v1.RequestCatalogSearchServiceSearchEntitlementsResponse: - description: The RequestCatalogSearchServiceSearchEntitlementsResponse message contains a list of results and a nextPageToken if applicable. - properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - list: - description: The list of results containing up to X results, where X is the page size defined in the request. + scopedRoleIds: + description: |- + Scoped role IDs define the permissions granted to this function when calling + ConductorOne APIs. These are role IDs (not service roles) that get resolved + to their service roles at authentication time. + + Currently only the "Read-Only Administrator" role (system:viewer) is supported. + The role ID can be obtained from the roles API. items: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.AppEntitlementWithUserBindings' - nullable: true - readOnly: false - type: array - nextPageToken: + type: string + type: + - array + - "null" + secret: + additionalProperties: + type: string + description: The secret field. + type: object + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + useSpn: description: |- - The nextPageToken is shown for the next page if the number of results is larger than the max page size. - The server returns one page of results and the nextPageToken until all results are retreived. - To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false - type: string - title: Request Catalog Search Service Search Entitlements Response + FN-347 transition flag. When true, the function authenticates to c1-api + as user: via the AssumeIdentity token exchange using its + ServicePrincipalBinding; when false, it authenticates as + function:. Read-only from clients: set by CreateFunction (when the + tenant has completed the FunctionsToSPN migration) and by the migration + itself, never by UpdateFunction. Retired once all functions are on SPN. + readOnly: true + type: boolean + workflowTemplateRefs: + description: |- + IDs of every non-deleted workflow template whose CallFunction step still + references this function. Read-only, same semantics as hook_refs. + items: + type: string + readOnly: true + type: + - array + - "null" + title: Function type: object - x-speakeasy-name-override: RequestCatalogSearchServiceSearchEntitlementsResponse - c1.api.requestcatalog.v1.RequestCatalogView: - description: The request catalog view contains the serialized request catalog and paths to objects referenced by the request catalog. + x-speakeasy-entity: Function + x-speakeasy-name-override: Function + c1.api.functions.v1.FunctionCommit: + description: FunctionCommit represents a single commit in a function's history properties: - accessEntitlementsPath: - description: JSONPATH expression indicating the location of the access entitlement objects, that the request catalog allows users to request, in the array. - readOnly: false + author: + description: The author field. type: string - createdByUserPath: - description: JSONPATH expression indicating the location of the User object, that created the request catalog, in the array. - readOnly: false + createdAt: + format: date-time + type: + - string + - "null" + functionId: + description: The functionId field. type: string - memberCount: - description: Total number of the members of the catalog - format: int64 - readOnly: false + id: + description: The id field. type: string - requestCatalog: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalog' - title: Request Catalog View + message: + description: The message field. + type: string + title: Function Commit type: object - x-speakeasy-name-override: RequestCatalogView - c1.api.requestcatalog.v1.RequestableEntry: - description: A requestable entry in a catalog + x-speakeasy-name-override: FunctionCommit + c1.api.functions.v1.FunctionInvocation: + description: The FunctionInvocation message. properties: - appId: - description: The ID of the app that contains the entitlement - readOnly: false + commitId: + description: The commitId field. type: string - catalogId: - description: The ID of the access profile (catalog) - readOnly: false + createdAt: + format: date-time + type: + - string + - "null" + error: + description: The error field. type: string - entitlementId: - description: The ID of the entitlement - readOnly: false + functionId: + description: The functionId field. type: string - title: Requestable Entry - type: object - x-speakeasy-name-override: RequestableEntry - c1.api.requestcatalog.v1.ResumePausedBundleAutomationRequestInput: - description: The request message for resuming a paused bundle automation. - title: Resume Paused Bundle Automation Request - type: object - x-speakeasy-name-override: ResumePausedBundleAutomationRequest - c1.api.requestcatalog.v1.ResumePausedBundleAutomationResponse: - description: The response message for resuming a paused bundle automation. - title: Resume Paused Bundle Automation Response - type: object - x-speakeasy-name-override: ResumePausedBundleAutomationResponse - c1.api.requestcatalog.v1.SetBundleAutomationRequestInput: - description: | - The request message for creating or updating a bundle automation rule on a catalog. - - This message contains a oneof named conditions. Only a single field of the following list may be set at a time: - - entitlements - - cel - properties: - cel: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomationRuleCEL' - createTasks: - description: Whether to create access request tasks for matched users instead of granting directly. - readOnly: false - type: boolean - disableCircuitBreaker: - description: Whether to disable the circuit breaker that pauses the automation when excessive membership changes are detected. - readOnly: false - type: boolean - enabled: - description: Whether the automation should actively run on its schedule. - readOnly: false - type: boolean - entitlements: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomationRuleEntitlement' - title: Set Bundle Automation Request - type: object - x-speakeasy-name-override: SetBundleAutomationRequest - c1.api.role_mining_management.v1.CohortHintInput: - description: The CohortHintInput message. - properties: - attribute: - description: The user attribute name to use for cohort grouping (e.g., "department", "job_title"). - readOnly: false + id: + description: The id field. type: string - priority: - description: Relative priority of this hint. Higher values cause the analysis to weight this attribute more heavily. - format: int32 - readOnly: false - type: integer - values: - description: Specific attribute values to focus on. If empty, all values for the attribute are considered. - items: - type: string - nullable: true - readOnly: false - type: array - title: Cohort Hint Input + input: + additionalProperties: true + type: + - object + - "null" + output: + additionalProperties: true + type: + - object + - "null" + status: + description: The status field. + enum: + - FUNCTION_INVOCATION_STATUS_UNSPECIFIED + - FUNCTION_INVOCATION_STATUS_PENDING + - FUNCTION_INVOCATION_STATUS_RUNNING + - FUNCTION_INVOCATION_STATUS_SUCCESS + - FUNCTION_INVOCATION_STATUS_ERROR + type: string + x-speakeasy-unknown-values: allow + updatedAt: + format: date-time + type: + - string + - "null" + title: Function Invocation type: object - x-speakeasy-name-override: CohortHintInput - c1.api.role_mining_management.v1.CohortHintView: - description: The CohortHintView message. + x-speakeasy-name-override: FunctionInvocation + c1.api.functions.v1.FunctionTestResult: + description: FunctionTestResult contains the result of a single test case execution. properties: - attribute: - description: The user attribute name used for cohort grouping. - readOnly: false + assertions: + description: The assertions evaluated during the test. + items: + $ref: '#/components/schemas/c1.api.functions.v1.FunctionTestResult.FunctionTestResultAssertion' + type: + - array + - "null" + error: + description: Error message if the test errored (distinct from assertion failure). type: string - priority: - description: Relative priority of this hint. - format: int32 - readOnly: false - type: integer - values: - description: The specific attribute values targeted by this hint. + logs: + description: The log entries captured during the test. items: - type: string - nullable: true - readOnly: false - type: array - title: Cohort Hint View + $ref: '#/components/schemas/c1.api.functions.v1.FunctionTestResult.FunctionTestResultLog' + type: + - array + - "null" + name: + description: The test name. + type: string + status: + description: The test result status. + enum: + - FUNCTION_TEST_RESULT_STATUS_UNSPECIFIED + - FUNCTION_TEST_RESULT_STATUS_OK + - FUNCTION_TEST_RESULT_STATUS_FAIL + - FUNCTION_TEST_RESULT_STATUS_SKIPPED + type: string + x-speakeasy-unknown-values: allow + title: Function Test Result type: object - x-speakeasy-name-override: CohortHintView - c1.api.role_mining_management.v1.CreateAccessProfileFromCohortRequest: - description: The CreateAccessProfileFromCohortRequest message. + x-speakeasy-name-override: FunctionTestResult + c1.api.functions.v1.FunctionTestResult.FunctionTestResultAssertion: + description: A single assertion within a test. properties: - createTasks: - description: |- - If true, the automation will create JIT tasks for access changes. - If false, users are synced to membership without creating tasks. - readOnly: false - type: boolean + actual: + description: The actual value. + type: string + at: + description: Source location of the assertion. + type: string description: - description: Description for the access profile. - readOnly: false + description: Description of the assertion. type: string - displayName: - description: Display name for the access profile. - readOnly: false + expected: + description: The expected value. type: string - enableAutomation: - description: If true, enable the dynamic membership automation immediately. - readOnly: false - type: boolean - entitlements: - description: Entitlements to add to the access profile. - items: - $ref: '#/components/schemas/c1.mcp.role_mining.v1.CohortEntitlement' - nullable: true - readOnly: false - type: array - profileFilters: - description: Profile filters defining the cohort for dynamic membership. - items: - $ref: '#/components/schemas/c1.mcp.role_mining.v1.ProfileFilter' - nullable: true - readOnly: false - type: array - suggestionId: - description: Optional suggestion ID to mark as accepted after creating the profile. - readOnly: false + operator: + description: The comparison operator (e.g., "==", "!="). type: string - title: Create Access Profile From Cohort Request + pass: + description: Whether the assertion passed. + type: boolean + title: Function Test Result Assertion type: object - x-speakeasy-name-override: CreateAccessProfileFromCohortRequest - c1.api.role_mining_management.v1.CreateAccessProfileFromCohortResponse: - description: The CreateAccessProfileFromCohortResponse message. + x-speakeasy-name-override: FunctionTestResultAssertion + c1.api.functions.v1.FunctionTestResult.FunctionTestResultLog: + description: A log entry captured during a test. properties: - accessProfileId: - description: The ID of the created access profile. - readOnly: false + level: + description: The log level (e.g., "info", "error"). type: string - celExpression: - description: The CEL expression generated for dynamic membership. - readOnly: false + log: + description: The log message content. type: string - title: Create Access Profile From Cohort Response + source: + description: The log source (e.g., "stdout", "stderr"). + type: string + title: Function Test Result Log type: object - x-speakeasy-name-override: CreateAccessProfileFromCohortResponse - c1.api.role_mining_management.v1.GetCustomAnalysisResultResponse: - description: The GetCustomAnalysisResultResponse message. + x-speakeasy-name-override: FunctionTestResultLog + c1.api.functions.v1.FunctionsInvocationSearchRequestInput: + description: |- + FunctionsInvocationSearchRequest is the request for searching function invocations. + Results are returned in descending order by created_at (newest first). properties: - appsAnalyzed: - description: The appsAnalyzed field. - format: int32 - readOnly: false - type: integer - clusters: - description: Cluster results. - items: - $ref: '#/components/schemas/c1.mcp.role_mining.v1.EntitlementCluster' - nullable: true - readOnly: false - type: array - cohortSize: - description: The cohortSize field. - format: int32 - readOnly: false - type: integer - entitlements: - description: Entitlement coverage results. - items: - $ref: '#/components/schemas/c1.mcp.role_mining.v1.CohortEntitlement' - nullable: true - readOnly: false - type: array - errorMessage: - description: The errorMessage field. - readOnly: false - type: string - facetUserCount: - description: The facetUserCount field. + pageSize: + description: The number of results to return per page. format: int32 - readOnly: false type: integer - facets: - description: Facet results. - items: - $ref: '#/components/schemas/c1.mcp.role_mining.v1.AttributeFacet' - nullable: true - readOnly: false - type: array - id: - description: The id field. - readOnly: false - type: string - status: - description: The status field. - enum: - - RUN_STATUS_UNSPECIFIED - - RUN_STATUS_RUNNING - - RUN_STATUS_COMPLETED - - RUN_STATUS_FAILED - readOnly: false + pageToken: + description: The pagination token for fetching the next page. type: string - x-speakeasy-unknown-values: allow - title: Get Custom Analysis Result Response - type: object - x-speakeasy-name-override: GetCustomAnalysisResultResponse - c1.api.role_mining_management.v1.GetLatestRunResponse: - description: The GetLatestRunResponse message. - properties: - run: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningManagementRun' - title: Get Latest Run Response - type: object - x-speakeasy-name-override: GetLatestRunResponse - c1.api.role_mining_management.v1.GetRoleMiningConfigResponse: - description: The GetRoleMiningConfigResponse message. - properties: - config: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningManagementConfig' - title: Get Role Mining Config Response - type: object - x-speakeasy-name-override: GetRoleMiningConfigResponse - c1.api.role_mining_management.v1.GetSuggestionResponse: - description: The GetSuggestionResponse message. - properties: - suggestion: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningManagementSuggestion' - title: Get Suggestion Response + title: Functions Invocation Search Request type: object - x-speakeasy-name-override: GetSuggestionResponse - c1.api.role_mining_management.v1.ListRunsResponse: - description: The ListRunsResponse message. + x-speakeasy-name-override: FunctionsInvocationSearchRequest + c1.api.functions.v1.FunctionsInvocationSearchResponse: + description: FunctionsInvocationSearchResponse is the response for searching function invocations. properties: list: - description: The list of role mining analysis runs. + description: The list of function invocations, ordered by created_at descending. items: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningManagementRun' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.functions.v1.FunctionInvocation' + type: + - array + - "null" nextPageToken: - description: Token to retrieve the next page of results, empty if no more results. - readOnly: false + description: The pagination token for fetching the next page. type: string - title: List Runs Response + title: Functions Invocation Search Response type: object - x-speakeasy-name-override: ListRunsResponse - c1.api.role_mining_management.v1.ListSuggestionsResponse: - description: The ListSuggestionsResponse message. + x-speakeasy-name-override: FunctionsInvocationSearchResponse + c1.api.functions.v1.FunctionsInvocationServiceGetResponse: + description: The FunctionsInvocationServiceGetResponse message. + properties: + invocation: + oneOf: + - $ref: '#/components/schemas/c1.api.functions.v1.FunctionInvocation' + - type: "null" + title: Functions Invocation Service Get Response + type: object + x-speakeasy-name-override: FunctionsInvocationServiceGetResponse + c1.api.functions.v1.FunctionsInvocationServiceListResponse: + description: The FunctionsInvocationServiceListResponse message. properties: list: - description: The list of role mining suggestions. + description: The list field. items: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningManagementSuggestion' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.functions.v1.FunctionInvocation' + type: + - array + - "null" nextPageToken: - description: Token to retrieve the next page of results, empty if no more results. - readOnly: false + description: The nextPageToken field. type: string - title: List Suggestions Response + title: Functions Invocation Service List Response type: object - x-speakeasy-name-override: ListSuggestionsResponse - c1.api.role_mining_management.v1.RoleMiningManagementConfig: - description: The RoleMiningManagementConfig message. + x-speakeasy-name-override: FunctionsInvocationServiceListResponse + c1.api.functions.v1.FunctionsSearchRequest: + description: The FunctionsSearchRequest message. properties: - cohortHints: - description: Configured cohort hints that guide which user attributes the analysis prioritizes. + functionTypes: + description: The functionTypes field. items: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.CohortHintView' - nullable: true - readOnly: false - type: array - maxSuggestions: - description: Maximum number of suggestions the analysis will produce per run. - format: int32 - readOnly: false - type: integer - minCohortSize: - description: Minimum number of users a cohort must contain to generate a suggestion. - format: int32 - readOnly: false - type: integer - title: Role Mining Management Config - type: object - x-speakeasy-name-override: RoleMiningManagementConfig - c1.api.role_mining_management.v1.RoleMiningManagementRun: - description: The RoleMiningManagementRun message. - properties: - cohortsAnalyzed: - description: Number of user cohorts evaluated during the analysis. + enum: + - FUNCTION_TYPE_UNSPECIFIED + - FUNCTION_TYPE_ANY + - FUNCTION_TYPE_CODE_MODE + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + pageSize: + description: The pageSize field. format: int32 - readOnly: false type: integer - completedAt: - format: date-time - readOnly: false + pageToken: + description: The pageToken field. type: string - createdAt: - format: date-time - readOnly: false + query: + description: The query field. type: string - errorMessage: - description: Error message if the run failed, empty on success. - readOnly: false + title: Functions Search Request + type: object + x-speakeasy-name-override: FunctionsSearchRequest + c1.api.functions.v1.FunctionsSearchResponse: + description: The FunctionsSearchResponse message. + properties: + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.functions.v1.Function' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - id: - description: Unique identifier for this analysis run. - readOnly: false + title: Functions Search Response + type: object + x-speakeasy-name-override: FunctionsSearchResponse + c1.api.functions.v1.FunctionsServiceCreateFinalCommitRequestInput: + description: The FunctionsServiceCreateFinalCommitRequest message. + title: Functions Service Create Final Commit Request + type: object + x-speakeasy-name-override: FunctionsServiceCreateFinalCommitRequest + c1.api.functions.v1.FunctionsServiceCreateFinalCommitResponse: + description: The FunctionsServiceCreateFinalCommitResponse message. + properties: + commit: + oneOf: + - $ref: '#/components/schemas/c1.api.functions.v1.FunctionCommit' + - type: "null" + title: Functions Service Create Final Commit Response + type: object + x-speakeasy-name-override: FunctionsServiceCreateFinalCommitResponse + c1.api.functions.v1.FunctionsServiceCreateFunctionRequest: + description: The FunctionsServiceCreateFunctionRequest message. + properties: + commitMessage: + description: The commit message describing the initial code submission. type: string - status: - description: Current execution status of this run (e.g., running, completed, failed). - enum: - - RUN_STATUS_UNSPECIFIED - - RUN_STATUS_RUNNING - - RUN_STATUS_COMPLETED - - RUN_STATUS_FAILED - readOnly: false + description: + description: A description of what the function does. type: string - x-speakeasy-unknown-values: allow - suggestionsGenerated: - description: Number of role suggestions produced by this run. - format: int32 - readOnly: false - type: integer - totalUsers: - description: Total number of users evaluated during the analysis. - format: int32 - readOnly: false - type: integer - triggerDetail: - description: Additional detail about the trigger, such as the user or schedule that initiated the run. - readOnly: false + displayName: + description: The human-readable name for the function. type: string - triggerType: - description: How this run was initiated (e.g., manual, scheduled). + functionType: + description: |- + The type of function to create. Use FUNCTION_TYPE_ANY for user functions — + that is the type the Functions UI lists. Do not use any other value. enum: - - TRIGGER_TYPE_UNSPECIFIED - - TRIGGER_TYPE_MANUAL - - TRIGGER_TYPE_UPLIFT_COMPLETION - - TRIGGER_TYPE_SCHEDULED - - TRIGGER_TYPE_DIRECTORY_MERGE - readOnly: false + - FUNCTION_TYPE_UNSPECIFIED + - FUNCTION_TYPE_ANY + - FUNCTION_TYPE_CODE_MODE type: string x-speakeasy-unknown-values: allow - updatedAt: - format: date-time - readOnly: false - type: string - title: Role Mining Management Run + initialContent: + additionalProperties: + format: base64 + type: string + description: |- + File map for the initial code commit. Keys are file paths in the + function root (e.g. "main.ts", "main.test.ts"); values are file + contents as bytes. + + Runtime: TypeScript. The entry file MUST be "main.ts" exporting a + default async handler: + + import { JSONObject } from "@c1/functions-sdk"; + export default async function main(input: JSONObject): Promise { + return { ok: true, echo: input }; + } + + The handler MUST return a JSON object — not a primitive, array, or null. + type: object + title: Functions Service Create Function Request type: object - x-speakeasy-name-override: RoleMiningManagementRun - c1.api.role_mining_management.v1.RoleMiningManagementSuggestion: - description: The RoleMiningManagementSuggestion message. + x-speakeasy-name-override: FunctionsServiceCreateFunctionRequest + c1.api.functions.v1.FunctionsServiceCreateFunctionResponse: + description: The FunctionsServiceCreateFunctionResponse message. properties: - avgCoverage: - description: Average fraction of suggested entitlements held by each user in the cohort. - readOnly: false - type: number - cohortFilters: - description: The profile filters that define which users belong to this cohort. - items: - $ref: '#/components/schemas/c1.mcp.role_mining.v1.ProfileFilter' - nullable: true - readOnly: false - type: array - cohortSize: - description: Total number of users in the cohort matching the profile filters. - format: int32 - readOnly: false - type: integer - confidence: - description: Overall confidence score for this suggestion, from 0.0 to 1.0. - readOnly: false - type: number - createdAt: - format: date-time - readOnly: false - type: string - createdCatalogId: - description: The ID of the access profile created when this suggestion was accepted, empty if not yet accepted. - readOnly: false - type: string - description: - description: A human-readable description of the proposed role and the cohort it serves. - readOnly: false - type: string - dimensionCount: - description: Number of distinct attribute dimensions used to define the cohort. - format: int32 - readOnly: false - type: integer - entitlements: - description: The entitlements that are commonly held by users in this cohort. - items: - $ref: '#/components/schemas/c1.mcp.role_mining.v1.CohortEntitlement' - nullable: true - readOnly: false - type: array - existingProfileMatches: - description: Existing access profiles that overlap with this suggestion. - items: - $ref: '#/components/schemas/c1.mcp.role_mining.v1.AccessProfileMatch' - nullable: true - readOnly: false - type: array - id: - description: Unique identifier for this suggestion. - readOnly: false + commit: + oneOf: + - $ref: '#/components/schemas/c1.api.functions.v1.FunctionCommit' + - type: "null" + function: + oneOf: + - $ref: '#/components/schemas/c1.api.functions.v1.Function' + - type: "null" + title: Functions Service Create Function Response + type: object + x-speakeasy-name-override: FunctionsServiceCreateFunctionResponse + c1.api.functions.v1.FunctionsServiceCreateInitialCommitRequestInput: + description: The FunctionsServiceCreateInitialCommitRequest message. + properties: + commitMessage: + description: The commitMessage field. type: string - insights: - description: Human-readable insights explaining why this role was suggested. + filenames: + description: The filenames field. items: type: string - nullable: true - readOnly: false - type: array - lastGeneratedAt: - format: date-time - readOnly: false - type: string - runId: - description: The ID of the analysis run that produced this suggestion. - readOnly: false - type: string - suggestedName: - description: The suggested display name for the proposed role. - readOnly: false + type: + - array + - "null" + title: Functions Service Create Initial Commit Request + type: object + x-speakeasy-name-override: FunctionsServiceCreateInitialCommitRequest + c1.api.functions.v1.FunctionsServiceCreateInitialCommitResponse: + description: The FunctionsServiceCreateInitialCommitResponse message. + properties: + commitId: + description: The commitId field. type: string - suggestionState: - description: Current workflow state of this suggestion (e.g., pending, accepted, dismissed). - enum: - - SUGGESTION_STATE_UNSPECIFIED - - SUGGESTION_STATE_NEW - - SUGGESTION_STATE_DISMISSED - - SUGGESTION_STATE_ACCEPTED - readOnly: false + uploadUrls: + additionalProperties: + type: string + description: The uploadUrls field. + type: object + title: Functions Service Create Initial Commit Response + type: object + x-speakeasy-name-override: FunctionsServiceCreateInitialCommitResponse + c1.api.functions.v1.FunctionsServiceCreateTagRequestInput: + description: The FunctionsServiceCreateTagRequest message. + properties: + commitId: + description: The commitId field. type: string - x-speakeasy-unknown-values: allow - updatedAt: - format: date-time - readOnly: false + name: + description: The name field. type: string - usersWithAll: - description: Number of users in the cohort that hold all of the suggested entitlements. - format: int32 - readOnly: false - type: integer - title: Role Mining Management Suggestion + title: Functions Service Create Tag Request type: object - x-speakeasy-name-override: RoleMiningManagementSuggestion - c1.api.role_mining_management.v1.RoleMiningSearchSuggestionsRequest: - description: The RoleMiningSearchSuggestionsRequest message. + x-speakeasy-name-override: FunctionsServiceCreateTagRequest + c1.api.functions.v1.FunctionsServiceCreateTagResponse: + description: The FunctionsServiceCreateTagResponse message. + title: Functions Service Create Tag Response + type: object + x-speakeasy-name-override: FunctionsServiceCreateTagResponse + c1.api.functions.v1.FunctionsServiceDeleteFunctionRequestInput: + description: The FunctionsServiceDeleteFunctionRequest message. + title: Functions Service Delete Function Request + type: object + x-speakeasy-name-override: FunctionsServiceDeleteFunctionRequest + c1.api.functions.v1.FunctionsServiceDeleteFunctionResponse: + description: The FunctionsServiceDeleteFunctionResponse message. + title: Functions Service Delete Function Response + type: object + x-speakeasy-name-override: FunctionsServiceDeleteFunctionResponse + c1.api.functions.v1.FunctionsServiceGetCommitContentResponse: + description: FunctionsServiceGetCommitContentResponse contains a commit and all its file contents. properties: - cohortTypes: - description: Filter by cohort type (e.g. "department", "job_title", "manager"). - items: - type: string - nullable: true - readOnly: false - type: array - matchTypes: - description: Filter by match type against existing access profiles. - items: - enum: - - ACCESS_PROFILE_MATCH_TYPE_UNSPECIFIED - - ACCESS_PROFILE_MATCH_TYPE_EXACT - - ACCESS_PROFILE_MATCH_TYPE_SUPERSET - - ACCESS_PROFILE_MATCH_TYPE_PARTIAL + commit: + oneOf: + - $ref: '#/components/schemas/c1.api.functions.v1.FunctionCommit' + - type: "null" + files: + additionalProperties: + format: base64 type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - pageSize: - description: Maximum number of suggestions to return per page. - format: int32 - readOnly: false - type: integer - pageToken: - description: Pagination token from a previous response. - readOnly: false - type: string - query: - description: Text search — matches against suggested_name, description, and cohort filter values. - readOnly: false + description: Map of filename to file content bytes. + type: object + title: Functions Service Get Commit Content Response + type: object + x-speakeasy-name-override: FunctionsServiceGetCommitContentResponse + c1.api.functions.v1.FunctionsServiceGetFunctionResponse: + description: The FunctionsServiceGetFunctionResponse message. + properties: + function: + oneOf: + - $ref: '#/components/schemas/c1.api.functions.v1.Function' + - type: "null" + title: Functions Service Get Function Response + type: object + x-speakeasy-name-override: FunctionsServiceGetFunctionResponse + c1.api.functions.v1.FunctionsServiceGetLockFileResponse: + description: FunctionsServiceGetLockFileResponse returns the deno lock file content for a commit. + properties: + content: + description: The raw content of the deno lock file (empty if not found). + format: base64 type: string - states: - description: Filter by suggestion state. - items: - enum: - - SUGGESTION_STATE_UNSPECIFIED - - SUGGESTION_STATE_NEW - - SUGGESTION_STATE_DISMISSED - - SUGGESTION_STATE_ACCEPTED - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - title: Role Mining Search Suggestions Request + exists: + description: Whether the lock file exists for this commit. + type: boolean + title: Functions Service Get Lock File Response type: object - x-speakeasy-name-override: RoleMiningSearchSuggestionsRequest - c1.api.role_mining_management.v1.RoleMiningSearchSuggestionsResponse: - description: The RoleMiningSearchSuggestionsResponse message. + x-speakeasy-name-override: FunctionsServiceGetLockFileResponse + c1.api.functions.v1.FunctionsServiceInvokeRequestInput: + description: | + The FunctionsServiceInvokeRequest message. + + This message contains a oneof named arg. Only a single field of the following list may be set at a time: + - json properties: - list: - description: The list of matching role mining suggestions. - items: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningManagementSuggestion' - nullable: true - readOnly: false - type: array - nextPageToken: - description: Token to retrieve the next page of results, empty if no more results. - readOnly: false + commitId: + description: The commit ID specifying which version of the function code to run. type: string - title: Role Mining Search Suggestions Response + json: + description: |- + The JSON-encoded input data passed to the function. + This field is part of the `arg` oneof. + See the documentation for `c1.api.functions.v1.FunctionsServiceInvokeRequest` for more details. + format: base64 + type: + - string + - "null" + vfsId: + description: Optional VFS volume ID to attach to this invocation. If empty, VFS operations will error. + type: string + title: Functions Service Invoke Request type: object - x-speakeasy-name-override: RoleMiningSearchSuggestionsResponse - c1.api.role_mining_management.v1.SearchCohortUsersRequestInput: - description: The SearchCohortUsersRequest message. + x-speakeasy-name-override: FunctionsServiceInvokeRequest + c1.api.functions.v1.FunctionsServiceInvokeResponse: + description: | + The FunctionsServiceInvokeResponse message. + + This message contains a oneof named resp. Only a single field of the following list may be set at a time: + - json properties: - pageSize: - description: Maximum number of users to return per page. - format: int32 - readOnly: false - type: integer - pageToken: - description: Pagination token from a previous response. - readOnly: false + invocationId: + description: The ID of the created invocation, used to track execution status and retrieve results. type: string - profileFilters: - description: Additional profile filters to narrow the cohort user search. - items: - $ref: '#/components/schemas/c1.mcp.role_mining.v1.ProfileFilter' - nullable: true - readOnly: false - type: array - title: Search Cohort Users Request + json: + deprecated: true + description: |- + Deprecated. The JSON-encoded output returned by the function. + This field is part of the `resp` oneof. + See the documentation for `c1.api.functions.v1.FunctionsServiceInvokeResponse` for more details. + format: base64 + type: + - string + - "null" + title: Functions Service Invoke Response type: object - x-speakeasy-name-override: SearchCohortUsersRequest - c1.api.role_mining_management.v1.SearchCohortUsersResponse: - description: The SearchCohortUsersResponse message. + x-speakeasy-name-override: FunctionsServiceInvokeResponse + c1.api.functions.v1.FunctionsServiceListCommitsResponse: + description: The FunctionsServiceListCommitsResponse message. properties: list: - description: The list of users matching the cohort and optional filters. + description: The list field. items: - $ref: '#/components/schemas/c1.api.user.v1.User' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.functions.v1.FunctionCommit' + type: + - array + - "null" nextPageToken: - description: Token to retrieve the next page of results, empty if no more results. - readOnly: false + description: The nextPageToken field. type: string - title: Search Cohort Users Response - type: object - x-speakeasy-name-override: SearchCohortUsersResponse - c1.api.role_mining_management.v1.TriggerAnalysisRequest: - description: The TriggerAnalysisRequest message. - title: Trigger Analysis Request + title: Functions Service List Commits Response type: object - x-speakeasy-name-override: TriggerAnalysisRequest - c1.api.role_mining_management.v1.TriggerAnalysisResponse: - description: The TriggerAnalysisResponse message. + x-speakeasy-name-override: FunctionsServiceListCommitsResponse + c1.api.functions.v1.FunctionsServiceListFunctionsResponse: + description: The FunctionsServiceListFunctionsResponse message. properties: - runId: - description: The ID of the newly created analysis run. - readOnly: false + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.functions.v1.Function' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - title: Trigger Analysis Response + title: Functions Service List Functions Response type: object - x-speakeasy-name-override: TriggerAnalysisResponse - c1.api.role_mining_management.v1.TriggerCustomAnalysisRequest: - description: The TriggerCustomAnalysisRequest message. + x-speakeasy-name-override: FunctionsServiceListFunctionsResponse + c1.api.functions.v1.FunctionsServiceListTagsResponse: + description: The FunctionsServiceListTagsResponse message. properties: - profileFilters: - description: The profileFilters field. - items: - $ref: '#/components/schemas/c1.mcp.role_mining.v1.ProfileFilter' - nullable: true - readOnly: false - type: array - title: Trigger Custom Analysis Request + tags: + additionalProperties: + $ref: '#/components/schemas/c1.api.functions.v1.FunctionCommit' + description: The tags field. + type: object + title: Functions Service List Tags Response type: object - x-speakeasy-name-override: TriggerCustomAnalysisRequest - c1.api.role_mining_management.v1.TriggerCustomAnalysisResponse: - description: The TriggerCustomAnalysisResponse message. + x-speakeasy-name-override: FunctionsServiceListTagsResponse + c1.api.functions.v1.FunctionsServiceTestRequestInput: + description: FunctionsServiceTestRequest runs tests for a function at a specific commit. properties: - id: - description: The id field. - readOnly: false + commitId: + description: The commit ID to test. If empty, the published commit is used. type: string - title: Trigger Custom Analysis Response + title: Functions Service Test Request type: object - x-speakeasy-name-override: TriggerCustomAnalysisResponse - c1.api.role_mining_management.v1.UpdateRoleMiningConfigRequest: - description: The UpdateRoleMiningConfigRequest message. + x-speakeasy-name-override: FunctionsServiceTestRequest + c1.api.functions.v1.FunctionsServiceTestResponse: + description: FunctionsServiceTestResponse contains test execution results. properties: - cohortHints: - description: Hints that guide the analysis to prioritize specific user attributes and values when forming cohorts. + result: + oneOf: + - $ref: '#/components/schemas/c1.api.functions.v1.FunctionTestResult' + - type: "null" + results: + description: All test results. items: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.CohortHintInput' - nullable: true - readOnly: false - type: array - maxSuggestions: - description: Maximum number of suggestions the analysis should produce per run. - format: int32 - readOnly: false - type: integer - minCohortSize: - description: Minimum number of users a cohort must contain to generate a suggestion. - format: int32 - readOnly: false - type: integer - title: Update Role Mining Config Request - type: object - x-speakeasy-name-override: UpdateRoleMiningConfigRequest - c1.api.role_mining_management.v1.UpdateRoleMiningConfigResponse: - description: The UpdateRoleMiningConfigResponse message. - properties: - config: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningManagementConfig' - title: Update Role Mining Config Response + $ref: '#/components/schemas/c1.api.functions.v1.FunctionTestResult' + type: + - array + - "null" + title: Functions Service Test Response type: object - x-speakeasy-name-override: UpdateRoleMiningConfigResponse - c1.api.role_mining_management.v1.UpdateSuggestionStateRequestInput: - description: The UpdateSuggestionStateRequest message. + x-speakeasy-name-override: FunctionsServiceTestResponse + c1.api.functions.v1.FunctionsServiceUpdateFunctionRequest: + description: The FunctionsServiceUpdateFunctionRequest message. properties: - createdCatalogId: - description: The ID of the access profile created from this suggestion, set when accepting. - readOnly: false - type: string - state: - description: The new state to transition the suggestion to. - enum: - - SUGGESTION_STATE_UNSPECIFIED - - SUGGESTION_STATE_NEW - - SUGGESTION_STATE_DISMISSED - - SUGGESTION_STATE_ACCEPTED - readOnly: false + commitMessage: + description: |- + The commit message describing this code update. Defaults to a generic + message if content is set and this is empty. Ignored if content is empty. type: string - x-speakeasy-unknown-values: allow - title: Update Suggestion State Request + content: + additionalProperties: + format: base64 + type: string + description: |- + File map for a new code commit, applied as the function's new head + commit. Keys are file paths in the function root; values are file + contents as bytes. See CreateFunctionRequest.initial_content for the + required entry-file signature. Independent of update_mask. + type: object + function: + oneOf: + - $ref: '#/components/schemas/c1.api.functions.v1.Function' + - type: "null" + updateMask: + type: + - string + - "null" + title: Functions Service Update Function Request type: object - x-speakeasy-name-override: UpdateSuggestionStateRequest - c1.api.role_mining_management.v1.UpdateSuggestionStateResponse: - description: The UpdateSuggestionStateResponse message. + x-speakeasy-name-override: FunctionsServiceUpdateFunctionRequest + c1.api.functions.v1.FunctionsServiceUpdateFunctionResponse: + description: The FunctionsServiceUpdateFunctionResponse message. properties: - suggestion: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningManagementSuggestion' - title: Update Suggestion State Response + commit: + oneOf: + - $ref: '#/components/schemas/c1.api.functions.v1.FunctionCommit' + - type: "null" + function: + oneOf: + - $ref: '#/components/schemas/c1.api.functions.v1.Function' + - type: "null" + title: Functions Service Update Function Response type: object - x-speakeasy-name-override: UpdateSuggestionStateResponse - c1.api.search.v1.FacetCategory: - description: | - The FacetCategory indicates a grouping of facets by type. For example, facets "OnePassword" and "Okta" would group under an "Apps" category. + x-speakeasy-name-override: FunctionsServiceUpdateFunctionResponse + c1.api.history.v1.HistoryActor: + description: |- + HistoryActor is a typed reference to whoever performed the change. + kind mirrors the storage-model ActorKind enum; user_id is set when + kind corresponds to a user principal (API / SUPPORT) so the frontend + can resolve the user via its own avatar / lookup hooks. Protos + reference objects by id; the frontend renders / caches itself. - This message contains a oneof named item. Only a single field of the following list may be set at a time: - - value - - range - properties: - displayName: - description: The display name of the category. - readOnly: false - type: string - iconUrl: - description: An icon for the category. - readOnly: false + The raw passport fields (token_id / principal_id) intentionally do not + leave the server. Non-user actors (workflow, connector, internal) are + identified by `kind` alone; correlating IDs (workflow_run_id, etc.) + flow through `HistoryAnnotation` instead of being plucked into the + actor message. + properties: + kind: + description: The kind field. + enum: + - ACTOR_KIND_UNSPECIFIED + - ACTOR_KIND_API + - ACTOR_KIND_SLACK + - ACTOR_KIND_MSTEAMS + - ACTOR_KIND_JIRA_CLOUD + - ACTOR_KIND_INTERNAL + - ACTOR_KIND_SUPPORT + - ACTOR_KIND_WORKFLOW type: string - param: - description: The param that is being set when checking a facet in this category. - readOnly: false + x-speakeasy-unknown-values: allow + userId: + description: |- + Bare KSUID. Set when kind = ACTOR_KIND_API or ACTOR_KIND_SUPPORT. + Empty otherwise. The frontend resolves user_id → display name via + the same lookup paths it uses elsewhere (avatars, mentions, ...). type: string - range: - $ref: '#/components/schemas/c1.api.search.v1.FacetRangeItem' - value: - $ref: '#/components/schemas/c1.api.search.v1.FacetValueItem' - title: Facet Category + title: History Actor type: object - x-speakeasy-name-override: FacetCategory - c1.api.search.v1.FacetRange: - description: The FacetRange message. + x-speakeasy-name-override: HistoryActor + c1.api.history.v1.HistoryAnnotation: + description: |- + HistoryAnnotation is a single operator-provided key/value rendered with + per-key display metadata. Annotations are minted from the + Tx.*WithHistoryAnnotations / db.WithHistoryAnnotations call options. properties: - count: - description: The count of items in the range. - format: int64 - readOnly: false + displayLabel: + description: Server-rendered label, e.g. "Ticket". type: string - displayName: - description: The display name of the range. - readOnly: false + displayUrl: + description: |- + Resolved from tenant config; "" if none. Frontend applies its own + scheme allowlist. type: string - from: - description: The starting value of the range. - format: int64 - readOnly: false + displayValue: + description: UI-friendly rendering (truncated / reshaped from raw_value). type: string - iconUrl: - description: The icon of the range. - readOnly: false + key: + description: 'Storage-side key. Bounds: ^[a-z][a-z0-9_.-]{0,63}$.' type: string - to: - description: The ending value of the range. - format: int64 - readOnly: false + kind: + description: The kind field. + enum: + - ANNOTATION_KIND_UNSPECIFIED + - ANNOTATION_KIND_GENERIC + - ANNOTATION_KIND_TICKET + - ANNOTATION_KIND_REASON + - ANNOTATION_KIND_WORKFLOW + - ANNOTATION_KIND_BATCH + - ANNOTATION_KIND_CORRELATION + - ANNOTATION_KIND_AUTOMATION type: string - title: Facet Range - type: object - x-speakeasy-name-override: FacetRange - c1.api.search.v1.FacetRangeItem: - description: The FacetRangeItem message. - nullable: true - properties: - ranges: - description: An array of facet ranges. - items: - $ref: '#/components/schemas/c1.api.search.v1.FacetRange' - nullable: true - readOnly: false - type: array - title: Facet Range Item + x-speakeasy-unknown-values: allow + rawValue: + description: |- + Raw value as stored in ObjectHistory.annotations; storage-side values + are capped at 512 bytes. + type: string + title: History Annotation type: object - x-speakeasy-name-override: FacetRangeItem - c1.api.search.v1.FacetValue: - description: A FacetValue message contains count and value of the facet entry. - properties: - count: - description: The count of the values in this facet. - format: int64 - readOnly: false + x-speakeasy-name-override: HistoryAnnotation + c1.api.history.v1.HistoryEntryMetadata: + description: |- + HistoryEntryMetadata is the shared metadata envelope embedded on every + per-service HistoryEntry. The strongly-typed snapshot lives on the + per-service entry message alongside this envelope. + properties: + actor: + oneOf: + - $ref: '#/components/schemas/c1.api.history.v1.HistoryActor' + - type: "null" + annotations: + description: |- + Server-rendered annotations: known keys carry display_label and + (for ticket_id, etc.) display_url resolved from tenant config. + Cap mirrors the per-object annotation ceiling (16). + items: + $ref: '#/components/schemas/c1.api.history.v1.HistoryAnnotation' + type: + - array + - "null" + changeKind: + description: |- + Storage-model enum re-exported here for wire compatibility with the + storage row. UNSPECIFIED should never appear on the wire. + enum: + - CHANGE_KIND_UNSPECIFIED + - CHANGE_KIND_CREATE + - CHANGE_KIND_PUT + - CHANGE_KIND_HARD_DELETE type: string - displayName: - description: The name of this facet. - readOnly: false + x-speakeasy-unknown-values: allow + createdAt: + format: date-time + type: + - string + - "null" + id: + description: KSUID. Same value as c1.models.history.v1.ObjectHistory.id. type: string - iconUrl: - description: The icon for this facet. - readOnly: false + syslogEventId: + description: |- + System Log event id — KSUID of the OCSF event recorded for this + write. Empty for non-RPC writes (workflows, cron). Customer-facing + copy says "System Log event"; the underlying format is OCSF. type: string - value: - description: The value of this facet. - readOnly: false + traceId: + description: |- + OTel trace correlation. Empty when no valid span at write time. + 32-hex-char otel trace id or empty. type: string - title: Facet Value + title: History Entry Metadata type: object - x-speakeasy-name-override: FacetValue - c1.api.search.v1.FacetValueItem: - description: The FacetValueItem message. - nullable: true + x-speakeasy-name-override: HistoryEntryMetadata + c1.api.history.v1.ListHistoryEntryMetadata: + description: ListHistoryEntryMetadata is the per-transaction metadata envelope. properties: - values: - description: An array of facet values. + actor: + oneOf: + - $ref: '#/components/schemas/c1.api.history.v1.HistoryActor' + - type: "null" + annotations: + description: Server-rendered annotations (mirrors object_history). items: - $ref: '#/components/schemas/c1.api.search.v1.FacetValue' - nullable: true - readOnly: false - type: array - title: Facet Value Item + $ref: '#/components/schemas/c1.api.history.v1.HistoryAnnotation' + type: + - array + - "null" + createdAt: + format: date-time + type: + - string + - "null" + id: + description: KSUID. Same value as c1.models.history.v1.ListHistory.id. + type: string + syslogEventId: + description: |- + System Log event id — KSUID of the OCSF event recorded for this + transaction. Empty for non-RPC writes (workflows, cron). + type: string + traceId: + description: 32-hex-char otel trace id or empty. + type: string + title: List History Entry Metadata type: object - x-speakeasy-name-override: FacetValueItem - c1.api.search.v1.Facets: - description: Indicates one value of a facet. + x-speakeasy-name-override: ListHistoryEntryMetadata + c1.api.hooks.v1.BlockOutputConfig: + description: |- + BlockOutputConfig denies the in-flight response chunk when its hook's + filter matches. Only valid for HOOK_EVENT_TYPE_PRE_OUTPUT. properties: - count: - description: The count of items in this facet. - format: int64 - readOnly: false + message: + description: |- + Message shown to the user when this hook blocks the response. Empty + falls back to the curating AgentGuardrailRule's deny_reason, then to a + generic default. type: string - facets: - description: The facet being referenced. + surfaces: + description: |- + Output surfaces this hook applies to. Empty means none — the hook is + inert until at least one surface is explicitly selected. items: - $ref: '#/components/schemas/c1.api.search.v1.FacetCategory' - nullable: true - readOnly: false - type: array - title: Facets + enum: + - HOOK_OUTPUT_SURFACE_UNSPECIFIED + - HOOK_OUTPUT_SURFACE_SLACK + - HOOK_OUTPUT_SURFACE_WEB + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + title: Block Output Config type: object - x-speakeasy-name-override: Facets - c1.api.secrets.v1.PaperSecret: + x-speakeasy-name-override: BlockOutputConfig + c1.api.hooks.v1.BlockToolCallConfig: description: |- - PaperSecret is the API view of a secret (combines Vault + PaperVault fields). - The vault_id is the primary identifier (Vault.id). + BlockToolCallConfig unconditionally denies the tool call when its hook's + filter matches. Only valid for HOOK_EVENT_TYPE_POST_TOOL_USE. properties: - allowedEmails: - description: The allowedEmails field. - items: - type: string - nullable: true - readOnly: false - type: array - allowedUserIds: - description: Access control - items: - type: string - nullable: true - readOnly: false - type: array - contentDeleted: - description: The contentDeleted field. - readOnly: false - type: boolean - contentExpiresAt: - format: date-time - readOnly: false - type: string - contentReady: - description: Whether content has been set (text uploaded or file uploaded) - readOnly: false - type: boolean - contentType: - description: The contentType field. - readOnly: false + message: + description: |- + Message shown when the tool call is denied. Empty falls back to a + generic default. type: string - createdAt: - format: date-time - readOnly: true + title: Block Tool Call Config + type: object + x-speakeasy-name-override: BlockToolCallConfig + c1.api.hooks.v1.BuiltInPattern: + description: | + BuiltInPattern references a ConductorOne-maintained DLP pattern. + The specific pattern and its configuration are encoded as a oneof. + + This message contains a oneof named config. Only a single field of the following list may be set at a time: + - piiRedaction + - creditCardBlocking + - queryScopeLimit + - writeAuthorization + - sensitiveFileGuard + - toolOutputSizeGuard + - secretsMasking + - linkFilter + - encodedContentGuard + - promptInjectionScan + - blockOutput + - blockToolCall + - preToolBlock + properties: + blockOutput: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.BlockOutputConfig' + - type: "null" + blockToolCall: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.BlockToolCallConfig' + - type: "null" + creditCardBlocking: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.CreditCardBlockingConfig' + - type: "null" + encodedContentGuard: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.EncodedContentGuardConfig' + - type: "null" + linkFilter: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.LinkFilterConfig' + - type: "null" + piiRedaction: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.PIIRedactionConfig' + - type: "null" + preToolBlock: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.PreToolBlockConfig' + - type: "null" + promptInjectionScan: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.PromptInjectionScanConfig' + - type: "null" + queryScopeLimit: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.QueryScopeLimitConfig' + - type: "null" + secretsMasking: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.SecretsMaskingConfig' + - type: "null" + sensitiveFileGuard: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.SensitiveFileGuardConfig' + - type: "null" + toolOutputSizeGuard: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.ToolOutputSizeGuardConfig' + - type: "null" + writeAuthorization: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.WriteAuthorizationConfig' + - type: "null" + title: Built In Pattern + type: object + x-speakeasy-name-override: BuiltInPattern + c1.api.hooks.v1.BusinessHours: + description: BusinessHours defines a weekly time window in a specific timezone. + properties: + days: + description: 0=Sun, 1=Mon, ..., 6=Sat. + items: + format: int32 + type: integer + type: + - array + - "null" + end: + description: '"HH:MM" in 24-hour format.' type: string - creatorUserId: - description: Creator - readOnly: false + start: + description: '"HH:MM" in 24-hour format.' type: string - currentViews: - description: The currentViews field. - format: uint32 - readOnly: false + timezone: + description: The timezone field. + type: string + title: Business Hours + type: object + x-speakeasy-name-override: BusinessHours + c1.api.hooks.v1.CreditCardBlockingConfig: + description: |- + CreditCardBlockingConfig denies any tool call whose output contains a + Luhn-valid credit card number. No configuration fields today; the + presence of the oneof arm is the whole configuration. + title: Credit Card Blocking Config + type: object + x-speakeasy-name-override: CreditCardBlockingConfig + c1.api.hooks.v1.EncodedContentGuardConfig: + description: |- + EncodedContentGuardConfig detects encoded/obfuscated smuggling in tool input: + long base64 blobs, long hex runs, and invisible/zero-width unicode. + properties: + flagOnly: + description: When true, detection records the finding but does not deny (observe-only). + type: boolean + minBase64Run: + description: Minimum contiguous base64 run length to flag. <= 0 = default (256). + format: int32 type: integer - deletedAt: + minHexRun: + description: Minimum contiguous hex run length to flag. <= 0 = default (128). + format: int32 + type: integer + title: Encoded Content Guard Config + type: object + x-speakeasy-name-override: EncodedContentGuardConfig + c1.api.hooks.v1.Hook: + description: | + Hook represents a customer-configured interception point for tool calls. + + This message contains a oneof named hook_type. Only a single field of the following list may be set at a time: + - function + - builtinPattern + - jsonPatch + properties: + builtinPattern: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.BuiltInPattern' + - type: "null" + createdAt: format: date-time readOnly: true + type: + - string + - "null" + description: + description: The description field. type: string displayName: - description: From Vault - readOnly: false - type: string - fileSize: - description: File metadata - format: int64 - readOnly: false - type: string - filename: - description: 'For FILE secrets: original filename (sanitized)' - readOnly: false - type: string - inputFormat: - description: The inputFormat field. - enum: - - SECRET_INPUT_FORMAT_UNSPECIFIED - - SECRET_INPUT_FORMAT_PLAINTEXT - - SECRET_INPUT_FORMAT_JSON - - SECRET_INPUT_FORMAT_YAML - - SECRET_INPUT_FORMAT_KEY_VALUE - readOnly: false - type: string - x-speakeasy-unknown-values: allow - maxViews: - description: View tracking - format: uint32 - readOnly: false - type: integer - secretType: - description: The secretType field. - enum: - - SECRET_TYPE_UNSPECIFIED - - SECRET_TYPE_TEXT - - SECRET_TYPE_FILE - readOnly: false - type: string - x-speakeasy-unknown-values: allow - shareCode: - description: Human-friendly share code (XXXX-XXXX-XXXX) for shareable URLs - readOnly: false - type: string - shareUrl: - description: URL to share with recipients (populated when content_ready is true) - readOnly: false + description: The displayName field. type: string - sharingMode: - description: From PaperVault + enabled: + description: The enabled field. + type: boolean + event: + description: The event field. enum: - - PAPER_VAULT_SHARING_MODE_UNSPECIFIED - - PAPER_VAULT_SHARING_MODE_INTERNAL - - PAPER_VAULT_SHARING_MODE_EXTERNAL - readOnly: false + - HOOK_EVENT_TYPE_UNSPECIFIED + - HOOK_EVENT_TYPE_PRE_TOOL_USE + - HOOK_EVENT_TYPE_POST_TOOL_USE + - HOOK_EVENT_TYPE_PRE_OUTPUT type: string x-speakeasy-unknown-values: allow - status: - description: Computed status - enum: - - SECRET_STATUS_UNSPECIFIED - - SECRET_STATUS_ACTIVE - - SECRET_STATUS_EXPIRED - - SECRET_STATUS_BURNED - - SECRET_STATUS_REVOKED - - SECRET_STATUS_DATA_DELETED - readOnly: false + filter: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.HookFilter' + - type: "null" + function: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.HookFunctionRef' + - type: "null" + id: + description: The id field. type: string - x-speakeasy-unknown-values: allow + jsonPatch: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.JSONPatchConfig' + - type: "null" + managedByGuardrails: + description: |- + managed_by_guardrails marks a hook as selectable in a guardrail rule's + curated pre_hook_ids/post_hook_ids. A hook left false (the default, + including every pre-existing hook) always runs regardless of guardrail + state; a hook set true only runs when a matched rule selects it. + type: boolean + priority: + description: The priority field. + format: int32 + type: integer updatedAt: format: date-time readOnly: true - type: string - vaultId: - description: Vault.id - primary identifier for the secret - readOnly: false - type: string - title: Paper Secret - type: object - x-speakeasy-name-override: PaperSecret - c1.api.secrets.v1.PaperSecretAdminServiceGetResponse: - description: The PaperSecretAdminServiceGetResponse message. - properties: - secret: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecret' - title: Paper Secret Admin Service Get Response - type: object - x-speakeasy-name-override: PaperSecretAdminServiceGetResponse - c1.api.secrets.v1.PaperSecretAdminServiceRevokeRequestInput: - description: The PaperSecretAdminServiceRevokeRequest message. - title: Paper Secret Admin Service Revoke Request + type: + - string + - "null" + title: Hook type: object - x-speakeasy-name-override: PaperSecretAdminServiceRevokeRequest - c1.api.secrets.v1.PaperSecretAdminServiceRevokeResponse: - description: The PaperSecretAdminServiceRevokeResponse message. + x-speakeasy-name-override: Hook + c1.api.hooks.v1.HookFilter: + description: |- + HookFilter determines which calls (or, for HOOK_EVENT_TYPE_PRE_OUTPUT, + which outgoing response chunks) a hook applies to. properties: - secret: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecret' - title: Paper Secret Admin Service Revoke Response + celExpression: + description: |- + CEL expression evaluated against event context. Must evaluate to bool, + empty = matches everything for the event type. + HOOK_EVENT_TYPE_PRE_TOOL_USE / POST_TOOL_USE: ctx.tool_name (string), + and for a call originating from a chat channel ctx.surface (string, + "slack", "web", or "teams"), ctx.channel_id (string, the channel the + message arrived on — only set for "slack"/"teams"; "web" channel refs are + per-conversation and not admin-predictable), and ctx.workspace_id + (string, the Slack/Teams workspace, when known). All three are absent + otherwise, so guard them with has(ctx.surface) / has(ctx.channel_id) / + has(ctx.workspace_id). + HOOK_EVENT_TYPE_PRE_OUTPUT: ctx.untrusted_class (string), ctx.surface + (string, "slack" or "web"). + type: string + title: Hook Filter type: object - x-speakeasy-name-override: PaperSecretAdminServiceRevokeResponse - c1.api.secrets.v1.PaperSecretAdminServiceSearchAuditEventsRequest: - description: The PaperSecretAdminServiceSearchAuditEventsRequest message. + x-speakeasy-name-override: HookFilter + c1.api.hooks.v1.HookFunctionRef: + description: HookFunctionRef identifies a customer-authored function to invoke. properties: - actorEmail: - description: Filter by external email (partial match via full-text search) - readOnly: false + commitId: + description: If empty, the function's published commit is used at invocation time. type: string - actorUserId: - description: Filter by C1 user ID (internal users) - readOnly: false + functionId: + description: The functionId field. type: string - clientIp: - description: Filter by client IP (exact match) - readOnly: false + title: Hook Function Ref + type: object + x-speakeasy-name-override: HookFunctionRef + c1.api.hooks.v1.HookRef: + description: The HookRef message. + properties: + id: + description: The id field. type: string + title: Hook Ref + type: object + x-speakeasy-name-override: HookRef + c1.api.hooks.v1.HooksSearchRequest: + description: The HooksSearchRequest message. + properties: pageSize: description: The pageSize field. format: int32 - readOnly: false type: integer pageToken: description: The pageToken field. - readOnly: false type: string - vaultId: - description: Filter by specific vault - readOnly: false + query: + description: The query field. type: string - title: Paper Secret Admin Service Search Audit Events Request + refs: + description: The refs field. + items: + $ref: '#/components/schemas/c1.api.hooks.v1.HookRef' + type: + - array + - "null" + title: Hooks Search Request type: object - x-speakeasy-name-override: PaperSecretAdminServiceSearchAuditEventsRequest - c1.api.secrets.v1.PaperSecretAdminServiceSearchAuditEventsResponse: - description: The PaperSecretAdminServiceSearchAuditEventsResponse message. + x-speakeasy-name-override: HooksSearchRequest + c1.api.hooks.v1.HooksSearchResponse: + description: The HooksSearchResponse message. properties: list: - description: |- - List contains OCSF events directly as JSON structs. - Follows the same pattern as SystemLogServiceListEventsResponse. + description: The list field. items: - additionalProperties: true - readOnly: false - type: object - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.hooks.v1.Hook' + type: + - array + - "null" nextPageToken: description: The nextPageToken field. - readOnly: false type: string - title: Paper Secret Admin Service Search Audit Events Response + title: Hooks Search Response type: object - x-speakeasy-name-override: PaperSecretAdminServiceSearchAuditEventsResponse - c1.api.secrets.v1.PaperSecretAdminServiceSearchRequest: - description: Admin search request - can filter by any user's secrets. + x-speakeasy-name-override: HooksSearchResponse + c1.api.hooks.v1.HooksServiceCreateRequest: + description: | + The HooksServiceCreateRequest message. + + This message contains a oneof named hook_type. Only a single field of the following list may be set at a time: + - function + - builtinPattern + - jsonPatch properties: - createdAfter: - format: date-time - readOnly: false + builtinPattern: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.BuiltInPattern' + - type: "null" + description: + description: The description field. type: string - createdBefore: - format: date-time - readOnly: false + displayName: + description: The displayName field. type: string - creatorUserIds: - description: Filter by creator user ID (admin can see all users' secrets) - items: - type: string - nullable: true - readOnly: false - type: array - includeDeleted: - description: Include deleted secrets - readOnly: false + enabled: + description: The enabled field. type: boolean - pageSize: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - pageToken: - description: The pageToken field. - readOnly: false - type: string - query: - description: Fuzzy search by display name - readOnly: false - type: string - secretType: - description: Filter by secret type (optional) - enum: - - SECRET_TYPE_UNSPECIFIED - - SECRET_TYPE_TEXT - - SECRET_TYPE_FILE - readOnly: false - type: string - x-speakeasy-unknown-values: allow - sharingMode: - description: Filter by sharing mode (optional) - enum: - - PAPER_VAULT_SHARING_MODE_UNSPECIFIED - - PAPER_VAULT_SHARING_MODE_INTERNAL - - PAPER_VAULT_SHARING_MODE_EXTERNAL - readOnly: false - type: string - x-speakeasy-unknown-values: allow - sortBy: - description: Sort order + event: + description: The event field. enum: - - SEARCH_SORT_BY_UNSPECIFIED - - SEARCH_SORT_BY_CREATED_DESC - - SEARCH_SORT_BY_CREATED_ASC - - SEARCH_SORT_BY_EXPIRES_ASC - - SEARCH_SORT_BY_NAME_ASC - readOnly: false + - HOOK_EVENT_TYPE_UNSPECIFIED + - HOOK_EVENT_TYPE_PRE_TOOL_USE + - HOOK_EVENT_TYPE_POST_TOOL_USE + - HOOK_EVENT_TYPE_PRE_OUTPUT type: string x-speakeasy-unknown-values: allow - statuses: - description: Filter by status (optional) - items: - enum: - - SECRET_STATUS_UNSPECIFIED - - SECRET_STATUS_ACTIVE - - SECRET_STATUS_EXPIRED - - SECRET_STATUS_BURNED - - SECRET_STATUS_REVOKED - - SECRET_STATUS_DATA_DELETED - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - title: Paper Secret Admin Service Search Request + filter: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.HookFilter' + - type: "null" + function: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.HookFunctionRef' + - type: "null" + jsonPatch: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.JSONPatchConfig' + - type: "null" + managedByGuardrails: + description: The managedByGuardrails field. + type: boolean + priority: + description: The priority field. + format: int32 + type: integer + required: + - displayName + title: Hooks Service Create Request type: object - x-speakeasy-name-override: PaperSecretAdminServiceSearchRequest - c1.api.secrets.v1.PaperSecretAdminServiceSearchResponse: - description: The PaperSecretAdminServiceSearchResponse message. + x-speakeasy-name-override: HooksServiceCreateRequest + c1.api.hooks.v1.HooksServiceCreateResponse: + description: The HooksServiceCreateResponse message. + properties: + hook: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.Hook' + - type: "null" + title: Hooks Service Create Response + type: object + x-speakeasy-name-override: HooksServiceCreateResponse + c1.api.hooks.v1.HooksServiceDeleteRequestInput: + description: The HooksServiceDeleteRequest message. + title: Hooks Service Delete Request + type: object + x-speakeasy-name-override: HooksServiceDeleteRequest + c1.api.hooks.v1.HooksServiceDeleteResponse: + description: The HooksServiceDeleteResponse message. + title: Hooks Service Delete Response + type: object + x-speakeasy-name-override: HooksServiceDeleteResponse + c1.api.hooks.v1.HooksServiceGetResponse: + description: The HooksServiceGetResponse message. + properties: + hook: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.Hook' + - type: "null" + title: Hooks Service Get Response + type: object + x-speakeasy-name-override: HooksServiceGetResponse + c1.api.hooks.v1.HooksServiceListResponse: + description: The HooksServiceListResponse message. properties: list: description: The list field. items: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecret' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.hooks.v1.Hook' + type: + - array + - "null" nextPageToken: description: The nextPageToken field. - readOnly: false type: string - title: Paper Secret Admin Service Search Response + title: Hooks Service List Response type: object - x-speakeasy-name-override: PaperSecretAdminServiceSearchResponse - c1.api.secrets.v1.PaperSecretServiceCreateExternalRequest: - description: The PaperSecretServiceCreateExternalRequest message. + x-speakeasy-name-override: HooksServiceListResponse + c1.api.hooks.v1.HooksServiceUpdateRequestInput: + description: The HooksServiceUpdateRequest message. properties: - allowedEmails: - description: |- - External email addresses allowed to view this secret (1 to 64). - Recipients authenticate via email magic link or Google OAuth. - items: - type: string - nullable: true - readOnly: false - type: array - contentType: - description: 'For FILE secrets: MIME content type of the original file. Ignored for TEXT secrets.' - readOnly: false - type: string - displayName: - description: |- - Optional cleartext label visible to the creator in "My Secrets" view. - Not encrypted — do not put sensitive data here. - readOnly: false - type: string - expiresIn: - format: duration - readOnly: false - type: string - fileSize: - description: 'For FILE secrets: expected file size in bytes (max 1GB). Ignored for TEXT secrets.' - format: int64 - readOnly: false - type: string - filename: - description: 'For FILE secrets: original filename (sanitized server-side). Ignored for TEXT secrets.' - readOnly: false - type: string - inputFormat: + hook: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.Hook' + - type: "null" + updateMask: + type: + - string + - "null" + title: Hooks Service Update Request + type: object + x-speakeasy-name-override: HooksServiceUpdateRequest + c1.api.hooks.v1.HooksServiceUpdateResponse: + description: The HooksServiceUpdateResponse message. + properties: + hook: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.Hook' + - type: "null" + title: Hooks Service Update Response + type: object + x-speakeasy-name-override: HooksServiceUpdateResponse + c1.api.hooks.v1.JSONPatchConfig: + description: | + JSONPatchConfig adds, overwrites, or removes fields on a tool call's JSON + input, with no function invocation. Only valid on + HOOK_EVENT_TYPE_PRE_TOOL_USE. cel_expression is evaluated against + ctx/input/caller and must produce a map; static_overlay is a fixed map. + Either result is shallow-merged onto the input under RFC 7396 merge patch + semantics: a key overwrites or adds that key, a null value removes it, and a + nested object replaces rather than merging into the existing one. + + This message contains a oneof named source. Only a single field of the following list may be set at a time: + - celExpression + - staticOverlay + properties: + celExpression: description: |- - For TEXT secrets: hint about the plaintext format (e.g., JSON, YAML, key-value). - Used by the viewer UI for syntax highlighting. Does not affect encryption. + The celExpression field. + This field is part of the `source` oneof. + See the documentation for `c1.api.hooks.v1.JSONPatchConfig` for more details. + type: + - string + - "null" + staticOverlay: + additionalProperties: true + type: + - object + - "null" + title: Json Patch Config + type: object + x-speakeasy-name-override: JSONPatchConfig + c1.api.hooks.v1.LinkFilterConfig: + description: |- + LinkFilterConfig strips or annotates URLs and markdown images in tool output + whose host is not in allowed_hosts. + properties: + action: + description: Action taken on a disallowed link. Unspecified = REDACT. enum: - - SECRET_INPUT_FORMAT_UNSPECIFIED - - SECRET_INPUT_FORMAT_PLAINTEXT - - SECRET_INPUT_FORMAT_JSON - - SECRET_INPUT_FORMAT_YAML - - SECRET_INPUT_FORMAT_KEY_VALUE - readOnly: false + - LINK_FILTER_ACTION_UNSPECIFIED + - LINK_FILTER_ACTION_REDACT + - LINK_FILTER_ACTION_ANNOTATE type: string x-speakeasy-unknown-values: allow - maxViews: - description: Maximum number of views before the secret is burned (0 = unlimited). - format: uint32 - readOnly: false - type: integer - secretType: + allowedHosts: description: |- - Secret type: TEXT or FILE. - TEXT secrets use SetTextContent to upload encrypted content (max 64KB). - FILE secrets use the upload_url from CreateResponse to upload encrypted content (max 1GB). - enum: - - SECRET_TYPE_UNSPECIFIED - - SECRET_TYPE_TEXT - - SECRET_TYPE_FILE - readOnly: false - type: string - x-speakeasy-unknown-values: allow - title: Paper Secret Service Create External Request + Hosts that are permitted. Empty = every host is disallowed. Matched + case-insensitively; a leading "." allows subdomains. + items: + type: string + type: + - array + - "null" + blockImages: + description: When true, markdown image links to disallowed hosts are also acted on. + type: boolean + title: Link Filter Config type: object - x-speakeasy-name-override: PaperSecretServiceCreateExternalRequest - c1.api.secrets.v1.PaperSecretServiceCreateInternalRequest: - description: The PaperSecretServiceCreateInternalRequest message. + x-speakeasy-name-override: LinkFilterConfig + c1.api.hooks.v1.PIIRedactionConfig: + description: PIIRedactionConfig configures post-tool-use redaction of sensitive fields. properties: - allowedUserIds: - description: C1 User IDs allowed to view this secret (1 to 128). + redactFields: + description: The redactFields field. items: type: string - nullable: true - readOnly: false - type: array - contentType: - description: 'For FILE secrets: MIME content type of the original file. Ignored for TEXT secrets.' - readOnly: false + type: + - array + - "null" + replacement: + description: The replacement field. type: string - displayName: + title: Pii Redaction Config + type: object + x-speakeasy-name-override: PIIRedactionConfig + c1.api.hooks.v1.PreToolBlockConfig: + description: |- + PreToolBlockConfig unconditionally denies the tool call before it executes + when its hook's filter matches. Only valid for HOOK_EVENT_TYPE_PRE_TOOL_USE. + properties: + message: description: |- - Optional cleartext label visible to the creator in "My Secrets" view. - Not encrypted — do not put sensitive data here. - readOnly: false - type: string - expiresIn: - format: duration - readOnly: false - type: string - fileSize: - description: 'For FILE secrets: expected file size in bytes (max 1GB). Ignored for TEXT secrets.' - format: int64 - readOnly: false - type: string - filename: - description: 'For FILE secrets: original filename (sanitized server-side). Ignored for TEXT secrets.' - readOnly: false + Message shown when the tool call is denied. Empty falls back to a + generic default. type: string - inputFormat: + title: Pre Tool Block Config + type: object + x-speakeasy-name-override: PreToolBlockConfig + c1.api.hooks.v1.PromptInjectionScanConfig: + description: |- + PromptInjectionScanConfig scans tool output for prompt-injection using the + aigov A2 judge and acts when the verdict is at or above threshold. + properties: + flagOnly: + description: When true, a detection records the finding but does not deny (observe-only). + type: boolean + threshold: description: |- - For TEXT secrets: hint about the plaintext format (e.g., JSON, YAML, key-value). - Used by the viewer UI for syntax highlighting. Does not affect encryption. + Deny (or flag) when the judge scores at or above this level. Unspecified = + HIGH. enum: - - SECRET_INPUT_FORMAT_UNSPECIFIED - - SECRET_INPUT_FORMAT_PLAINTEXT - - SECRET_INPUT_FORMAT_JSON - - SECRET_INPUT_FORMAT_YAML - - SECRET_INPUT_FORMAT_KEY_VALUE - readOnly: false + - PROMPT_INJECTION_THRESHOLD_UNSPECIFIED + - PROMPT_INJECTION_THRESHOLD_LOW + - PROMPT_INJECTION_THRESHOLD_MEDIUM + - PROMPT_INJECTION_THRESHOLD_HIGH type: string x-speakeasy-unknown-values: allow - maxViews: - description: Maximum number of views before the secret is burned (0 = unlimited). - format: uint32 - readOnly: false + title: Prompt Injection Scan Config + type: object + x-speakeasy-name-override: PromptInjectionScanConfig + c1.api.hooks.v1.QueryScopeLimitConfig: + description: |- + QueryScopeLimitConfig caps numeric fields (e.g. limit, page_size) in tool + input so callers cannot request unbounded data. + properties: + fields: + description: The fields field. + items: + type: string + type: + - array + - "null" + maxLimit: + description: The maxLimit field. + format: int32 type: integer - secretType: - description: |- - Secret type: TEXT or FILE. - TEXT secrets use SetTextContent to upload encrypted content (max 64KB). - FILE secrets use the upload_url from CreateResponse to upload encrypted content (max 1GB). - enum: - - SECRET_TYPE_UNSPECIFIED - - SECRET_TYPE_TEXT - - SECRET_TYPE_FILE - readOnly: false - type: string - x-speakeasy-unknown-values: allow - title: Paper Secret Service Create Internal Request + title: Query Scope Limit Config type: object - x-speakeasy-name-override: PaperSecretServiceCreateInternalRequest - c1.api.secrets.v1.PaperSecretServiceCreateResponse: - description: The PaperSecretServiceCreateResponse message. + x-speakeasy-name-override: QueryScopeLimitConfig + c1.api.hooks.v1.SecretsMaskingConfig: + description: |- + SecretsMaskingConfig configures post-tool-use redaction of secret-shaped + substrings (API keys, tokens, private keys) in tool output. properties: - ageRecipient: + additionalPatterns: description: |- - Age X25519 recipient public key (format: "age1...") for client-side encryption. - All content MUST be encrypted to this recipient using the Age encryption format - before calling SetTextContent or uploading to upload_url. - See: https://age-encryption.org - readOnly: false - type: string - secret: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecret' - uploadUrl: - description: |- - For FILE secrets: capability URL for uploading the Age-encrypted file. - Send an HTTP PUT request with the Age-encrypted file bytes as the body - and Content-Type: application/octet-stream. The payload MUST begin with - the Age header "age-encryption.org/v1\n". Maximum file size: 1GB. - Empty for TEXT secrets. - readOnly: false - type: string - vaultId: - description: Vault ID - primary identifier for this secret. - readOnly: false + Extra RE2 regexes whose matches are redacted in addition to the built-in + secret patterns. + items: + type: string + type: + - array + - "null" + placeholder: + description: Replacement string for a matched secret. Empty = "***REDACTED-SECRET***". type: string - title: Paper Secret Service Create Response + title: Secrets Masking Config type: object - x-speakeasy-name-override: PaperSecretServiceCreateResponse - c1.api.secrets.v1.PaperSecretServiceGetContentRequestInput: - description: The PaperSecretServiceGetContentRequest message. + x-speakeasy-name-override: SecretsMaskingConfig + c1.api.hooks.v1.SensitiveFileGuardConfig: + description: |- + SensitiveFileGuardConfig blocks tool calls that reference sensitive file + paths or directories. properties: - readerRecipient: - description: |- - Client's ephemeral Age recipient (age1...) for re-encryption - Server re-encrypts the content to this recipient - readOnly: false - type: string - title: Paper Secret Service Get Content Request + blockedDirectories: + description: The blockedDirectories field. + items: + type: string + type: + - array + - "null" + blockedPatterns: + description: The blockedPatterns field. + items: + type: string + type: + - array + - "null" + title: Sensitive File Guard Config type: object - x-speakeasy-name-override: PaperSecretServiceGetContentRequest - c1.api.secrets.v1.PaperSecretServiceGetContentResponse: - description: | - The PaperSecretServiceGetContentResponse message. - - This message contains a oneof named content. Only a single field of the following list may be set at a time: - - encryptedContent - - downloadUrl + x-speakeasy-name-override: SensitiveFileGuardConfig + c1.api.hooks.v1.ToolOutputSizeGuardConfig: + description: ToolOutputSizeGuardConfig caps post-tool-use output size in bytes. properties: - createdAt: - format: date-time - readOnly: false - type: string - creatorUserId: - description: The creatorUserId field. - readOnly: false - type: string - downloadUrl: - description: |- - For file secrets: presigned S3 download URL (5 minute expiry) - File is still E2E encrypted - client must decrypt after download - This field is part of the `content` oneof. - See the documentation for `c1.api.secrets.v1.PaperSecretServiceGetContentResponse` for more details. - nullable: true - readOnly: false - type: string - encryptedContent: - description: |- - For text secrets: Age-encrypted content (encrypted to reader's recipient) - This field is part of the `content` oneof. - See the documentation for `c1.api.secrets.v1.PaperSecretServiceGetContentResponse` for more details. - format: base64 - nullable: true - readOnly: false - type: string - filename: - description: Original filename (file secrets only) - readOnly: false - type: string - inputFormat: - description: Input format hint for rendering (text secrets only) - enum: - - SECRET_INPUT_FORMAT_UNSPECIFIED - - SECRET_INPUT_FORMAT_PLAINTEXT - - SECRET_INPUT_FORMAT_JSON - - SECRET_INPUT_FORMAT_YAML - - SECRET_INPUT_FORMAT_KEY_VALUE - readOnly: false - type: string - x-speakeasy-unknown-values: allow - secretType: - description: Secret metadata - enum: - - SECRET_TYPE_UNSPECIFIED - - SECRET_TYPE_TEXT - - SECRET_TYPE_FILE - readOnly: false - type: string - x-speakeasy-unknown-values: allow - viewsRemaining: - description: Views remaining after this view (-1 = unlimited) + maxBytes: + description: Maximum tool output size in bytes. Outputs exceeding this are denied. format: int32 - readOnly: false type: integer - title: Paper Secret Service Get Content Response + title: Tool Output Size Guard Config type: object - x-speakeasy-name-override: PaperSecretServiceGetContentResponse - c1.api.secrets.v1.PaperSecretServiceGetResponse: - description: The PaperSecretServiceGetResponse message. + x-speakeasy-name-override: ToolOutputSizeGuardConfig + c1.api.hooks.v1.WriteAuthorizationConfig: + description: |- + WriteAuthorizationConfig blocks tool calls whose ToolClassification is in + blocked_classifications, optionally permitting them within business hours. properties: - secret: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecret' - title: Paper Secret Service Get Response - type: object - x-speakeasy-name-override: PaperSecretServiceGetResponse - c1.api.secrets.v1.PaperSecretServiceRevokeRequestInput: - description: The PaperSecretServiceRevokeRequest message. - title: Paper Secret Service Revoke Request + blockedClassifications: + description: |- + Tool classifications to block. Must have at least one entry; a hook + with no blocked classifications would be a silent misconfiguration. + items: + enum: + - TOOL_CLASSIFICATION_UNSPECIFIED + - TOOL_CLASSIFICATION_READ + - TOOL_CLASSIFICATION_WRITE + - TOOL_CLASSIFICATION_DESTRUCTIVE + - TOOL_CLASSIFICATION_SENSITIVE + - TOOL_CLASSIFICATION_DANGEROUS + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + businessHours: + oneOf: + - $ref: '#/components/schemas/c1.api.hooks.v1.BusinessHours' + - type: "null" + title: Write Authorization Config type: object - x-speakeasy-name-override: PaperSecretServiceRevokeRequest - c1.api.secrets.v1.PaperSecretServiceRevokeResponse: - description: The PaperSecretServiceRevokeResponse message. + x-speakeasy-name-override: WriteAuthorizationConfig + c1.api.iam.v1.ActorObjectPermissions: + description: |- + Legacy: do not use for new objects. Retained only for the existing + AppResource / AppEntitlement / access-review consumers, which will migrate to + c1.api.authorization.v1.ActorObjectPermissions in IGA-2331. New object views + should reference c1.api.authorization.v1.ActorObjectPermissions instead. properties: - secret: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecret' - title: Paper Secret Service Revoke Response + delete: + description: The delete field. + type: boolean + edit: + description: The edit field. + type: boolean + extra: + additionalProperties: + type: boolean + description: The extra field. + type: object + read: + description: The read field. + type: boolean + title: Actor Object Permissions type: object - x-speakeasy-name-override: PaperSecretServiceRevokeResponse - c1.api.secrets.v1.PaperSecretServiceSearchAuditEventsRequest: + x-speakeasy-name-override: ActorObjectPermissions + c1.api.iam.v1.AnnouncedTunnelService: description: |- - PaperSecretServiceSearchAuditEventsRequest searches audit events for a secret - owned by the calling user. Only the secret creator may query events. Results - are sanitized to include only time, event type, and actor information. + AnnouncedTunnelService is one service entry the appliance declared in its + wormhole HELLO frame. Read live from the discovery store; not persisted. properties: - pageSize: - description: Maximum number of results per page (0 uses server default, max 100). - format: int32 - readOnly: false + name: + description: Logical name of the service as declared by the appliance. + type: string + port: + description: TCP port the service listens on inside the appliance network. + format: uint32 type: integer - pageToken: - description: Pagination token from a previous response's next_page_token. - readOnly: false + servicePath: + description: Optional URL path prefix for the service. type: string - vaultId: - description: Required. The vault ID of the secret whose audit events to retrieve. - readOnly: false + serviceType: + description: Application-level protocol type (e.g. "http", "grpc"). type: string - title: Paper Secret Service Search Audit Events Request + transportType: + description: Transport protocol used by the wormhole tunnel (e.g. "tcp"). + type: string + title: Announced Tunnel Service type: object - x-speakeasy-name-override: PaperSecretServiceSearchAuditEventsRequest - c1.api.secrets.v1.PaperSecretServiceSearchAuditEventsResponse: + x-speakeasy-name-override: AnnouncedTunnelService + c1.api.iam.v1.ExternalClientInfo: description: |- - PaperSecretServiceSearchAuditEventsResponse contains a page of audit events - for the requested secret. + ExternalClientInfo provides information about an approved external client. + Used by both List (user's own grants) and Search (admin view of all grants). properties: - list: + clientId: + description: OAuth2 client ID - canonical identifier for this connection (globally unique per DCR) + type: string + clientIdType: + description: How the client_id was established. + enum: + - CLIENT_ID_TYPE_UNSPECIFIED + - CLIENT_ID_TYPE_DCR + - CLIENT_ID_TYPE_METADATA_URL + - CLIENT_ID_TYPE_APP + type: string + x-speakeasy-unknown-values: allow + clientIdUrl: description: |- - Sanitized OCSF events containing only time, event type, and actor fields. - Sensitive fields such as IP addresses, messages, and raw payloads are removed. + Original CIMD metadata URL (e.g., "https://cursor.com/.well-known/oauth-client"). + Empty for DCR clients. + type: string + clientName: + description: Original client name from DCR registration + type: string + createdAt: + format: date-time + type: + - string + - "null" + displayName: + description: User-provided custom name (defaults to client_name if not set) + type: string + lastUsedAt: + format: date-time + type: + - string + - "null" + mcpClientId: + description: MCP client record ID for AI governance tracking. May be empty for legacy grants. + type: string + roleIds: + description: Role IDs granted to this client - frontend can fetch display names via SearchRoles items: - additionalProperties: true - readOnly: false - type: object - nullable: true - readOnly: false - type: array - nextPageToken: - description: Token to retrieve the next page of results. Empty when no more pages exist. - readOnly: false + type: string + type: + - array + - "null" + userId: + description: The user who approved this external client (always populated) type: string - title: Paper Secret Service Search Audit Events Response + verifiedDomain: + description: |- + Verified domain from the client_id URL (e.g., "cursor.com"). + Empty for DCR clients. + type: string + wellKnownClient: + description: The wellKnownClient field. + enum: + - WELL_KNOWN_CLIENT_UNSPECIFIED + - WELL_KNOWN_CLIENT_UNKNOWN + - WELL_KNOWN_CLIENT_CLAUDE_AI + - WELL_KNOWN_CLIENT_CLAUDE_DESKTOP + - WELL_KNOWN_CLIENT_CLAUDE_CODE + - WELL_KNOWN_CLIENT_MCP_INSPECTOR + - WELL_KNOWN_CLIENT_CHATGPT + - WELL_KNOWN_CLIENT_VSCODE + - WELL_KNOWN_CLIENT_CURSOR + - WELL_KNOWN_CLIENT_WINDSURF + - WELL_KNOWN_CLIENT_ZED + - WELL_KNOWN_CLIENT_JETBRAINS + - WELL_KNOWN_CLIENT_DOCKER_MCP_TOOLKIT + type: string + x-speakeasy-unknown-values: allow + title: External Client Info type: object - x-speakeasy-name-override: PaperSecretServiceSearchAuditEventsResponse - c1.api.secrets.v1.PaperSecretServiceSearchMySecretsRequest: - description: |- - SearchMySecrets request - for end users viewing their own secrets. - Automatically scoped to current user. + x-speakeasy-name-override: ExternalClientInfo + c1.api.iam.v1.ExternalClientSearchServiceSearchRequest: + description: The ExternalClientSearchServiceSearchRequest message. properties: + clientIdUrls: + description: |- + Exact-match filter on client_id values (e.g., CIMD URLs). + Returns only grants whose client_id matches one of these values. + items: + type: string + type: + - array + - "null" pageSize: description: The pageSize field. format: int32 - readOnly: false type: integer pageToken: description: The pageToken field. - readOnly: false type: string query: - description: Fuzzy search by display name - readOnly: false - type: string - secretType: - description: Filter by secret type (optional) - enum: - - SECRET_TYPE_UNSPECIFIED - - SECRET_TYPE_TEXT - - SECRET_TYPE_FILE - readOnly: false - type: string - x-speakeasy-unknown-values: allow - sharingMode: - description: Filter by sharing mode (optional) - enum: - - PAPER_VAULT_SHARING_MODE_UNSPECIFIED - - PAPER_VAULT_SHARING_MODE_INTERNAL - - PAPER_VAULT_SHARING_MODE_EXTERNAL - readOnly: false - type: string - x-speakeasy-unknown-values: allow - sortBy: - description: Sort order - enum: - - SEARCH_SORT_BY_UNSPECIFIED - - SEARCH_SORT_BY_CREATED_DESC - - SEARCH_SORT_BY_CREATED_ASC - - SEARCH_SORT_BY_EXPIRES_ASC - - SEARCH_SORT_BY_NAME_ASC - readOnly: false + description: Free-text search on client_name and user display name type: string - x-speakeasy-unknown-values: allow - statuses: - description: Filter by status (optional) + users: + description: Filter by specific user IDs + items: + $ref: '#/components/schemas/c1.api.user.v1.UserRef' + type: + - array + - "null" + wellKnownClients: + description: Filter by well-known client type (e.g., CLAUDE_CODE, CURSOR, etc.) items: enum: - - SECRET_STATUS_UNSPECIFIED - - SECRET_STATUS_ACTIVE - - SECRET_STATUS_EXPIRED - - SECRET_STATUS_BURNED - - SECRET_STATUS_REVOKED - - SECRET_STATUS_DATA_DELETED + - WELL_KNOWN_CLIENT_UNSPECIFIED + - WELL_KNOWN_CLIENT_UNKNOWN + - WELL_KNOWN_CLIENT_CLAUDE_AI + - WELL_KNOWN_CLIENT_CLAUDE_DESKTOP + - WELL_KNOWN_CLIENT_CLAUDE_CODE + - WELL_KNOWN_CLIENT_MCP_INSPECTOR + - WELL_KNOWN_CLIENT_CHATGPT + - WELL_KNOWN_CLIENT_VSCODE + - WELL_KNOWN_CLIENT_CURSOR + - WELL_KNOWN_CLIENT_WINDSURF + - WELL_KNOWN_CLIENT_ZED + - WELL_KNOWN_CLIENT_JETBRAINS + - WELL_KNOWN_CLIENT_DOCKER_MCP_TOOLKIT type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - title: Paper Secret Service Search My Secrets Request + type: + - array + - "null" + title: External Client Search Service Search Request type: object - x-speakeasy-name-override: PaperSecretServiceSearchMySecretsRequest - c1.api.secrets.v1.PaperSecretServiceSearchResponse: - description: Search response for user's own secrets + x-speakeasy-name-override: ExternalClientSearchServiceSearchRequest + c1.api.iam.v1.ExternalClientSearchServiceSearchResponse: + description: The ExternalClientSearchServiceSearchResponse message. properties: list: - description: The list field. + description: Uses ExternalClientInfo with user_id populated for admin views items: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecret' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.iam.v1.ExternalClientInfo' + type: + - array + - "null" nextPageToken: description: The nextPageToken field. - readOnly: false - type: string - title: Paper Secret Service Search Response - type: object - x-speakeasy-name-override: PaperSecretServiceSearchResponse - c1.api.secrets.v1.PaperSecretServiceSetTextContentRequestInput: - description: The PaperSecretServiceSetTextContentRequest message. - properties: - encryptedContent: - description: |- - Age-encrypted content bytes. The plaintext MUST be encrypted using the Age - encryption format to the age_recipient returned by CreateInternal/CreateExternal. - The resulting bytes begin with "age-encryption.org/v1\n" followed by the - encrypted payload. Maximum 64KB after encryption — for larger content, create - a FILE secret and use the upload_url instead. - format: base64 - readOnly: false - type: string - inputFormat: - description: |- - Input format hint for the viewer UI when the secret is decrypted. - Does not affect encryption — this is metadata only. - enum: - - SECRET_INPUT_FORMAT_UNSPECIFIED - - SECRET_INPUT_FORMAT_PLAINTEXT - - SECRET_INPUT_FORMAT_JSON - - SECRET_INPUT_FORMAT_YAML - - SECRET_INPUT_FORMAT_KEY_VALUE - readOnly: false - type: string - x-speakeasy-unknown-values: allow - title: Paper Secret Service Set Text Content Request - type: object - x-speakeasy-name-override: PaperSecretServiceSetTextContentRequest - c1.api.secrets.v1.PaperSecretServiceSetTextContentResponse: - description: The PaperSecretServiceSetTextContentResponse message. - properties: - secret: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecret' - title: Paper Secret Service Set Text Content Response - type: object - x-speakeasy-name-override: PaperSecretServiceSetTextContentResponse - c1.api.service_principal.v1.ServicePrincipal: - description: ServicePrincipal represents a tenant-managed non-human identity. - properties: - createdAt: - format: date-time - readOnly: true - type: string - displayName: - description: The display name of the service principal. - readOnly: false - type: string - id: - description: The unique user ID of the service principal. - readOnly: true - type: string - updatedAt: - format: date-time - readOnly: true type: string - user: - $ref: '#/components/schemas/c1.api.user.v1.User' - title: Service Principal + title: External Client Search Service Search Response type: object - x-speakeasy-name-override: ServicePrincipal - c1.api.service_principal.v1.ServicePrincipalBinding: - description: |- - ServicePrincipalBinding is one row in the binding store, naming a - subject's link to a single service principal. + x-speakeasy-name-override: ExternalClientSearchServiceSearchResponse + c1.api.iam.v1.GetRolesResponse: + description: The GetRolesResponse message contains the retrieved role. properties: - createdAt: - format: date-time - readOnly: false - type: string - servicePrincipalId: - description: The servicePrincipalId field. - readOnly: false - type: string - updatedAt: - format: date-time - readOnly: false - type: string - title: Service Principal Binding + role: + oneOf: + - $ref: '#/components/schemas/c1.api.iam.v1.Role' + - type: "null" + title: Get Roles Response type: object - x-speakeasy-name-override: ServicePrincipalBinding - c1.api.service_principal.v1.ServicePrincipalBindingSubject: - description: | - ServicePrincipalBindingSubject identifies the entity that is bound to a - service principal. Open-ended oneof so future subject kinds (workflows, - connectors, etc.) can be added without changing the RPC shape. - - This message contains a oneof named kind. Only a single field of the following list may be set at a time: - - functionId + x-speakeasy-name-override: GetRolesResponse + c1.api.iam.v1.ListRolesResponse: + description: The ListRolesResponse message contains a list of results and a nextPageToken if applicable. properties: - functionId: + list: + description: The list of results containing up to X results, where X is the page size defined in the request. + items: + $ref: '#/components/schemas/c1.api.iam.v1.Role' + type: + - array + - "null" + nextPageToken: description: |- - Function ID. The function authenticates outbound c1-api calls as - user: instead of function:. - This field is part of the `kind` oneof. - See the documentation for `c1.api.service_principal.v1.ServicePrincipalBindingSubject` for more details. - nullable: true - readOnly: false + The nextPageToken is shown for the next page if the number of results is larger than the max page size. + The server returns one page of results and the nextPageToken until all results are retreived. + To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. type: string - title: Service Principal Binding Subject + title: List Roles Response type: object - x-speakeasy-name-override: ServicePrincipalBindingSubject - c1.api.service_principal.v1.ServicePrincipalCredential: - description: ServicePrincipalCredential represents a client credential for a service principal. + x-speakeasy-name-override: ListRolesResponse + c1.api.iam.v1.PersonalClient: + description: The PersonalClient message contains information about a presonal client credential. properties: - allowSourceCidrs: - description: CIDR restrictions for this credential. + allowSourceCidr: + description: |- + If set, only allows the CIDRs in the array to use the credential. + Accepts IPv4 (e.g. 10.0.0.0/24) or IPv6 (e.g. 2001:db8::/32) CIDRs. items: type: string - nullable: true - readOnly: true - type: array + type: + - array + - "null" clientId: - description: 'The full client ID in format: ${cutename}@${tenant}.${installation}/spc' + description: The clientID of the credential. readOnly: true type: string createdAt: format: date-time readOnly: true - type: string - displayName: - description: The display name of the credential. - readOnly: false - type: string - expiresAt: + type: + - string + - "null" + deletedAt: format: date-time readOnly: true + type: + - string + - "null" + displayName: + description: The display name of the personal client credential. type: string + expiresTime: + format: date-time + type: + - string + - "null" id: - description: The unique ID of the credential (cutename format). + description: The unique ID of the personal client credential. readOnly: true type: string lastUsedAt: format: date-time readOnly: true - type: string - requireDpop: - description: Whether DPoP proof-of-possession is required for this credential. - readOnly: true - type: boolean - scopedRoleIds: - description: Scoped role IDs for this credential (intersection with SP roles at token issuance). + type: + - string + - "null" + scopedRoles: + description: |- + scoped_roles provides a list of IAM Roles + that this OAuth2 Client's API permissions + are reduced to. The permissions granted to OAuth2 Client + are AND'ed against the owning User's own permissions. items: type: string - nullable: true + type: + - array + - "null" + updatedAt: + format: date-time readOnly: true - type: array - servicePrincipalId: - description: The service principal user ID this credential belongs to. + type: + - string + - "null" + userId: + description: The ID of the user that this credential is created for. readOnly: true type: string - title: Service Principal Credential + title: Personal Client type: object - x-speakeasy-name-override: ServicePrincipalCredential - c1.api.service_principal.v1.ServicePrincipalServiceAddBindingRequest: - description: The ServicePrincipalServiceAddBindingRequest message. + x-speakeasy-name-override: PersonalClient + c1.api.iam.v1.PersonalClientSearchServiceSearchRequest: + description: The PersonalClientSearchServiceSearchRequest message. properties: - servicePrincipalId: - description: The servicePrincipalId field. - readOnly: false + pageSize: + description: The maximum number of results to return per page. + format: int32 + type: integer + pageToken: + description: A pagination token returned from a previous Search call. type: string - subject: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalBindingSubject' - title: Service Principal Service Add Binding Request - type: object - x-speakeasy-name-override: ServicePrincipalServiceAddBindingRequest - c1.api.service_principal.v1.ServicePrincipalServiceAddBindingResponse: - description: The ServicePrincipalServiceAddBindingResponse message. - title: Service Principal Service Add Binding Response + query: + description: A text query to filter personal clients by display name. + type: string + users: + description: Filter results to personal clients owned by the specified users. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserRef' + type: + - array + - "null" + title: Personal Client Search Service Search Request type: object - x-speakeasy-name-override: ServicePrincipalServiceAddBindingResponse - c1.api.service_principal.v1.ServicePrincipalServiceCreateCredentialRequestInput: - description: The ServicePrincipalServiceCreateCredentialRequest message. + x-speakeasy-name-override: PersonalClientSearchServiceSearchRequest + c1.api.iam.v1.PersonalClientSearchServiceSearchResponse: + description: The PersonalClientSearchServiceSearchResponse message. properties: - allowSourceCidrs: - description: |- - A list of CIDRs to restrict this credential to. - Accepts IPv4 (e.g. 10.0.0.0/24) or IPv6 (e.g. 2001:db8::/32) CIDRs. + list: + description: The list of personal client credentials matching the search criteria. items: - type: string - nullable: true - readOnly: false - type: array - displayName: - description: The display name for the new credential. - readOnly: false + $ref: '#/components/schemas/c1.api.iam.v1.PersonalClient' + type: + - array + - "null" + nextPageToken: + description: A token to retrieve the next page of results, or empty if there are no more results. + type: string + title: Personal Client Search Service Search Response + type: object + x-speakeasy-name-override: PersonalClientSearchServiceSearchResponse + c1.api.iam.v1.PersonalClientServiceCreateRequest: + description: The PersonalClientServiceCreateRequest message contains the fields for creating a new personal client. + properties: + allowSourceCidr: + description: |- + A list of CIDRs to restrict this credential to. + Accepts IPv4 (e.g. 10.0.0.0/24) or IPv6 (e.g. 2001:db8::/32) CIDRs. + items: + type: string + type: + - array + - "null" + displayName: + description: The display name for the new personal client. type: string expires: format: duration - readOnly: false - type: string - requireDpop: - description: If true, requires DPoP proof-of-possession for token exchange using this credential. - readOnly: false - type: boolean + type: + - string + - "null" scopedRoles: description: The list of roles to restrict the credential to. items: type: string - nullable: true - readOnly: false - type: array - title: Service Principal Service Create Credential Request + type: + - array + - "null" + title: Personal Client Service Create Request type: object - x-speakeasy-name-override: ServicePrincipalServiceCreateCredentialRequest - c1.api.service_principal.v1.ServicePrincipalServiceCreateCredentialResponse: - description: The ServicePrincipalServiceCreateCredentialResponse message. + x-speakeasy-name-override: PersonalClientServiceCreateRequest + c1.api.iam.v1.PersonalClientServiceCreateResponse: + description: The PersonalClientServiceCreateResponse message contains the created personal client and client secret. properties: + client: + oneOf: + - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClient' + - type: "null" clientSecret: - description: The client secret. Shown exactly once at creation -- cannot be retrieved again. - readOnly: false + description: The client secret that corresponds to the personal client. Make sure to save this, because it cannot be returned or queried again. type: string - credential: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalCredential' - title: Service Principal Service Create Credential Response + title: Personal Client Service Create Response type: object - x-speakeasy-name-override: ServicePrincipalServiceCreateCredentialResponse - c1.api.service_principal.v1.ServicePrincipalServiceCreateRequest: - description: The ServicePrincipalServiceCreateRequest message. - properties: - displayName: - description: The display name for the new service principal. - readOnly: false - type: string - title: Service Principal Service Create Request + x-speakeasy-name-override: PersonalClientServiceCreateResponse + c1.api.iam.v1.PersonalClientServiceDeleteRequestInput: + description: The PersonalClientServiceDeleteRequest message. + title: Personal Client Service Delete Request type: object - x-speakeasy-name-override: ServicePrincipalServiceCreateRequest - c1.api.service_principal.v1.ServicePrincipalServiceCreateResponse: - description: The ServicePrincipalServiceCreateResponse message. + x-speakeasy-name-override: PersonalClientServiceDeleteRequest + c1.api.iam.v1.PersonalClientServiceDeleteResponse: + description: The PersonalClientServiceDeleteResponse message. + title: Personal Client Service Delete Response + type: object + x-speakeasy-name-override: PersonalClientServiceDeleteResponse + c1.api.iam.v1.PersonalClientServiceGetResponse: + description: The PersonalClientServiceGetResponse message. properties: - servicePrincipal: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipal' - title: Service Principal Service Create Response + client: + oneOf: + - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClient' + - type: "null" + title: Personal Client Service Get Response type: object - x-speakeasy-name-override: ServicePrincipalServiceCreateResponse - c1.api.service_principal.v1.ServicePrincipalServiceDeleteBindingRequest: - description: The ServicePrincipalServiceDeleteBindingRequest message. + x-speakeasy-name-override: PersonalClientServiceGetResponse + c1.api.iam.v1.PersonalClientServiceListResponse: + description: The PersonalClientServiceListResponse message. properties: - servicePrincipalId: - description: The servicePrincipalId field. - readOnly: false + list: + description: The list of personal client credentials owned by the calling user. + items: + $ref: '#/components/schemas/c1.api.iam.v1.PersonalClient' + type: + - array + - "null" + nextPageToken: + description: A token to retrieve the next page of results, or empty if there are no more results. type: string - subject: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalBindingSubject' - title: Service Principal Service Delete Binding Request + title: Personal Client Service List Response type: object - x-speakeasy-name-override: ServicePrincipalServiceDeleteBindingRequest - c1.api.service_principal.v1.ServicePrincipalServiceDeleteBindingResponse: - description: The ServicePrincipalServiceDeleteBindingResponse message. - title: Service Principal Service Delete Binding Response + x-speakeasy-name-override: PersonalClientServiceListResponse + c1.api.iam.v1.PersonalClientServiceUpdateRequestInput: + description: The PersonalClientServiceUpdateRequest message. + properties: + client: + oneOf: + - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClient' + - type: "null" + updateMask: + type: + - string + - "null" + title: Personal Client Service Update Request type: object - x-speakeasy-name-override: ServicePrincipalServiceDeleteBindingResponse - c1.api.service_principal.v1.ServicePrincipalServiceDeleteRequestInput: - description: The ServicePrincipalServiceDeleteRequest message. - title: Service Principal Service Delete Request + x-speakeasy-name-override: PersonalClientServiceUpdateRequest + c1.api.iam.v1.PersonalClientServiceUpdateResponse: + description: The PersonalClientServiceUpdateResponse message. + properties: + client: + oneOf: + - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClient' + - type: "null" + title: Personal Client Service Update Response type: object - x-speakeasy-name-override: ServicePrincipalServiceDeleteRequest - c1.api.service_principal.v1.ServicePrincipalServiceDeleteResponse: - description: The ServicePrincipalServiceDeleteResponse message. - title: Service Principal Service Delete Response + x-speakeasy-name-override: PersonalClientServiceUpdateResponse + c1.api.iam.v1.PersonalDevice: + description: |- + PersonalDevice is one physical device with its app clients. The device + identity is a stable thumbprint of the device's root signing key; the root key + never authenticates an app — each client uses its own key. + properties: + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + deviceId: + description: |- + The stable device identity: a base64url-encoded SHA-256 thumbprint of the + device's root public signing key. + readOnly: true + type: string + deviceOs: + description: The device operating system, e.g. "macos-14.5". + readOnly: true + type: string + deviceSurface: + description: The device surface, e.g. "macos-desktop". + readOnly: true + type: string + displayName: + description: |- + The human-friendly device label, defaulted from the first app's name at + registration. Devices are listed sorted by this name. Mutable via + UpdateDevice. + type: string + status: + description: |- + The device's lifecycle status. Revoked devices are retained for audit and are + returned by Search only when the status filter requests them. + enum: + - PERSONAL_DEVICE_STATUS_UNSPECIFIED + - PERSONAL_DEVICE_STATUS_ACTIVE + - PERSONAL_DEVICE_STATUS_REVOKED + readOnly: true + type: string + x-speakeasy-unknown-values: allow + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + userId: + description: The ID of the user this device is bound to (the approving user). + readOnly: true + type: string + title: Personal Device type: object - x-speakeasy-name-override: ServicePrincipalServiceDeleteResponse - c1.api.service_principal.v1.ServicePrincipalServiceGetCredentialResponse: - description: The ServicePrincipalServiceGetCredentialResponse message. + x-speakeasy-name-override: PersonalDevice + c1.api.iam.v1.PersonalDeviceClient: + description: |- + PersonalDeviceClient is a single app client on a device. The client + authenticates with its own asymmetric key; there is no client secret. properties: - credential: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalCredential' - title: Service Principal Service Get Credential Response + clientId: + description: The full client_id of the device credential. + readOnly: true + type: string + clientName: + description: The human-friendly client name from its registration metadata. + readOnly: true + type: string + consumerKeyId: + description: The stable identity of this client's per-app key. + readOnly: true + type: string + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + deviceOs: + description: The device operating system captured for this client, e.g. "macos-14.5". + readOnly: true + type: string + deviceSurface: + description: The device surface captured for this client, e.g. "macos-desktop". + readOnly: true + type: string + displayName: + description: The display name of the device credential. + readOnly: true + type: string + id: + description: The unique ID of the device client (the local part of client_id). + readOnly: true + type: string + lastUsedAt: + format: date-time + readOnly: true + type: + - string + - "null" + softwareId: + description: An identifier for the client software, from its registration metadata. + readOnly: true + type: string + softwareVersion: + description: The version of the client software, from its registration metadata. + readOnly: true + type: string + title: Personal Device Client type: object - x-speakeasy-name-override: ServicePrincipalServiceGetCredentialResponse - c1.api.service_principal.v1.ServicePrincipalServiceGetResponse: - description: The ServicePrincipalServiceGetResponse message. + x-speakeasy-name-override: PersonalDeviceClient + c1.api.iam.v1.PersonalDeviceServiceGetDeviceResponse: + description: The PersonalDeviceServiceGetDeviceResponse message. properties: - servicePrincipal: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipal' - title: Service Principal Service Get Response + device: + oneOf: + - $ref: '#/components/schemas/c1.api.iam.v1.PersonalDevice' + - type: "null" + title: Personal Device Service Get Device Response type: object - x-speakeasy-name-override: ServicePrincipalServiceGetResponse - c1.api.service_principal.v1.ServicePrincipalServiceListBindingsRequest: - description: The ServicePrincipalServiceListBindingsRequest message. + x-speakeasy-name-override: PersonalDeviceServiceGetDeviceResponse + c1.api.iam.v1.PersonalDeviceServiceListDeviceClientsResponse: + description: The PersonalDeviceServiceListDeviceClientsResponse message. + properties: + clients: + description: The app clients registered on the device. + items: + $ref: '#/components/schemas/c1.api.iam.v1.PersonalDeviceClient' + type: + - array + - "null" + nextPageToken: + description: A token to retrieve the next page of results, or empty if there are no more. + type: string + title: Personal Device Service List Device Clients Response + type: object + x-speakeasy-name-override: PersonalDeviceServiceListDeviceClientsResponse + c1.api.iam.v1.PersonalDeviceServiceRevokeDeviceClientRequestInput: + description: The PersonalDeviceServiceRevokeDeviceClientRequest message. + title: Personal Device Service Revoke Device Client Request + type: object + x-speakeasy-name-override: PersonalDeviceServiceRevokeDeviceClientRequest + c1.api.iam.v1.PersonalDeviceServiceRevokeDeviceClientResponse: + description: The PersonalDeviceServiceRevokeDeviceClientResponse message. + title: Personal Device Service Revoke Device Client Response + type: object + x-speakeasy-name-override: PersonalDeviceServiceRevokeDeviceClientResponse + c1.api.iam.v1.PersonalDeviceServiceRevokeDeviceRequestInput: + description: The PersonalDeviceServiceRevokeDeviceRequest message. + title: Personal Device Service Revoke Device Request + type: object + x-speakeasy-name-override: PersonalDeviceServiceRevokeDeviceRequest + c1.api.iam.v1.PersonalDeviceServiceRevokeDeviceResponse: + description: The PersonalDeviceServiceRevokeDeviceResponse message. + title: Personal Device Service Revoke Device Response + type: object + x-speakeasy-name-override: PersonalDeviceServiceRevokeDeviceResponse + c1.api.iam.v1.PersonalDeviceServiceSearchRequest: + description: The PersonalDeviceServiceSearchRequest message. properties: pageSize: - description: The pageSize field. + description: The maximum number of results to return per page. format: int32 - readOnly: false type: integer pageToken: - description: The pageToken field. - readOnly: false + description: A pagination token returned from a previous Search call. type: string - subject: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalBindingSubject' - title: Service Principal Service List Bindings Request + query: + description: An optional case-insensitive filter on the device display name. + type: string + statusFilter: + description: Which device statuses to return. Defaults to active devices only. + enum: + - PERSONAL_DEVICE_STATUS_FILTER_UNSPECIFIED + - PERSONAL_DEVICE_STATUS_FILTER_ACTIVE + - PERSONAL_DEVICE_STATUS_FILTER_REVOKED + - PERSONAL_DEVICE_STATUS_FILTER_ALL + type: string + x-speakeasy-unknown-values: allow + title: Personal Device Service Search Request type: object - x-speakeasy-name-override: ServicePrincipalServiceListBindingsRequest - c1.api.service_principal.v1.ServicePrincipalServiceListBindingsResponse: - description: The ServicePrincipalServiceListBindingsResponse message. + x-speakeasy-name-override: PersonalDeviceServiceSearchRequest + c1.api.iam.v1.PersonalDeviceServiceSearchResponse: + description: The PersonalDeviceServiceSearchResponse message. properties: - bindings: - description: |- - Active bindings held by the subject in this page. Empty when the - subject is unbound. Order is unspecified. + list: + description: The devices the calling user has registered, matching the search criteria. items: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalBinding' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.iam.v1.PersonalDevice' + type: + - array + - "null" nextPageToken: - description: The nextPageToken field. - readOnly: false + description: A token to retrieve the next page of results, or empty if there are no more. type: string - title: Service Principal Service List Bindings Response + title: Personal Device Service Search Response type: object - x-speakeasy-name-override: ServicePrincipalServiceListBindingsResponse - c1.api.service_principal.v1.ServicePrincipalServiceListCredentialsResponse: - description: The ServicePrincipalServiceListCredentialsResponse message. + x-speakeasy-name-override: PersonalDeviceServiceSearchResponse + c1.api.iam.v1.PersonalDeviceServiceUpdateDeviceRequestInput: + description: The PersonalDeviceServiceUpdateDeviceRequest message. properties: - list: - description: The list field. - items: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalCredential' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The nextPageToken field. - readOnly: false + device: + oneOf: + - $ref: '#/components/schemas/c1.api.iam.v1.PersonalDevice' + - type: "null" + updateMask: + type: + - string + - "null" + title: Personal Device Service Update Device Request + type: object + x-speakeasy-name-override: PersonalDeviceServiceUpdateDeviceRequest + c1.api.iam.v1.PersonalDeviceServiceUpdateDeviceResponse: + description: The PersonalDeviceServiceUpdateDeviceResponse message. + properties: + device: + oneOf: + - $ref: '#/components/schemas/c1.api.iam.v1.PersonalDevice' + - type: "null" + title: Personal Device Service Update Device Response + type: object + x-speakeasy-name-override: PersonalDeviceServiceUpdateDeviceResponse + c1.api.iam.v1.Role: + description: Role is a role that can be assigned to a user in ConductorOne. + properties: + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + displayName: + description: The display name of the role. type: string - title: Service Principal Service List Credentials Response + id: + description: The id of the role. + readOnly: true + type: string + name: + description: The internal name of the role. + readOnly: true + type: string + permissions: + description: The list of permissions this role has. + items: + type: string + type: + - array + - "null" + serviceRoles: + description: The list of serviceRoles that this role has. + items: + type: string + type: + - array + - "null" + systemApiOnly: + description: This Role is intended for API keys usage only, and the user interface may not function as expected. + readOnly: true + type: boolean + systemBuiltin: + description: The system builtin field. If this field is set, the role is not editable. + readOnly: true + type: boolean + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Role type: object - x-speakeasy-name-override: ServicePrincipalServiceListCredentialsResponse - c1.api.service_principal.v1.ServicePrincipalServiceListResponse: - description: The ServicePrincipalServiceListResponse message. + x-speakeasy-name-override: Role + c1.api.iam.v1.TunnelAppliance: + description: |- + TunnelAppliance is the live state of the customer-side appliance for one + bridge. properties: - list: - description: The list field. + announcedServiceCount: + description: Number of services the appliance is currently announcing. + format: uint32 + type: integer + lastSeenAt: + format: date-time + type: + - string + - "null" + links: + description: |- + Wormhole relays currently holding a Link for this bridge. Typically of + length 1. items: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipal' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The nextPageToken field. - readOnly: false + $ref: '#/components/schemas/c1.api.iam.v1.TunnelApplianceLink' + type: + - array + - "null" + status: + description: The status field. + enum: + - TUNNEL_APPLIANCE_STATUS_UNSPECIFIED + - TUNNEL_APPLIANCE_STATUS_CONNECTED + - TUNNEL_APPLIANCE_STATUS_DISCONNECTED + - TUNNEL_APPLIANCE_STATUS_NEVER_CONNECTED type: string - title: Service Principal Service List Response + x-speakeasy-unknown-values: allow + title: Tunnel Appliance type: object - x-speakeasy-name-override: ServicePrincipalServiceListResponse - c1.api.service_principal.v1.ServicePrincipalServiceRevokeCredentialRequestInput: - description: The ServicePrincipalServiceRevokeCredentialRequest message. - title: Service Principal Service Revoke Credential Request + x-speakeasy-name-override: TunnelAppliance + c1.api.iam.v1.TunnelApplianceLink: + description: The TunnelApplianceLink message. + properties: + avgRtt: + format: duration + type: + - string + - "null" + leaseExpiresAt: + format: date-time + type: + - string + - "null" + relayAddress: + description: |- + Public address (host:port) of the relay server, suitable for use in + client-side connection strings. + type: string + relayId: + description: Identifier of the wormhole relay server holding this Link. + type: string + title: Tunnel Appliance Link type: object - x-speakeasy-name-override: ServicePrincipalServiceRevokeCredentialRequest - c1.api.service_principal.v1.ServicePrincipalServiceRevokeCredentialResponse: - description: The ServicePrincipalServiceRevokeCredentialResponse message. - title: Service Principal Service Revoke Credential Response + x-speakeasy-name-override: TunnelApplianceLink + c1.api.iam.v1.TunnelBridge: + description: |- + TunnelBridge is the API view of a bridge — the customer-facing entity + for managing a wormhole tunnel appliance. + properties: + appliance: + oneOf: + - $ref: '#/components/schemas/c1.api.iam.v1.TunnelAppliance' + - type: "null" + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + description: + description: The description field. + type: string + displayName: + description: The displayName field. + type: string + id: + description: The id field. + readOnly: true + type: string + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Tunnel Bridge type: object - x-speakeasy-name-override: ServicePrincipalServiceRevokeCredentialResponse - c1.api.service_principal.v1.ServicePrincipalServiceUpdateCredentialRequestInput: - description: The ServicePrincipalServiceUpdateCredentialRequest message. + x-speakeasy-name-override: TunnelBridge + c1.api.iam.v1.TunnelCredential: + description: |- + TunnelCredential is the API view of one OAuth credential within a bridge. + The plaintext client_secret is only populated on the CreateBridgeCredential + response. properties: - credential: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalCredential' - updateMask: - nullable: true - readOnly: false + bridgeId: + description: The bridge this credential belongs to. + readOnly: true type: string - title: Service Principal Service Update Credential Request + clientId: + description: The client_id (full ${id}@${tenant_domain}/tcc form). + readOnly: true + type: string + clientSecret: + description: |- + The plaintext client_secret. ONLY populated on the + CreateBridgeCredential response; empty on Get / List. + readOnly: true + type: string + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + credentialStatus: + description: Lifecycle status of this credential record. + enum: + - TUNNEL_CREDENTIAL_STATUS_UNSPECIFIED + - TUNNEL_CREDENTIAL_STATUS_ACTIVE + - TUNNEL_CREDENTIAL_STATUS_REVOKED + - TUNNEL_CREDENTIAL_STATUS_EXPIRED + readOnly: true + type: string + x-speakeasy-unknown-values: allow + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + expiresTime: + format: date-time + readOnly: true + type: + - string + - "null" + id: + description: The id field. + readOnly: true + type: string + lastUsedAt: + format: date-time + readOnly: true + type: + - string + - "null" + revokedAt: + format: date-time + readOnly: true + type: + - string + - "null" + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Tunnel Credential type: object - x-speakeasy-name-override: ServicePrincipalServiceUpdateCredentialRequest - c1.api.service_principal.v1.ServicePrincipalServiceUpdateCredentialResponse: - description: The ServicePrincipalServiceUpdateCredentialResponse message. + x-speakeasy-name-override: TunnelCredential + c1.api.iam.v1.TunnelCredentialsServiceCreateBridgeCredentialRequestInput: + description: The TunnelCredentialsServiceCreateBridgeCredentialRequest message. + title: Tunnel Credentials Service Create Bridge Credential Request + type: object + x-speakeasy-name-override: TunnelCredentialsServiceCreateBridgeCredentialRequest + c1.api.iam.v1.TunnelCredentialsServiceCreateBridgeCredentialResponse: + description: The TunnelCredentialsServiceCreateBridgeCredentialResponse message. properties: credential: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalCredential' - title: Service Principal Service Update Credential Response + oneOf: + - $ref: '#/components/schemas/c1.api.iam.v1.TunnelCredential' + - type: "null" + title: Tunnel Credentials Service Create Bridge Credential Response type: object - x-speakeasy-name-override: ServicePrincipalServiceUpdateCredentialResponse - c1.api.service_principal.v1.ServicePrincipalServiceUpdateRequestInput: - description: The ServicePrincipalServiceUpdateRequest message. + x-speakeasy-name-override: TunnelCredentialsServiceCreateBridgeCredentialResponse + c1.api.iam.v1.TunnelCredentialsServiceCreateBridgeRequest: + description: The TunnelCredentialsServiceCreateBridgeRequest message. properties: - servicePrincipal: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipal' - updateMask: - nullable: true - readOnly: false + description: + description: The description field. type: string - title: Service Principal Service Update Request + displayName: + description: The displayName field. + type: string + title: Tunnel Credentials Service Create Bridge Request type: object - x-speakeasy-name-override: ServicePrincipalServiceUpdateRequest - c1.api.service_principal.v1.ServicePrincipalServiceUpdateResponse: - description: The ServicePrincipalServiceUpdateResponse message. + x-speakeasy-name-override: TunnelCredentialsServiceCreateBridgeRequest + c1.api.iam.v1.TunnelCredentialsServiceCreateBridgeResponse: + description: The TunnelCredentialsServiceCreateBridgeResponse message. properties: - servicePrincipal: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipal' - title: Service Principal Service Update Response + bridge: + oneOf: + - $ref: '#/components/schemas/c1.api.iam.v1.TunnelBridge' + - type: "null" + title: Tunnel Credentials Service Create Bridge Response type: object - x-speakeasy-name-override: ServicePrincipalServiceUpdateResponse - c1.api.settings.v1.AWSExternalID: - description: AWSExternalID contains the tenant's external ID for AWS IAM role trust policies. + x-speakeasy-name-override: TunnelCredentialsServiceCreateBridgeResponse + c1.api.iam.v1.TunnelCredentialsServiceDeleteBridgeRequestInput: + description: The TunnelCredentialsServiceDeleteBridgeRequest message. + title: Tunnel Credentials Service Delete Bridge Request + type: object + x-speakeasy-name-override: TunnelCredentialsServiceDeleteBridgeRequest + c1.api.iam.v1.TunnelCredentialsServiceDeleteBridgeResponse: + description: Empty response body. Status code indicates success. + title: Tunnel Credentials Service Delete Bridge Response + type: object + x-speakeasy-name-override: TunnelCredentialsServiceDeleteBridgeResponse + c1.api.iam.v1.TunnelCredentialsServiceGetBridgeResponse: + description: The TunnelCredentialsServiceGetBridgeResponse message. properties: - externalId: - description: The external ID value to include in the AWS IAM role trust policy condition. - readOnly: false + bridge: + oneOf: + - $ref: '#/components/schemas/c1.api.iam.v1.TunnelBridge' + - type: "null" + title: Tunnel Credentials Service Get Bridge Response + type: object + x-speakeasy-name-override: TunnelCredentialsServiceGetBridgeResponse + c1.api.iam.v1.TunnelCredentialsServiceListBridgeAnnouncedServicesResponse: + description: The TunnelCredentialsServiceListBridgeAnnouncedServicesResponse message. + properties: + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.iam.v1.AnnouncedTunnelService' + type: + - array + - "null" + title: Tunnel Credentials Service List Bridge Announced Services Response + type: object + x-speakeasy-name-override: TunnelCredentialsServiceListBridgeAnnouncedServicesResponse + c1.api.iam.v1.TunnelCredentialsServiceListBridgeCredentialsResponse: + description: The TunnelCredentialsServiceListBridgeCredentialsResponse message. + properties: + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.iam.v1.TunnelCredential' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - title: Aws External Id + title: Tunnel Credentials Service List Bridge Credentials Response type: object - x-speakeasy-entity: AWS_EXTERNAL_ID - x-speakeasy-name-override: AWSExternalID - c1.api.settings.v1.AWSSESProviderConfig: - description: AWSSESProviderConfig configures sending via a customer's AWS SES account. - nullable: true + x-speakeasy-name-override: TunnelCredentialsServiceListBridgeCredentialsResponse + c1.api.iam.v1.TunnelCredentialsServiceListBridgesResponse: + description: The TunnelCredentialsServiceListBridgesResponse message. properties: - configurationSetName: - description: Optional SES configuration set name for tracking/metrics. - readOnly: false + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.iam.v1.TunnelBridge' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - region: - description: AWS region where SES identities are verified (e.g., "us-east-1"). - readOnly: false + title: Tunnel Credentials Service List Bridges Response + type: object + x-speakeasy-name-override: TunnelCredentialsServiceListBridgesResponse + c1.api.iam.v1.TunnelCredentialsServiceRevokeBridgeCredentialRequestInput: + description: The TunnelCredentialsServiceRevokeBridgeCredentialRequest message. + title: Tunnel Credentials Service Revoke Bridge Credential Request + type: object + x-speakeasy-name-override: TunnelCredentialsServiceRevokeBridgeCredentialRequest + c1.api.iam.v1.TunnelCredentialsServiceRevokeBridgeCredentialResponse: + description: Empty response body. Status code indicates success. + title: Tunnel Credentials Service Revoke Bridge Credential Response + type: object + x-speakeasy-name-override: TunnelCredentialsServiceRevokeBridgeCredentialResponse + c1.api.iam.v1.TunnelCredentialsServiceUpdateBridgeRequestInput: + description: The TunnelCredentialsServiceUpdateBridgeRequest message. + properties: + description: + description: |- + New description. Applied only when "description" is in update_mask. + Empty clears the description. type: string - roleArn: + displayName: description: |- - IAM role ARN for sts:AssumeRole. The trust policy should require the - tenant's AWS External ID (GET /api/v1/settings/aws-external-id). - readOnly: false + New display name. Applied only when "display_name" is in update_mask. + Must be non-empty when applied. type: string - title: Awsses Provider Config - type: object - x-speakeasy-name-override: AWSSESProviderConfig - c1.api.settings.v1.AccessProvisionedPreference: - description: The AccessProvisionedPreference message. + updateMask: + type: + - string + - "null" + title: Tunnel Credentials Service Update Bridge Request + type: object + x-speakeasy-name-override: TunnelCredentialsServiceUpdateBridgeRequest + c1.api.iam.v1.TunnelCredentialsServiceUpdateBridgeResponse: + description: The TunnelCredentialsServiceUpdateBridgeResponse message. + properties: + bridge: + oneOf: + - $ref: '#/components/schemas/c1.api.iam.v1.TunnelBridge' + - type: "null" + title: Tunnel Credentials Service Update Bridge Response + type: object + x-speakeasy-name-override: TunnelCredentialsServiceUpdateBridgeResponse + c1.api.iam.v1.UpdateRoleRequestInput: + description: The UpdateRoleRequest message contains the role to update and the update mask. properties: - enabled: - description: The enabled field. - readOnly: false - type: boolean - locked: - description: The locked field. - readOnly: false - type: boolean - title: Access Provisioned Preference + role: + oneOf: + - $ref: '#/components/schemas/c1.api.iam.v1.Role' + - type: "null" + updateMask: + type: + - string + - "null" + title: Update Role Request type: object - x-speakeasy-name-override: AccessProvisionedPreference - c1.api.settings.v1.ApprovalNeededPreference: - description: The ApprovalNeededPreference message. + x-speakeasy-name-override: UpdateRoleRequest + c1.api.iam.v1.UpdateRolesResponse: + description: UpdateRolesResponse is the response message containing the updated role. properties: - enabled: - description: The enabled field. - readOnly: false - type: boolean - locked: - description: The locked field. - readOnly: false - type: boolean - title: Approval Needed Preference + role: + oneOf: + - $ref: '#/components/schemas/c1.api.iam.v1.Role' + - type: "null" + title: Update Roles Response type: object - x-speakeasy-name-override: ApprovalNeededPreference - c1.api.settings.v1.C1BuiltInProviderConfig: + x-speakeasy-name-override: UpdateRolesResponse + c1.api.identity_platform.v1.IdentityPolicyTenantDefaults: description: |- - C1BuiltInProviderConfig selects the ConductorOne built-in email provider. - Emails are sent from no-reply@conductorone.com via the platform SendGrid account. - Only supports sending to C1 users — external email addresses are not supported. - No configuration fields required. - nullable: true - title: C 1 Built In Provider Config - type: object - x-speakeasy-name-override: C1BuiltInProviderConfig - c1.api.settings.v1.CIDRRestriction: - description: CIDRRestriction defines an IP-based access restriction with an enable toggle and a list of allowed CIDRs. + IdentityPolicyTenantDefaults is the tenant-wide set of default identity + policies applied when no more specific policy matches a user. properties: - enabled: - description: Whether this CIDR restriction is enforced. - readOnly: false - type: boolean - sourceCidr: + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + credentialInventoryPolicyId: + description: The default credential inventory policy (which credential types users may enroll). + type: string + enrollmentRequirementId: + description: The default enrollment requirement. + type: string + recoveryPolicyId: + description: The default recovery policy. + type: string + resourcePolicyId: + description: The default resource policy. + type: string + sessionPolicyId: + description: The default session policy. + type: string + signInPolicyId: + description: The default sign-in policy. + type: string + universalPromiseIds: description: |- - The list of CIDR ranges that are allowed when the restriction is enabled. - Accepts IPv4 (e.g. 10.0.0.0/24) or IPv6 (e.g. 2001:db8::/32) CIDRs. + Tenant-wide promises every user must satisfy (e.g. terms-of-service + acceptance). items: type: string - nullable: true - readOnly: false - type: array - title: Cidr Restriction - type: object - x-speakeasy-name-override: CIDRRestriction - c1.api.settings.v1.ChannelSettings: - description: ChannelSettings groups notification preferences for all supported channels. - properties: - email: - $ref: '#/components/schemas/c1.api.settings.v1.EmailChannelSettings' - slack: - $ref: '#/components/schemas/c1.api.settings.v1.SlackChannelSettings' - teams: - $ref: '#/components/schemas/c1.api.settings.v1.MSTeamsChannelSettings' - title: Channel Settings - type: object - x-speakeasy-name-override: ChannelSettings - c1.api.settings.v1.CommentOnRequestPreference: - description: The CommentOnRequestPreference message. + type: + - array + - "null" + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Identity Policy Tenant Defaults + type: object + x-speakeasy-entity: IdentityPolicyTenantDefaults + x-speakeasy-name-override: IdentityPolicyTenantDefaults + c1.api.identity_platform.v1.IdentityPolicyTenantDefaultsServiceGetResponse: + description: The IdentityPolicyTenantDefaultsServiceGetResponse message. + properties: + defaults: + oneOf: + - $ref: '#/components/schemas/c1.api.identity_platform.v1.IdentityPolicyTenantDefaults' + - type: "null" + title: Identity Policy Tenant Defaults Service Get Response + type: object + x-speakeasy-name-override: IdentityPolicyTenantDefaultsServiceGetResponse + c1.api.identity_platform.v1.IdentityPolicyTenantDefaultsServiceUpdateRequest: + description: The IdentityPolicyTenantDefaultsServiceUpdateRequest message. + properties: + defaults: + oneOf: + - $ref: '#/components/schemas/c1.api.identity_platform.v1.IdentityPolicyTenantDefaults' + - type: "null" + updateMask: + type: + - string + - "null" + title: Identity Policy Tenant Defaults Service Update Request + type: object + x-speakeasy-name-override: IdentityPolicyTenantDefaultsServiceUpdateRequest + c1.api.identity_platform.v1.IdentityPolicyTenantDefaultsServiceUpdateResponse: + description: The IdentityPolicyTenantDefaultsServiceUpdateResponse message. + properties: + defaults: + oneOf: + - $ref: '#/components/schemas/c1.api.identity_platform.v1.IdentityPolicyTenantDefaults' + - type: "null" + title: Identity Policy Tenant Defaults Service Update Response + type: object + x-speakeasy-name-override: IdentityPolicyTenantDefaultsServiceUpdateResponse + c1.api.integration.connector.v1.CheckboxField: + description: The CheckboxField message. properties: - enabled: - description: The enabled field. - readOnly: false - type: boolean - locked: - description: The locked field. - readOnly: false + checked: + description: The checked field. type: boolean - title: Comment On Request Preference + title: Checkbox Field type: object - x-speakeasy-name-override: CommentOnRequestPreference - c1.api.settings.v1.CompletionPreference: - description: The CompletionPreference message. - properties: - enabled: - description: The enabled field. - readOnly: false + x-speakeasy-name-override: ConnectorCheckboxField + c1.api.integration.connector.v1.ConfigSchema: + description: The ConfigSchema message. + properties: + displayName: + description: The displayName field. + type: string + fieldGroups: + description: Optional. Metadata for displaying fields in the UI. + items: + $ref: '#/components/schemas/c1.api.integration.connector.v1.FieldGroup' + type: + - array + - "null" + fields: + description: The fields field. + items: + $ref: '#/components/schemas/c1.api.integration.connector.v1.Field' + type: + - array + - "null" + helpUrl: + description: The helpUrl field. + type: string + iconUrl: + deprecated: true + description: The iconUrl field. + type: string + isOauth2: + description: The isOauth2 field. type: boolean - locked: - description: The locked field. - readOnly: false + requiresExternalConnector: + description: The requiresExternalConnector field. type: boolean - title: Completion Preference + supportsExternalResources: + description: The supportsExternalResources field. + type: boolean + title: Config Schema type: object - x-speakeasy-name-override: CompletionPreference - c1.api.settings.v1.ConnectorIssuesPreference: - description: The ConnectorIssuesPreference message. + x-speakeasy-name-override: ConfigSchema + c1.api.integration.connector.v1.ConnectorCatalogServiceConfigurationSchemaRequest: + description: ConnectorCatalogServiceConfigurationSchemaRequest is the request for retrieving a connector's configuration schema. properties: - enabled: - description: The enabled field. - readOnly: false - type: boolean - locked: - description: The locked field. - readOnly: false - type: boolean - title: Connector Issues Preference + appId: + description: The ID of the app associated with the connector. Optional. + type: string + catalogId: + description: The catalog entry ID identifying the connector type. + type: string + connectorId: + description: The ID of an existing connector to retrieve its current configuration schema. Optional. + type: string + title: Connector Catalog Service Configuration Schema Request type: object - x-speakeasy-name-override: ConnectorIssuesPreference - c1.api.settings.v1.Contacts: - description: Contacts represents the contact configuration for an organization. + x-speakeasy-name-override: ConnectorCatalogServiceConfigurationSchemaRequest + c1.api.integration.connector.v1.ConnectorCatalogServiceConfigurationSchemaResponse: + description: ConnectorCatalogServiceConfigurationSchemaResponse is the response containing the connector's configuration schema. properties: - billingEmails: - description: Email addresses of billing contacts for this organization. - items: - type: string - nullable: true - readOnly: false - type: array - createdAt: - format: date-time - readOnly: true + formSchema: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.Form' + - type: "null" + schema: + oneOf: + - $ref: '#/components/schemas/c1.api.integration.connector.v1.ConfigSchema' + - type: "null" + title: Connector Catalog Service Configuration Schema Response + type: object + x-speakeasy-name-override: ConnectorCatalogServiceConfigurationSchemaResponse + c1.api.integration.connector.v1.Field: + description: | + The Field message. + + This message contains a oneof named field. Only a single field of the following list may be set at a time: + - str + - select + - random + - import + - oauth2 + - readOnly + - options + - checkbox + - secret + - strList + - text + - keyValue + - stringMap + properties: + additionalPlaceholder: + description: |- + Optional. Additional placeholder text for the field + In cases where a single placeholder is not enough to describe the field type: string - operationsEmails: - description: Email addresses of operations contacts for this organization. - items: - type: string - nullable: true - readOnly: false - type: array - securityEmails: - description: Email addresses of security contacts for this organization. + checkbox: + oneOf: + - $ref: '#/components/schemas/c1.api.integration.connector.v1.CheckboxField' + - type: "null" + dependsOnFields: + description: The dependsOnFields field. items: type: string - nullable: true - readOnly: false - type: array - updatedAt: - format: date-time - readOnly: true + type: + - array + - "null" + displayName: + description: Human-readable label for this Field type: string - title: Contacts + helpUrl: + description: empty or https URL + type: string + import: + oneOf: + - $ref: '#/components/schemas/c1.api.integration.connector.v1.ImportField' + - type: "null" + keyValue: + oneOf: + - $ref: '#/components/schemas/c1.api.integration.connector.v1.KeyValueField' + - type: "null" + name: + description: Must not start with `C1_` and match [a-zA-Z0-9_]{2,64}. Must be unique within a connector. + type: string + oauth2: + oneOf: + - $ref: '#/components/schemas/c1.api.integration.connector.v1.OAuth2Field' + - type: "null" + options: + oneOf: + - $ref: '#/components/schemas/c1.api.integration.connector.v1.OptionsField' + - type: "null" + placeholder: + description: The placeholder field. + type: string + postCreate: + description: The postCreate field. + type: boolean + random: + oneOf: + - $ref: '#/components/schemas/c1.api.integration.connector.v1.RandomStringField' + - type: "null" + readOnly: + oneOf: + - $ref: '#/components/schemas/c1.api.integration.connector.v1.ReadOnlyField' + - type: "null" + secret: + oneOf: + - $ref: '#/components/schemas/c1.api.integration.connector.v1.RotatableSecretField' + - type: "null" + select: + oneOf: + - $ref: '#/components/schemas/c1.api.integration.connector.v1.SelectField' + - type: "null" + str: + oneOf: + - $ref: '#/components/schemas/c1.api.integration.connector.v1.StringField' + - type: "null" + strList: + oneOf: + - $ref: '#/components/schemas/c1.api.integration.connector.v1.StringListField' + - type: "null" + stringMap: + oneOf: + - $ref: '#/components/schemas/c1.api.integration.connector.v1.StringMapField' + - type: "null" + text: + oneOf: + - $ref: '#/components/schemas/c1.api.integration.connector.v1.TextField' + - type: "null" + title: Field type: object - x-speakeasy-name-override: Contacts - c1.api.settings.v1.DigestPreference: - description: DigestPreference controls whether summary digest notifications are sent and how often. + x-speakeasy-name-override: Field + c1.api.integration.connector.v1.FieldGroup: + description: The FieldGroup message. properties: - dayOfWeek: - description: The day of the week to send weekly digests. - enum: - - WEEKDAY_UNSPECIFIED - - WEEKDAY_MONDAY - - WEEKDAY_TUESDAY - - WEEKDAY_WEDNESDAY - - WEEKDAY_THURSDAY - - WEEKDAY_FRIDAY - - WEEKDAY_SATURDAY - - WEEKDAY_SUNDAY - readOnly: false - type: string - x-speakeasy-unknown-values: allow - enabled: - description: Whether digest notifications are enabled. - readOnly: false + default: + description: The default field. type: boolean - frequency: - description: How often digest notifications are sent. - enum: - - DIGEST_FREQUENCY_UNSPECIFIED - - DIGEST_FREQUENCY_DAILY - - DIGEST_FREQUENCY_WEEKLY - readOnly: false + displayName: + description: Nice name this group (e.g. renders as a Tab label) type: string - x-speakeasy-unknown-values: allow - locked: - description: Whether this preference is locked by org-level settings, preventing users from overriding it. - readOnly: false - type: boolean - title: Digest Preference + fieldNames: + description: Field names are "guaranteed" to be unique, but can be repeated in and between lists. + items: + type: string + type: + - array + - "null" + helpText: + description: Optional. User-facing help text. + type: string + name: + description: Unique ID. + type: string + title: Field Group type: object - x-speakeasy-name-override: DigestPreference - c1.api.settings.v1.EmailChannelSettings: - description: The EmailChannelSettings message. + x-speakeasy-name-override: FieldGroup + c1.api.integration.connector.v1.ImportField: + description: The ImportField message. properties: - accessProvisioned: - $ref: '#/components/schemas/c1.api.settings.v1.AccessProvisionedPreference' - approvalNeeded: - $ref: '#/components/schemas/c1.api.settings.v1.ApprovalNeededPreference' - commentOnRequest: - $ref: '#/components/schemas/c1.api.settings.v1.CommentOnRequestPreference' - completion: - $ref: '#/components/schemas/c1.api.settings.v1.CompletionPreference' - connectorIssues: - $ref: '#/components/schemas/c1.api.settings.v1.ConnectorIssuesPreference' - digest: - $ref: '#/components/schemas/c1.api.settings.v1.DigestPreference' - enabled: - description: The enabled field. - readOnly: false + allowedExtensions: + description: The allowedExtensions field. + items: + type: string + type: + - array + - "null" + secret: + description: The secret field. type: boolean - expiringAccess: - $ref: '#/components/schemas/c1.api.settings.v1.ExpiringAccessPreference' - provisioningRequest: - $ref: '#/components/schemas/c1.api.settings.v1.ProvisioningRequestPreference' - reviews: - $ref: '#/components/schemas/c1.api.settings.v1.ReviewsPreference' - taskReminders: - $ref: '#/components/schemas/c1.api.settings.v1.TaskRemindersPreference' - title: Email Channel Settings + valueValidator: + oneOf: + - $ref: '#/components/schemas/validate.StringRules' + - type: "null" + title: Import Field type: object - x-speakeasy-name-override: EmailChannelSettings - c1.api.settings.v1.ExpiringAccessPreference: - description: The ExpiringAccessPreference message. + x-speakeasy-name-override: ImportField + c1.api.integration.connector.v1.KeyValueField: + description: The KeyValueField message. properties: - enabled: - description: The enabled field. - readOnly: false + secret: + description: The secret field. type: boolean - locked: - description: The locked field. - readOnly: false + supportsFileUpload: + description: When true, UI allows file uploads per key-value entry. type: boolean - title: Expiring Access Preference + title: Key Value Field type: object - x-speakeasy-name-override: ExpiringAccessPreference - c1.api.settings.v1.GetAWSExternalIDResponse: - description: The GetAWSExternalIDResponse message. - properties: - awsExternalId: - $ref: '#/components/schemas/c1.api.settings.v1.AWSExternalID' - title: Get Aws External Id Response + x-speakeasy-name-override: KeyValueField + c1.api.integration.connector.v1.OAuth2Field: + description: The OAuth2Field message. + title: O Auth 2 Field type: object - x-speakeasy-name-override: GetAWSExternalIDResponse - c1.api.settings.v1.GetContactsResponse: - description: The GetContactsResponse message. + x-speakeasy-name-override: OAuth2Field + c1.api.integration.connector.v1.OptionsField: + description: The OptionsField message. + title: Options Field + type: object + x-speakeasy-name-override: OptionsField + c1.api.integration.connector.v1.RandomStringField: + description: The RandomStringField message. properties: - contacts: - $ref: '#/components/schemas/c1.api.settings.v1.Contacts' - title: Get Contacts Response + length: + description: The length field. + format: int32 + type: integer + title: Random String Field type: object - x-speakeasy-name-override: GetContactsResponse - c1.api.settings.v1.GetEmailCapabilitiesResponse: - description: The GetEmailCapabilitiesResponse message. + x-speakeasy-name-override: RandomStringField + c1.api.integration.connector.v1.ReadOnlyField: + description: The ReadOnlyField message. + title: Read Only Field + type: object + x-speakeasy-name-override: ReadOnlyField + c1.api.integration.connector.v1.RotatableSecretField: + description: The RotatableSecretField message. + title: Rotatable Secret Field + type: object + x-speakeasy-name-override: RotatableSecretField + c1.api.integration.connector.v1.SelectField: + description: The SelectField message. properties: - externalEmailSupported: - description: |- - True when external email addresses (outside C1 users) can be used as - recipients in automation email steps. False when only the C1 built-in - provider is configured (C1 users only). - readOnly: false - type: boolean - title: Get Email Capabilities Response + items: + description: list of items that are selected from + items: + $ref: '#/components/schemas/c1.api.integration.connector.v1.SelectField.Item' + type: + - array + - "null" + title: Select Field type: object - x-speakeasy-name-override: GetEmailCapabilitiesResponse - c1.api.settings.v1.GetOnboardingSettingsResponse: - description: The GetOnboardingSettingsResponse message. + x-speakeasy-name-override: ConnectorSelectField + c1.api.integration.connector.v1.SelectField.Item: + description: The Item message. properties: - conversationId: - description: The identifier of the onboarding conversation thread, if one is in progress. - readOnly: false + displayName: + description: The displayName field. type: string - intents: - description: The intents field. - items: - type: string - nullable: true - readOnly: false - type: array - orgContext: - $ref: '#/components/schemas/c1.api.settings.v1.OnboardingOrgContext' - status: - description: The current status of the tenant onboarding process. - enum: - - ONBOARDING_STATUS_UNSPECIFIED - - ONBOARDING_STATUS_NOT_STARTED - - ONBOARDING_STATUS_IN_PROGRESS - - ONBOARDING_STATUS_COMPLETE - - ONBOARDING_STATUS_DISMISSED - readOnly: false + value: + description: The value field. type: string - x-speakeasy-unknown-values: allow - title: Get Onboarding Settings Response + title: Item type: object - x-speakeasy-name-override: GetOnboardingSettingsResponse - c1.api.settings.v1.GetOrgNotificationSettingsResponse: - description: The GetOrgNotificationSettingsResponse message. + x-speakeasy-name-override: Item + c1.api.integration.connector.v1.StringField: + description: The StringField message. properties: - orgNotificationSettings: - $ref: '#/components/schemas/c1.api.settings.v1.OrgNotificationSettings' - title: Get Org Notification Settings Response + secret: + description: If secret, value is write-only in UI and a password-type form is used. + type: boolean + valueValidator: + oneOf: + - $ref: '#/components/schemas/validate.StringRules' + - type: "null" + title: String Field type: object - x-speakeasy-name-override: GetOrgNotificationSettingsResponse - c1.api.settings.v1.GetSessionSettingsResponse: - description: The GetSessionSettingsResponse message. + x-speakeasy-name-override: StringField + c1.api.integration.connector.v1.StringListField: + description: The StringListField message. properties: - sessionSettings: - $ref: '#/components/schemas/c1.api.settings.v1.SessionSettings' - title: Get Session Settings Response + valueValidator: + oneOf: + - $ref: '#/components/schemas/validate.StringRules' + - type: "null" + title: String List Field type: object - x-speakeasy-name-override: GetSessionSettingsResponse - c1.api.settings.v1.GetTenantEmailProviderResponse: - description: The GetTenantEmailProviderResponse message. + x-speakeasy-name-override: StringListField + c1.api.integration.connector.v1.StringMapField: + description: The StringMapField message. properties: - emailProvider: - $ref: '#/components/schemas/c1.api.settings.v1.TenantEmailProvider' - title: Get Tenant Email Provider Response + optional: + description: The optional field. + type: boolean + title: String Map Field type: object - x-speakeasy-name-override: GetTenantEmailProviderResponse - c1.api.settings.v1.GetUserNotificationSettingsResponse: - description: The GetUserNotificationSettingsResponse message. + x-speakeasy-name-override: StringMapField + c1.api.integration.connector.v1.TextField: + description: The TextField message. properties: - userNotificationSettings: - $ref: '#/components/schemas/c1.api.settings.v1.UserNotificationSettings' - title: Get User Notification Settings Response + secret: + description: The secret field. + type: boolean + valueValidator: + oneOf: + - $ref: '#/components/schemas/validate.StringRules' + - type: "null" + title: Text Field type: object - x-speakeasy-name-override: GetUserNotificationSettingsResponse - c1.api.settings.v1.GoogleWorkspaceProviderConfig: - description: |- - GoogleWorkspaceProviderConfig configures sending via Google Workspace Gmail API - using domain-wide delegation with a service account. - Requires: customer Workspace super admin grants DWD to the service account's - OAuth client ID for the gmail.send scope. - nullable: true + x-speakeasy-name-override: ConnectorTextField + c1.api.llm_gateway.v1.ClearProviderCredentialRequestInput: + description: The ClearProviderCredentialRequest message. + title: Clear Provider Credential Request + type: object + x-speakeasy-name-override: ClearProviderCredentialRequest + c1.api.llm_gateway.v1.ClearProviderCredentialResponse: + description: The ClearProviderCredentialResponse message. properties: - delegatedUser: - description: |- - The Workspace user email to impersonate via domain-wide delegation. - Typically a dedicated sender like noreply@customer.com. - readOnly: false + credential: + oneOf: + - $ref: '#/components/schemas/c1.api.llm_gateway.v1.ProviderCredential' + - type: "null" + title: Clear Provider Credential Response + type: object + x-speakeasy-name-override: ClearProviderCredentialResponse + c1.api.llm_gateway.v1.GatewayKey: + description: The GatewayKey message. + properties: + createdAt: + format: date-time + type: + - string + - "null" + displayName: + description: The displayName field. type: string - serviceAccountJson: - description: |- - Service account JSON credentials. Write-only: accepted on create/update, never returned in Get. - Empty on update means "keep existing credentials". - readOnly: false + id: + description: The id field. type: string - title: Google Workspace Provider Config + keyPrefix: + description: The keyPrefix field. + type: string + revokedAt: + format: date-time + type: + - string + - "null" + updatedAt: + format: date-time + type: + - string + - "null" + title: Gateway Key type: object - x-speakeasy-name-override: GoogleWorkspaceProviderConfig - c1.api.settings.v1.ListOrgDomainsResponse: - description: The ListOrgDomainsResponse message. + x-speakeasy-name-override: GatewayKey + c1.api.llm_gateway.v1.GetProviderCredentialResponse: + description: The GetProviderCredentialResponse message. + properties: + credential: + oneOf: + - $ref: '#/components/schemas/c1.api.llm_gateway.v1.ProviderCredential' + - type: "null" + title: Get Provider Credential Response + type: object + x-speakeasy-name-override: GetProviderCredentialResponse + c1.api.llm_gateway.v1.ListGatewayKeysResponse: + description: The ListGatewayKeysResponse message. properties: list: - description: The list of verified domains. + description: The list field. items: - $ref: '#/components/schemas/c1.api.settings.v1.OrgDomain' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.llm_gateway.v1.GatewayKey' + type: + - array + - "null" nextPageToken: - description: A token to retrieve the next page of results, or empty if there are no more results. - readOnly: false + description: The nextPageToken field. type: string - title: List Org Domains Response - type: object - x-speakeasy-name-override: ListOrgDomainsResponse - c1.api.settings.v1.MSTeamsChannelSettings: - description: The MSTeamsChannelSettings message. - properties: - accessProvisioned: - $ref: '#/components/schemas/c1.api.settings.v1.AccessProvisionedPreference' - approvalNeeded: - $ref: '#/components/schemas/c1.api.settings.v1.ApprovalNeededPreference' - commentOnRequest: - $ref: '#/components/schemas/c1.api.settings.v1.CommentOnRequestPreference' - completion: - $ref: '#/components/schemas/c1.api.settings.v1.CompletionPreference' - connectorIssues: - $ref: '#/components/schemas/c1.api.settings.v1.ConnectorIssuesPreference' - digest: - $ref: '#/components/schemas/c1.api.settings.v1.DigestPreference' - enabled: - description: The enabled field. - readOnly: false - type: boolean - expiringAccess: - $ref: '#/components/schemas/c1.api.settings.v1.ExpiringAccessPreference' - isConfigured: - description: The isConfigured field. - readOnly: false - type: boolean - provisioningRequest: - $ref: '#/components/schemas/c1.api.settings.v1.ProvisioningRequestPreference' - reviews: - $ref: '#/components/schemas/c1.api.settings.v1.ReviewsPreference' - taskReminders: - $ref: '#/components/schemas/c1.api.settings.v1.TaskRemindersPreference' - title: Ms Teams Channel Settings + title: List Gateway Keys Response type: object - x-speakeasy-name-override: MSTeamsChannelSettings - c1.api.settings.v1.MicrosoftGraphProviderConfig: - description: |- - MicrosoftGraphProviderConfig configures sending via Microsoft Graph sendMail API. - Requires an Azure AD app registration with Mail.Send application permission (admin-consented). - nullable: true + x-speakeasy-name-override: ListGatewayKeysResponse + c1.api.llm_gateway.v1.MintGatewayKeyRequest: + description: The MintGatewayKeyRequest message. properties: - azureTenantId: - description: Customer's Azure AD tenant ID (directory ID). - readOnly: false - type: string - clientId: - description: App registration client ID with Mail.Send application permission. - readOnly: false - type: string - clientSecret: - description: |- - Client secret. Write-only: accepted on create/update, never returned in Get. - Empty on update means "keep existing secret". - readOnly: false + displayName: + description: The displayName field. type: string - title: Microsoft Graph Provider Config + title: Mint Gateway Key Request type: object - x-speakeasy-name-override: MicrosoftGraphProviderConfig - c1.api.settings.v1.OnboardingOrgContext: - description: The OnboardingOrgContext message. + x-speakeasy-name-override: MintGatewayKeyRequest + c1.api.llm_gateway.v1.MintGatewayKeyResponse: + description: The MintGatewayKeyResponse message. properties: - industry: - description: The industry field. - readOnly: false - type: string - organizationSize: - description: The organizationSize field. - readOnly: false + gatewayKey: + oneOf: + - $ref: '#/components/schemas/c1.api.llm_gateway.v1.GatewayKey' + - type: "null" + plaintextKey: + description: The plaintextKey field. type: string - title: Onboarding Org Context + title: Mint Gateway Key Response type: object - x-speakeasy-name-override: OnboardingOrgContext - c1.api.settings.v1.OrgDomain: - description: OrgDomain represents a verified email domain associated with the tenant. + x-speakeasy-name-override: MintGatewayKeyResponse + c1.api.llm_gateway.v1.ProviderCredential: + description: The ProviderCredential message. properties: createdAt: format: date-time - readOnly: true + type: + - string + - "null" + displayName: + description: The displayName field. type: string - deletedAt: - format: date-time - readOnly: true + headerStyle: + description: The headerStyle field. + enum: + - PROVIDER_CREDENTIAL_HEADER_STYLE_UNSPECIFIED + - PROVIDER_CREDENTIAL_HEADER_STYLE_X_API_KEY + - PROVIDER_CREDENTIAL_HEADER_STYLE_AUTHORIZATION_BEARER type: string - domain: - description: The verified domain name (e.g., "example.com"). - readOnly: false + x-speakeasy-unknown-values: allow + keyPrefix: + description: The keyPrefix field. type: string - id: - description: The unique identifier of the domain record. - readOnly: false + revokedAt: + format: date-time + type: + - string + - "null" + slotId: + description: The slotId field. type: string updatedAt: format: date-time - readOnly: true + type: + - string + - "null" + userId: + description: The userId field. type: string - title: Org Domain + title: Provider Credential type: object - x-speakeasy-name-override: OrgDomain - c1.api.settings.v1.OrgNotificationSettings: - description: OrgNotificationSettings contains organization-wide notification channel configurations and default preferences. - properties: - channelSettings: - $ref: '#/components/schemas/c1.api.settings.v1.ChannelSettings' - title: Org Notification Settings + x-speakeasy-name-override: ProviderCredential + c1.api.llm_gateway.v1.RevokeGatewayKeyRequestInput: + description: The RevokeGatewayKeyRequest message. + title: Revoke Gateway Key Request type: object - x-speakeasy-name-override: OrgNotificationSettings - c1.api.settings.v1.ProvisioningRequestPreference: - description: The ProvisioningRequestPreference message. + x-speakeasy-name-override: RevokeGatewayKeyRequest + c1.api.llm_gateway.v1.RevokeGatewayKeyResponse: + description: The RevokeGatewayKeyResponse message. properties: - enabled: - description: The enabled field. - readOnly: false - type: boolean - locked: - description: The locked field. - readOnly: false - type: boolean - title: Provisioning Request Preference + gatewayKey: + oneOf: + - $ref: '#/components/schemas/c1.api.llm_gateway.v1.GatewayKey' + - type: "null" + title: Revoke Gateway Key Response type: object - x-speakeasy-name-override: ProvisioningRequestPreference - c1.api.settings.v1.ReviewsPreference: - description: The ReviewsPreference message. + x-speakeasy-name-override: RevokeGatewayKeyResponse + c1.api.llm_gateway.v1.SetProviderCredentialRequestInput: + description: The SetProviderCredentialRequest message. properties: - enabled: - description: The enabled field. - readOnly: false - type: boolean - locked: - description: The locked field. - readOnly: false - type: boolean - title: Reviews Preference + apiKey: + description: The apiKey field. + type: string + displayName: + description: The displayName field. + type: string + headerStyle: + description: The headerStyle field. + enum: + - PROVIDER_CREDENTIAL_HEADER_STYLE_UNSPECIFIED + - PROVIDER_CREDENTIAL_HEADER_STYLE_X_API_KEY + - PROVIDER_CREDENTIAL_HEADER_STYLE_AUTHORIZATION_BEARER + type: string + x-speakeasy-unknown-values: allow + title: Set Provider Credential Request type: object - x-speakeasy-name-override: ReviewsPreference - c1.api.settings.v1.SearchEmailAuditEventsRequest: - description: The SearchEmailAuditEventsRequest message. + x-speakeasy-name-override: SetProviderCredentialRequest + c1.api.llm_gateway.v1.SetProviderCredentialResponse: + description: The SetProviderCredentialResponse message. properties: - pageSize: - description: Maximum results per page (0 = server default, max 100). - format: int32 - readOnly: false - type: integer - pageToken: - description: Pagination token from previous response. - readOnly: false - type: string - title: Search Email Audit Events Request - type: object - x-speakeasy-name-override: SearchEmailAuditEventsRequest - c1.api.settings.v1.SearchEmailAuditEventsResponse: - description: The SearchEmailAuditEventsResponse message. - properties: - list: - description: OCSF EmailActivity events as Struct for frontend rendering. - items: - additionalProperties: true - readOnly: false - type: object - nullable: true - readOnly: false - type: array - nextPageToken: - description: Token for next page. Empty when no more pages. - readOnly: false - type: string - title: Search Email Audit Events Response - type: object - x-speakeasy-name-override: SearchEmailAuditEventsResponse - c1.api.settings.v1.SendGridProviderConfig: - description: SendGridProviderConfig configures sending via a customer's SendGrid account. - nullable: true - properties: - apiKey: - description: |- - Customer's SendGrid API key. Write-only: accepted on create/update, never returned in Get. - Empty on update means "keep existing key". - readOnly: false - type: string - title: Send Grid Provider Config + credential: + oneOf: + - $ref: '#/components/schemas/c1.api.llm_gateway.v1.ProviderCredential' + - type: "null" + title: Set Provider Credential Response type: object - x-speakeasy-name-override: SendGridProviderConfig - c1.api.settings.v1.SessionSettings: - description: SessionSettings configures session security for the tenant, including timeouts and per-role IP restrictions. + x-speakeasy-name-override: SetProviderCredentialResponse + c1.api.local_directory.v1.LocalDirectoryConfig: + description: |- + LocalDirectoryConfig is the public representation of a C1-managed local + directory configuration. The underlying directory infrastructure is provided + by the linked App (identified by app_id). properties: - clientIdApprovalRequestPolicyId: - description: Policy ID for REQUESTABLE mode approval routing. - readOnly: false - type: string - clientIdMetadataDocumentPolicy: - description: Policy for metadata document client_id URLs. - enum: - - CLIENT_ID_METADATA_DOCUMENT_POLICY_UNSPECIFIED - - CLIENT_ID_METADATA_DOCUMENT_POLICY_ALLOW_ALL - - CLIENT_ID_METADATA_DOCUMENT_POLICY_REQUESTABLE - - CLIENT_ID_METADATA_DOCUMENT_POLICY_ALLOWLIST_ONLY - readOnly: false - type: string - x-speakeasy-unknown-values: allow - connectorSource: - $ref: '#/components/schemas/c1.api.settings.v1.CIDRRestriction' - externalClientSource: - $ref: '#/components/schemas/c1.api.settings.v1.CIDRRestriction' - externalClientsEnabled: - description: |- - Enable external client registration (OAuth 2.0 DCR) for MCP clients - like Claude Desktop, Cursor, and other AI assistants. - readOnly: false + allowSelfRegistration: + description: Whether unauthenticated users may self-register in this directory. type: boolean - maxSessionLength: - format: duration - readOnly: false + appId: + description: app_id is the identifier for this config and its linked App. Read-only after creation. + readOnly: true type: string - pccAdminSource: - $ref: '#/components/schemas/c1.api.settings.v1.CIDRRestriction' - pccUserSource: - $ref: '#/components/schemas/c1.api.settings.v1.CIDRRestriction' - ssoAdminSource: - $ref: '#/components/schemas/c1.api.settings.v1.CIDRRestriction' - ssoUserSource: - $ref: '#/components/schemas/c1.api.settings.v1.CIDRRestriction' - title: Session Settings - type: object - x-speakeasy-name-override: SessionSettings - c1.api.settings.v1.SlackChannelSettings: - description: The SlackChannelSettings message. - properties: - accessProvisioned: - $ref: '#/components/schemas/c1.api.settings.v1.AccessProvisionedPreference' - approvalNeeded: - $ref: '#/components/schemas/c1.api.settings.v1.ApprovalNeededPreference' - commentOnRequest: - $ref: '#/components/schemas/c1.api.settings.v1.CommentOnRequestPreference' - completion: - $ref: '#/components/schemas/c1.api.settings.v1.CompletionPreference' - connectorIssues: - $ref: '#/components/schemas/c1.api.settings.v1.ConnectorIssuesPreference' - digest: - $ref: '#/components/schemas/c1.api.settings.v1.DigestPreference' - enabled: - description: The enabled field. - readOnly: false - type: boolean - expiringAccess: - $ref: '#/components/schemas/c1.api.settings.v1.ExpiringAccessPreference' - isConfigured: - description: The isConfigured field. - readOnly: false - type: boolean - provisioningRequest: - $ref: '#/components/schemas/c1.api.settings.v1.ProvisioningRequestPreference' - reviews: - $ref: '#/components/schemas/c1.api.settings.v1.ReviewsPreference' - taskReminders: - $ref: '#/components/schemas/c1.api.settings.v1.TaskRemindersPreference' - title: Slack Channel Settings - type: object - x-speakeasy-name-override: SlackChannelSettings - c1.api.settings.v1.TaskRemindersPreference: - description: The TaskRemindersPreference message. - properties: - enabled: - description: The enabled field. - readOnly: false - type: boolean - locked: - description: The locked field. - readOnly: false - type: boolean - title: Task Reminders Preference - type: object - x-speakeasy-name-override: TaskRemindersPreference - c1.api.settings.v1.TenantEmailProvider: - description: | - TenantEmailProvider is the API representation of the tenant's email provider. - - This message contains a oneof named provider. Only a single field of the following list may be set at a time: - - c1Builtin - - awsSes - - sendgrid - - microsoftGraph - - googleWorkspace - properties: - awsSes: - $ref: '#/components/schemas/c1.api.settings.v1.AWSSESProviderConfig' - c1Builtin: - $ref: '#/components/schemas/c1.api.settings.v1.C1BuiltInProviderConfig' createdAt: format: date-time readOnly: true + type: + - string + - "null" + defaultProfileTypeId: + description: Optional FK to a ProfileType applied to new users created via this directory. type: string - fromAddress: - description: |- - Sender email address. Must be verified with the provider. - Ignored when using the C1 built-in provider (uses no-reply@conductorone.com). - readOnly: false + displayName: + description: The displayName field. type: string - fromName: + invitationTtl: + format: duration + type: + - string + - "null" + isDefault: description: |- - Sender display name shown in the recipient's inbox (e.g., "Acme Corp IT"). - Used as the RFC 5322 display-name: "Acme Corp IT" . - Ignored when using the C1 built-in provider. - readOnly: false + Whether this is the default local directory for the tenant. + At most one config per tenant may be the default. + type: boolean + onboardingFlowId: + description: Optional FK to an onboarding flow applied by default when inviting users. type: string - googleWorkspace: - $ref: '#/components/schemas/c1.api.settings.v1.GoogleWorkspaceProviderConfig' - microsoftGraph: - $ref: '#/components/schemas/c1.api.settings.v1.MicrosoftGraphProviderConfig' - replyToAddress: - description: Optional reply-to address. - readOnly: false + organizationId: + description: Optional FK to a ThirdPartyOrganization. Empty means standalone (no vendor linkage). type: string - sendgrid: - $ref: '#/components/schemas/c1.api.settings.v1.SendGridProviderConfig' + selfRegistrationDomains: + description: |- + Email domain allowlist for self-registration. Empty allows any domain when + allow_self_registration is true. + items: + type: string + type: + - array + - "null" updatedAt: format: date-time readOnly: true - type: string - title: Tenant Email Provider + type: + - string + - "null" + title: Local Directory Config type: object - x-speakeasy-name-override: TenantEmailProvider - c1.api.settings.v1.TestSourceIPRequest: - description: The TestSourceIPRequest message. + x-speakeasy-name-override: LocalDirectoryConfig + c1.api.local_directory.v1.LocalDirectoryConfigServiceCreateRequest: + description: The LocalDirectoryConfigServiceCreateRequest message. properties: - allowCidr: - description: |- - The CIDR allowlist rules to test against. If empty, uses the tenant's current allowlist. - Accepts IPv4 (e.g. 10.0.0.0/24) or IPv6 (e.g. 2001:db8::/32) CIDRs. + allowSelfRegistration: + description: The allowSelfRegistration field. + type: boolean + appId: + description: FK to the existing App that will back this local directory. + type: string + defaultProfileTypeId: + description: The defaultProfileTypeId field. + type: string + displayName: + description: The displayName field. + type: string + invitationTtl: + format: duration + type: + - string + - "null" + isDefault: + description: Whether this should be the default local directory for the tenant. + type: boolean + onboardingFlowId: + description: The onboardingFlowId field. + type: string + organizationId: + description: Optional FK to a ThirdPartyOrganization. + type: string + selfRegistrationDomains: + description: The selfRegistrationDomains field. items: type: string - nullable: true - readOnly: false - type: array - sourceIp: - description: |- - if unset, uses the source IP of the request. - Accepts IPv4 (e.g. 10.0.0.5) or IPv6 (e.g. 2001:db8::1) addresses, optionally with a CIDR prefix. - readOnly: false - type: string - title: Test Source Ip Request + type: + - array + - "null" + required: + - appId + - displayName + title: Local Directory Config Service Create Request type: object - x-speakeasy-name-override: TestSourceIPRequest - c1.api.settings.v1.TestSourceIPResponse: - description: The TestSourceIPResponse message. + x-speakeasy-name-override: LocalDirectoryConfigServiceCreateRequest + c1.api.local_directory.v1.LocalDirectoryConfigServiceCreateResponse: + description: The LocalDirectoryConfigServiceCreateResponse message. properties: - allowed: - description: Whether the tested IP address is allowed by the CIDR rules. - readOnly: false - type: boolean - checkedIp: - description: The IP address that was checked, either from the request or inferred from the caller. - readOnly: false - type: string - details: - $ref: '#/components/schemas/google.rpc.Status' - title: Test Source Ip Response + localDirectoryConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfig' + - type: "null" + title: Local Directory Config Service Create Response type: object - x-speakeasy-name-override: TestSourceIPResponse - c1.api.settings.v1.TestTenantEmailProviderRequest: - description: The TestTenantEmailProviderRequest message. + x-speakeasy-name-override: LocalDirectoryConfigServiceCreateResponse + c1.api.local_directory.v1.LocalDirectoryConfigServiceDeleteRequestInput: + description: The LocalDirectoryConfigServiceDeleteRequest message. + title: Local Directory Config Service Delete Request + type: object + x-speakeasy-name-override: LocalDirectoryConfigServiceDeleteRequest + c1.api.local_directory.v1.LocalDirectoryConfigServiceDeleteResponse: + description: The LocalDirectoryConfigServiceDeleteResponse message. + title: Local Directory Config Service Delete Response + type: object + x-speakeasy-name-override: LocalDirectoryConfigServiceDeleteResponse + c1.api.local_directory.v1.LocalDirectoryConfigServiceGetResponse: + description: The LocalDirectoryConfigServiceGetResponse message. properties: - testRecipientEmail: - description: The email address to send the test email to. - readOnly: false - type: string - title: Test Tenant Email Provider Request + localDirectoryConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfig' + - type: "null" + title: Local Directory Config Service Get Response type: object - x-speakeasy-name-override: TestTenantEmailProviderRequest - c1.api.settings.v1.TestTenantEmailProviderResponse: - description: The TestTenantEmailProviderResponse message. + x-speakeasy-name-override: LocalDirectoryConfigServiceGetResponse + c1.api.local_directory.v1.LocalDirectoryConfigServiceListResponse: + description: The LocalDirectoryConfigServiceListResponse message. properties: - message: - description: Human-readable detail about the result. - readOnly: false + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfig' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - success: - description: Whether the test email was sent successfully. - readOnly: false - type: boolean - title: Test Tenant Email Provider Response + title: Local Directory Config Service List Response type: object - x-speakeasy-name-override: TestTenantEmailProviderResponse - c1.api.settings.v1.UpdateContactsRequest: - description: The UpdateContactsRequest message. + x-speakeasy-name-override: LocalDirectoryConfigServiceListResponse + c1.api.local_directory.v1.LocalDirectoryConfigServiceUpdateRequestInput: + description: The LocalDirectoryConfigServiceUpdateRequest message. properties: - contacts: - $ref: '#/components/schemas/c1.api.settings.v1.Contacts' + localDirectoryConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfig' + - type: "null" updateMask: - nullable: true - readOnly: false - type: string - title: Update Contacts Request + type: + - string + - "null" + title: Local Directory Config Service Update Request type: object - x-speakeasy-name-override: UpdateContactsRequest - c1.api.settings.v1.UpdateContactsResponse: - description: The UpdateContactsResponse message. + x-speakeasy-name-override: LocalDirectoryConfigServiceUpdateRequest + c1.api.local_directory.v1.LocalDirectoryConfigServiceUpdateResponse: + description: The LocalDirectoryConfigServiceUpdateResponse message. properties: - contacts: - $ref: '#/components/schemas/c1.api.settings.v1.Contacts' - title: Update Contacts Response + localDirectoryConfig: + oneOf: + - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfig' + - type: "null" + title: Local Directory Config Service Update Response type: object - x-speakeasy-name-override: UpdateContactsResponse - c1.api.settings.v1.UpdateOnboardingSettingsRequest: - description: The UpdateOnboardingSettingsRequest message. + x-speakeasy-name-override: LocalDirectoryConfigServiceUpdateResponse + c1.api.local_directory.v1.LocalUserInvitation: + description: LocalUserInvitation is the public representation of a per-directory user invitation. properties: - conversationId: - description: The identifier of the onboarding conversation thread to associate. - readOnly: false + acceptedAt: + format: date-time + readOnly: true + type: + - string + - "null" + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + createdUserId: + description: Set when status = ACCEPTED. FK to the created User. Read-only. + readOnly: true type: string - status: - description: The new onboarding status to set. - enum: - - ONBOARDING_STATUS_UNSPECIFIED - - ONBOARDING_STATUS_NOT_STARTED - - ONBOARDING_STATUS_IN_PROGRESS - - ONBOARDING_STATUS_COMPLETE - - ONBOARDING_STATUS_DISMISSED - readOnly: false + directoryAppId: + description: FK to the LocalDirectoryConfig (app_id) this invitation belongs to. Read-only after creation. + readOnly: true + type: string + displayName: + description: Display name to pre-populate on the new user account. + type: string + email: + description: Email address the invitation was sent to. + type: string + expiresAt: + format: date-time + readOnly: true + type: + - string + - "null" + id: + description: Unique KSUID identifier. Read-only. + readOnly: true + type: string + initialRoleIds: + description: Optional initial role IDs to assign to the user upon acceptance. + items: + type: string + type: + - array + - "null" + invitedByUserId: + description: FK to the User who created the invitation. Read-only. + readOnly: true + type: string + jobId: + description: Optional FK to a ThirdPartyJob. + type: string + onboardingFlowId: + description: Optional onboarding flow override for this invitation. + type: string + purpose: + description: Human-readable reason this user was invited. + type: string + sponsorUserId: + description: Optional sponsor User override for this invitation. type: string - x-speakeasy-unknown-values: allow - title: Update Onboarding Settings Request - type: object - x-speakeasy-name-override: UpdateOnboardingSettingsRequest - c1.api.settings.v1.UpdateOnboardingSettingsResponse: - description: The UpdateOnboardingSettingsResponse message. - properties: status: - description: The updated onboarding status. + description: Current lifecycle status. Read-only. enum: - - ONBOARDING_STATUS_UNSPECIFIED - - ONBOARDING_STATUS_NOT_STARTED - - ONBOARDING_STATUS_IN_PROGRESS - - ONBOARDING_STATUS_COMPLETE - - ONBOARDING_STATUS_DISMISSED - readOnly: false + - LOCAL_INVITATION_STATUS_UNSPECIFIED + - LOCAL_INVITATION_STATUS_PENDING + - LOCAL_INVITATION_STATUS_ACCEPTED + - LOCAL_INVITATION_STATUS_REVOKED + - LOCAL_INVITATION_STATUS_EXPIRED + readOnly: true type: string x-speakeasy-unknown-values: allow - title: Update Onboarding Settings Response + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Local User Invitation type: object - x-speakeasy-name-override: UpdateOnboardingSettingsResponse - c1.api.settings.v1.UpdateOrgDomainRequest: - description: The UpdateOrgDomainRequest message. + x-speakeasy-name-override: LocalUserInvitation + c1.api.local_directory.v1.LocalUserInvitationServiceCreateRequestInput: + description: The LocalUserInvitationServiceCreateRequest message. properties: - newDomains: - description: The complete list of domain names that should be set as the tenant's verified domains. + displayName: + description: The displayName field. + type: string + email: + description: The email field. + type: string + initialRoleIds: + description: Optional initial role IDs to assign upon acceptance. items: type: string - nullable: true - readOnly: false - type: array - title: Update Org Domain Request + type: + - array + - "null" + jobId: + description: Optional FK to a ThirdPartyJob. + type: string + onboardingFlowId: + description: Optional onboarding flow override. + type: string + purpose: + description: Human-readable reason for the invitation. + type: string + sponsorUserId: + description: Optional sponsor User override. + type: string + required: + - email + - displayName + title: Local User Invitation Service Create Request type: object - x-speakeasy-name-override: UpdateOrgDomainRequest - c1.api.settings.v1.UpdateOrgDomainResponse: - description: The UpdateOrgDomainResponse message. + x-speakeasy-name-override: LocalUserInvitationServiceCreateRequest + c1.api.local_directory.v1.LocalUserInvitationServiceCreateResponse: + description: The LocalUserInvitationServiceCreateResponse message. properties: - list: - description: The resulting list of verified domains after the update. - items: - $ref: '#/components/schemas/c1.api.settings.v1.OrgDomain' - nullable: true - readOnly: false - type: array - title: Update Org Domain Response + invitation: + oneOf: + - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitation' + - type: "null" + title: Local User Invitation Service Create Response type: object - x-speakeasy-name-override: UpdateOrgDomainResponse - c1.api.settings.v1.UpdateOrgNotificationSettingsRequest: - description: The UpdateOrgNotificationSettingsRequest message. + x-speakeasy-name-override: LocalUserInvitationServiceCreateResponse + c1.api.local_directory.v1.LocalUserInvitationServiceGetResponse: + description: The LocalUserInvitationServiceGetResponse message. properties: - channelSettings: - $ref: '#/components/schemas/c1.api.settings.v1.ChannelSettings' - title: Update Org Notification Settings Request + invitation: + oneOf: + - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitation' + - type: "null" + title: Local User Invitation Service Get Response type: object - x-speakeasy-name-override: UpdateOrgNotificationSettingsRequest - c1.api.settings.v1.UpdateOrgNotificationSettingsResponse: - description: The UpdateOrgNotificationSettingsResponse message. + x-speakeasy-name-override: LocalUserInvitationServiceGetResponse + c1.api.local_directory.v1.LocalUserInvitationServiceRevokeRequestInput: + description: The LocalUserInvitationServiceRevokeRequest message. + title: Local User Invitation Service Revoke Request + type: object + x-speakeasy-name-override: LocalUserInvitationServiceRevokeRequest + c1.api.local_directory.v1.LocalUserInvitationServiceRevokeResponse: + description: The LocalUserInvitationServiceRevokeResponse message. properties: - orgNotificationSettings: - $ref: '#/components/schemas/c1.api.settings.v1.OrgNotificationSettings' - title: Update Org Notification Settings Response + invitation: + oneOf: + - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitation' + - type: "null" + title: Local User Invitation Service Revoke Response type: object - x-speakeasy-name-override: UpdateOrgNotificationSettingsResponse - c1.api.settings.v1.UpdateSessionSettingsRequest: - description: The UpdateSessionSettingsRequest message. + x-speakeasy-name-override: LocalUserInvitationServiceRevokeResponse + c1.api.local_directory.v1.LocalUserInvitationServiceSearchRequest: + description: The LocalUserInvitationServiceSearchRequest message. properties: - sessionSettings: - $ref: '#/components/schemas/c1.api.settings.v1.SessionSettings' - updateMask: - nullable: true - readOnly: false + directoryAppId: + description: The directoryAppId field. type: string - title: Update Session Settings Request + pageSize: + description: The pageSize field. + format: int32 + type: integer + pageToken: + description: The pageToken field. + type: string + statusFilter: + description: Optional filter by invitation status. + enum: + - LOCAL_INVITATION_STATUS_UNSPECIFIED + - LOCAL_INVITATION_STATUS_PENDING + - LOCAL_INVITATION_STATUS_ACCEPTED + - LOCAL_INVITATION_STATUS_REVOKED + - LOCAL_INVITATION_STATUS_EXPIRED + type: string + x-speakeasy-unknown-values: allow + title: Local User Invitation Service Search Request type: object - x-speakeasy-name-override: UpdateSessionSettingsRequest - c1.api.settings.v1.UpdateSessionSettingsResponse: - description: The UpdateSessionSettingsResponse message. + x-speakeasy-name-override: LocalUserInvitationServiceSearchRequest + c1.api.local_directory.v1.LocalUserInvitationServiceSearchResponse: + description: The LocalUserInvitationServiceSearchResponse message. properties: - sessionSettings: - $ref: '#/components/schemas/c1.api.settings.v1.SessionSettings' - title: Update Session Settings Response + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitation' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. + type: string + title: Local User Invitation Service Search Response type: object - x-speakeasy-name-override: UpdateSessionSettingsResponse - c1.api.settings.v1.UpdateTenantEmailProviderRequest: - description: The UpdateTenantEmailProviderRequest message. + x-speakeasy-name-override: LocalUserInvitationServiceSearchResponse + c1.api.policy.v1.Accept: + description: This policy step indicates that a ticket should have an approved outcome. This is a terminal approval state and is used to explicitly define the end of approval steps. properties: - emailProvider: - $ref: '#/components/schemas/c1.api.settings.v1.TenantEmailProvider' - updateMask: - nullable: true - readOnly: false + acceptMessage: + description: An optional message to include in the comments when a task is automatically accepted. type: string - title: Update Tenant Email Provider Request + title: Accept type: object - x-speakeasy-name-override: UpdateTenantEmailProviderRequest - c1.api.settings.v1.UpdateTenantEmailProviderResponse: - description: The UpdateTenantEmailProviderResponse message. + x-speakeasy-name-override: Accept + c1.api.policy.v1.AcceptInstance: + description: |- + This policy step indicates that a ticket should have an approved outcome. This is a terminal approval state and is used to explicitly define the end of approval steps. + The instance is just a marker for it being copied into an active policy. properties: - emailProvider: - $ref: '#/components/schemas/c1.api.settings.v1.TenantEmailProvider' - title: Update Tenant Email Provider Response + acceptMessage: + description: An optional message to include in the comments when a task is automatically accepted. + type: string + title: Accept Instance type: object - x-speakeasy-name-override: UpdateTenantEmailProviderResponse - c1.api.settings.v1.UpdateUserNotificationSettingsRequest: - description: The UpdateUserNotificationSettingsRequest message. - properties: - channelSettings: - $ref: '#/components/schemas/c1.api.settings.v1.ChannelSettings' - title: Update User Notification Settings Request + x-speakeasy-name-override: AcceptInstance + c1.api.policy.v1.Action: + description: | + The Action message. + + This message contains a oneof named target. Only a single field of the following list may be set at a time: + - automation + - batonResourceAction + - clientIdApproval + properties: + automation: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ActionTargetAutomation' + - type: "null" + batonResourceAction: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ActionTargetBatonResourceAction' + - type: "null" + clientIdApproval: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ActionTargetClientIdApproval' + - type: "null" + title: Action type: object - x-speakeasy-name-override: UpdateUserNotificationSettingsRequest - c1.api.settings.v1.UpdateUserNotificationSettingsResponse: - description: The UpdateUserNotificationSettingsResponse message. + x-speakeasy-name-override: Action + c1.api.policy.v1.ActionInstance: + description: | + The ActionInstance message. + + This message contains a oneof named target_instance. Only a single field of the following list may be set at a time: + - automation + - batonResourceActionInstance + - clientIdApprovalInstance + + + This message contains a oneof named outcome. Only a single field of the following list may be set at a time: + - success + - denied + - error + - cancelled properties: - userNotificationSettings: - $ref: '#/components/schemas/c1.api.settings.v1.UserNotificationSettings' - title: Update User Notification Settings Response + action: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Action' + - type: "null" + automation: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ActionTargetAutomationInstance' + - type: "null" + batonResourceActionInstance: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ActionTargetBatonResourceActionInstance' + - type: "null" + cancelled: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ActionOutcomeCancelled' + - type: "null" + clientIdApprovalInstance: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ActionTargetClientIdApprovalInstance' + - type: "null" + denied: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ActionOutcomeDenied' + - type: "null" + error: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ActionOutcomeError' + - type: "null" + state: + description: The current state of the action execution. + enum: + - ACTION_INSTANCE_STATE_UNSPECIFIED + - ACTION_INSTANCE_STATE_INIT + - ACTION_INSTANCE_STATE_RUNNING + - ACTION_INSTANCE_STATE_DONE + - ACTION_INSTANCE_STATE_ERROR + type: string + x-speakeasy-unknown-values: allow + success: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ActionOutcomeSuccess' + - type: "null" + title: Action Instance type: object - x-speakeasy-name-override: UpdateUserNotificationSettingsResponse - c1.api.settings.v1.UserNotificationSettings: - description: UserNotificationSettings contains the calling user's personal notification preferences. + x-speakeasy-name-override: ActionInstance + c1.api.policy.v1.ActionOutcomeCancelled: + description: The ActionOutcomeCancelled message. properties: - channelSettings: - $ref: '#/components/schemas/c1.api.settings.v1.ChannelSettings' - title: User Notification Settings + outcomeTime: + format: date-time + type: + - string + - "null" + title: Action Outcome Cancelled type: object - x-speakeasy-name-override: UserNotificationSettings - c1.api.ssf_receiver.v1.SSFOutboundAuthBearer: - description: |- - SSFOutboundAuthBearer is a static bearer token for outbound auth. - Token is write-only: accepted on create/update, never returned. - nullable: true + x-speakeasy-name-override: ActionOutcomeCancelled + c1.api.policy.v1.ActionOutcomeDenied: + description: The ActionOutcomeDenied message. properties: - token: - description: The token field. - readOnly: false - type: string - title: Ssf Outbound Auth Bearer + outcomeTime: + format: date-time + type: + - string + - "null" + title: Action Outcome Denied type: object - x-speakeasy-name-override: SSFOutboundAuthBearer - c1.api.ssf_receiver.v1.SSFOutboundAuthOAuth2: - description: |- - SSFOutboundAuthOAuth2 uses OAuth2 client credentials for outbound auth. - client_secret is write-only: accepted on create/update, never returned. - nullable: true + x-speakeasy-name-override: ActionOutcomeDenied + c1.api.policy.v1.ActionOutcomeError: + description: The ActionOutcomeError message. properties: - clientId: - description: The clientId field. - readOnly: false - type: string - clientSecret: - description: The clientSecret field. - readOnly: false + errorCode: + description: The errorCode field. type: string - scopes: - description: The scopes field. - items: - type: string - nullable: true - readOnly: false - type: array - tokenUrl: - description: The tokenUrl field. - readOnly: false + errorMessage: + description: The errorMessage field. type: string - title: Ssf Outbound Auth O Auth 2 + outcomeTime: + format: date-time + type: + - string + - "null" + title: Action Outcome Error type: object - x-speakeasy-name-override: SSFOutboundAuthOAuth2 - c1.api.ssf_receiver.v1.SSFReceiverEvent: - description: SSFReceiverEvent shows both wire-level data and C1 canonical outcome. + x-speakeasy-name-override: ActionOutcomeError + c1.api.policy.v1.ActionOutcomeSuccess: + description: The ActionOutcomeSuccess message. properties: - canonicalType: - description: |- - C1 canonical outcome (what C1 understood and did). - The normalized event type after mapping from the wire event type. - enum: - - SSF_CANONICAL_EVENT_TYPE_UNSPECIFIED - - SSF_CANONICAL_EVENT_TYPE_UNRECOGNIZED - - SSF_CANONICAL_EVENT_TYPE_SESSION_REVOKED - - SSF_CANONICAL_EVENT_TYPE_CREDENTIAL_CHANGED - - SSF_CANONICAL_EVENT_TYPE_TOKEN_CLAIMS_CHANGED - - SSF_CANONICAL_EVENT_TYPE_ASSURANCE_LEVEL_CHANGED - - SSF_CANONICAL_EVENT_TYPE_DEVICE_COMPLIANCE_CHANGED - - SSF_CANONICAL_EVENT_TYPE_RISK_LEVEL_CHANGED - - SSF_CANONICAL_EVENT_TYPE_SESSION_ESTABLISHED - - SSF_CANONICAL_EVENT_TYPE_SESSION_PRESENTED - - SSF_CANONICAL_EVENT_TYPE_ACCOUNT_DISABLED - - SSF_CANONICAL_EVENT_TYPE_ACCOUNT_ENABLED - - SSF_CANONICAL_EVENT_TYPE_ACCOUNT_PURGED - - SSF_CANONICAL_EVENT_TYPE_CREDENTIAL_COMPROMISE - - SSF_CANONICAL_EVENT_TYPE_RECOVERY_ACTIVATED - - SSF_CANONICAL_EVENT_TYPE_IDENTIFIER_CHANGED - - SSF_CANONICAL_EVENT_TYPE_VERIFICATION - - SSF_CANONICAL_EVENT_TYPE_STREAM_UPDATED - readOnly: false - type: string - x-speakeasy-unknown-values: allow - id: - description: The unique identifier of this event. - readOnly: false - type: string - matchMethod: - description: How the upstream subject was resolved to a ConductorOne user. - enum: - - SSF_SUBJECT_MATCH_METHOD_UNSPECIFIED - - SSF_SUBJECT_MATCH_METHOD_IDP_USER - - SSF_SUBJECT_MATCH_METHOD_EMAIL - - SSF_SUBJECT_MATCH_METHOD_NOT_FOUND - - SSF_SUBJECT_MATCH_METHOD_NOT_APPLICABLE - readOnly: false - type: string - x-speakeasy-unknown-values: allow - matchedUserId: - description: The ConductorOne user ID that the event subject was resolved to, if any. - readOnly: false - type: string - outcome: - description: The action ConductorOne took in response to this event. - enum: - - SSF_EVENT_OUTCOME_UNSPECIFIED - - SSF_EVENT_OUTCOME_SESSIONS_REVOKED - - SSF_EVENT_OUTCOME_LOGGED - - SSF_EVENT_OUTCOME_PRINCIPAL_NOT_FOUND - - SSF_EVENT_OUTCOME_VERIFIED - - SSF_EVENT_OUTCOME_STREAM_STATUS_UPDATED - - SSF_EVENT_OUTCOME_UNRECOGNIZED - - SSF_EVENT_OUTCOME_ERROR - readOnly: false - type: string - x-speakeasy-unknown-values: allow - outcomeDetail: - description: Human-readable details about the outcome (e.g., error message or revocation summary). - readOnly: false - type: string - receivedAt: + outcomeTime: format: date-time - readOnly: false - type: string - sessionsRevoked: - description: Number of sessions that were revoked as a result of this event. - format: int32 - readOnly: false - type: integer - setJti: - description: |- - Wire-level data (what the transmitter sent). - The SET (Security Event Token) JWT ID claim, uniquely identifying the token. - readOnly: false - type: string - streamId: - description: The SSF receiver stream that received this event. - readOnly: false - type: string - wireEventProfile: - description: The event profile URI from the SET, if present. - readOnly: false - type: string - wireEventType: - description: The raw event type URI from the SET (e.g., "https://schemas.openid.net/secevent/caep/event-type/session-revoked"). - readOnly: false - type: string - wireInitiatingEntity: - description: The entity that initiated the event, as reported by the transmitter. - readOnly: false - type: string - wireReasonAdmin: - description: The admin-facing reason string from the SET, if provided by the transmitter. - readOnly: false - type: string - wireSubjectFormat: - description: The subject identifier format from the SET (e.g., "email", "iss_sub"). - readOnly: false - type: string - wireSubjectIdentifier: - description: The raw subject identifier value from the SET. - readOnly: false - type: string - title: Ssf Receiver Event + type: + - string + - "null" + title: Action Outcome Success type: object - x-speakeasy-name-override: SSFReceiverEvent - c1.api.ssf_receiver.v1.SSFReceiverEventSearchServiceSearchRequest: - description: SSFReceiverEventSearchServiceSearchRequest carries the search query and optional filters for narrowing results. + x-speakeasy-name-override: ActionOutcomeSuccess + c1.api.policy.v1.ActionProvision: + description: This provision step indicates that account lifecycle action should be called to provision this entitlement. properties: - eventType: - description: Restricts results to events matching this wire event type URI. Optional. - readOnly: false - type: string - matchedUserId: - description: Restricts results to events matched to this ConductorOne user ID. Optional. - readOnly: false - type: string - outcome: - description: Restricts results to events with this processing outcome. Optional. - enum: - - SSF_EVENT_OUTCOME_UNSPECIFIED - - SSF_EVENT_OUTCOME_SESSIONS_REVOKED - - SSF_EVENT_OUTCOME_LOGGED - - SSF_EVENT_OUTCOME_PRINCIPAL_NOT_FOUND - - SSF_EVENT_OUTCOME_VERIFIED - - SSF_EVENT_OUTCOME_STREAM_STATUS_UPDATED - - SSF_EVENT_OUTCOME_UNRECOGNIZED - - SSF_EVENT_OUTCOME_ERROR - readOnly: false + actionName: + description: The actionName field. type: string - x-speakeasy-unknown-values: allow - pageSize: - description: Maximum number of events to return per page. - format: int32 - readOnly: false - type: integer - pageToken: - description: Token from a previous SearchResponse to fetch the next page of results. - readOnly: false + appId: + description: The appId field. type: string - query: - description: Full-text search query matched against event fields. - readOnly: false + connectorId: + description: The connectorId field. type: string - streamId: - description: Restricts results to events from this SSF receiver stream. Optional. - readOnly: false + displayName: + description: The displayName field. type: string - title: Ssf Receiver Event Search Service Search Request + title: Action Provision type: object - x-speakeasy-name-override: SSFReceiverEventSearchServiceSearchRequest - c1.api.ssf_receiver.v1.SSFReceiverEventSearchServiceSearchResponse: - description: SSFReceiverEventSearchServiceSearchResponse contains the matching events and a pagination token. + x-speakeasy-name-override: ActionProvision + c1.api.policy.v1.ActionTargetAutomation: + description: ActionTargetAutomation targets automation templates for policy actions. properties: - list: - description: The SSF events matching the search criteria. - items: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverEvent' - nullable: true - readOnly: false - type: array - nextPageToken: - description: Token to retrieve the next page. Empty when there are no more results. - readOnly: false + automationTemplateId: + description: The automationTemplateId field. type: string - title: Ssf Receiver Event Search Service Search Response + title: Action Target Automation type: object - x-speakeasy-name-override: SSFReceiverEventSearchServiceSearchResponse - c1.api.ssf_receiver.v1.SSFReceiverEventServiceListResponse: - description: SSFReceiverEventServiceListResponse contains a page of received SSF events. + x-speakeasy-name-override: ActionTargetAutomation + c1.api.policy.v1.ActionTargetAutomationInstance: + description: The ActionTargetAutomationInstance message. properties: - list: - description: The SSF events in the current page. - items: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverEvent' - nullable: true - readOnly: false - type: array - nextPageToken: - description: Token to retrieve the next page. Empty when there are no more results. - readOnly: false + automationExecutionId: + description: The automationExecutionId field. type: string - title: Ssf Receiver Event Service List Response + title: Action Target Automation Instance type: object - x-speakeasy-name-override: SSFReceiverEventServiceListResponse - c1.api.ssf_receiver.v1.SSFReceiverStream: - description: | - SSFReceiverStream is the public API representation. - Secrets (push_auth_token, outbound credentials) are write-only. - - This message contains a oneof named outbound_auth. Only a single field of the following list may be set at a time: - - outboundAuthBearer - - outboundAuthOauth2 + x-speakeasy-name-override: ActionTargetAutomationInstance + c1.api.policy.v1.ActionTargetBatonResourceAction: + description: ActionTargetResource targets resource actions for policy actions. properties: - accountDisabledAction: - description: Action to take when an account-disabled event is received. - enum: - - SSF_REVOCATION_ACTION_UNSPECIFIED - - SSF_REVOCATION_ACTION_REVOKE_ALL - - SSF_REVOCATION_ACTION_LOG_ONLY - readOnly: false + batonResourceActionId: + description: The batonResourceActionId field. type: string - x-speakeasy-unknown-values: allow - createdAt: - format: date-time - readOnly: true + title: Action Target Baton Resource Action + type: object + x-speakeasy-name-override: ActionTargetBatonResourceAction + c1.api.policy.v1.ActionTargetBatonResourceActionInstance: + description: The ActionTargetBatonResourceActionInstance message. + properties: + batonActionInvocationId: + description: The batonActionInvocationId field. type: string - credentialChangeAction: - description: Action to take when a credential-change event is received. - enum: - - SSF_REVOCATION_ACTION_UNSPECIFIED - - SSF_REVOCATION_ACTION_REVOKE_ALL - - SSF_REVOCATION_ACTION_LOG_ONLY - readOnly: false + title: Action Target Baton Resource Action Instance + type: object + x-speakeasy-name-override: ActionTargetBatonResourceActionInstance + c1.api.policy.v1.ActionTargetClientIdApproval: + description: |- + ActionTargetClientIdApproval targets administrator review of an external + OAuth client registration (CIMD or DCR) for policy actions. + title: Action Target Client Id Approval + type: object + x-speakeasy-name-override: ActionTargetClientIdApproval + c1.api.policy.v1.ActionTargetClientIdApprovalInstance: + description: |- + ActionTargetClientIdApprovalInstance carries the registration key of the + external OAuth client that is being reviewed. + properties: + clientIdUrl: + description: The clientIdUrl field. type: string - x-speakeasy-unknown-values: allow - credentialCompromiseAction: - description: Action to take when a credential-compromise event is received. + title: Action Target Client Id Approval Instance + type: object + x-speakeasy-name-override: ActionTargetClientIdApprovalInstance + c1.api.policy.v1.AgentApproval: + description: The agent to assign the task to. + properties: + agentFailureAction: + description: The action to take if the agent fails to approve, deny, or reassign the task. enum: - - SSF_REVOCATION_ACTION_UNSPECIFIED - - SSF_REVOCATION_ACTION_REVOKE_ALL - - SSF_REVOCATION_ACTION_LOG_ONLY - readOnly: false + - APPROVAL_AGENT_FAILURE_ACTION_UNSPECIFIED + - APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_USERS + - APPROVAL_AGENT_FAILURE_ACTION_REASSIGN_TO_SUPER_ADMINS + - APPROVAL_AGENT_FAILURE_ACTION_SKIP_POLICY_STEP type: string x-speakeasy-unknown-values: allow - deletedAt: - format: date-time - readOnly: true - type: string - deliveryMethod: - description: Controls whether events are received via push (transmitter POSTs to C1) or poll (C1 fetches from transmitter). + agentMode: + description: The mode of the agent, full control, change policy only, or comment only. enum: - - SSF_DELIVERY_METHOD_UNSPECIFIED - - SSF_DELIVERY_METHOD_PUSH - - SSF_DELIVERY_METHOD_POLL - readOnly: false + - APPROVAL_AGENT_MODE_UNSPECIFIED + - APPROVAL_AGENT_MODE_FULL_CONTROL + - APPROVAL_AGENT_MODE_CHANGE_POLICY_ONLY + - APPROVAL_AGENT_MODE_COMMENT_ONLY type: string x-speakeasy-unknown-values: allow - description: - description: Optional description of the stream's purpose or source. - readOnly: false + agentUserId: + deprecated: true + description: |- + Deprecated: agent steps are evaluated by the system; no agent user is + selected. Retained so pre-migration policies still validate. type: string - displayName: - description: Human-readable name for the stream shown in the UI. - readOnly: false + instructions: + description: Instructions for the agent. type: string - enabled: - description: Controls whether this stream actively processes incoming events. When false, events are ignored. - readOnly: false - type: boolean - eventTypesEnabled: - description: SSF/CAEP/RISC event type URIs that this stream is configured to accept. + policyIds: + description: The allow list of policy IDs to re-route the task to. items: type: string - nullable: true - readOnly: false - type: array - expectedAudience: - description: Expected audience (aud) claim in incoming SETs. Optional. - readOnly: false - type: string - id: - description: The unique identifier of this SSF receiver stream. - readOnly: false - type: string - issuerUrl: - description: Upstream IdP identification. - readOnly: false - type: string - jwksUrl: - description: The jwksUrl field. - readOnly: false - type: string - lastErrorAt: - format: date-time - readOnly: false - type: string - lastErrorMessage: - description: The lastErrorMessage field. - readOnly: false - type: string - lastVerifiedAt: - format: date-time - readOnly: false - type: string - outboundAuthBearer: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFOutboundAuthBearer' - outboundAuthOauth2: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFOutboundAuthOAuth2' - pollEndpointUrl: - description: URL of the transmitter's poll endpoint where C1 fetches events from. - readOnly: false - type: string - pollInterval: - format: duration - readOnly: false - type: string - pushAuthToken: - description: 'Push auth token: write-only. Accepted on create, never returned in get/list.' - readOnly: false - type: string - pushEndpointUrl: - description: 'Push delivery: C1 generates a unique endpoint URL.' - readOnly: true - type: string - sessionRevokedAction: - description: |- - Per-canonical-type action configuration. - Event types without a config here default to LOG_ONLY. - Action to take when a session-revoked event is received. - enum: - - SSF_REVOCATION_ACTION_UNSPECIFIED - - SSF_REVOCATION_ACTION_REVOKE_ALL - - SSF_REVOCATION_ACTION_LOG_ONLY - readOnly: false - type: string - x-speakeasy-unknown-values: allow - updatedAt: - format: date-time - readOnly: true - type: string - title: Ssf Receiver Stream + type: + - array + - "null" + reassignToUserIds: + description: The users to reassign the task to if the agent failure action is reassign to users. + items: + type: string + type: + - array + - "null" + title: Agent Approval type: object - x-speakeasy-name-override: SSFReceiverStream - c1.api.ssf_receiver.v1.SSFReceiverStreamServiceCreateRequest: - description: SSFReceiverStreamServiceCreateRequest contains the configuration for a new SSF receiver stream. + x-speakeasy-name-override: AgentApproval + c1.api.policy.v1.AppEntitlementReference: + description: This object references an app entitlement's ID and AppID. properties: - accountDisabledAction: - description: Action to take when an account-disabled event is received. - enum: - - SSF_REVOCATION_ACTION_UNSPECIFIED - - SSF_REVOCATION_ACTION_REVOKE_ALL - - SSF_REVOCATION_ACTION_LOG_ONLY - readOnly: false - type: string - x-speakeasy-unknown-values: allow - credentialChangeAction: - description: Action to take when a credential-change event is received. - enum: - - SSF_REVOCATION_ACTION_UNSPECIFIED - - SSF_REVOCATION_ACTION_REVOKE_ALL - - SSF_REVOCATION_ACTION_LOG_ONLY - readOnly: false - type: string - x-speakeasy-unknown-values: allow - credentialCompromiseAction: - description: Action to take when a credential-compromise event is received. - enum: - - SSF_REVOCATION_ACTION_UNSPECIFIED - - SSF_REVOCATION_ACTION_REVOKE_ALL - - SSF_REVOCATION_ACTION_LOG_ONLY - readOnly: false - type: string - x-speakeasy-unknown-values: allow - deliveryMethod: - description: Controls whether events are received via push or poll delivery. - enum: - - SSF_DELIVERY_METHOD_UNSPECIFIED - - SSF_DELIVERY_METHOD_PUSH - - SSF_DELIVERY_METHOD_POLL - readOnly: false - type: string - x-speakeasy-unknown-values: allow - description: - description: Optional description of the stream's purpose or source. - readOnly: false + appEntitlementId: + description: The ID of the Entitlement. type: string - displayName: - description: Human-readable name for the stream. - readOnly: false + appId: + description: The ID of the App this entitlement belongs to. type: string - enabled: - description: Controls whether the stream starts processing events immediately after creation. - readOnly: false + title: App Entitlement Reference + type: object + x-speakeasy-name-override: AppEntitlementReference + c1.api.policy.v1.AppGroupApproval: + description: The AppGroupApproval object provides the configuration for setting a group as the approvers of an approval policy step. + properties: + allowSelfApproval: + description: Configuration to allow self approval if the target user is a member of the group during this step. type: boolean - expectedAudience: - description: Expected audience claim in incoming SETs. If set, SETs with a different audience are rejected. - readOnly: false - type: string - issuerUrl: - description: The issuer URL of the upstream SSF transmitter, used for token validation. - readOnly: false + appGroupId: + description: The ID of the group specified for approval. type: string - jwksUrl: - description: URL to fetch the transmitter's JSON Web Key Set for SET signature verification. - readOnly: false + appId: + description: The ID of the app that contains the group specified for approval. type: string - pollEndpointUrl: - description: URL of the transmitter's poll endpoint. Required when delivery_method is POLL. - readOnly: false - type: string - pollInterval: - format: duration - readOnly: false - type: string - sessionRevokedAction: - description: |- - Per-event-type action configuration. - Action to take when a session-revoked event is received. - enum: - - SSF_REVOCATION_ACTION_UNSPECIFIED - - SSF_REVOCATION_ACTION_REVOKE_ALL - - SSF_REVOCATION_ACTION_LOG_ONLY - readOnly: false - type: string - x-speakeasy-unknown-values: allow - required: - - displayName - - issuerUrl - title: Ssf Receiver Stream Service Create Request - type: object - x-speakeasy-name-override: SSFReceiverStreamServiceCreateRequest - c1.api.ssf_receiver.v1.SSFReceiverStreamServiceCreateResponse: - description: SSFReceiverStreamServiceCreateResponse returns the created stream and the push auth token in plaintext. - properties: - pushAuthTokenPlaintext: - description: Push auth token returned in plaintext ONLY on create. - readOnly: false - type: string - ssfReceiverStream: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStream' - title: Ssf Receiver Stream Service Create Response - type: object - x-speakeasy-name-override: SSFReceiverStreamServiceCreateResponse - c1.api.ssf_receiver.v1.SSFReceiverStreamServiceDeleteRequestInput: - description: SSFReceiverStreamServiceDeleteRequest identifies the SSF receiver stream to delete. - title: Ssf Receiver Stream Service Delete Request - type: object - x-speakeasy-name-override: SSFReceiverStreamServiceDeleteRequest - c1.api.ssf_receiver.v1.SSFReceiverStreamServiceDeleteResponse: - description: SSFReceiverStreamServiceDeleteResponse is empty on success. - title: Ssf Receiver Stream Service Delete Response - type: object - x-speakeasy-name-override: SSFReceiverStreamServiceDeleteResponse - c1.api.ssf_receiver.v1.SSFReceiverStreamServiceGetResponse: - description: SSFReceiverStreamServiceGetResponse contains the requested SSF receiver stream. - properties: - ssfReceiverStream: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStream' - title: Ssf Receiver Stream Service Get Response + fallback: + description: Configuration to allow a fallback if the group is empty. + type: boolean + fallbackGroupIds: + description: Configuration to specify which groups to fallback to if fallback is enabled and the group is empty. + items: + $ref: '#/components/schemas/c1.api.policy.v1.AppEntitlementReference' + type: + - array + - "null" + fallbackUserIds: + description: Configuration to specific which users to fallback to if fallback is enabled and the group is empty. + items: + type: string + type: + - array + - "null" + isGroupFallbackEnabled: + description: Configuration to enable fallback for group fallback. + type: boolean + requireDistinctApprovers: + description: Configuration to require distinct approvers across approval steps of a rule. + type: boolean + title: App Group Approval type: object - x-speakeasy-name-override: SSFReceiverStreamServiceGetResponse - c1.api.ssf_receiver.v1.SSFReceiverStreamServiceGetStatsResponse: - description: SSFReceiverStreamServiceGetStatsResponse contains the event processing statistics for the stream. + x-speakeasy-name-override: AppGroupApproval + c1.api.policy.v1.AppOwnerApproval: + description: App owner approval provides the configuration for an approval step when the app owner is the target. properties: - stats: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamStats' - title: Ssf Receiver Stream Service Get Stats Response + allowSelfApproval: + description: Configuration that allows a user to self approve if they are an app owner during this approval step. + type: boolean + requireDistinctApprovers: + description: Configuration to require distinct approvers across approval steps of a rule. + type: boolean + title: App Owner Approval type: object - x-speakeasy-name-override: SSFReceiverStreamServiceGetStatsResponse - c1.api.ssf_receiver.v1.SSFReceiverStreamServiceListResponse: - description: SSFReceiverStreamServiceListResponse contains a page of SSF receiver streams. + x-speakeasy-name-override: AppOwnerApproval + c1.api.policy.v1.AppOwnerProvisioner: + description: AppOwnerProvisioner resolves to app owners. properties: - list: - description: The SSF receiver streams in the current page. + allowReassignment: + description: Whether the provisioner can reassign the task. + type: boolean + fallbackUserIds: + description: Fallback user IDs if no app owners are found. items: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStream' - nullable: true - readOnly: false - type: array - nextPageToken: - description: Token to retrieve the next page. Empty when there are no more results. - readOnly: false - type: string - title: Ssf Receiver Stream Service List Response - type: object - x-speakeasy-name-override: SSFReceiverStreamServiceListResponse - c1.api.ssf_receiver.v1.SSFReceiverStreamServiceTestRequestInput: - description: SSFReceiverStreamServiceTestRequest identifies the stream to test and an optional subject for identity resolution validation. - properties: - testSubject: - description: |- - The upstream identifier to test resolution with. Typically an email address - (e.g., "alice@company.com") — the same value the IdP would send in a SET subject. - The Test RPC runs resolveSubject on this to verify the identity mapping works. - Optional: upstream identifier (email) to test identity resolution. - If empty, only JWKS reachability is tested. - readOnly: false - type: string - title: Ssf Receiver Stream Service Test Request + type: string + type: + - array + - "null" + title: App Owner Provisioner type: object - x-speakeasy-name-override: SSFReceiverStreamServiceTestRequest - c1.api.ssf_receiver.v1.SSFReceiverStreamServiceTestResponse: - description: SSFReceiverStreamServiceTestResponse reports the results of the stream configuration test across JWKS, identity, and action readiness checks. + x-speakeasy-name-override: AppOwnerProvisioner + c1.api.policy.v1.Approval: + description: | + The Approval message. + + This message contains a oneof named typ. Only a single field of the following list may be set at a time: + - users + - manager + - appOwners + - group + - self + - entitlementOwners + - expression + - webhook + - resourceOwners + - agent properties: - activeRefreshTokenCount: - description: Number of active refresh tokens for the matched user that would be affected. - format: int32 - readOnly: false - type: integer - activeSessionCount: - description: Number of active sessions for the matched user that would be affected. - format: int32 - readOnly: false - type: integer - configuredSessionRevokedAction: - description: |- - Step 3: Action preview. - The action configured for session-revoked events on this stream. - enum: - - SSF_REVOCATION_ACTION_UNSPECIFIED - - SSF_REVOCATION_ACTION_REVOKE_ALL - - SSF_REVOCATION_ACTION_LOG_ONLY - readOnly: false - type: string - x-speakeasy-unknown-values: allow - identityLinkFound: - description: |- - Step 2: Identity mapping. - Whether the test subject was resolved to a ConductorOne user. - readOnly: false + agent: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.AgentApproval' + - type: "null" + allowDelegation: + description: Whether ticket delegation is allowed for this step. type: boolean - jwksError: - description: Error message if the JWKS endpoint could not be reached or returned invalid data. - readOnly: false - type: string - jwksKeyCount: - description: Number of signing keys found at the JWKS endpoint. - format: int32 - readOnly: false - type: integer - jwksReachable: - description: |- - Step 1: JWKS reachability. - Whether the JWKS endpoint was reachable and returned valid keys. - readOnly: false + allowReassignment: + description: Configuration to allow reassignment by reviewers during this step. type: boolean - matchedUserId: - description: The ConductorOne user ID the test subject maps to, if an identity link was found. - readOnly: false - type: string - ready: - description: |- - Overall readiness. - Whether the stream passed all test checks and is ready to process events. - readOnly: false + allowedReassignees: + description: List of users for whom this step can be reassigned. + items: + type: string + type: + - array + - "null" + appOwners: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.AppOwnerApproval' + - type: "null" + assigned: + description: A field indicating whether this step is assigned. + readOnly: true type: boolean - upstreamSubject: - description: The upstream IdP subject identifier (e.g., Okta user ID "00u1234") resolved from the test subject. - readOnly: false + entitlementOwners: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.EntitlementOwnerApproval' + - type: "null" + escalation: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Escalation' + - type: "null" + escalationEnabled: + description: Whether escalation is enabled for this step. + type: boolean + expression: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ExpressionApproval' + - type: "null" + group: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.AppGroupApproval' + - type: "null" + manager: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ManagerApproval' + - type: "null" + requireApprovalReason: + description: Configuration to require a reason when approving this step. + type: boolean + requireDenialReason: + description: Configuration to require a reason when denying this step. + type: boolean + requireReassignmentReason: + description: Configuration to require a reason when reassigning this step. + type: boolean + requiresStepUpProviderId: + description: |- + The ID of a step-up authentication provider that will be required for approvals on this step. + If set, approvers must complete the step-up authentication flow before they can approve. type: string - title: Ssf Receiver Stream Service Test Response + resourceOwners: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ResourceOwnerApproval' + - type: "null" + self: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.SelfApproval' + - type: "null" + users: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.UserApproval' + - type: "null" + webhook: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.WebhookApproval' + - type: "null" + title: Approval type: object - x-speakeasy-name-override: SSFReceiverStreamServiceTestResponse - c1.api.ssf_receiver.v1.SSFReceiverStreamServiceUpdateRequestInput: - description: SSFReceiverStreamServiceUpdateRequest carries the stream to update and the mask of fields to modify. + x-speakeasy-name-override: Approval + c1.api.policy.v1.ApprovalInstance: + description: | + The approval instance object describes the way a policy step should be approved as well as its outcomes and state. + + This message contains a oneof named outcome. Only a single field of the following list may be set at a time: + - approved + - denied + - reassigned + - restarted + - reassignedByError + - skipped properties: - ssfReceiverStream: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStream' - updateMask: - nullable: true - readOnly: false + approval: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Approval' + - type: "null" + approved: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ApprovedAction' + - type: "null" + assignedAt: + format: date-time + readOnly: true + type: + - string + - "null" + denied: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.DeniedAction' + - type: "null" + escalationInstance: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.EscalationInstance' + - type: "null" + reassigned: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ReassignedAction' + - type: "null" + reassignedByError: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ReassignedByErrorAction' + - type: "null" + restarted: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.RestartAction' + - type: "null" + skipped: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.SkippedAction' + - type: "null" + state: + description: The state of the approval instance + enum: + - APPROVAL_INSTANCE_STATE_UNSPECIFIED + - APPROVAL_INSTANCE_STATE_INIT + - APPROVAL_INSTANCE_STATE_SENDING_NOTIFICATIONS + - APPROVAL_INSTANCE_STATE_WAITING + - APPROVAL_INSTANCE_STATE_DONE + readOnly: true type: string - title: Ssf Receiver Stream Service Update Request - type: object - x-speakeasy-name-override: SSFReceiverStreamServiceUpdateRequest - c1.api.ssf_receiver.v1.SSFReceiverStreamServiceUpdateResponse: - description: SSFReceiverStreamServiceUpdateResponse contains the updated SSF receiver stream. - properties: - ssfReceiverStream: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStream' - title: Ssf Receiver Stream Service Update Response + x-speakeasy-unknown-values: allow + title: Approval Instance type: object - x-speakeasy-name-override: SSFReceiverStreamServiceUpdateResponse - c1.api.ssf_receiver.v1.SSFReceiverStreamStats: - description: SSFReceiverStreamStats is a lightweight read-only stats object. + x-speakeasy-name-override: ApprovalInstance + c1.api.policy.v1.ApprovedAction: + description: The approved action indicates that the approvalinstance had an outcome of approved. properties: - eventsActedOnCount: - description: Number of events that triggered an action (e.g., session revocation). - format: int64 - readOnly: false - type: string - eventsFailedCount: - description: Number of events that failed processing. - format: int64 - readOnly: false - type: string - eventsReceivedCount: - description: Total number of events received on this stream. - format: int64 - readOnly: false - type: string - lastErrorAt: + approvedAt: format: date-time - readOnly: false + readOnly: true + type: + - string + - "null" + entitlements: + description: The entitlements that were approved. This will only ever be a list of one entitlement. + items: + $ref: '#/components/schemas/c1.api.policy.v1.AppEntitlementReference' + readOnly: true + type: + - array + - "null" + stepUpTransactionId: + description: The ID of the step-up transaction that was used for this approval, if step-up was required. + readOnly: true type: string - lastErrorMessage: - description: Human-readable description of the most recent processing error. - readOnly: false + userId: + description: The UserID that approved this step. + readOnly: true type: string - lastEventReceivedAt: + title: Approved Action + type: object + x-speakeasy-name-override: ApprovedAction + c1.api.policy.v1.CancelledAction: + description: The outcome of a provision instance that is cancelled. + properties: + cancelledAt: format: date-time - readOnly: false + type: + - string + - "null" + cancelledByUserId: + description: The userID, usually the system, that cancells a provision instance. type: string - lastVerifiedAt: + title: Cancelled Action + type: object + x-speakeasy-name-override: CancelledAction + c1.api.policy.v1.CompletedAction: + description: The outcome of a provision instance that has been completed succesfully. + properties: + completedAt: format: date-time - readOnly: false - type: string - streamId: - description: The SSF receiver stream these stats belong to. - readOnly: false - type: string - transmitterStatus: - description: Current status reported by the transmitter (e.g., "enabled", "paused"). - readOnly: false - type: string - transmitterStatusReason: - description: Reason provided by the transmitter for its current status. - readOnly: false + type: + - string + - "null" + entitlements: + description: The list of entitlements that were provisioned. This is leftover from an older design, and is only ever going to be a single entitlement. + items: + $ref: '#/components/schemas/c1.api.policy.v1.AppEntitlementReference' + type: + - array + - "null" + userId: + description: The UserID of who completed provisioning. For connector provisioning this is the system user id, for manual provisioning this is who clicked "provision complete" type: string - title: Ssf Receiver Stream Stats + title: Completed Action type: object - x-speakeasy-name-override: SSFReceiverStreamStats - c1.api.stepup.v1.CreateStepUpProviderRequest: + x-speakeasy-name-override: CompletedAction + c1.api.policy.v1.ConnectorProvision: description: | - The CreateStepUpProviderRequest message. + Indicates that a connector should perform the provisioning. This object has no fields. - This message contains a oneof named settings. Only a single field of the following list may be set at a time: - - oauth2 - - microsoft + This message contains a oneof named provision_type. Only a single field of the following list may be set at a time: + - defaultBehavior + - account + - deleteAccount properties: - clientId: - description: The OAuth2 client ID used to authenticate with the step-up provider. - readOnly: false - type: string - clientSecret: - description: The OAuth2 client secret. Write-only; never returned in responses. - readOnly: false - type: string - displayName: - description: The human-readable name for the new step-up provider. - readOnly: false + account: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ConnectorProvision.AccountProvision' + - type: "null" + defaultBehavior: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ConnectorProvision.DefaultBehavior' + - type: "null" + deleteAccount: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ConnectorProvision.DeleteAccount' + - type: "null" + title: Connector Provision + type: object + x-speakeasy-name-override: ConnectorProvision + c1.api.policy.v1.ConnectorProvision.AccountProvision: + description: | + The AccountProvision message. + + This message contains a oneof named storage_type. Only a single field of the following list may be set at a time: + - saveToVault + - doNotSave + properties: + config: + additionalProperties: true + type: + - object + - "null" + connectorId: + description: The connectorId field. type: string - issuerUrl: - description: The OIDC issuer URL for the step-up provider. - readOnly: false + doNotSave: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ConnectorProvision.DoNotSave' + - type: "null" + saveToVault: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ConnectorProvision.SaveToVault' + - type: "null" + schemaId: + description: The schemaId field. type: string - microsoft: - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpMicrosoftSettings' - oauth2: - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpOAuth2Settings' - title: Create Step Up Provider Request + title: Account Provision type: object - x-speakeasy-name-override: CreateStepUpProviderRequest - c1.api.stepup.v1.CreateStepUpProviderResponse: - description: The CreateStepUpProviderResponse message. + x-speakeasy-name-override: AccountProvision + c1.api.policy.v1.ConnectorProvision.DefaultBehavior: + description: The DefaultBehavior message. properties: - stepUpProvider: - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpProvider' - title: Create Step Up Provider Response - type: object - x-speakeasy-name-override: CreateStepUpProviderResponse - c1.api.stepup.v1.DeleteStepUpProviderRequestInput: - description: The DeleteStepUpProviderRequest message. - title: Delete Step Up Provider Request - type: object - x-speakeasy-name-override: DeleteStepUpProviderRequest - c1.api.stepup.v1.DeleteStepUpProviderResponse: - description: The DeleteStepUpProviderResponse message. - title: Delete Step Up Provider Response + connectorId: + description: |- + this checks if the entitlement is enabled by provisioning in a specific connector + this can happen automatically and doesn't need any extra info + type: string + title: Default Behavior type: object - x-speakeasy-name-override: DeleteStepUpProviderResponse - c1.api.stepup.v1.GetStepUpProviderResponse: - description: The GetStepUpProviderResponse message. + x-speakeasy-name-override: DefaultBehavior + c1.api.policy.v1.ConnectorProvision.DeleteAccount: + description: The DeleteAccount message. properties: - stepUpProvider: - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpProvider' - title: Get Step Up Provider Response + connectorId: + description: The connectorId field. + type: string + title: Delete Account type: object - x-speakeasy-name-override: GetStepUpProviderResponse - c1.api.stepup.v1.GetStepUpTransactionResponse: - description: Response message containing the requested step-up transaction - properties: - transaction: - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpTransaction' - title: Get Step Up Transaction Response + x-speakeasy-name-override: DeleteAccount + c1.api.policy.v1.ConnectorProvision.DoNotSave: + description: The DoNotSave message. + title: Do Not Save type: object - x-speakeasy-name-override: GetStepUpTransactionResponse - c1.api.stepup.v1.ListStepUpProvidersResponse: - description: The ListStepUpProvidersResponse message. + x-speakeasy-name-override: DoNotSave + c1.api.policy.v1.ConnectorProvision.SaveToVault: + description: The SaveToVault message. properties: - list: - description: The list of step-up authentication providers. + vaultIds: + description: The vaultIds field. items: - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpProvider' - nullable: true - readOnly: false - type: array - nextPageToken: - description: A token to retrieve the next page of results, or empty if there are no more results. - readOnly: false - type: string - title: List Step Up Providers Response + type: string + type: + - array + - "null" + title: Save To Vault type: object - x-speakeasy-name-override: ListStepUpProvidersResponse - c1.api.stepup.v1.SearchStepUpProvidersRequest: - description: Request message for searching step-up providers + x-speakeasy-name-override: SaveToVault + c1.api.policy.v1.CreatePolicyRequest: + description: The CreatePolicyRequest message is used to create a new policy. properties: - pageSize: - description: Maximum number of results to return - format: int32 - readOnly: false - type: integer - pageToken: - description: Token for pagination - readOnly: false + annotations: + additionalProperties: + type: string + description: |- + Bounded key/value metadata bag for IaC marking and customer tags. + See .rfcs/object-annotations.md §2. Limits: ≤16 entries; keys 1–128 + chars matching ^[A-Za-z][A-Za-z0-9._/-]{0,127}$; values 0–256 chars + matching URL-safe ASCII; total serialized ≤4096 bytes. Keys starting + with `c1/` are reserved for server-managed use and rejected on write. + + Well-known keys: `managed_by`, `iac_workspace`, + `iac_resource_address`, `iac_tool_version`. + type: object + x-speakeasy-terraform-plan-modifier: + imports: + - github.com/conductorone/terraform-provider-conductorone/internal/annotations + schemaDefinition: annotations.PlanModifier() + baselinePolicyId: + description: |- + When set, the new policy's baseline defers to another policy of the same + type when no rule matches, instead of an inline baseline step list. + Mutually exclusive with the baseline entry in policy_steps. Requires the + POLICY_REFERENCES_POLICY feature; obeys the same depth/cycle/self rules as + Rule.policy_id. type: string - providerType: - description: The providerType field. + description: + description: The description of the new policy. + type: string + displayName: + description: The display name of the new policy. + type: string + policySteps: + additionalProperties: + $ref: '#/components/schemas/c1.api.policy.v1.PolicySteps' + description: |- + Step sequences for this policy. The map must include a baseline entry keyed + by the lowercased policy type (e.g., "grant"). Additional entries with + opaque keys can be added for conditional routing via the rules array. + type: object + policyType: + description: The type of policy to create (grant, revoke, or certify). enum: - - PROVIDER_TYPE_UNSPECIFIED - - PROVIDER_TYPE_OAUTH2 - - PROVIDER_TYPE_MICROSOFT - readOnly: false + - POLICY_TYPE_UNSPECIFIED + - POLICY_TYPE_GRANT + - POLICY_TYPE_REVOKE + - POLICY_TYPE_CERTIFY + - POLICY_TYPE_ACCESS_REQUEST + - POLICY_TYPE_PROVISION type: string x-speakeasy-unknown-values: allow - query: - description: Filter by name (partial match) - readOnly: false - type: string - refs: - description: Filter to specific providers by their references. + postActions: + description: Ordered actions to execute after the policy completes processing. items: - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpProviderRef' - nullable: true - readOnly: false - type: array - title: Search Step Up Providers Request - type: object - x-speakeasy-name-override: SearchStepUpProvidersRequest - c1.api.stepup.v1.SearchStepUpProvidersResponse: - description: Response message for searching step-up providers - properties: - list: - description: List of providers matching the search criteria + $ref: '#/components/schemas/c1.api.policy.v1.PolicyPostActions' + type: + - array + - "null" + reassignTasksToDelegates: + deprecated: true + description: This field is no longer used. Configure delegate reassignment in the policy step instead. + type: boolean + rules: + description: Conditional routing rules. See the Policy message for details on evaluation order. items: - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpProvider' - nullable: true - readOnly: false - type: array - nextPageToken: - description: Token for retrieving the next page of results - readOnly: false - type: string - title: Search Step Up Providers Response + $ref: '#/components/schemas/c1.api.policy.v1.Rule' + type: + - array + - "null" + scope: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.PolicyScope' + - type: "null" + required: + - displayName + title: Create Policy Request type: object - x-speakeasy-name-override: SearchStepUpProvidersResponse - c1.api.stepup.v1.SearchStepUpTransactionsRequest: - description: Request message for searching step-up transactions + x-speakeasy-entity: Policy + x-speakeasy-name-override: CreatePolicyRequest + c1.api.policy.v1.CreatePolicyResponse: + description: The CreatePolicyResponse message contains the created policy object. properties: - createdAfter: - format: date-time - readOnly: false - type: string - createdBefore: - format: date-time - readOnly: false - type: string - pageSize: - description: Maximum number of results to return - format: int32 - readOnly: false - type: integer - pageToken: - description: Token for pagination - readOnly: false - type: string - providerId: - description: Filter by provider ID - readOnly: false + policy: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Policy' + - type: "null" + title: Create Policy Response + type: object + x-speakeasy-name-override: CreatePolicyResponse + c1.api.policy.v1.DelegatedProvision: + description: This provision step indicates that we should delegate provisioning to the configuration of another app entitlement. This app entitlement does not have to be one from the same app, but MUST be configured as a proxy binding leading into this entitlement. + properties: + appId: + description: The AppID of the entitlement to delegate provisioning to. type: string - state: - description: Filter by transaction state - enum: - - STEP_UP_TRANSACTION_STATE_UNSPECIFIED - - STEP_UP_TRANSACTION_STATE_PENDING - - STEP_UP_TRANSACTION_STATE_VERIFIED - - STEP_UP_TRANSACTION_STATE_ERROR - readOnly: false + entitlementId: + description: The ID of the entitlement we are delegating provisioning to. type: string - x-speakeasy-unknown-values: allow - targetType: - description: The targetType field. - enum: - - TARGET_TYPE_UNSPECIFIED - - TARGET_TYPE_TICKET - - TARGET_TYPE_TEST - readOnly: false + implicit: + description: If true, a binding will be automatically created from the entitlement of the parent app. + type: boolean + title: Delegated Provision + type: object + x-speakeasy-name-override: DelegatedProvision + c1.api.policy.v1.DeletePolicyRequestInput: + description: The DeletePolicyRequest message contains the ID of the policy to delete. It uses URL value for input. + title: Delete Policy Request + type: object + x-speakeasy-entity: Policy + x-speakeasy-name-override: DeletePolicyRequest + c1.api.policy.v1.DeletePolicyResponse: + description: Empty response with a status code indicating success. + title: Delete Policy Response + type: object + x-speakeasy-name-override: DeletePolicyResponse + c1.api.policy.v1.DeniedAction: + description: The denied action indicates that the c1.api.policy.v1.ApprovalInstance had an outcome of denied. + properties: + deniedAt: + format: date-time + readOnly: true + type: + - string + - "null" + userId: + description: The UserID that denied this step. + readOnly: true type: string - x-speakeasy-unknown-values: allow - taskId: - description: Filter by task ID (only applicable if target_type is TICKET) - readOnly: false + title: Denied Action + type: object + x-speakeasy-name-override: DeniedAction + c1.api.policy.v1.DevicePlacementProvision: + description: This provision step is fulfilled by a Latchkey member device producing an MLS Welcome for the recipient. It has no assignee and no instructions because the step is not human-actionable. + properties: + vaultBoundaryId: + description: The vaultBoundaryId field. type: string - userId: - description: Filter by user ID - readOnly: false + title: Device Placement Provision + type: object + x-speakeasy-name-override: DevicePlacementProvision + c1.api.policy.v1.EditorValidateRequest: + description: The EditorValidateRequest message. + properties: + text: + description: The text field. type: string - title: Search Step Up Transactions Request + title: Editor Validate Request type: object - x-speakeasy-name-override: SearchStepUpTransactionsRequest - c1.api.stepup.v1.SearchStepUpTransactionsResponse: - description: Response message for searching step-up transactions + x-speakeasy-name-override: PolicyEditorValidateRequest + c1.api.policy.v1.EditorValidateResponse: + description: The EditorValidateResponse message. properties: - list: - description: List of transactions matching the search criteria + markers: + description: The markers field. items: - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpTransaction' - nullable: true - readOnly: false - type: array - nextPageToken: - description: Token for retrieving the next page of results - readOnly: false - type: string - title: Search Step Up Transactions Response + $ref: '#/components/schemas/c1.api.editor.v1.EditorMarker' + type: + - array + - "null" + title: Editor Validate Response type: object - x-speakeasy-name-override: SearchStepUpTransactionsResponse - c1.api.stepup.v1.StepUpMicrosoftSettings: - description: StepUpMicrosoftSettings configures a Microsoft Entra step-up provider using Conditional Access. - nullable: true + x-speakeasy-name-override: PolicyEditorValidateResponse + c1.api.policy.v1.EntitlementOwnerApproval: + description: The entitlement owner approval allows configuration of the approval step when the target approvers are the entitlement owners. properties: - conditionalAccessIds: - description: Authentication context IDs (C1-C99). Required for ACRS mode; ignored for OIDC mode. + allowSelfApproval: + description: Configuration to allow self approval if the target user is an entitlement owner during this step. + type: boolean + fallback: + description: Configuration to allow a fallback if the entitlement owner cannot be identified. + type: boolean + fallbackGroupIds: + description: Configuration to specify which groups to fallback to if fallback is enabled and the entitlement owner cannot be identified. + items: + $ref: '#/components/schemas/c1.api.policy.v1.AppEntitlementReference' + type: + - array + - "null" + fallbackUserIds: + description: Configuration to specific which users to fallback to if fallback is enabled and the entitlement owner cannot be identified. items: type: string - nullable: true - readOnly: false - type: array - tenant: - description: Microsoft Entra tenant ID (GUID or domain). Used for response validation. - readOnly: false - type: string - validationMode: - description: Validation approach. See MicrosoftValidationMode for details on each mode. - enum: - - MICROSOFT_VALIDATION_MODE_UNSPECIFIED - - MICROSOFT_VALIDATION_MODE_ACRS - - MICROSOFT_VALIDATION_MODE_OIDC - readOnly: false - type: string - x-speakeasy-unknown-values: allow - title: Step Up Microsoft Settings + type: + - array + - "null" + isGroupFallbackEnabled: + description: Configuration to enable fallback for group fallback. + type: boolean + requireDistinctApprovers: + description: Configuration to require distinct approvers across approval steps of a rule. + type: boolean + title: Entitlement Owner Approval type: object - x-speakeasy-name-override: StepUpMicrosoftSettings - c1.api.stepup.v1.StepUpOAuth2Settings: - description: |- - StepUpOAuth2Settings repersents an OAuth2 provider that supports RFC 9470 - - Common ACR values for OAuth2 providers include: - - "urn:okta:loa:1fa:any" (okta) - - "urn:okta:loa:1fa:pwd" (okta) - - "urn:okta:loa:2fa:any" (okta) - - "urn:okta:loa:2fa:any:ifpossible" (okta) - - "phr" (okta) - - "phrh" (okta) - nullable: true + x-speakeasy-name-override: EntitlementOwnerApproval + c1.api.policy.v1.EntitlementOwnerProvisioner: + description: EntitlementOwnerProvisioner resolves to entitlement owners. properties: - acrValues: - description: The acrValues field. + allowReassignment: + description: Whether the provisioner can reassign the task. + type: boolean + fallbackUserIds: + description: Fallback user IDs if no entitlement owners are found. items: type: string - nullable: true - readOnly: false - type: array - title: Step Up O Auth 2 Settings + type: + - array + - "null" + title: Entitlement Owner Provisioner type: object - x-speakeasy-name-override: StepUpOAuth2Settings - c1.api.stepup.v1.StepUpProvider: - description: | - StepUpProvider represents a configured step-up authentication integration (e.g., Duo, custom OIDC). - - This message contains a oneof named settings. Only a single field of the following list may be set at a time: - - oauth2 - - microsoft + x-speakeasy-name-override: EntitlementOwnerProvisioner + c1.api.policy.v1.ErroredAction: + description: The outcome of a provision instance that has errored. properties: - clientId: - description: The OAuth2 client ID used to authenticate with the step-up provider. - readOnly: false - type: string - createdAt: - format: date-time - readOnly: true - type: string - displayName: - description: The human-readable name of the step-up provider. - readOnly: false - type: string - enabled: - description: Whether the step-up provider is active and available for use. - readOnly: false - type: boolean - id: - description: The unique identifier of the step-up provider. - readOnly: true + description: + description: The description of a provision instance that has errored. type: string - issuerUrl: - description: The OIDC issuer URL for the step-up provider. - readOnly: false + errorCode: + description: The error code of a provision instance that has errored. This is only PEC-1 for now, but more will be added in the future. type: string - lastTestedAt: + erroredAt: format: date-time - readOnly: true + type: + - string + - "null" + title: Errored Action + type: object + x-speakeasy-name-override: ErroredAction + c1.api.policy.v1.Escalation: + description: | + The Escalation message. + + This message contains a oneof named escalation_policy. Only a single field of the following list may be set at a time: + - replacePolicy + - reassignToApprovers + - cancelTicket + - skipStep + properties: + cancelTicket: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Escalation.CancelTicket' + - type: "null" + escalationComment: + description: The escalationComment field. type: string - microsoft: - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpMicrosoftSettings' - oauth2: - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpOAuth2Settings' - updatedAt: - format: date-time - readOnly: true + expiration: + description: The expiration field. + format: int64 type: string - title: Step Up Provider + reassignToApprovers: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Escalation.ReassignToApprovers' + - type: "null" + replacePolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Escalation.ReplacePolicy' + - type: "null" + skipStep: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Escalation.SkipStep' + - type: "null" + title: Escalation type: object - x-speakeasy-name-override: StepUpProvider - c1.api.stepup.v1.StepUpProviderRef: - description: StepUpProviderRef is a lightweight reference to a step-up authentication provider. + x-speakeasy-name-override: Escalation + c1.api.policy.v1.Escalation.CancelTicket: + description: The CancelTicket message. + title: Cancel Ticket + type: object + x-speakeasy-name-override: CancelTicket + c1.api.policy.v1.Escalation.ReassignToApprovers: + description: The ReassignToApprovers message. properties: - id: - description: The unique identifier of the step-up provider. - readOnly: false + approverIds: + description: The approverIds field. + items: + type: string + type: + - array + - "null" + title: Reassign To Approvers + type: object + x-speakeasy-name-override: ReassignToApprovers + c1.api.policy.v1.Escalation.ReplacePolicy: + description: The ReplacePolicy message. + properties: + policyId: + description: The policyId field. type: string - title: Step Up Provider Ref + title: Replace Policy type: object - x-speakeasy-name-override: StepUpProviderRef - c1.api.stepup.v1.StepUpTransaction: + x-speakeasy-name-override: ReplacePolicy + c1.api.policy.v1.Escalation.SkipStep: + description: The SkipStep message. + title: Skip Step + type: object + x-speakeasy-name-override: SkipStep + c1.api.policy.v1.EscalationInstance: description: | - StepUpTransaction represents a record of a step-up authentication attempt + The EscalationInstance message. - This message contains a oneof named target. Only a single field of the following list may be set at a time: - - approveTask - - test + This message contains a oneof named escalation_policy. Only a single field of the following list may be set at a time: + - replacePolicy + - reassignToApprovers + - cancelTicket + - skipStep properties: - approveTask: - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpTransaction.TargetTask' - claims: - additionalProperties: true - readOnly: false - type: object - createdAt: - format: date-time - readOnly: true - type: string - errorMessage: - description: Error message if the transaction failed - readOnly: true + alreadyEscalated: + description: The alreadyEscalated field. + type: boolean + cancelTicket: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.EscalationInstance.CancelTicket' + - type: "null" + escalationComment: + description: The escalationComment field. type: string expiresAt: format: date-time - readOnly: true - type: string - id: - description: Unique identifier for the transaction - readOnly: false - type: string - providerId: - description: ID of the provider used for this step-up authentication - readOnly: false - type: string - state: - description: Current state of the transaction - enum: - - STEP_UP_TRANSACTION_STATE_UNSPECIFIED - - STEP_UP_TRANSACTION_STATE_PENDING - - STEP_UP_TRANSACTION_STATE_VERIFIED - - STEP_UP_TRANSACTION_STATE_ERROR - readOnly: true - type: string - x-speakeasy-unknown-values: allow - test: - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpTransaction.TargetTest' - updatedAt: - format: date-time - readOnly: true - type: string - userId: - description: ID of the user who performed the step-up authentication - readOnly: false - type: string - title: Step Up Transaction - type: object - x-speakeasy-name-override: StepUpTransaction - c1.api.stepup.v1.StepUpTransaction.TargetTask: - description: Target for approving a task - nullable: true - properties: - policyStepId: - description: ID of the policy step requiring step-up authentication - readOnly: false - type: string - taskId: - description: ID of the task being approved - readOnly: false - type: string - title: Target Task + type: + - string + - "null" + reassignToApprovers: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.EscalationInstance.ReassignToApprovers' + - type: "null" + replacePolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.EscalationInstance.ReplacePolicy' + - type: "null" + skipStep: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.EscalationInstance.SkipStep' + - type: "null" + title: Escalation Instance type: object - x-speakeasy-name-override: TargetTask - c1.api.stepup.v1.StepUpTransaction.TargetTest: - description: Target for testing a provider - nullable: true - title: Target Test + x-speakeasy-name-override: EscalationInstance + c1.api.policy.v1.EscalationInstance.CancelTicket: + description: The CancelTicket message. + title: Cancel Ticket type: object - x-speakeasy-name-override: TargetTest - c1.api.stepup.v1.TestStepUpProviderRequestInput: - description: The TestStepUpProviderRequest message. - title: Test Step Up Provider Request + x-speakeasy-name-override: EscalationInstanceCancelTicket + c1.api.policy.v1.EscalationInstance.ReassignToApprovers: + description: The ReassignToApprovers message. + properties: + approverIds: + description: The approverIds field. + items: + type: string + type: + - array + - "null" + title: Reassign To Approvers type: object - x-speakeasy-name-override: TestStepUpProviderRequest - c1.api.stepup.v1.TestStepUpProviderResponse: - description: The TestStepUpProviderResponse message. + x-speakeasy-name-override: EscalationInstanceReassignToApprovers + c1.api.policy.v1.EscalationInstance.ReplacePolicy: + description: The ReplacePolicy message. properties: - redirectUrl: - description: The URL to redirect the user to for testing the Step Up flow - readOnly: false + policyId: + description: The policyId field. type: string - title: Test Step Up Provider Response + title: Replace Policy type: object - x-speakeasy-name-override: TestStepUpProviderResponse - c1.api.stepup.v1.UpdateStepUpProviderRequestInput: - description: The UpdateStepUpProviderRequest message. + x-speakeasy-name-override: EscalationInstanceReplacePolicy + c1.api.policy.v1.EscalationInstance.SkipStep: + description: The SkipStep message. + title: Skip Step + type: object + x-speakeasy-name-override: EscalationInstanceSkipStep + c1.api.policy.v1.ExpressionApproval: + description: The ExpressionApproval message. properties: - stepUpProvider: - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpProvider' - updateMask: - nullable: true - readOnly: false - type: string - title: Update Step Up Provider Request + allowSelfApproval: + description: Configuration to allow self approval of if the user is specified and also the target of the ticket. + type: boolean + assignedUserIds: + description: The assignedUserIds field. + items: + type: string + readOnly: true + type: + - array + - "null" + expressions: + description: Array of dynamic expressions to determine the approvers. The first expression to return a non-empty list of users will be used. + items: + type: string + type: + - array + - "null" + fallback: + description: Configuration to allow a fallback if the expression does not return a valid list of users. + type: boolean + fallbackGroupIds: + description: Configuration to specify which groups to fallback to if fallback is enabled and the expression does not return a valid list of users. + items: + $ref: '#/components/schemas/c1.api.policy.v1.AppEntitlementReference' + type: + - array + - "null" + fallbackUserIds: + description: Configuration to specific which users to fallback to if and the expression does not return a valid list of users. + items: + type: string + type: + - array + - "null" + isGroupFallbackEnabled: + description: Configuration to enable fallback for group fallback. + type: boolean + requireDistinctApprovers: + description: Configuration to require distinct approvers across approval steps of a rule. + type: boolean + title: Expression Approval type: object - x-speakeasy-name-override: UpdateStepUpProviderRequest - c1.api.stepup.v1.UpdateStepUpProviderResponse: - description: The UpdateStepUpProviderResponse message. + x-speakeasy-name-override: ExpressionApproval + c1.api.policy.v1.ExpressionProvisioner: + description: ExpressionProvisioner evaluates CEL expressions to determine provisioners. properties: - stepUpProvider: - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpProvider' - title: Update Step Up Provider Response + allowReassignment: + description: Whether the provisioner can reassign the task. + type: boolean + expressions: + description: The CEL expressions to evaluate. + items: + type: string + type: + - array + - "null" + fallbackUserIds: + description: Fallback user IDs if expression evaluation yields no users. + items: + type: string + type: + - array + - "null" + title: Expression Provisioner type: object - x-speakeasy-name-override: UpdateStepUpProviderResponse - c1.api.stepup.v1.UpdateStepUpProviderSecretRequestInput: - description: The UpdateStepUpProviderSecretRequest message. + x-speakeasy-name-override: ExpressionProvisioner + c1.api.policy.v1.ExternalTicketProvision: + description: This provision step indicates that we should check an external ticket to provision this entitlement properties: - clientSecret: - description: The new OAuth2 client secret. Write-only; never returned in responses. - readOnly: false + appId: + description: The appId field. type: string - title: Update Step Up Provider Secret Request + connectorId: + description: The connectorId field. + type: string + externalTicketProvisionerConfigId: + description: The externalTicketProvisionerConfigId field. + type: string + instructions: + description: This field indicates a text body of instructions for the provisioner to indicate. + type: string + title: External Ticket Provision type: object - x-speakeasy-name-override: UpdateStepUpProviderSecretRequest - c1.api.stepup.v1.UpdateStepUpProviderSecretResponse: - description: The UpdateStepUpProviderSecretResponse message. + x-speakeasy-name-override: ExternalTicketProvision + c1.api.policy.v1.Form: + description: The Form message. properties: - stepUpProvider: - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpProvider' - title: Update Step Up Provider Secret Response + form: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.Form' + - type: "null" + title: Form type: object - x-speakeasy-name-override: UpdateStepUpProviderSecretResponse - c1.api.systemlog.v1.ExportServiceCreateRequest: - description: | - The ExportServiceCreateRequest message is used to create a new system log exporter. - - This message contains a oneof named export_to. Only a single field of the following list may be set at a time: - - datasource + x-speakeasy-name-override: Form + c1.api.policy.v1.FormCompletedAction: + description: The FormCompletedAction message. properties: - datasource: - $ref: '#/components/schemas/c1.api.systemlog.v1.ExportToDatasource' - displayName: - description: The display name of the new system log exporter. - readOnly: false + completedAt: + format: date-time + type: + - string + - "null" + userId: + description: The userId field. type: string - title: Export Service Create Request + title: Form Completed Action type: object - x-speakeasy-name-override: ExportServiceCreateRequest - c1.api.systemlog.v1.ExportServiceCreateResponse: - description: The ExportServiceCreateResponse message. + x-speakeasy-name-override: FormCompletedAction + c1.api.policy.v1.FormInstance: + description: | + The FormInstance message. + + This message contains a oneof named outcome. Only a single field of the following list may be set at a time: + - completed + - restarted + - reassigned + - skipped properties: - exporter: - $ref: '#/components/schemas/c1.api.systemlog.v1.Exporter' - title: Export Service Create Response - type: object - x-speakeasy-name-override: ExportServiceCreateResponse - c1.api.systemlog.v1.ExportServiceDeleteRequestInput: - description: The ExportServiceDeleteRequest message. - title: Export Service Delete Request - type: object - x-speakeasy-name-override: ExportServiceDeleteRequest - c1.api.systemlog.v1.ExportServiceDeleteResponse: - description: The ExportServiceDeleteResponse message. - title: Export Service Delete Response + completed: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.FormCompletedAction' + - type: "null" + data: + additionalProperties: true + type: + - object + - "null" + form: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.Form' + - type: "null" + reassigned: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ReassignedAction' + - type: "null" + restarted: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.RestartAction' + - type: "null" + skipped: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.SkippedAction' + - type: "null" + state: + description: The state field. + enum: + - FORM_INSTANCE_STATE_UNSPECIFIED + - FORM_INSTANCE_STATE_WAITING + - FORM_INSTANCE_STATE_DONE + type: string + x-speakeasy-unknown-values: allow + title: Form Instance type: object - x-speakeasy-name-override: ExportServiceDeleteResponse - c1.api.systemlog.v1.ExportServiceGetResponse: - description: The ExportServiceGetResponse message contains the system log exporter object. + x-speakeasy-name-override: FormInstance + c1.api.policy.v1.GetPolicyResponse: + description: The GetPolicyResponse message contains the policy object. properties: - exporter: - $ref: '#/components/schemas/c1.api.systemlog.v1.Exporter' - title: Export Service Get Response + policy: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Policy' + - type: "null" + title: Get Policy Response type: object - x-speakeasy-name-override: ExportServiceGetResponse - c1.api.systemlog.v1.ExportServiceListEventsRequestInput: - description: ExportServiceListEventsRequest is the request for listing audit events within a specific export. + x-speakeasy-name-override: GetPolicyResponse + c1.api.policy.v1.GroupProvisioner: + description: GroupProvisioner resolves to members of a specific group. properties: - pageSize: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - pageToken: - description: The pageToken field. - readOnly: false + allowReassignment: + description: Whether the provisioner can reassign the task. + type: boolean + appGroupId: + description: The app group ID (entitlement ID). type: string - title: Export Service List Events Request - type: object - x-speakeasy-name-override: ExportServiceListEventsRequest - c1.api.systemlog.v1.ExportServiceListEventsResponse: - description: ExportServiceListEventsResponse is the response containing audit events for an export. - properties: - list: - description: List contains an array of JSON OCSF events. - items: - additionalProperties: true - readOnly: false - type: object - nullable: true - readOnly: false - type: array - nextPageToken: - description: The token to retrieve the next page of results, or empty if there are no more results. - readOnly: false + appId: + description: The app ID containing the group. type: string - title: Export Service List Events Response + fallbackUserIds: + description: Fallback user IDs if no group members are found. + items: + type: string + type: + - array + - "null" + title: Group Provisioner type: object - x-speakeasy-name-override: ExportServiceListEventsResponse - c1.api.systemlog.v1.ExportServiceListResponse: - description: The ExportServiceListResponse message. + x-speakeasy-name-override: GroupProvisioner + c1.api.policy.v1.ListPolicyResponse: + description: The ListPolicyResponse message. properties: list: description: The list of results containing up to X results, where X is the page size defined in the request items: - $ref: '#/components/schemas/c1.api.systemlog.v1.Exporter' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.policy.v1.Policy' + type: + - array + - "null" nextPageToken: description: The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false type: string - title: Export Service List Response + title: List Policy Response type: object - x-speakeasy-name-override: ExportServiceListResponse - c1.api.systemlog.v1.ExportServiceUpdateRequestInput: - description: The ExportServiceUpdateRequest message. + x-speakeasy-name-override: ListPolicyResponse + c1.api.policy.v1.ManagerApproval: + description: The manager approval object provides configuration options for approval when the target of the approval is the manager of the user in the task. properties: - exporter: - $ref: '#/components/schemas/c1.api.systemlog.v1.Exporter' - updateMask: - nullable: true - readOnly: false - type: string - title: Export Service Update Request + allowSelfApproval: + description: Configuration to allow self approval if the target user is their own manager. This may occur if a service account has an identity user and manager specified as the same person. + type: boolean + assignedUserIds: + description: The array of users determined to be the manager during processing time. + items: + type: string + readOnly: true + type: + - array + - "null" + fallback: + description: Configuration to allow a fallback if no manager is found. + type: boolean + fallbackGroupIds: + description: Configuration to specify which groups to fallback to if fallback is enabled and no manager is found. + items: + $ref: '#/components/schemas/c1.api.policy.v1.AppEntitlementReference' + type: + - array + - "null" + fallbackUserIds: + description: Configuration to specific which users to fallback to if fallback is enabled and no manager is found. + items: + type: string + type: + - array + - "null" + isGroupFallbackEnabled: + description: Configuration to enable fallback for group fallback. + type: boolean + requireDistinctApprovers: + description: Configuration to require distinct approvers across approval steps of a rule. + type: boolean + title: Manager Approval type: object - x-speakeasy-name-override: ExportServiceUpdateRequest - c1.api.systemlog.v1.ExportServiceUpdateResponse: - description: The ExportServiceUpdateResponse message. + x-speakeasy-name-override: ManagerApproval + c1.api.policy.v1.ManagerProvisioner: + description: ManagerProvisioner resolves to the user's manager. properties: - exporter: - $ref: '#/components/schemas/c1.api.systemlog.v1.Exporter' - title: Export Service Update Response + allowReassignment: + description: Whether the provisioner can reassign the task. + type: boolean + fallbackUserIds: + description: Fallback user IDs if no manager is found. + items: + type: string + type: + - array + - "null" + title: Manager Provisioner type: object - x-speakeasy-name-override: ExportServiceUpdateResponse - c1.api.systemlog.v1.ExportToDatasource: - description: The ExportToDatasource message. - nullable: true + x-speakeasy-name-override: ManagerProvisioner + c1.api.policy.v1.ManualProvision: + description: Manual provisioning indicates that a human must intervene for the provisioning of this step. properties: - datasourceId: - description: The datasourceId field. - readOnly: false - type: string - format: - description: The format field. - enum: - - EXPORT_FORMAT_UNSPECIFIED - - EXPORT_FORMAT_OCSF_JSON_ZSTD - - EXPORT_FORMAT_OCSF_JSON_GZIP - readOnly: false - type: string - x-speakeasy-unknown-values: allow - prefix: - description: The prefix field. - readOnly: false + assignee: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ProvisionerAssignment' + - type: "null" + instructions: + description: This field indicates a text body of instructions for the provisioner to indicate. type: string - title: Export To Datasource + userIds: + description: |- + An array of users that are required to provision during this step. + Deprecated: Use assignee field instead for dynamic provisioner assignment. + items: + type: string + type: + - array + - "null" + title: Manual Provision type: object - x-speakeasy-name-override: ExportToDatasource - c1.api.systemlog.v1.Exporter: - description: | - The Exporter message. - - This message contains a oneof named export_to. Only a single field of the following list may be set at a time: - - datasource + x-speakeasy-name-override: ManualProvision + c1.api.policy.v1.MultiStep: + description: MultiStep indicates that this provision step has multiple steps to process. properties: + provisionSteps: + description: The array of provision steps to process. + items: + $ref: '#/components/schemas/c1.api.policy.v1.ProvisionPolicy' + type: + - array + - "null" + title: Multi Step + type: object + x-speakeasy-name-override: MultiStep + c1.api.policy.v1.Policy: + description: |- + A policy defines a workflow (sequence of steps) that runs when processing + access requests, reviews, or revocations. Policies support conditional + routing: different conditions can trigger different step sequences, with a + baseline fallback. + properties: + annotations: + additionalProperties: + type: string + description: |- + Key/value metadata. Up to 16 entries; keys 1-128 chars; values 0-256 + chars; URL-safe ASCII. Keys starting with `c1/` are reserved. + + Updates have PATCH semantics: keys absent from the request are + preserved; an empty value deletes the key. + + Well-known keys: `managed_by`, `iac_workspace`, + `iac_resource_address`, `iac_tool_version`. + type: object + x-speakeasy-terraform-plan-modifier: + imports: + - github.com/conductorone/terraform-provider-conductorone/internal/annotations + schemaDefinition: annotations.PlanModifier() + baselinePolicyId: + description: |- + When set, the baseline defers to another policy of the same type when no + rule matches, instead of the baseline entry in policy_steps (keyed by the + lowercased policy_type). Mutually exclusive with that baseline entry: set + one or the other, not both. The referenced policy must share this + policy's policy_type, must not introduce a cycle or self-reference, and + must not push any reachable chain over depth 5. Gated by the + POLICY_REFERENCES_POLICY feature flag. + type: string createdAt: format: date-time readOnly: true - type: string - datasource: - $ref: '#/components/schemas/c1.api.systemlog.v1.ExportToDatasource' + type: + - string + - "null" deletedAt: format: date-time readOnly: true + type: + - string + - "null" + description: + description: The description of the Policy. type: string displayName: - description: The displayName field. - readOnly: false + description: The display name of the Policy. type: string - exportId: - description: The exportId field. + id: + description: The ID of the Policy. readOnly: true type: string - state: - description: The state field. + policySteps: + additionalProperties: + $ref: '#/components/schemas/c1.api.policy.v1.PolicySteps' + description: |- + A map from string keys to step sequences. One entry is always the baseline, + keyed by the lowercased policy_type (e.g., "grant", "revoke", "certify"). + Additional entries have opaque keys (UUIDs) and are referenced by the rules + array for conditional routing. If no conditional rules are configured, only + the baseline entry exists. + type: object + policyType: + description: |- + The type of this policy (grant, revoke, or certify). The lowercased type + name (e.g., "grant") is also the key for the baseline entry in policy_steps. enum: - - EXPORT_STATE_UNSPECIFIED - - EXPORT_STATE_EXPORTING - - EXPORT_STATE_WAITING - - EXPORT_STATE_ERROR - readOnly: true + - POLICY_TYPE_UNSPECIFIED + - POLICY_TYPE_GRANT + - POLICY_TYPE_REVOKE + - POLICY_TYPE_CERTIFY + - POLICY_TYPE_ACCESS_REQUEST + - POLICY_TYPE_PROVISION type: string x-speakeasy-unknown-values: allow + postActions: + description: Ordered actions to execute after the policy completes processing. + items: + $ref: '#/components/schemas/c1.api.policy.v1.PolicyPostActions' + type: + - array + - "null" + reassignTasksToDelegates: + deprecated: true + description: This field is no longer used. Configure delegate reassignment in the policy step instead. + type: boolean + rules: + description: |- + Ordered conditional routing rules. Evaluated top-to-bottom; the first + matching rule selects a step sequence from policy_steps. If no rule matches + (or if this array is empty), the baseline entry in policy_steps is used. + items: + $ref: '#/components/schemas/c1.api.policy.v1.Rule' + type: + - array + - "null" + scope: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.PolicyScope' + - type: "null" + systemBuiltin: + description: Whether this policy is a builtin system policy. Builtin system policies cannot be edited. + readOnly: true + type: boolean updatedAt: format: date-time readOnly: true - type: string - watermarkEventId: - description: we've synchorized this far - readOnly: true - type: string - title: Exporter + type: + - string + - "null" + title: Policy type: object - x-speakeasy-name-override: Exporter - c1.api.systemlog.v1.ExporterRef: - description: The ExporterRef message. + x-speakeasy-entity: Policy + x-speakeasy-name-override: Policy + c1.api.policy.v1.PolicyInstance: + description: A policy instance is an object that contains a reference to the policy it was created from, the currently executing step, the next steps, and the history of previously completed steps. properties: - exportId: - description: The exportId field. - readOnly: false - type: string - title: Exporter Ref + current: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.PolicyStepInstance' + - type: "null" + history: + description: An array of steps that were previously processed by the ticket with their outcomes set, in order. + items: + $ref: '#/components/schemas/c1.api.policy.v1.PolicyStepInstance' + readOnly: true + type: + - array + - "null" + next: + description: An array of steps that will be processed by the ticket, in order. + items: + $ref: '#/components/schemas/c1.api.policy.v1.PolicyStep' + readOnly: true + type: + - array + - "null" + policy: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Policy' + - type: "null" + title: Policy Instance type: object - x-speakeasy-name-override: ExporterRef - c1.api.systemlog.v1.ExportsSearchServiceSearchRequest: - description: ExportsSearchServiceSearchRequest is the request for searching system log exports. + x-speakeasy-name-override: PolicyInstance + c1.api.policy.v1.PolicyPostActions: + description: | + Actions to execute after a policy finishes processing. + + This message contains a oneof named action. Only a single field of the following list may be set at a time: + - certifyRemediateImmediately properties: - displayName: - description: Search for system log exporters with a case insensitive match on the display name. - readOnly: false - type: string - pageSize: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - pageToken: - description: The pageToken field. - readOnly: false - type: string - query: - description: The query field. - readOnly: false - type: string - refs: - description: The refs field. - items: - $ref: '#/components/schemas/c1.api.systemlog.v1.ExporterRef' - nullable: true - readOnly: false - type: array - title: Exports Search Service Search Request + certifyRemediateImmediately: + description: |- + Only valid on certify policies. When true, any revocations resulting from + the certification are applied immediately when the campaign task closes. + This field is part of the `action` oneof. + See the documentation for `c1.api.policy.v1.PolicyPostActions` for more details. + type: + - boolean + - "null" + title: Policy Post Actions type: object - x-speakeasy-name-override: ExportsSearchServiceSearchRequest - c1.api.systemlog.v1.ExportsSearchServiceSearchResponse: - description: ExportsSearchServiceSearchResponse is the response for searching system log exports. + x-speakeasy-name-override: PolicyPostActions + c1.api.policy.v1.PolicyRef: + description: The PolicyRef message. properties: - list: - description: The list of system log exports matching the search criteria. - items: - $ref: '#/components/schemas/c1.api.systemlog.v1.Exporter' - nullable: true - readOnly: false - type: array - nextPageToken: - description: The token to retrieve the next page of results, or empty if there are no more results. - readOnly: false + id: + description: The id field. type: string - title: Exports Search Service Search Response + title: Policy Ref type: object - x-speakeasy-name-override: ExportsSearchServiceSearchResponse - c1.api.systemlog.v1.SystemLogServiceListEventsRequest: - description: The SystemLogServiceListEventsRequest message. + x-speakeasy-name-override: PolicyRef + c1.api.policy.v1.PolicyScope: + description: Scopes a policy to an app or to a single entitlement within an app. properties: - pageSize: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - pageToken: - description: The pageToken field. - readOnly: false - type: string - since: - format: date-time - readOnly: false + appEntitlementId: + description: |- + Optional. When set, the policy is scoped to this entitlement of app_id + rather than to the whole app. type: string - sinceEventUid: - description: The sinceEventUid field. - readOnly: false + appId: + description: The ID of the app this policy is scoped to. type: string - sortDirection: - description: The sortDirection field. + slot: + description: |- + Which of the object's local-policy slots this policy occupies. Part of the + scope, and immutable with it. enum: - - SORT_DIRECTION_UNSPECIFIED - - SORT_DIRECTION_ASC - - SORT_DIRECTION_DESC - readOnly: false + - POLICY_SCOPE_SLOT_UNSPECIFIED + - POLICY_SCOPE_SLOT_EMERGENCY type: string x-speakeasy-unknown-values: allow - until: - format: date-time - readOnly: false - type: string - untilEventUid: - description: The untilEventUid field. - readOnly: false - type: string - title: System Log Service List Events Request - type: object - x-speakeasy-name-override: SystemLogServiceListEventsRequest - c1.api.systemlog.v1.SystemLogServiceListEventsResponse: - description: The SystemLogServiceListEventsResponse message. - properties: - list: - description: List contains an array of JSON OCSF events. - items: - additionalProperties: true - readOnly: false - type: object - nullable: true - readOnly: false - type: array - nextPageToken: - description: The nextPageToken field. - readOnly: false - type: string - title: System Log Service List Events Response + title: Policy Scope type: object - x-speakeasy-name-override: SystemLogServiceListEventsResponse - c1.api.task.v1.ActionInstance: + x-speakeasy-name-override: PolicyScope + c1.api.policy.v1.PolicyStep: description: | - ActionInstance is the API mirror of the internal immutable snapshot of an - Action captured on a TaskTypeAction at ticket-creation time. + A single step in a policy workflow. Exactly one step type is set. - This message contains a oneof named target_ref. Only a single field of the following list may be set at a time: - - connectorActionRef + This message contains a oneof named step. Only a single field of the following list may be set at a time: + - approval + - provision + - accept + - reject + - wait + - form + - action properties: - connectorActionRef: - $ref: '#/components/schemas/c1.api.task.v1.ConnectorActionRef' - displayName: - description: |- - Display label at ticket-creation time. Same value as - TaskTypeAction.display_name; repeated here so clients that walk the - instance see a self-contained view. - readOnly: true - type: string - title: Action Instance + accept: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Accept' + - type: "null" + action: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Action' + - type: "null" + approval: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Approval' + - type: "null" + form: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Form' + - type: "null" + provision: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Provision' + - type: "null" + reject: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Reject' + - type: "null" + wait: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Wait' + - type: "null" + title: Policy Step type: object - x-speakeasy-name-override: TaskActionInstance - c1.api.task.v1.ConnectorActionRef: - description: |- - ConnectorActionRef describes dispatch through a connector's built-in - GrantManagerService Grant / Revoke RPC — i.e. the default connector - operation, used for synthesized tickets like scope-role requests. - nullable: true + x-speakeasy-name-override: PolicyStep + c1.api.policy.v1.PolicyStepInstance: + description: | + The policy step instance includes a reference to an instance of a policy step that tracks state and has a unique ID. + + This message contains a oneof named instance. Only a single field of the following list may be set at a time: + - approval + - provision + - accept + - reject + - wait + - form + - action properties: - appId: - description: The app whose connector handles the operation. + accept: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.AcceptInstance' + - type: "null" + action: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ActionInstance' + - type: "null" + approval: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ApprovalInstance' + - type: "null" + form: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.FormInstance' + - type: "null" + id: + description: The ID of the PolicyStepInstance. This is required by many action submission endpoints to indicate what step you're approving. readOnly: true type: string - connectorId: - description: The connector that will execute the Grant / Revoke. - readOnly: true + policyGenerationId: + description: The policy generation id refers to the version of the policy that this step was created from. type: string - operation: - description: Which connector RPC this dispatches to. + provision: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ProvisionInstance' + - type: "null" + reject: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.RejectInstance' + - type: "null" + state: + description: The state of the step, which is either active or done. enum: - - OPERATION_UNSPECIFIED - - OPERATION_GRANT + - POLICY_STEP_STATE_UNSPECIFIED + - POLICY_STEP_STATE_ACTIVE + - POLICY_STEP_STATE_DONE readOnly: true type: string x-speakeasy-unknown-values: allow - title: Connector Action Ref + wait: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.WaitInstance' + - type: "null" + title: Policy Step Instance type: object - x-speakeasy-name-override: ConnectorActionRef - c1.api.task.v1.ExternalRef: - description: A reference to an external source. This value is unused currently, but may be brought back. + x-speakeasy-name-override: PolicyStepInstance + c1.api.policy.v1.PolicySteps: + description: A named sequence of steps that execute in order within a policy. properties: - externalRefSource: - description: The source of the external reference. - enum: - - UNSPECIFIED - - JIRA - readOnly: true - type: string - x-speakeasy-unknown-values: allow - name: - description: The name of the external reference. - readOnly: true - type: string - url: - description: The URL to the external reference. - readOnly: true - type: string - title: External Ref + steps: + description: |- + Ordered array of steps. Each step is a oneof -- exactly one step type is + set per entry. Steps execute sequentially. + items: + $ref: '#/components/schemas/c1.api.policy.v1.PolicyStep' + type: + - array + - "null" + title: Policy Steps type: object - x-speakeasy-name-override: ExternalRef - c1.api.task.v1.ScopeRole: - description: |- - Scope-role variant of TaskTypeAction.target_object. The UI uses the - embedded identifiers to build links and title strings without a separate - Action fetch. - nullable: true + x-speakeasy-name-override: PolicySteps + c1.api.policy.v1.Provision: + description: The provision step references a provision policy for this step. properties: - appId: - description: The IaaS/sparse-ACL app the (scope, role) pair lives on. - readOnly: true - type: string - grantDuration: - format: duration - readOnly: true - type: string - roleResourceId: - description: The roleResourceId field. - readOnly: true + assigned: + description: A field indicating whether this step is assigned. + type: boolean + provisionPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ProvisionPolicy' + - type: "null" + provisionTarget: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ProvisionTarget' + - type: "null" + title: Provision + type: object + x-speakeasy-name-override: Provision + c1.api.policy.v1.ProvisionInstance: + description: | + A provision instance describes the specific configuration of an executing provision policy step including actions taken and notification id. + + This message contains a oneof named outcome. Only a single field of the following list may be set at a time: + - completed + - cancelled + - errored + - reassignedByError + - skipped + properties: + batonActionInvocationId: + description: This indicates the account lifecycle action id for this step. type: string - roleResourceTypeId: - description: The roleResourceTypeId field. - readOnly: true + cancelled: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.CancelledAction' + - type: "null" + completed: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.CompletedAction' + - type: "null" + errored: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ErroredAction' + - type: "null" + externalTicketId: + description: This indicates the external ticket id for this step. type: string - scopeResourceId: - description: The scopeResourceId field. + externalTicketProvisionerConfigId: + description: This indicates the external ticket provisioner config id for this step. + type: string + notificationId: + description: This indicates the notification id for this step. + type: string + provision: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Provision' + - type: "null" + reassignedByError: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ReassignedByErrorAction' + - type: "null" + skipped: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.SkippedAction' + - type: "null" + state: + description: This property indicates the current state of this step. + enum: + - PROVISION_INSTANCE_STATE_UNSPECIFIED + - PROVISION_INSTANCE_STATE_INIT + - PROVISION_INSTANCE_STATE_CREATE_CONNECTOR_ACTIONS_FOR_TARGET + - PROVISION_INSTANCE_STATE_SENDING_NOTIFICATIONS + - PROVISION_INSTANCE_STATE_WAITING + - PROVISION_INSTANCE_STATE_WEBHOOK + - PROVISION_INSTANCE_STATE_WEBHOOK_WAITING + - PROVISION_INSTANCE_STATE_EXTERNAL_TICKET + - PROVISION_INSTANCE_STATE_EXTERNAL_TICKET_WAITING + - PROVISION_INSTANCE_STATE_ACCOUNT_LIFECYCLE_ACTIONS + - PROVISION_INSTANCE_STATE_ACCOUNT_LIFECYCLE_ACTIONS_WAITING + - PROVISION_INSTANCE_STATE_DEVICE_PLACEMENT + - PROVISION_INSTANCE_STATE_DONE + type: string + x-speakeasy-unknown-values: allow + waitingOn: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ProvisionWaitingOn' + - type: "null" + webhookId: + description: This indicates the webhook id for this step. + type: string + webhookInstanceId: + description: This indicates the webhook instance id for this step. + type: string + title: Provision Instance + type: object + x-speakeasy-name-override: ProvisionInstance + c1.api.policy.v1.ProvisionPolicy: + description: | + ProvisionPolicy is a oneOf that indicates how a provision step should be processed. + + This message contains a oneof named typ. Only a single field of the following list may be set at a time: + - connector + - manual + - delegated + - webhook + - multiStep + - externalTicket + - unconfigured + - action + - devicePlacement + properties: + action: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ActionProvision' + - type: "null" + connector: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ConnectorProvision' + - type: "null" + delegated: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.DelegatedProvision' + - type: "null" + devicePlacement: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.DevicePlacementProvision' + - type: "null" + externalTicket: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ExternalTicketProvision' + - type: "null" + manual: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ManualProvision' + - type: "null" + multiStep: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.MultiStep' + - type: "null" + unconfigured: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.UnconfiguredProvision' + - type: "null" + webhook: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.WebhookProvision' + - type: "null" + title: Provision Policy + type: object + x-speakeasy-name-override: ProvisionPolicy + c1.api.policy.v1.ProvisionTarget: + description: ProvisionTarget indicates the specific app, app entitlement, and if known, the app user and grant duration of this provision step + properties: + appEntitlementId: + description: The app entitlement that should be provisioned. + type: string + appId: + description: The app in which the entitlement should be provisioned + type: string + appUserId: + description: The app user that should be provisioned. May be unset if the app user is unknown + type: string + grantDuration: + format: duration + type: + - string + - "null" + title: Provision Target + type: object + x-speakeasy-name-override: ProvisionTarget + c1.api.policy.v1.ProvisionWaitingOn: + description: | + Describes why a provision step is paused in the WAITING state. + + This message contains a oneof named kind. Only a single field of the following list may be set at a time: + - entitlementMerge + - devicePlacement + properties: + devicePlacement: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.WaitingForDevicePlacement' + - type: "null" + entitlementMerge: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.WaitingForEntitlementMerge' + - type: "null" + fallbackAt: + format: date-time + type: + - string + - "null" + startedWaitingAt: + format: date-time + type: + - string + - "null" + title: Provision Waiting On + type: object + x-speakeasy-name-override: ProvisionWaitingOn + c1.api.policy.v1.ProvisionerAssignment: + description: | + ProvisionerAssignment defines how a provisioner is dynamically assigned. + + This message contains a oneof named typ. Only a single field of the following list may be set at a time: + - users + - appOwners + - group + - manager + - expression + - entitlementOwners + properties: + appOwners: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.AppOwnerProvisioner' + - type: "null" + entitlementOwners: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.EntitlementOwnerProvisioner' + - type: "null" + expression: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ExpressionProvisioner' + - type: "null" + group: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.GroupProvisioner' + - type: "null" + manager: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ManagerProvisioner' + - type: "null" + users: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.UserProvisioner' + - type: "null" + title: Provisioner Assignment + type: object + x-speakeasy-name-override: ProvisionerAssignment + c1.api.policy.v1.ReassignedAction: + description: The ReassignedAction object describes the outcome of a policy step that has been reassigned. + properties: + newPolicyStepId: + description: The ID of the policy step that was created as a result of this reassignment. readOnly: true type: string - scopeResourceTypeId: - description: The scopeResourceTypeId field. + reassignedAt: + format: date-time + readOnly: true + type: + - string + - "null" + userId: + description: The UserID of the person who reassigned this step. readOnly: true type: string - title: Scope Role + title: Reassigned Action type: object - x-speakeasy-name-override: ScopeRole - c1.api.task.v1.Task: - description: A fully-fleged task object. Includes its policy, references to external apps, its type, its processing history, and more. + x-speakeasy-name-override: ReassignedAction + c1.api.policy.v1.ReassignedByErrorAction: + description: The ReassignedByErrorAction object describes the outcome of a policy step that has been reassigned because it had an error provisioning. properties: - actions: - description: The actions that can be performed on the task by the current user. - items: - enum: - - TASK_ACTION_TYPE_UNSPECIFIED - - TASK_ACTION_TYPE_CLOSE - - TASK_ACTION_TYPE_APPROVE - - TASK_ACTION_TYPE_DENY - - TASK_ACTION_TYPE_COMMENT - - TASK_ACTION_TYPE_DELETE - - TASK_ACTION_TYPE_REASSIGN - - TASK_ACTION_TYPE_RESTART - - TASK_ACTION_TYPE_SEND_REMINDER - - TASK_ACTION_TYPE_PROVISION_COMPLETE - - TASK_ACTION_TYPE_PROVISION_CANCELLED - - TASK_ACTION_TYPE_PROVISION_ERRORED - - TASK_ACTION_TYPE_ROLLBACK_SKIPPED - - TASK_ACTION_TYPE_PROVISION_APP_USER_TARGET_CREATED - - TASK_ACTION_TYPE_HARD_RESET - - TASK_ACTION_TYPE_ESCALATE_TO_EMERGENCY_ACCESS - - TASK_ACTION_TYPE_CHANGE_POLICY - - TASK_ACTION_TYPE_RECALCULATE_DENIAL_FROM_BASE_POLICY_DECISIONS - - TASK_ACTION_TYPE_SET_INSIGHTS_AND_RECOMMENDATION - - TASK_ACTION_TYPE_SET_ANALYSIS_ID - - TASK_ACTION_TYPE_RECALCULATE_APPROVERS_LIST - - TASK_ACTION_TYPE_PROCESS_NOW - - TASK_ACTION_TYPE_APPROVE_WITH_STEP_UP - - TASK_ACTION_TYPE_SKIP_STEP - - TASK_ACTION_TYPE_ROLLBACK_CANCELLED - - TASK_ACTION_TYPE_UPDATE_REQUEST_DATA - - TASK_ACTION_TYPE_UPDATE_GRANT_DURATION - type: string - x-speakeasy-unknown-values: allow - nullable: true + description: + description: The description of the error with more details on why this was reassigned. readOnly: true - type: array - analysisId: - description: The ID of the analysis object associated with this task created by an analysis workflow if the analysis feature is enabled for your tenant. + type: string + errorCode: + description: Additional information about the error, like http status codes or error messages from SDKs. readOnly: true type: string - annotations: - description: An array of `google.protobuf.Any` annotations with various base64-encoded data. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: true - type: object - nullable: true + errorUserId: + description: The UserID of the user who reassigned this due to an error. This will exclusively be the System's UserID. readOnly: true - type: array - approverIds: - description: An array of IDs belonging to Identity Users that have approved or denied any step in this task. - items: - type: string - nullable: true + type: string + erroredAt: + format: date-time readOnly: true - type: array - commentCount: - description: The count of comments. - format: int32 + type: + - string + - "null" + newPolicyStepId: + description: The ID of the policy step that was created by this reassignment. readOnly: true - type: integer - createdAt: + type: string + reassignedAt: format: date-time readOnly: true + type: + - string + - "null" + title: Reassigned By Error Action + type: object + x-speakeasy-name-override: ReassignedByErrorAction + c1.api.policy.v1.Reject: + description: This policy step indicates that a ticket should have a denied outcome. This is a terminal approval state and is used to explicitly define the end of approval steps. + properties: + rejectMessage: + description: An optional message to include in the comments when a task is automatically rejected. type: string - createdByUserId: - description: The ID of the user that is the creator of this task. This may not always match the userId field. - readOnly: true + title: Reject + type: object + x-speakeasy-name-override: Reject + c1.api.policy.v1.RejectInstance: + description: |- + This policy step indicates that a ticket should have a denied outcome. This is a terminal approval state and is used to explicitly define the end of approval steps. + The instance is just a marker for it being copied into an active policy. + properties: + rejectMessage: + description: An optional message to include in the comments when a task is automatically rejected. type: string - data: - additionalProperties: true + title: Reject Instance + type: object + x-speakeasy-name-override: RejectInstance + c1.api.policy.v1.ResourceOwnerApproval: + description: The resource owner approval allows configuration of the approval step when the target approvers are the resource owners. + properties: + allowSelfApproval: + description: Configuration to allow self approval if the target user is an resource owner during this step. + type: boolean + fallback: + description: Configuration to allow a fallback if the resource owner cannot be identified. + type: boolean + fallbackGroupIds: + description: Configuration to specify which groups to fallback to if fallback is enabled and the resource owner cannot be identified. + items: + $ref: '#/components/schemas/c1.api.policy.v1.AppEntitlementReference' + type: + - array + - "null" + fallbackUserIds: + description: Configuration to specific which users to fallback to if fallback is enabled and the resource owner cannot be identified. + items: + type: string + type: + - array + - "null" + isGroupFallbackEnabled: + description: Configuration to enable fallback for group fallback. + type: boolean + requireDistinctApprovers: + description: Configuration to require distinct approvers across approval steps of a rule. + type: boolean + title: Resource Owner Approval + type: object + x-speakeasy-name-override: ResourceOwnerApproval + c1.api.policy.v1.RestartAction: + description: The restart action describes the outcome of policy steps for when the task was restarted. This can be applied to multiple steps since restart skips all pending next steps. + properties: + oldPolicyStepId: + description: The step ID that was restarted. Potentially multiple "history" steps will reference this ID to indicate by what step they were restarted. readOnly: true - type: object - deletedAt: + type: string + restartedAt: format: date-time readOnly: true - type: string - description: - description: The description of the task. This is also known as justification. + type: + - string + - "null" + userId: + description: The user that submitted the restart action. readOnly: true type: string + title: Restart Action + type: object + x-speakeasy-name-override: RestartAction + c1.api.policy.v1.Rule: + description: | + A conditional routing rule that maps a CEL expression to an outcome. + Rules are evaluated top-to-bottom; the first matching rule's outcome + determines which steps run. If the outcome is policy_key, the step sequence + of that key in this policy's policy_steps map is used. If the outcome is + policy_id, the referenced policy is evaluated recursively (depth-bounded, + cycle-free, same policy_type). If no rule matches, the baseline entry of + policy_steps is used. + + This message contains a oneof named outcome. Only a single field of the following list may be set at a time: + - stepKey + - policyId + properties: + condition: + description: |- + A CEL expression that is evaluated against the request context. If it + returns true, the step sequence identified by the outcome is used. + type: string + policyId: + description: |- + The ID of another Policy that is evaluated recursively when this + rule matches. The referenced policy must share this policy's + policy_type, must not introduce a cycle, and must not push any + reachable chain over depth 5. Gated by the + POLICY_REFERENCES_POLICY feature flag. + This field is part of the `outcome` oneof. + See the documentation for `c1.api.policy.v1.Rule` for more details. + type: + - string + - "null" + policyKey: + deprecated: true + description: |- + Deprecated: prefer outcome.step_key. Still read by the request path + for backward compatibility with rules persisted before the outcome + oneof existed. + type: string + x-sunset: "2027-05-30" + stepKey: + description: |- + A key into the policy's policy_steps map identifying which step + sequence to execute when this rule's condition matches. + This field is part of the `outcome` oneof. + See the documentation for `c1.api.policy.v1.Rule` for more details. + type: + - string + - "null" + title: Rule + type: object + x-speakeasy-name-override: Rule + c1.api.policy.v1.SearchPoliciesRequest: + description: Search Policies by a few properties. + properties: displayName: - description: The display name of the task. - readOnly: true + description: Search for policies with a case insensitive match on the display name. type: string - emergencyAccess: - description: A field indicating whether this task was created using an emergency access flow, or escalated to emergency access. On task creation, it will also use the app entitlement's emergency policy when possible. - readOnly: true - type: boolean - externalRefs: - description: An array of external references to the task. Historically that has been items like Jira task IDs. This is currently unused, but may come back in the future for integrations. + excludePolicyIds: + description: The policy IDs to exclude from the search. items: - $ref: '#/components/schemas/c1.api.task.v1.ExternalRef' - nullable: true - readOnly: true - type: array - form: - $ref: '#/components/schemas/c1.api.form.v1.Form' - id: - description: The ID of the task. - readOnly: true + type: string + type: + - array + - "null" + includeDeleted: + description: The includeDeleted field. + type: boolean + pageSize: + description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) + format: int32 + type: integer + pageToken: + description: The pageToken field. type: string - insightIds: - description: The insightIds field. + policyTypes: + description: The policy type to search on. This can be POLICY_TYPE_GRANT, POLICY_TYPE_REVOKE, POLICY_TYPE_CERTIFY, POLICY_TYPE_ACCESS_REQUEST, or POLICY_TYPE_PROVISION. items: + enum: + - POLICY_TYPE_UNSPECIFIED + - POLICY_TYPE_GRANT + - POLICY_TYPE_REVOKE + - POLICY_TYPE_CERTIFY + - POLICY_TYPE_ACCESS_REQUEST + - POLICY_TYPE_PROVISION type: string - nullable: true - readOnly: false - type: array - numericId: - description: A human-usable numeric ID of a task which can be included in place of the fully qualified task id in path parmeters (but not search queries). - format: int64 - readOnly: true + x-speakeasy-unknown-values: allow + type: + - array + - "null" + query: + description: Query the policies with a fuzzy search on display name and description. type: string - origin: - description: The origin field. - enum: - - TASK_ORIGIN_UNSPECIFIED - - TASK_ORIGIN_PROFILE_MEMBERSHIP_AUTOMATION - - TASK_ORIGIN_SLACK - - TASK_ORIGIN_API - - TASK_ORIGIN_JIRA - - TASK_ORIGIN_COPILOT - - TASK_ORIGIN_WEBAPP - - TASK_ORIGIN_TIME_REVOKE - - TASK_ORIGIN_NON_USAGE_REVOKE - - TASK_ORIGIN_PROFILE_MEMBERSHIP_MANUAL - - TASK_ORIGIN_PROFILE_MEMBERSHIP - - TASK_ORIGIN_AUTOMATION - - TASK_ORIGIN_ACCESS_REVIEW - - TASK_ORIGIN_CASCADE_DELETE - readOnly: false + refs: + description: The refs field. + items: + $ref: '#/components/schemas/c1.api.policy.v1.PolicyRef' + type: + - array + - "null" + scopeAppEntitlementId: + description: |- + When scope_view is POLICY_SCOPE_VIEW_SCOPED, only return policies scoped + to this entitlement. type: string - x-speakeasy-unknown-values: allow - policy: - $ref: '#/components/schemas/c1.api.policy.v1.PolicyInstance' - policyGenerationId: - description: The policy generation id refers to the current policy's generation ID. This is changed when the policy is changed on a task. - readOnly: true + scopeAppId: + description: |- + When scope_view is POLICY_SCOPE_VIEW_SCOPED, only return policies scoped + to this app. type: string - processing: - description: The processing state of a task as defined by the `processing_enum` + scopeObjectType: + description: |- + When scope_view is POLICY_SCOPE_VIEW_SCOPED, narrow local policies to a + coarse object type (app-local vs entitlement-local). enum: - - TASK_PROCESSING_TYPE_UNSPECIFIED - - TASK_PROCESSING_TYPE_PROCESSING - - TASK_PROCESSING_TYPE_WAITING - - TASK_PROCESSING_TYPE_DONE - readOnly: true + - POLICY_SCOPE_OBJECT_TYPE_UNSPECIFIED + - POLICY_SCOPE_OBJECT_TYPE_APP + - POLICY_SCOPE_OBJECT_TYPE_ENTITLEMENT type: string x-speakeasy-unknown-values: allow - recommendation: - description: The recommendation field. + scopeSlot: + description: |- + When scope_view narrows to one object, only return that object's local + policies in this slot. Ignored when no object is identified by + scope_app_id, which lists every local policy regardless of slot. enum: - - INSIGHT_RECOMMENDATION_UNSPECIFIED - - INSIGHT_RECOMMENDATION_APPROVE - - INSIGHT_RECOMMENDATION_DENY - - INSIGHT_RECOMMENDATION_REVIEW - readOnly: false + - POLICY_SCOPE_SLOT_UNSPECIFIED + - POLICY_SCOPE_SLOT_EMERGENCY type: string x-speakeasy-unknown-values: allow - revocationTargets: + scopeView: description: |- - Ancestor entitlements that will also be revoked when this revoke task is approved. - Populated at ticket creation time for inherited grant revocations. - items: - $ref: '#/components/schemas/c1.api.task.v1.TaskRevocationTarget' - nullable: true - readOnly: true - type: array - state: - description: The current state of the task as defined by the `state_enum` + Which policies to return based on scope. Defaults to global-only, so + app/entitlement-scoped policies never appear unless explicitly requested. + Ignored when refs are provided (explicit ID lookups always resolve). enum: - - TASK_STATE_UNSPECIFIED - - TASK_STATE_OPEN - - TASK_STATE_CLOSED - readOnly: true + - POLICY_SCOPE_VIEW_UNSPECIFIED + - POLICY_SCOPE_VIEW_GLOBAL + - POLICY_SCOPE_VIEW_SCOPED + - POLICY_SCOPE_VIEW_ALL + - POLICY_SCOPE_VIEW_GLOBAL_AND_OBJECT type: string x-speakeasy-unknown-values: allow - stepApproverIds: - description: An array of IDs belonging to Identity Users that are allowed to review this step in a task. + title: Search Policies Request + type: object + x-speakeasy-name-override: SearchPoliciesRequest + c1.api.policy.v1.SearchPoliciesResponse: + description: The SearchPoliciesResponse message. + properties: + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.policy.v1.Policy' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. + type: string + title: Search Policies Response + type: object + x-speakeasy-name-override: SearchPoliciesResponse + c1.api.policy.v1.SelfApproval: + description: The self approval object describes the configuration of a policy step that needs to be approved by the target of the request. + properties: + assignedUserIds: + description: The array of users determined to be themselves during approval. This should only ever be one person, but is saved because it may change if the owner of an app user changes while the ticket is open. items: type: string - nullable: true readOnly: true - type: array - type: - $ref: '#/components/schemas/c1.api.task.v1.TaskType' - updatedAt: - format: date-time + type: + - array + - "null" + fallback: + description: Configuration to allow a fallback if the identity user of the target app user cannot be determined. + type: boolean + fallbackGroupIds: + description: Configuration to specify which groups to fallback to if fallback is enabled and the identity user of the target app user cannot be determined. + items: + $ref: '#/components/schemas/c1.api.policy.v1.AppEntitlementReference' + type: + - array + - "null" + fallbackUserIds: + description: Configuration to specific which users to fallback to if fallback is enabled and the identity user of the target app user cannot be determined. + items: + type: string + type: + - array + - "null" + isGroupFallbackEnabled: + description: Configuration to enable fallback for group fallback. + type: boolean + title: Self Approval + type: object + x-speakeasy-name-override: SelfApproval + c1.api.policy.v1.SkippedAction: + description: The SkippedAction object describes the outcome of a policy step that has been skipped. + properties: + newPolicyStepId: + description: The ID of the policy step that was created as a result of this skipping. readOnly: true type: string + skippedAt: + format: date-time + readOnly: true + type: + - string + - "null" userId: - description: The ID of the user that is the target of this task. This may be empty if we're targeting a specific app user that has no known identity user. + description: The UserID of the user who skipped this step. readOnly: true type: string - title: Task + title: Skipped Action type: object - x-speakeasy-name-override: Task - c1.api.task.v1.TaskAction: - description: Represents a single action that was performed on a task. + x-speakeasy-name-override: SkippedAction + c1.api.policy.v1.TestAccountProvisionPolicyRequest: + description: TestAccountProvisionPolicyRequest is the request for testing an account provision policy. properties: - actionType: - description: The type of action that was performed. - enum: - - TASK_ACTION_TYPE_UNSPECIFIED - - TASK_ACTION_TYPE_CLOSE - - TASK_ACTION_TYPE_APPROVE - - TASK_ACTION_TYPE_DENY - - TASK_ACTION_TYPE_COMMENT - - TASK_ACTION_TYPE_DELETE - - TASK_ACTION_TYPE_REASSIGN - - TASK_ACTION_TYPE_RESTART - - TASK_ACTION_TYPE_SEND_REMINDER - - TASK_ACTION_TYPE_PROVISION_COMPLETE - - TASK_ACTION_TYPE_PROVISION_CANCELLED - - TASK_ACTION_TYPE_PROVISION_ERRORED - - TASK_ACTION_TYPE_ROLLBACK_SKIPPED - - TASK_ACTION_TYPE_PROVISION_APP_USER_TARGET_CREATED - - TASK_ACTION_TYPE_HARD_RESET - - TASK_ACTION_TYPE_ESCALATE_TO_EMERGENCY_ACCESS - - TASK_ACTION_TYPE_CHANGE_POLICY - - TASK_ACTION_TYPE_RECALCULATE_DENIAL_FROM_BASE_POLICY_DECISIONS - - TASK_ACTION_TYPE_SET_INSIGHTS_AND_RECOMMENDATION - - TASK_ACTION_TYPE_SET_ANALYSIS_ID - - TASK_ACTION_TYPE_RECALCULATE_APPROVERS_LIST - - TASK_ACTION_TYPE_PROCESS_NOW - - TASK_ACTION_TYPE_APPROVE_WITH_STEP_UP - - TASK_ACTION_TYPE_SKIP_STEP - - TASK_ACTION_TYPE_ROLLBACK_CANCELLED - - TASK_ACTION_TYPE_UPDATE_REQUEST_DATA - - TASK_ACTION_TYPE_UPDATE_GRANT_DURATION - readOnly: false + cel: + description: The CEL expression to evaluate for the account provision policy. type: string - x-speakeasy-unknown-values: allow - bulkActionId: - description: The ID of the bulk action this action belongs to, if it was part of a bulk operation. - readOnly: false - type: string - createdAt: - format: date-time - readOnly: true - type: string - deletedAt: - format: date-time - readOnly: true - type: string - id: - description: The unique ID of this action. - readOnly: false - type: string - policyStepId: - description: The ID of the policy step this action was performed on. - readOnly: false - type: string - updatedAt: - format: date-time - readOnly: true - type: string - userId: - description: The ID of the user who performed the action. - readOnly: false - type: string - title: Task Action + title: Test Account Provision Policy Request type: object - x-speakeasy-name-override: SubmittedTaskAction - c1.api.task.v1.TaskActionsServiceApproveRequestInput: - description: The TaskActionsServiceApproveRequest object lets you approve a task. + x-speakeasy-name-override: TestAccountProvisionPolicyRequest + c1.api.policy.v1.TestAccountProvisionPolicyResponse: + description: TestAccountProvisionPolicyResponse is the response for testing an account provision policy. properties: - comment: - description: The comment attached to the request. - readOnly: false - type: string - expandMask: - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' - policyStepId: - description: The ID of the policy step on the given task to approve. - readOnly: false + type: + description: The data type of the computed result value. type: string - required: - - policyStepId - title: Task Actions Service Approve Request - type: object - x-speakeasy-name-override: TaskActionsServiceApproveRequest - c1.api.task.v1.TaskActionsServiceApproveResponse: - description: The TaskActionsServiceApproveResponse returns a task view with paths indicating the location of expanded items in the array. - properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: true - type: object - nullable: true - readOnly: true - type: array - taskView: - $ref: '#/components/schemas/c1.api.task.v1.TaskView' - ticketActionId: - description: The ID of the task approve action created by this request. - readOnly: true + value: + description: The computed result value of the CEL expression evaluation. type: string - title: Task Actions Service Approve Response + title: Test Account Provision Policy Response type: object - x-speakeasy-name-override: TaskActionsServiceApproveResponse - c1.api.task.v1.TaskActionsServiceApproveWithStepUpRequestInput: - description: TaskActionsServiceApproveWithStepUpRequest is used to approve a task with step-up authentication - properties: - comment: - description: The comment attached to the request. - readOnly: false - type: string - expandMask: - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' - policyStepId: - description: The ID of the policy step on the given task to approve. - readOnly: false - type: string - stepUpTransactionId: - description: |- - The step-up transaction ID that was verified. - If unset, the response will include a redirect URL to - complete the step-up authentication. - readOnly: false - type: string - required: - - policyStepId - - stepUpTransactionId - title: Task Actions Service Approve With Step Up Request + x-speakeasy-name-override: TestAccountProvisionPolicyResponse + c1.api.policy.v1.UnconfiguredProvision: + description: The UnconfiguredProvision message. + title: Unconfigured Provision type: object - x-speakeasy-name-override: TaskActionsServiceApproveWithStepUpRequest - c1.api.task.v1.TaskActionsServiceApproveWithStepUpResponse: - description: TaskActionsServiceApproveWithStepUpResponse is the response for approving a task with step-up authentication + x-speakeasy-name-override: UnconfiguredProvision + c1.api.policy.v1.UpdatePolicyRequestInput: + description: The UpdatePolicyRequest message contains the policy object to update and a field mask to indicate which fields to update. It uses URL value for input. properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: true - type: object - nullable: true - readOnly: true - type: array - redirectUrl: - description: The redirect URL the client must visit to complete the step-up authentication. - readOnly: false - type: string - taskView: - $ref: '#/components/schemas/c1.api.task.v1.TaskView' - ticketActionId: - description: The ID of the task approve action created by this request. - readOnly: true - type: string - title: Task Actions Service Approve With Step Up Response + policy: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Policy' + - type: "null" + updateMask: + type: + - string + - "null" + title: Update Policy Request type: object - x-speakeasy-name-override: TaskActionsServiceApproveWithStepUpResponse - c1.api.task.v1.TaskActionsServiceCloseRequestInput: - description: The TaskActionsServiceCloseRequest object lets you close or cancel a task. + x-speakeasy-name-override: UpdatePolicyRequest + c1.api.policy.v1.UpdatePolicyResponse: + description: The UpdatePolicyResponse message contains the updated policy object. properties: - comment: - description: An optional comment attached to the close action. - readOnly: false - type: string - expandMask: - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' - title: Task Actions Service Close Request + policy: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.Policy' + - type: "null" + title: Update Policy Response type: object - x-speakeasy-name-override: TaskActionsServiceCloseRequest - c1.api.task.v1.TaskActionsServiceCloseResponse: - description: The TaskActionsServiceCloseResponse returns a task view with paths indicating the location of expanded items in the array. + x-speakeasy-name-override: UpdatePolicyResponse + c1.api.policy.v1.UserApproval: + description: The user approval object describes the approval configuration of a policy step that needs to be approved by a specific list of users. properties: - expanded: - description: List of serialized related objects. + allowSelfApproval: + description: Configuration to allow self approval of if the user is specified and also the target of the ticket. + type: boolean + requireDistinctApprovers: + description: Configuration to require distinct approvers across approval steps of a rule. + type: boolean + userIds: + description: Array of users configured for approval. items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: true - type: object - nullable: true - readOnly: true - type: array - taskActionId: - description: The ID of the task close action created by this request. - readOnly: true - type: string - taskView: - $ref: '#/components/schemas/c1.api.task.v1.TaskView' - title: Task Actions Service Close Response - type: object - x-speakeasy-name-override: TaskActionsServiceCloseResponse - c1.api.task.v1.TaskActionsServiceCommentRequestInput: - description: The TaskActionsServiceCommentRequest object lets you create a new comment on a task. - properties: - comment: - description: The comment to be posted to the task. - readOnly: false - type: string - expandMask: - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' - title: Task Actions Service Comment Request + type: string + type: + - array + - "null" + title: User Approval type: object - x-speakeasy-name-override: TaskActionsServiceCommentRequest - c1.api.task.v1.TaskActionsServiceCommentResponse: - description: Task actions service comment response returns the task view inluding the expanded array of items that are indicated by the expand mask on the request. + x-speakeasy-name-override: UserApproval + c1.api.policy.v1.UserProvisioner: + description: UserProvisioner assigns specific users as provisioners. properties: - expanded: - description: List of serialized related objects. + allowReassignment: + description: Whether the provisioner can reassign the task. + type: boolean + userIds: + description: The user IDs to assign as provisioners. items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - taskView: - $ref: '#/components/schemas/c1.api.task.v1.TaskView' - title: Task Actions Service Comment Response + type: string + type: + - array + - "null" + title: User Provisioner type: object - x-speakeasy-name-override: TaskActionsServiceCommentResponse - c1.api.task.v1.TaskActionsServiceDenyRequestInput: - description: The TaskActionsServiceDenyRequest object lets you deny a task. + x-speakeasy-name-override: UserProvisioner + c1.api.policy.v1.Wait: + description: | + Define a Wait step for a policy to wait on a condition to be met. + + This message contains a oneof named until. Only a single field of the following list may be set at a time: + - condition + - duration + - untilTime properties: - comment: - description: The comment attached to the request. - readOnly: false + commentOnFirstWait: + description: The comment to post on first failed check. type: string - expandMask: - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' - policyStepId: - description: The ID of the current policy step. This is the step you want to deny. - readOnly: false + commentOnTimeout: + description: The comment to post if we timeout. type: string - title: Task Actions Service Deny Request + condition: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.WaitCondition' + - type: "null" + duration: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.WaitDuration' + - type: "null" + name: + description: The name of our condition to show on the task details page + type: string + timeoutDuration: + format: duration + type: + - string + - "null" + untilTime: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.WaitUntilTime' + - type: "null" + title: Wait type: object - x-speakeasy-name-override: TaskActionsServiceDenyRequest - c1.api.task.v1.TaskActionsServiceDenyResponse: - description: The TaskActionsServiceDenyResponse returns a task view with paths indicating the location of expanded items in the array. + x-speakeasy-name-override: Wait + c1.api.policy.v1.WaitCondition: + description: The WaitCondition message. properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: true - type: object - nullable: true - readOnly: true - type: array - taskView: - $ref: '#/components/schemas/c1.api.task.v1.TaskView' - ticketActionId: - description: The ID of the task deny action created by this request. - readOnly: true + condition: + description: The condition that has to be true for this wait condition to continue. type: string - title: Task Actions Service Deny Response + title: Wait Condition type: object - x-speakeasy-name-override: TaskActionsServiceDenyResponse - c1.api.task.v1.TaskActionsServiceEscalateToEmergencyAccessRequestInput: - description: The TaskActionsServiceEscalateToEmergencyAccessRequest object lets you escalate a task to the emergency access workflow. + x-speakeasy-name-override: WaitCondition + c1.api.policy.v1.WaitConditionInstance: + description: Used by the policy engine to describe an instantiated condition to wait on. properties: - comment: - description: An optional comment attached to the escalation. - readOnly: false - type: string - expandMask: - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' - policyStepId: - description: The ID of the current policy step being escalated from. - readOnly: false + condition: + description: The condition that has to be true for this wait condition instance to continue. type: string - title: Task Actions Service Escalate To Emergency Access Request + title: Wait Condition Instance type: object - x-speakeasy-name-override: TaskActionsServiceEscalateToEmergencyAccessRequest - c1.api.task.v1.TaskActionsServiceHardResetRequestInput: - description: The TaskActionsServiceHardResetRequest object lets you reset a task and recalculate its policy. + x-speakeasy-name-override: WaitConditionInstance + c1.api.policy.v1.WaitDuration: + description: The WaitDuration message. properties: - comment: - description: The comment attached to the request. - readOnly: false - type: string - expandMask: - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' - title: Task Actions Service Hard Reset Request + duration: + format: duration + type: + - string + - "null" + title: Wait Duration type: object - x-speakeasy-name-override: TaskActionsServiceHardResetRequest - c1.api.task.v1.TaskActionsServiceHardResetResponse: - description: The TaskActionsServiceHardResetResponse returns the updated task after a hard reset. + x-speakeasy-name-override: WaitDuration + c1.api.policy.v1.WaitInstance: + description: | + Used by the policy engine to describe an instantiated wait step. + + This message contains a oneof named until. Only a single field of the following list may be set at a time: + - condition + - untilTime + + + This message contains a oneof named outcome. Only a single field of the following list may be set at a time: + - succeeded + - timedOut + - skipped properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - taskView: - $ref: '#/components/schemas/c1.api.task.v1.TaskView' - ticketActionId: - description: The ID of the task reset action created by this request. - readOnly: false + commentOnFirstWait: + description: The comment to post on first failed check. type: string - title: Task Actions Service Hard Reset Response + commentOnTimeout: + description: The comment to post if we timeout. + type: string + condition: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.WaitConditionInstance' + - type: "null" + name: + description: The name field. + type: string + skipped: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.SkippedAction' + - type: "null" + startedWaitingAt: + format: date-time + type: + - string + - "null" + state: + description: The state field. + enum: + - WAIT_INSTANCE_STATE_UNSPECIFIED + - WAIT_INSTANCE_STATE_WAITING + - WAIT_INSTANCE_STATE_COMPLETED + - WAIT_INSTANCE_STATE_TIMED_OUT + type: string + x-speakeasy-unknown-values: allow + succeeded: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.WaitInstance.ConditionSucceeded' + - type: "null" + timedOut: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.WaitInstance.ConditionTimedOut' + - type: "null" + timeout: + format: date-time + type: + - string + - "null" + timeoutDuration: + format: duration + type: + - string + - "null" + untilTime: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.WaitUntilTimeInstance' + - type: "null" + title: Wait Instance type: object - x-speakeasy-name-override: TaskActionsServiceHardResetResponse - c1.api.task.v1.TaskActionsServiceProcessNowRequestInput: - description: The TaskActionsServiceProcessNowRequest object lets you trigger processing of a task immediately. + x-speakeasy-name-override: WaitInstance + c1.api.policy.v1.WaitInstance.ConditionSucceeded: + description: The ConditionSucceeded message. properties: - expandMask: - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' - title: Task Actions Service Process Now Request + succeededAt: + format: date-time + type: + - string + - "null" + title: Condition Succeeded type: object - x-speakeasy-name-override: TaskActionsServiceProcessNowRequest - c1.api.task.v1.TaskActionsServiceProcessNowResponse: - description: The TaskActionsServiceProcessNowResponse returns the task view after triggering immediate processing. + x-speakeasy-name-override: ConditionSucceeded + c1.api.policy.v1.WaitInstance.ConditionTimedOut: + description: The ConditionTimedOut message. properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - taskView: - $ref: '#/components/schemas/c1.api.task.v1.TaskView' - title: Task Actions Service Process Now Response + timedOutAt: + format: date-time + type: + - string + - "null" + title: Condition Timed Out type: object - x-speakeasy-name-override: TaskActionsServiceProcessNowResponse - c1.api.task.v1.TaskActionsServiceReassignRequestInput: - description: The TaskActionsServiceReassignRequest object lets you reassign a task's current policy step to different users. + x-speakeasy-name-override: ConditionTimedOut + c1.api.policy.v1.WaitUntilTime: + description: Waits until a specific time of the day (UTC) properties: - comment: - description: An optional comment attached to the reassignment. - readOnly: false - type: string - expandMask: - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' - newStepUserIds: - description: The IDs of the users to reassign the current policy step to. Must be from the allowed reassignees list. - items: - type: string - nullable: true - readOnly: false - type: array - policyStepId: - description: The ID of the current policy step to reassign. Must match the task's active step. - readOnly: false + hours: + description: The hours field. + format: uint32 + type: integer + minutes: + description: The minutes field. + format: uint32 + type: integer + timezone: + description: The timezone field. type: string - title: Task Actions Service Reassign Request + title: Wait Until Time type: object - x-speakeasy-name-override: TaskActionsServiceReassignRequest - c1.api.task.v1.TaskActionsServiceReassignResponse: - description: The TaskActionsServiceReassignResponse returns a task view with paths indicating the location of expanded items in the array. + x-speakeasy-name-override: WaitUntilTime + c1.api.policy.v1.WaitUntilTimeInstance: + description: The WaitUntilTimeInstance message. properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: true - type: object - nullable: true - readOnly: true - type: array - taskView: - $ref: '#/components/schemas/c1.api.task.v1.TaskView' - ticketActionId: - description: The ID of the task reassign action created by this request. - readOnly: true - type: string - title: Task Actions Service Reassign Response + durationIfExists: + format: duration + type: + - string + - "null" + untilTime: + format: date-time + type: + - string + - "null" + title: Wait Until Time Instance type: object - x-speakeasy-name-override: TaskActionsServiceReassignResponse - c1.api.task.v1.TaskActionsServiceRestartRequestInput: - description: The TaskActionsServiceRestartRequest object lets you restart a task. + x-speakeasy-name-override: WaitUntilTimeInstance + c1.api.policy.v1.WaitingForDevicePlacement: + description: Describes a provision step that is paused until the recipient joins the vault's MLS group. properties: - comment: - description: The comment attached to the request. - readOnly: false + recipientUserId: + description: The ID of the user being placed. type: string - expandMask: - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' - policyStepId: - description: Deprecated. This field is accepted but does not affect behavior. - readOnly: false + vaultBoundaryId: + description: The ID of the vault boundary the recipient is being placed in. type: string - title: Task Actions Service Restart Request + title: Waiting For Device Placement type: object - x-speakeasy-name-override: TaskActionsServiceRestartRequest - c1.api.task.v1.TaskActionsServiceRestartResponse: - description: The TaskActionsServiceRestartResponse returns the updated task after restarting. + x-speakeasy-name-override: WaitingForDevicePlacement + c1.api.policy.v1.WaitingForEntitlementMerge: + description: Describes a provision step that is paused until the target entitlement, created ahead of connector sync with a Baton match ID, is merged with its connector-synced counterpart. properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - taskView: - $ref: '#/components/schemas/c1.api.task.v1.TaskView' - ticketActionId: - description: The ID of the task restart action created by this request. - readOnly: false + appEntitlementId: + description: The ID of the entitlement being waited on. type: string - title: Task Actions Service Restart Response + appId: + description: The ID of the app the awaited entitlement belongs to. + type: string + title: Waiting For Entitlement Merge type: object - x-speakeasy-name-override: TaskActionsServiceRestartResponse - c1.api.task.v1.TaskActionsServiceSkipStepRequestInput: - description: The TaskActionsServiceSkipStepRequest object lets you skip a policy step in a task. + x-speakeasy-name-override: WaitingForEntitlementMerge + c1.api.policy.v1.WebhookApproval: + description: The WebhookApproval message. properties: - comment: - description: The comment attached to the request. - readOnly: false - type: string - expandMask: - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' - policyStepId: - description: The ID of the policy step to skip. - readOnly: false + webhookId: + description: The ID of the webhook to call for approval. type: string - required: - - policyStepId - title: Task Actions Service Skip Step Request + title: Webhook Approval type: object - x-speakeasy-name-override: TaskActionsServiceSkipStepRequest - c1.api.task.v1.TaskActionsServiceUpdateGrantDurationRequestInput: - description: The TaskActionsServiceUpdateGrantDurationRequest object lets you change the grant duration on a grant task. + x-speakeasy-name-override: WebhookApproval + c1.api.policy.v1.WebhookProvision: + description: This provision step indicates that a webhook should be called to provision this entitlement. properties: - duration: - format: duration - readOnly: false + webhookId: + description: The ID of the webhook to call for provisioning. type: string - expandMask: - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' - required: - - duration - title: Task Actions Service Update Grant Duration Request + title: Webhook Provision type: object - x-speakeasy-name-override: TaskActionsServiceUpdateGrantDurationRequest - c1.api.task.v1.TaskActionsServiceUpdateRequestDataRequestInput: - description: The TaskActionsServiceUpdateRequestDataRequest object lets you submit form data for a task that is in a form policy step. + x-speakeasy-name-override: WebhookProvision + c1.api.profiletype.v1.ProfileType: + description: ProfileType represents a type of profile in the system properties: - data: - additionalProperties: true - readOnly: false - type: object - expandMask: - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' - title: Task Actions Service Update Request Data Request - type: object - x-speakeasy-name-override: TaskActionsServiceUpdateRequestDataRequest - c1.api.task.v1.TaskAuditAccessRequestOutcome: - description: The TaskAuditAccessRequestOutcome message. - nullable: true - properties: - outcome: - description: The outcome field. - enum: - - ACCESS_REQUEST_OUTCOME_UNSPECIFIED - - ACCESS_REQUEST_OUTCOME_APPROVED - - ACCESS_REQUEST_OUTCOME_DENIED - - ACCESS_REQUEST_OUTCOME_ERROR - - ACCESS_REQUEST_OUTCOME_CANCELLED - readOnly: false - type: string - x-speakeasy-unknown-values: allow - title: Task Audit Access Request Outcome - type: object - x-speakeasy-name-override: TaskAuditAccessRequestOutcome - c1.api.task.v1.TaskAuditAccountLifecycleActionCreated: - description: The TaskAuditAccountLifecycleActionCreated message. - nullable: true - properties: - batonActionDisplayName: - description: The batonActionDisplayName field. - readOnly: false + description: + description: The description field. type: string - batonActionInvocationId: - description: The batonActionInvocationId field. - readOnly: false + displayToUser: + description: Whether to display this profile type to users in profile page. Defaults to false if not set + type: boolean + iconUrl: + description: The iconUrl field. type: string - batonActionName: - description: The batonActionName field. - readOnly: false + id: + description: The id field. type: string - batonAppId: - description: The batonAppId field. - readOnly: false + name: + description: The name field. type: string - batonConnectorId: - description: The batonConnectorId field. - readOnly: false + priority: + description: The priority field. + format: uint32 + type: integer + sizes: + description: icon sizes + items: + format: int32 + type: integer + type: + - array + - "null" + slug: + description: Add this field to allow users to reference profile type in cel expressions type: string - title: Task Audit Account Lifecycle Action Created + title: Profile Type type: object - x-speakeasy-name-override: TaskAuditAccountLifecycleActionCreated - c1.api.task.v1.TaskAuditAccountLifecycleActionFailed: - description: The TaskAuditAccountLifecycleActionFailed message. - nullable: true + x-speakeasy-name-override: ProfileType + c1.api.reporting.v1.ProgramRef: + description: ProgramRef points at a pinned, executable program. properties: - batonActionDisplayName: - description: The batonActionDisplayName field. - readOnly: false + commitId: + description: |- + Code mode invokes by explicit commit, so the commit — not the function — is + what a refresh re-executes. type: string - batonActionInvocationId: - description: The batonActionInvocationId field. - readOnly: false + functionId: + description: |- + A saved report owns its Function, so this is per-report rather than the + shared code-mode scratch function the program first ran on. type: string - batonActionName: - description: The batonActionName field. - readOnly: false + plannedFromPrompt: + description: |- + The prompt this program was planned from. Report.prompt is editable and a + refresh never re-plans, so this is the only way to detect that a report's + question has drifted from the program answering it. type: string - batonAppId: - description: The batonAppId field. - readOnly: false + title: Program Ref + type: object + x-speakeasy-name-override: ProgramRef + c1.api.reporting.v1.Report: + description: |- + Report is a saved report: the question, the program that answers it, and the + parameters a re-run may vary. + properties: + createdAt: + format: date-time + type: + - string + - "null" + createdByUserId: + description: The createdByUserId field. type: string - batonConnectorId: - description: The batonConnectorId field. - readOnly: false + deletedAt: + format: date-time + type: + - string + - "null" + displayName: + description: The displayName field. type: string - error: - description: The error field. - readOnly: false + id: + description: The id field. type: string - title: Task Audit Account Lifecycle Action Failed - type: object - x-speakeasy-name-override: TaskAuditAccountLifecycleActionFailed - c1.api.task.v1.TaskAuditActionInstanceCreated: - description: The TaskAuditActionInstanceCreated message. - nullable: true - properties: - instance: - $ref: '#/components/schemas/c1.api.policy.v1.ActionInstance' - title: Task Audit Action Instance Created - type: object - x-speakeasy-name-override: TaskAuditActionInstanceCreated - c1.api.task.v1.TaskAuditActionInstanceFailed: - description: The TaskAuditActionInstanceFailed message. - nullable: true - properties: - instance: - $ref: '#/components/schemas/c1.api.policy.v1.ActionInstance' - title: Task Audit Action Instance Failed - type: object - x-speakeasy-name-override: TaskAuditActionInstanceFailed - c1.api.task.v1.TaskAuditActionInstanceSucceeded: - description: The TaskAuditActionInstanceSucceeded message. - nullable: true - properties: - instance: - $ref: '#/components/schemas/c1.api.policy.v1.ActionInstance' - title: Task Audit Action Instance Succeeded - type: object - x-speakeasy-name-override: TaskAuditActionInstanceSucceeded - c1.api.task.v1.TaskAuditActionSubmitted: - description: The TaskAuditActionSubmitted message. - nullable: true - properties: - action: - $ref: '#/components/schemas/c1.api.task.v1.TaskAction' - title: Task Audit Action Submitted - type: object - x-speakeasy-name-override: TaskAuditActionSubmitted - c1.api.task.v1.TaskAuditApprovalAutoAcceptedByPolicy: - description: The TaskAuditApprovalAutoAcceptedByPolicy message. - nullable: true - title: Task Audit Approval Auto Accepted By Policy - type: object - x-speakeasy-name-override: TaskAuditApprovalAutoAcceptedByPolicy - c1.api.task.v1.TaskAuditApprovalAutoRejectedByPolicy: - description: The TaskAuditApprovalAutoRejectedByPolicy message. - nullable: true - title: Task Audit Approval Auto Rejected By Policy - type: object - x-speakeasy-name-override: TaskAuditApprovalAutoRejectedByPolicy - c1.api.task.v1.TaskAuditApprovalHappenedAutomatically: - description: The TaskAuditApprovalHappenedAutomatically message. - nullable: true - title: Task Audit Approval Happened Automatically - type: object - x-speakeasy-name-override: TaskAuditApprovalHappenedAutomatically - c1.api.task.v1.TaskAuditApprovalInstanceChange: - description: The TaskAuditApprovalInstanceChange message. - nullable: true - properties: - instance: - $ref: '#/components/schemas/c1.api.policy.v1.ApprovalInstance' - title: Task Audit Approval Instance Change - type: object - x-speakeasy-name-override: TaskAuditApprovalInstanceChange - c1.api.task.v1.TaskAuditBulkActionError: - description: The TaskAuditBulkActionError message. - nullable: true - properties: - error: - description: The error field. - readOnly: false + latestRunId: + description: |- + Separate pointers: the last attempt may have failed while callers still need + the last renderable result. type: string - title: Task Audit Bulk Action Error - type: object - x-speakeasy-name-override: TaskAuditBulkActionError - c1.api.task.v1.TaskAuditCertifyOutcome: - description: The TaskAuditCertifyOutcome message. - nullable: true - properties: - outcome: - description: The outcome field. - enum: - - CERTIFY_OUTCOME_UNSPECIFIED - - CERTIFY_OUTCOME_CERTIFIED - - CERTIFY_OUTCOME_DECERTIFIED - - CERTIFY_OUTCOME_ERROR - - CERTIFY_OUTCOME_CANCELLED - - CERTIFY_OUTCOME_WAIT_TIMED_OUT - readOnly: false + latestSuccessfulRunId: + description: The latestSuccessfulRunId field. type: string - x-speakeasy-unknown-values: allow - title: Task Audit Certify Outcome - type: object - x-speakeasy-name-override: TaskAuditCertifyOutcome - c1.api.task.v1.TaskAuditComment: - description: The TaskAuditComment message. - nullable: true - properties: - comment: - description: The comment field. - readOnly: false + parameterSchema: + additionalProperties: true + type: + - object + - "null" + parameterValues: + additionalProperties: true + type: + - object + - "null" + program: + oneOf: + - $ref: '#/components/schemas/c1.api.reporting.v1.ProgramRef' + - type: "null" + prompt: + description: The editable natural-language question. Only a re-plan reads this. + type: string + tenantId: + description: The tenantId field. type: string updatedAt: format: date-time - readOnly: false - type: string - updatedBy: - description: The updatedBy field. - readOnly: false - type: string - title: Task Audit Comment + type: + - string + - "null" + title: Report type: object - x-speakeasy-name-override: TaskAuditComment - c1.api.task.v1.TaskAuditConditionalPolicyExecutionResult: - description: The TaskAuditConditionalPolicyExecutionResult message. - nullable: true + x-speakeasy-name-override: Report + c1.api.reporting.v1.ReportRun: + description: ReportRun is one execution of a Report's program. Write-once. properties: - condition: - description: The condition field. - readOnly: false + artifactUrl: + description: The artifactUrl field. type: string - conditionMatched: - description: The conditionMatched field. - readOnly: false - type: boolean - defaultCondition: - description: The defaultCondition field. - readOnly: false - type: boolean + conversationId: + description: |- + Where the output came from, kept for provenance rather than to read it back: + the surface itself is in surface_snapshot. Both are required to address a + surface, and a headless refresh has neither. + type: string + createdAt: + format: date-time + type: + - string + - "null" + deletedAt: + format: date-time + type: + - string + - "null" error: description: The error field. - readOnly: false type: string - policyKey: - description: The policyKey field. - readOnly: false + expiresAt: + format: date-time + type: + - string + - "null" + id: + description: KSUID, so runs sort by time. type: string - title: Task Audit Conditional Policy Execution Result - type: object - x-speakeasy-name-override: TaskAuditConditionalPolicyExecutionResult - c1.api.task.v1.TaskAuditConnectorActionResult: - description: | - The TaskAuditConnectorActionResult message. - - This message contains a oneof named result. Only a single field of the following list may be set at a time: - - success - - error - - cancelled - - pending - nullable: true - properties: - appEntitlementId: - description: The appEntitlementId field. - readOnly: false + invocationId: + description: |- + Not a live join: the originating code-mode invocation is archived at the + code-mode retention cutoff. type: string - appId: - description: The appId field. - readOnly: false + lineage: + additionalProperties: true + type: + - object + - "null" + parameterValues: + additionalProperties: true + type: + - object + - "null" + program: + oneOf: + - $ref: '#/components/schemas/c1.api.reporting.v1.ProgramRef' + - type: "null" + reportId: + description: The reportId field. + type: string + runByUserId: + description: |- + Copied from the invocation's user_id, which is archived at the code-mode + retention cutoff. Not Report.created_by_user_id — a refresh may execute as a + different principal than the report's owner. type: string - cancelled: - $ref: '#/components/schemas/c1.api.app.v1.TaskAuditCancelledResult' - connectorActionId: - description: The connectorActionId field. - readOnly: false + sources: + deprecated: true + description: |- + Never written: for a run saved out of a conversation, provenance is read back + through A2UIService.GetSurfaceProvenance, which reads the surface's own + components. A headless refresh has no conversation or surface to ask about, + and how such a run reports what it read is still open. + items: + $ref: '#/components/schemas/c1.api.reporting.v1.ReportSource' + type: + - array + - "null" + status: + description: The status field. + enum: + - REPORT_RUN_STATUS_UNSPECIFIED + - REPORT_RUN_STATUS_PENDING + - REPORT_RUN_STATUS_SUCCEEDED + - REPORT_RUN_STATUS_FAILED + - REPORT_RUN_STATUS_STALE_PROGRAM type: string - connectorId: - description: The connectorId field. - readOnly: false + x-speakeasy-unknown-values: allow + surfaceId: + description: The surfaceId field. type: string - error: - $ref: '#/components/schemas/c1.api.app.v1.TaskAuditErrorResult' - pending: - $ref: '#/components/schemas/c1.api.app.v1.TaskAuditPendingResult' - success: - $ref: '#/components/schemas/c1.api.app.v1.TaskAuditSuccessResult' - title: Task Audit Connector Action Result - type: object - x-speakeasy-name-override: TaskAuditConnectorActionResult - c1.api.task.v1.TaskAuditCreatedReplacementExtensionGrantTask: - description: |- - TaskAuditCreatedReplacementExtensionGrantTask is used when a replacement extension grant task is created - (e.g. when an extension grant task is cancelled due to app user deletion). - nullable: true - properties: - newTaskId: - description: The ID of the newly created replacement task - readOnly: false + surfaceSnapshot: + oneOf: + - $ref: '#/components/schemas/c1.api.a2ui.v1.A2UISurface' + - type: "null" + tenantId: + description: The tenantId field. type: string - newTaskNumericId: - description: The numeric ID of the newly created replacement task (for display) - format: int64 - readOnly: false + updatedAt: + format: date-time + type: + - string + - "null" + vfsId: + description: The vfsId field. type: string - title: Task Audit Created Replacement Extension Grant Task + title: Report Run type: object - x-speakeasy-name-override: TaskAuditCreatedReplacementExtensionGrantTask - c1.api.task.v1.TaskAuditEscalateToEmergencyAccess: - description: The TaskAuditEscalateToEmergencyAccess message. - nullable: true + x-speakeasy-name-override: ReportRun + c1.api.reporting.v1.ReportSource: + deprecated: true + description: |- + ReportSource is one provenance entry: what a run read to produce its numbers. + + Retired: a run saved out of a conversation records the surface it came from, + and provenance is read back through A2UIService.GetSurfaceProvenance rather + than copied here. Kept because a published message may not be deleted. properties: - oldPolicyId: - description: The oldPolicyId field. - readOnly: false - type: string - oldPolicyStepId: - description: The oldPolicyStepId field. - readOnly: false + count: + description: Rows contributing. + format: int64 type: string - title: Task Audit Escalate To Emergency Access - type: object - x-speakeasy-name-override: TaskAuditEscalateToEmergencyAccess - c1.api.task.v1.TaskAuditExpressionPolicyStepError: - description: The TaskAuditExpressionPolicyStepError message. - nullable: true - properties: - error: - description: The error field. - readOnly: false + kind: + description: The kind field. type: string - title: Task Audit Expression Policy Step Error + label: + description: The label field. + type: string + ref: + description: Tool + query fingerprint, or object type/id. + type: string + title: Report Source + type: object + x-speakeasy-name-override: ReportSource + c1.api.reporting.v1.ReportingServiceDeleteRequestInput: + description: The ReportingServiceDeleteRequest message. + title: Reporting Service Delete Request + type: object + x-speakeasy-name-override: ReportingServiceDeleteRequest + c1.api.reporting.v1.ReportingServiceDeleteResponse: + description: The ReportingServiceDeleteResponse message. + title: Reporting Service Delete Response + type: object + x-speakeasy-name-override: ReportingServiceDeleteResponse + c1.api.reporting.v1.ReportingServiceGetResponse: + description: The ReportingServiceGetResponse message. + properties: + latestRun: + oneOf: + - $ref: '#/components/schemas/c1.api.reporting.v1.ReportRun' + - type: "null" + latestSuccessfulRun: + oneOf: + - $ref: '#/components/schemas/c1.api.reporting.v1.ReportRun' + - type: "null" + promptDrifted: + description: |- + True when prompt no longer matches program.planned_from_prompt. A rerun + re-executes and never re-plans, so an edited question leaves the program + answering the old one. + type: boolean + report: + oneOf: + - $ref: '#/components/schemas/c1.api.reporting.v1.Report' + - type: "null" + title: Reporting Service Get Response type: object - x-speakeasy-name-override: TaskAuditExpressionPolicyStepError - c1.api.task.v1.TaskAuditExternalTicketCreated: - description: The TaskAuditExternalTicketCreated message. - nullable: true + x-speakeasy-name-override: ReportingServiceGetResponse + c1.api.reporting.v1.ReportingServiceGetRunProvenanceResponse: + description: The ReportingServiceGetRunProvenanceResponse message. properties: - appId: - description: The appId field. - readOnly: false - type: string - connectorId: - description: The connectorId field. - readOnly: false + programCommitId: + description: The programCommitId field. type: string - externalTicketId: - description: The externalTicketId field. - readOnly: false - type: string - externalTicketProvisionerConfigId: - description: The externalTicketProvisionerConfigId field. - readOnly: false + programFunctionId: + description: The programFunctionId field. type: string - externalTicketProvisionerConfigName: - description: The externalTicketProvisionerConfigName field. - readOnly: false + programInput: + description: |- + The parameters this run was bound to, as JSON. "{}" for a program that + takes none — a real answer, distinct from absent. type: string - externalTicketUrl: - description: The externalTicketUrl field. - readOnly: false + programSource: + description: The programSource field. type: string - title: Task Audit External Ticket Created + sources: + description: |- + What each part of the report shows, read off the run's own copy of the + surface rather than a live one. + items: + $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIProvenanceSource' + type: + - array + - "null" + steps: + description: What the program looked at, derived from its source. + items: + $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIProvenanceStep' + type: + - array + - "null" + stepsAvailable: + description: |- + False when the program's source could not be read, which is what makes an + empty steps list mean "unknown" rather than "it read nothing". + type: boolean + title: Reporting Service Get Run Provenance Response type: object - x-speakeasy-name-override: TaskAuditExternalTicketCreated - c1.api.task.v1.TaskAuditExternalTicketError: - description: The TaskAuditExternalTicketError message. - nullable: true + x-speakeasy-name-override: ReportingServiceGetRunProvenanceResponse + c1.api.reporting.v1.ReportingServiceListResponse: + description: The ReportingServiceListResponse message. properties: - errorMessage: - description: The errorMessage field. - readOnly: false + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.reporting.v1.Report' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - title: Task Audit External Ticket Error + title: Reporting Service List Response type: object - x-speakeasy-name-override: TaskAuditExternalTicketError - c1.api.task.v1.TaskAuditExternalTicketProvisionStepResolved: - description: The TaskAuditExternalTicketProvisionStepResolved message. - nullable: true + x-speakeasy-name-override: ReportingServiceListResponse + c1.api.reporting.v1.ReportingServiceRunRequestInput: + description: The ReportingServiceRunRequest message. + title: Reporting Service Run Request + type: object + x-speakeasy-name-override: ReportingServiceRunRequest + c1.api.reporting.v1.ReportingServiceRunResponse: + description: The ReportingServiceRunResponse message. properties: - appId: - description: The appId field. - readOnly: false - type: string - connectorId: - description: The connectorId field. - readOnly: false - type: string - externalTicketId: - description: The externalTicketId field. - readOnly: false - type: string - externalTicketProvisionerConfigId: - description: The externalTicketProvisionerConfigId field. - readOnly: false - type: string - externalTicketUrl: - description: The externalTicketUrl field. - readOnly: false - type: string - title: Task Audit External Ticket Provision Step Resolved + run: + oneOf: + - $ref: '#/components/schemas/c1.api.reporting.v1.ReportRun' + - type: "null" + title: Reporting Service Run Response type: object - x-speakeasy-name-override: TaskAuditExternalTicketProvisionStepResolved - c1.api.task.v1.TaskAuditExternalTicketTriggered: - description: The TaskAuditExternalTicketTriggered message. - nullable: true + x-speakeasy-name-override: ReportingServiceRunResponse + c1.api.reporting.v1.ReportingServiceSaveRequest: + description: The ReportingServiceSaveRequest message. properties: - appId: - description: The appId field. - readOnly: false - type: string - connectorId: - description: The connectorId field. - readOnly: false + conversationId: + description: |- + The conversation and surface are both required to address a rendered + surface; neither identifies one alone. type: string - externalTicketId: - description: The externalTicketId field. - readOnly: false + displayName: + description: The displayName field. type: string - externalTicketProvisionerConfigId: - description: The externalTicketProvisionerConfigId field. - readOnly: false + prompt: + description: |- + The question this surface answered. The surface records its program but not + the words behind it, so the caller supplies them; without it the report has + nothing to compare against when deciding its program has gone stale. type: string - externalTicketProvisionerConfigName: - description: The externalTicketProvisionerConfigName field. - readOnly: false + surfaceId: + description: The surfaceId field. type: string - title: Task Audit External Ticket Triggered + title: Reporting Service Save Request type: object - x-speakeasy-name-override: TaskAuditExternalTicketTriggered - c1.api.task.v1.TaskAuditFinishedConnectorActions: - description: The TaskAuditFinishedConnectorActions message. - nullable: true + x-speakeasy-name-override: ReportingServiceSaveRequest + c1.api.reporting.v1.ReportingServiceSaveResponse: + description: The ReportingServiceSaveResponse message. properties: - policyStepId: - description: The policyStepId field. - readOnly: false - type: string - title: Task Audit Finished Connector Actions + report: + oneOf: + - $ref: '#/components/schemas/c1.api.reporting.v1.Report' + - type: "null" + title: Reporting Service Save Response type: object - x-speakeasy-name-override: TaskAuditFinishedConnectorActions - c1.api.task.v1.TaskAuditFormInstanceChange: - description: The TaskAuditFormInstanceChange message. - nullable: true + x-speakeasy-name-override: ReportingServiceSaveResponse + c1.api.reporting.v1.ReportingServiceUpdateRequestInput: + description: |- + Both editable fields are optional; an empty one leaves the stored value alone. + At least one must be set. properties: - isValid: - description: The isValid field. - readOnly: false - type: boolean - title: Task Audit Form Instance Change + displayName: + description: The displayName field. + type: string + parameterValues: + additionalProperties: true + type: + - object + - "null" + prompt: + description: |- + Editing this does not re-plan, so it may drift from + program.planned_from_prompt — that drift is how a stale report is detected. + type: string + title: Reporting Service Update Request type: object - x-speakeasy-name-override: TaskAuditFormInstanceChange - c1.api.task.v1.TaskAuditGrantDurationUpdated: - description: The TaskAuditGrantDurationUpdated message. - nullable: true + x-speakeasy-name-override: ReportingServiceUpdateRequest + c1.api.reporting.v1.ReportingServiceUpdateResponse: + description: The ReportingServiceUpdateResponse message. properties: - duration: - format: duration - readOnly: false - type: string - title: Task Audit Grant Duration Updated + report: + oneOf: + - $ref: '#/components/schemas/c1.api.reporting.v1.Report' + - type: "null" + title: Reporting Service Update Response type: object - x-speakeasy-name-override: TaskAuditGrantDurationUpdated - c1.api.task.v1.TaskAuditGrantOutcome: - description: The TaskAuditGrantOutcome message. - nullable: true + x-speakeasy-name-override: ReportingServiceUpdateResponse + c1.api.request_schema.v1.RequestSchema: + description: A request schema defines a form template that users fill out when requesting access. properties: - outcome: - description: The outcome field. + createdAt: + format: date-time + type: + - string + - "null" + deletedAt: + format: date-time + type: + - string + - "null" + form: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.Form' + - type: "null" + id: + description: The unique identifier of this request schema. + type: string + justificationVisibility: + description: Controls whether the justification field is shown or hidden on the request form. enum: - - GRANT_OUTCOME_UNSPECIFIED - - GRANT_OUTCOME_GRANTED - - GRANT_OUTCOME_DENIED - - GRANT_OUTCOME_ERROR - - GRANT_OUTCOME_CANCELLED - - GRANT_OUTCOME_WAIT_TIMED_OUT - readOnly: false + - JUSTIFICATION_VISIBILITY_UNSPECIFIED + - JUSTIFICATION_VISIBILITY_SHOW + - JUSTIFICATION_VISIBILITY_HIDE type: string x-speakeasy-unknown-values: allow - title: Task Audit Grant Outcome + modifiedAt: + format: date-time + type: + - string + - "null" + title: Request Schema type: object - x-speakeasy-name-override: TaskAuditGrantOutcome - c1.api.task.v1.TaskAuditHardReset: - description: The TaskAuditHardReset message. - nullable: true + x-speakeasy-name-override: RequestSchema + c1.api.request_schema.v1.RequestSchemaServiceCreateEntitlementBindingRequest: + description: The request message for creating a single entitlement binding on a request schema. properties: - oldPolicyStepId: - description: The oldPolicyStepId field. - readOnly: false + entitlementRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + - type: "null" + requestSchemaId: + description: The unique identifier of the request schema to bind the entitlement to. type: string - title: Task Audit Hard Reset + title: Request Schema Service Create Entitlement Binding Request type: object - x-speakeasy-name-override: TaskAuditHardReset - c1.api.task.v1.TaskAuditListRequest: - description: The TaskAuditListRequest message. + x-speakeasy-name-override: RequestSchemaServiceCreateEntitlementBindingRequest + c1.api.request_schema.v1.RequestSchemaServiceCreateEntitlementBindingResponse: + description: The response message for creating a single entitlement binding. properties: - pageSize: - description: The maximum number of audit events to return per page. - format: int32 - readOnly: false - type: integer - pageToken: - description: A pagination token from a previous response to retrieve the next page. - readOnly: false - type: string - refs: - description: References to specific audit events to retrieve. If provided, only these events are returned. - items: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditViewRef' - nullable: true - readOnly: false - type: array - taskId: - description: The ID of the task to list audit events for. - readOnly: false + entitlementRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + - type: "null" + requestSchemaId: + description: The unique identifier of the request schema the entitlement was bound to. type: string - title: Task Audit List Request + title: Request Schema Service Create Entitlement Binding Response type: object - x-speakeasy-name-override: TaskAuditListRequest - c1.api.task.v1.TaskAuditListResponse: - description: The TaskAuditListResponse message. + x-speakeasy-name-override: RequestSchemaServiceCreateEntitlementBindingResponse + c1.api.request_schema.v1.RequestSchemaServiceCreateRequest: + description: The request message for creating a new request schema. properties: - list: - description: The list of audit events for the task. + description: + description: An optional description of the request schema's purpose. + type: string + fieldGroups: + description: Logical groupings of fields for display purposes. items: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditView' - nullable: true - readOnly: false - type: array - nextPageToken: - description: A pagination token to retrieve the next page of results. - readOnly: false + $ref: '#/components/schemas/c1.api.form.v1.FieldGroup' + type: + - array + - "null" + fieldRelationships: + description: Dependencies between fields that control conditional visibility or validation. + items: + $ref: '#/components/schemas/c1.api.form.v1.FieldRelationship' + type: + - array + - "null" + fields: + description: The form fields that users must fill out when requesting access. + items: + $ref: '#/components/schemas/c1.api.form.v1.Field' + type: + - array + - "null" + justificationVisibility: + description: Controls whether the justification field is shown or hidden on the request form. + enum: + - JUSTIFICATION_VISIBILITY_UNSPECIFIED + - JUSTIFICATION_VISIBILITY_SHOW + - JUSTIFICATION_VISIBILITY_HIDE type: string - title: Task Audit List Response + x-speakeasy-unknown-values: allow + name: + description: The human-readable name for the request schema. + type: string + title: Request Schema Service Create Request type: object - x-speakeasy-name-override: TaskAuditListResponse - c1.api.task.v1.TaskAuditMetaData: - description: The TaskAuditMetaData message. + x-speakeasy-name-override: RequestSchemaServiceCreateRequest + c1.api.request_schema.v1.RequestSchemaServiceCreateResponse: + description: The response message for creating a request schema. properties: - user: - $ref: '#/components/schemas/c1.api.user.v1.User' - title: Task Audit Meta Data - type: object - x-speakeasy-name-override: TaskAuditMetaData - c1.api.task.v1.TaskAuditNewTask: - description: The TaskAuditNewTask message. - nullable: true - title: Task Audit New Task + requestSchema: + oneOf: + - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchema' + - type: "null" + title: Request Schema Service Create Response type: object - x-speakeasy-name-override: TaskAuditNewTask - c1.api.task.v1.TaskAuditNewTaskCreatedFrom: - description: |- - TaskAuditNewTaskCreatedFrom is used when a task is created from another task - (e.g. when a replacement extension grant task is created after the original is cancelled). - This is set on the NEW task to indicate its origin. - nullable: true + x-speakeasy-name-override: RequestSchemaServiceCreateResponse + c1.api.request_schema.v1.RequestSchemaServiceDeleteRequestInput: + description: The request message for deleting a request schema. + title: Request Schema Service Delete Request + type: object + x-speakeasy-name-override: RequestSchemaServiceDeleteRequest + c1.api.request_schema.v1.RequestSchemaServiceDeleteResponse: + description: The response message for deleting a request schema. + title: Request Schema Service Delete Response + type: object + x-speakeasy-name-override: RequestSchemaServiceDeleteResponse + c1.api.request_schema.v1.RequestSchemaServiceFindBindingForAppEntitlementRequest: + description: The request message for finding which request schema is bound to a given app entitlement. properties: - originalTaskId: - description: The originalTaskId field. - readOnly: false - type: string - originalTaskNumericId: - description: The originalTaskNumericId field. - format: int64 - readOnly: false - type: string - originalTaskType: - description: The task type of the original task (e.g. "grant", "revoke", "certify"). - readOnly: false - type: string - title: Task Audit New Task Created From + entitlementRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + - type: "null" + title: Request Schema Service Find Binding For App Entitlement Request type: object - x-speakeasy-name-override: TaskAuditNewTaskCreatedFrom - c1.api.task.v1.TaskAuditPolicyApprovalReassigned: - description: The TaskAuditPolicyApprovalReassigned message. - nullable: true + x-speakeasy-name-override: RequestSchemaServiceFindBindingForAppEntitlementRequest + c1.api.request_schema.v1.RequestSchemaServiceFindBindingForAppEntitlementResponse: + description: The response message containing the binding for the specified app entitlement. properties: - newPolicyStepId: - description: The newPolicyStepId field. - readOnly: false - type: string - newUsers: - description: The newUsers field. - items: - type: string - nullable: true - readOnly: false - type: array - oldPolicyStepId: - description: The oldPolicyStepId field. - readOnly: false + entitlementRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + - type: "null" + requestSchemaId: + description: The unique identifier of the request schema bound to this entitlement, if any. type: string - users: - description: The users field. - items: - $ref: '#/components/schemas/c1.api.user.v1.User' - nullable: true - readOnly: false - type: array - title: Task Audit Policy Approval Reassigned + title: Request Schema Service Find Binding For App Entitlement Response type: object - x-speakeasy-name-override: TaskAuditPolicyApprovalReassigned - c1.api.task.v1.TaskAuditPolicyChanged: - description: The TaskAuditPolicyChanged message. - nullable: true + x-speakeasy-name-override: RequestSchemaServiceFindBindingForAppEntitlementResponse + c1.api.request_schema.v1.RequestSchemaServiceGetResponse: + description: The response message for retrieving a request schema. properties: - newPolicyId: - description: The newPolicyId field. - readOnly: false - type: string - oldPolicyId: - description: The oldPolicyId field. - readOnly: false - type: string - title: Task Audit Policy Changed + requestSchema: + oneOf: + - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchema' + - type: "null" + title: Request Schema Service Get Response type: object - x-speakeasy-name-override: TaskAuditPolicyChanged - c1.api.task.v1.TaskAuditPolicyEvaluationStep: - description: The TaskAuditPolicyEvaluationStep message. - nullable: true + x-speakeasy-name-override: RequestSchemaServiceGetResponse + c1.api.request_schema.v1.RequestSchemaServiceRemoveEntitlementBindingRequest: + description: The request message for removing a single entitlement binding from a request schema. properties: - stepComment: - description: The stepComment field. - readOnly: false + entitlementRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + - type: "null" + requestSchemaId: + description: The unique identifier of the request schema to remove the binding from. type: string - title: Task Audit Policy Evaluation Step + title: Request Schema Service Remove Entitlement Binding Request type: object - x-speakeasy-name-override: TaskAuditPolicyEvaluationStep - c1.api.task.v1.TaskAuditPolicyProvisionCancelled: - description: The TaskAuditPolicyProvisionCancelled message. - nullable: true + x-speakeasy-name-override: RequestSchemaServiceRemoveEntitlementBindingRequest + c1.api.request_schema.v1.RequestSchemaServiceRemoveEntitlementBindingResponse: + description: The response message for removing a single entitlement binding. + title: Request Schema Service Remove Entitlement Binding Response + type: object + x-speakeasy-name-override: RequestSchemaServiceRemoveEntitlementBindingResponse + c1.api.request_schema.v1.RequestSchemaServiceUpdateRequestInput: + description: The request message for updating an existing request schema. properties: - cancelReason: - description: The cancelReason field. - readOnly: false - type: string - title: Task Audit Policy Provision Cancelled + requestSchema: + oneOf: + - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchema' + - type: "null" + updateMask: + type: + - string + - "null" + title: Request Schema Service Update Request type: object - x-speakeasy-name-override: TaskAuditPolicyProvisionCancelled - c1.api.task.v1.TaskAuditPolicyProvisionError: - description: The TaskAuditPolicyProvisionError message. - nullable: true + x-speakeasy-name-override: RequestSchemaServiceUpdateRequest + c1.api.request_schema.v1.RequestSchemaServiceUpdateResponse: + description: The response message for updating a request schema. properties: - error: - description: The error field. - readOnly: false - type: string - title: Task Audit Policy Provision Error + requestSchema: + oneOf: + - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchema' + - type: "null" + title: Request Schema Service Update Response type: object - x-speakeasy-name-override: TaskAuditPolicyProvisionError - c1.api.task.v1.TaskAuditPolicyProvisionReassigned: - description: The TaskAuditPolicyProvisionReassigned message. - nullable: true + x-speakeasy-name-override: RequestSchemaServiceUpdateResponse + c1.api.requestcatalog.v1.AppEntitlementWithUserBindings: + description: The AppEntitlementWithUserBindings message represents an app entitlement and its associated user bindings. properties: - newPolicyStepId: - description: The newPolicyStepId field. - readOnly: false - type: string - newUsers: - description: The newUsers field. - items: - type: string - nullable: true - readOnly: false - type: array - oldPolicyStepId: - description: The oldPolicyStepId field. - readOnly: false - type: string - users: - description: The users field. + appEntitlementUserBindings: + description: An array of AppEntitlementUserBinding objects which represent the relationships that give app users access to the specific app entitlement. items: - $ref: '#/components/schemas/c1.api.user.v1.User' - nullable: true - readOnly: false - type: array - title: Task Audit Policy Provision Reassigned + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementUserBinding' + type: + - array + - "null" + entitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementView' + - type: "null" + title: App Entitlement With User Bindings type: object - x-speakeasy-name-override: TaskAuditPolicyProvisionReassigned - c1.api.task.v1.TaskAuditReassignedToDelegate: - description: The TaskAuditReassignedToDelegate message. - nullable: true + x-speakeasy-name-override: AppEntitlementWithUserBindings + c1.api.requestcatalog.v1.BundleAutomation: + description: | + The BundleAutomation message. + + This message contains a oneof named conditions. Only a single field of the following list may be set at a time: + - entitlements + - cel properties: - delegatedAssigneeUser: - $ref: '#/components/schemas/c1.api.user.v1.User' - delegatedAssigneeUserId: - description: The delegatedAssigneeUserId field. - readOnly: false + cel: + oneOf: + - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomationRuleCEL' + - type: "null" + circuitBreaker: + oneOf: + - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomationCircuitBreaker' + - type: "null" + createTasks: + description: The createTasks field. + type: boolean + createdAt: + format: date-time + type: + - string + - "null" + deletedAt: + format: date-time + type: + - string + - "null" + disableCircuitBreaker: + description: The disableCircuitBreaker field. + type: boolean + enabled: + description: The enabled field. + type: boolean + enforceOnSmallProfiles: + description: |- + When true, the circuit breaker is evaluated even on profiles below the + tenant min-members floor. + type: boolean + entitlements: + oneOf: + - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomationRuleEntitlement' + - type: "null" + removedMembersThresholdPercent: + description: |- + Per-automation override for the removed-members percent that trips the + circuit breaker (1-100). 0 / unset means the tenant default applies. + format: int64 type: string - originalAssigneeUser: - $ref: '#/components/schemas/c1.api.user.v1.User' - originalAssigneeUserId: - description: The originalAssigneeUserId field. - readOnly: false + requestCatalogId: + description: The requestCatalogId field. type: string - title: Task Audit Reassigned To Delegate - type: object - x-speakeasy-name-override: TaskAuditReassignedToDelegate - c1.api.task.v1.TaskAuditReassignmentFallbackToAdmin: - description: |- - TaskAuditReassignmentFallbackToAdmin is used when no eligible reviewers are found - from the policy configuration and the task falls back to system administrators - without creating a new policy step. This prevents reassignment loops. - nullable: true - properties: - adminUserIds: - description: The IDs of the system administrator users that the task is being assigned to - items: - type: string - nullable: true - readOnly: false - type: array - adminUsers: - description: The system administrator users (populated for display) - items: - $ref: '#/components/schemas/c1.api.user.v1.User' - nullable: true - readOnly: false - type: array - title: Task Audit Reassignment Fallback To Admin + state: + oneOf: + - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomationLastRunState' + - type: "null" + tenantId: + description: The tenantId field. + type: string + updatedAt: + format: date-time + type: + - string + - "null" + title: Bundle Automation type: object - x-speakeasy-name-override: TaskAuditReassignmentFallbackToAdmin - c1.api.task.v1.TaskAuditReassignmentListError: - description: The TaskAuditReassignmentListError message. - nullable: true + x-speakeasy-name-override: BundleAutomation + c1.api.requestcatalog.v1.BundleAutomationCelEvaluationState: + description: The BundleAutomationCelEvaluationState message. properties: errorMessage: description: The errorMessage field. - readOnly: false type: string - title: Task Audit Reassignment List Error - type: object - x-speakeasy-name-override: TaskAuditReassignmentListError - c1.api.task.v1.TaskAuditRestart: - description: The TaskAuditRestart message. - nullable: true - properties: - oldPolicyStepId: - description: The oldPolicyStepId field. - readOnly: false + lastEvaluatedAt: + format: date-time + type: + - string + - "null" + matchedUsers: + description: The matchedUsers field. + format: int64 type: string - title: Task Audit Restart - type: object - x-speakeasy-name-override: TaskAuditRestart - c1.api.task.v1.TaskAuditRevokeOutcome: - description: The TaskAuditRevokeOutcome message. - nullable: true - properties: - outcome: - description: The outcome field. + status: + description: The status field. enum: - - REVOKE_OUTCOME_UNSPECIFIED - - REVOKE_OUTCOME_REVOKED - - REVOKE_OUTCOME_DENIED - - REVOKE_OUTCOME_ERROR - - REVOKE_OUTCOME_CANCELLED - - REVOKE_OUTCOME_WAIT_TIMED_OUT - readOnly: false + - BUNDLE_AUTOMATION_RUN_STATUS_UNSPECIFIED + - BUNDLE_AUTOMATION_RUN_STATUS_SUCCESS + - BUNDLE_AUTOMATION_RUN_STATUS_FAILURE + - BUNDLE_AUTOMATION_RUN_STATUS_IN_PROGRESS + - BUNDLE_AUTOMATION_RUN_STATUS_WAITING_FOR_APPROVAL type: string x-speakeasy-unknown-values: allow - title: Task Audit Revoke Outcome + title: Bundle Automation Cel Evaluation State type: object - x-speakeasy-name-override: TaskAuditRevokeOutcome - c1.api.task.v1.TaskAuditSLAEscalation: - description: The TaskAuditSLAEscalation message. - nullable: true + x-speakeasy-name-override: BundleAutomationCelEvaluationState + c1.api.requestcatalog.v1.BundleAutomationCircuitBreaker: + description: The BundleAutomationCircuitBreaker message. properties: - message: - description: The message field. - readOnly: false + removedMembersThresholdPercentage: + description: The removedMembersThresholdPercentage field. + format: int64 type: string - title: Task Audit Sla Escalation - type: object - x-speakeasy-name-override: TaskAuditSLAEscalation - c1.api.task.v1.TaskAuditStartedConnectorActions: - description: The TaskAuditStartedConnectorActions message. - nullable: true - properties: - policyStepId: - description: The policyStepId field. - readOnly: false + state: + description: The state field. + enum: + - CIRCUIT_BREAKER_STATE_UNSPECIFIED + - CIRCUIT_BREAKER_STATE_TRIGGERED + - CIRCUIT_BREAKER_STATE_BYPASS + - CIRCUIT_BREAKER_STATE_SUPPORT_DISABLED type: string - title: Task Audit Started Connector Actions + x-speakeasy-unknown-values: allow + updatedAt: + format: date-time + type: + - string + - "null" + userRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + title: Bundle Automation Circuit Breaker type: object - x-speakeasy-name-override: TaskAuditStartedConnectorActions - c1.api.task.v1.TaskAuditStateChange: - description: The TaskAuditStateChange message. - nullable: true + x-speakeasy-name-override: BundleAutomationCircuitBreaker + c1.api.requestcatalog.v1.BundleAutomationLastRunState: + description: The BundleAutomationLastRunState message. properties: - previousState: - description: The previousState field. + celEvaluation: + oneOf: + - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomationCelEvaluationState' + - type: "null" + errorMessage: + description: The errorMessage field. + type: string + lastRunAt: + format: date-time + type: + - string + - "null" + status: + description: The status field. enum: - - TASK_STATE_UNSPECIFIED - - TASK_STATE_OPEN - - TASK_STATE_CLOSED - readOnly: false + - BUNDLE_AUTOMATION_RUN_STATUS_UNSPECIFIED + - BUNDLE_AUTOMATION_RUN_STATUS_SUCCESS + - BUNDLE_AUTOMATION_RUN_STATUS_FAILURE + - BUNDLE_AUTOMATION_RUN_STATUS_IN_PROGRESS + - BUNDLE_AUTOMATION_RUN_STATUS_WAITING_FOR_APPROVAL type: string x-speakeasy-unknown-values: allow - title: Task Audit State Change + title: Bundle Automation Last Run State type: object - x-speakeasy-name-override: TaskAuditStateChange - c1.api.task.v1.TaskAuditStepSkipped: - description: The TaskAuditStepSkipped message. - nullable: true + x-speakeasy-name-override: BundleAutomationLastRunState + c1.api.requestcatalog.v1.BundleAutomationRuleCEL: + description: The BundleAutomationRuleCEL message. properties: - skippedBy: - description: The skippedBy field. - readOnly: false + expression: + description: The expression field. type: string - title: Task Audit Step Skipped + title: Bundle Automation Rule Cel type: object - x-speakeasy-name-override: TaskAuditStepSkipped - c1.api.task.v1.TaskAuditStepUpApproval: - description: The TaskAuditStepUpApproval message. - nullable: true + x-speakeasy-name-override: BundleAutomationRuleCEL + c1.api.requestcatalog.v1.BundleAutomationRuleEntitlement: + description: The BundleAutomationRuleEntitlement message. properties: - stepUpTransactionId: - description: The stepUpTransactionId field. - readOnly: false - type: string - title: Task Audit Step Up Approval + entitlementRefs: + description: The entitlementRefs field. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + title: Bundle Automation Rule Entitlement type: object - x-speakeasy-name-override: TaskAuditStepUpApproval - c1.api.task.v1.TaskAuditView: + x-speakeasy-name-override: BundleAutomationRuleEntitlement + c1.api.requestcatalog.v1.CreateBundleAutomationRequestInput: description: | - The TaskAuditView message. + The request message for creating a new bundle automation rule on a catalog. - This message contains a oneof named typ. Only a single field of the following list may be set at a time: - - comment - - stateChange - - approvalInstanceChange - - connectorActionsStart - - connectorActionsEnd - - actionResult - - taskCreated - - certifyOutcome - - actionSubmitted - - grantOutcome - - revokeOutcome - - approvalReassigned - - taskRestarted - - accessRequestOutcome - - provisionReassigned - - provisionError - - approvedAutomatically - - reassignedToDelegate - - hardReset - - taskEscalated - - conditionalPolicyExecutionResult - - expressionPolicyStepError - - approvalAutoAcceptedByPolicy - - approvalAutoRejectedByPolicy - - bulkActionError - - webhookTriggered - - webhookAttempt - - webhookSuccess - - policyEvaluationStep - - waitStepSuccess - - waitStepWaiting - - waitStepTimedOut - - webhookApprovalTriggered - - webhookApprovalAttempt - - webhookApprovalSuccess - - webhookApprovalBadResponse - - externalTicketTriggered - - externalTicketCreated - - externalTicketError - - waitStepAnalysisSuccess - - waitStepAnalysisWaiting - - waitStepAnalysisTimedOut - - stepUpApproval - - externalTicketProvisionStepResolved - - stepSkipped - - reassignmentListError - - slaEscalation - - policyChanged - - formInstanceChange - - grantDurationUpdated - - waitStepUntilTime - - webhookApprovalFatalError - - accountLifecycleActionCreated - - accountLifecycleActionFailed - - provisionCancelled - - actionInstanceCreated - - actionInstanceSucceeded - - actionInstanceFailed - - createdReplacementExtensionGrantTask - - taskCreatedFrom - - reassignmentFallbackToAdmin + This message contains a oneof named conditions. Only a single field of the following list may be set at a time: + - entitlements + - cel properties: - accessRequestOutcome: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditAccessRequestOutcome' - accountLifecycleActionCreated: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditAccountLifecycleActionCreated' - accountLifecycleActionFailed: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditAccountLifecycleActionFailed' - actionInstanceCreated: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditActionInstanceCreated' - actionInstanceFailed: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditActionInstanceFailed' - actionInstanceSucceeded: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditActionInstanceSucceeded' - actionResult: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditConnectorActionResult' - actionSubmitted: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditActionSubmitted' - approvalAutoAcceptedByPolicy: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditApprovalAutoAcceptedByPolicy' - approvalAutoRejectedByPolicy: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditApprovalAutoRejectedByPolicy' - approvalInstanceChange: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditApprovalInstanceChange' - approvalReassigned: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditPolicyApprovalReassigned' - approvedAutomatically: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditApprovalHappenedAutomatically' - bulkActionError: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditBulkActionError' - certifyOutcome: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditCertifyOutcome' - comment: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditComment' - conditionalPolicyExecutionResult: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditConditionalPolicyExecutionResult' - connectorActionsEnd: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditFinishedConnectorActions' - connectorActionsStart: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditStartedConnectorActions' - created: + cel: + oneOf: + - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomationRuleCEL' + - type: "null" + createTasks: + description: Whether to create access request tasks for matched users instead of granting directly. + type: boolean + disableCircuitBreaker: + description: Whether to disable the circuit breaker that pauses the automation when excessive membership changes are detected. + type: boolean + enabled: + description: Whether the automation should actively run on its schedule. + type: boolean + enforceOnSmallProfiles: + description: |- + When true, the circuit breaker is evaluated even on profiles below the + tenant min-members floor. Defaults to false. + type: boolean + entitlements: + oneOf: + - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomationRuleEntitlement' + - type: "null" + removedMembersThresholdPercent: + description: |- + Per-automation override for the removed-members percent that trips the + circuit breaker (1-100). 0 / unset means inherit the tenant default. + format: int64 + type: string + title: Create Bundle Automation Request + type: object + x-speakeasy-name-override: CreateBundleAutomationRequest + c1.api.requestcatalog.v1.DeleteBundleAutomationRequestInput: + description: The request message for deleting a bundle automation from a catalog. + title: Delete Bundle Automation Request + type: object + x-speakeasy-name-override: DeleteBundleAutomationRequest + c1.api.requestcatalog.v1.DeleteBundleAutomationResponse: + description: The response message for deleting a bundle automation. + title: Delete Bundle Automation Response + type: object + x-speakeasy-name-override: DeleteBundleAutomationResponse + c1.api.requestcatalog.v1.ForceRunBundleAutomationRequestInput: + description: The request message for triggering an immediate bundle automation run. + properties: + refs: + description: Optional entitlement references to scope the run to specific entitlements. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + title: Force Run Bundle Automation Request + type: object + x-speakeasy-name-override: ForceRunBundleAutomationRequest + c1.api.requestcatalog.v1.ForceRunBundleAutomationResponse: + description: The response message for triggering a bundle automation run. + title: Force Run Bundle Automation Response + type: object + x-speakeasy-name-override: ForceRunBundleAutomationResponse + c1.api.requestcatalog.v1.RequestCatalog: + description: The RequestCatalog is used for managing which entitlements are requestable, and who can request them. + properties: + accessEntitlements: + description: An array of app entitlements that, if the user has, can view the contents of this catalog. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlement' + type: + - array + - "null" + annotations: + additionalProperties: + type: string + description: |- + Bounded key/value metadata bag for IaC marking and customer tags. + See .rfcs/object-annotations.md §2. Limits: ≤16 entries; keys 1–128 + chars matching ^[A-Za-z][A-Za-z0-9._/-]{0,127}$; values 0–256 chars + URL-safe ASCII; total serialized ≤ 4096 bytes. Keys matching ^c1/ + are reserved. + + Well-known keys: `managed_by`, `iac_workspace`, + `iac_resource_address`, `iac_tool_version`. + type: object + x-speakeasy-terraform-plan-modifier: + imports: + - github.com/conductorone/terraform-provider-conductorone/internal/annotations + schemaDefinition: annotations.PlanModifier() + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + createdByUserId: + description: The id of the user this request catalog was created by. + type: string + deletedAt: format: date-time - readOnly: false + readOnly: true + type: + - string + - "null" + description: + description: The description of the request catalog. type: string - createdReplacementExtensionGrantTask: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditCreatedReplacementExtensionGrantTask' - currentState: - description: The currentState field. - enum: - - TASK_STATE_UNSPECIFIED - - TASK_STATE_OPEN - - TASK_STATE_CLOSED - readOnly: false + displayName: + description: The display name of the request catalog. type: string - x-speakeasy-unknown-values: allow - eventType: - description: The eventType field. + enrollmentBehavior: + description: Defines how to handle the request policies of the entitlements in the catalog during enrollment. enum: - - TASK_AUDIT_EVENT_TYPE_UNSPECIFIED - - TASK_AUDIT_EVENT_TYPE_NEUTRAL - - TASK_AUDIT_EVENT_TYPE_ERROR - readOnly: false + - REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_UNSPECIFIED + - REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_BYPASS_ENTITLEMENT_REQUEST_POLICY + - REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_ENFORCE_ENTITLEMENT_REQUEST_POLICY type: string x-speakeasy-unknown-values: allow - expressionPolicyStepError: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditExpressionPolicyStepError' - externalTicketCreated: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditExternalTicketCreated' - externalTicketError: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditExternalTicketError' - externalTicketProvisionStepResolved: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditExternalTicketProvisionStepResolved' - externalTicketTriggered: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditExternalTicketTriggered' - formInstanceChange: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditFormInstanceChange' - grantDurationUpdated: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditGrantDurationUpdated' - grantOutcome: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditGrantOutcome' - hardReset: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditHardReset' id: - description: The id field. - readOnly: false + description: The id of the request catalog. type: string - metadata: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditMetaData' - policyChanged: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditPolicyChanged' - policyEvaluationStep: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditPolicyEvaluationStep' - provisionCancelled: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditPolicyProvisionCancelled' - provisionError: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditPolicyProvisionError' - provisionReassigned: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditPolicyProvisionReassigned' - reassignedToDelegate: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditReassignedToDelegate' - reassignmentFallbackToAdmin: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditReassignmentFallbackToAdmin' - reassignmentListError: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditReassignmentListError' - revokeOutcome: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditRevokeOutcome' - slaEscalation: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditSLAEscalation' - source: - description: The source field. + published: + description: Whether or not this catalog is published. + type: boolean + requestBundle: + description: Whether all the entitlements in the catalog can be requests at once. Your tenant must have the bundles feature to use this. + type: boolean + type: + description: |- + The type of this access profile. Reports CATALOG_AND_BUNDLE for a profile + created before the type was recorded; UNSPECIFIED only for a tenant whose + backfill has not been run. enum: - - SOURCE_UNSPECIFIED - - SOURCE_C1 - - SOURCE_JIRA - - SOURCE_SLACK - - SOURCE_COPILOT_AGENTS - readOnly: false + - REQUEST_CATALOG_TYPE_UNSPECIFIED + - REQUEST_CATALOG_TYPE_CATALOG + - REQUEST_CATALOG_TYPE_PROFILE + - REQUEST_CATALOG_TYPE_CATALOG_AND_BUNDLE + - REQUEST_CATALOG_TYPE_BUNDLE + readOnly: true type: string x-speakeasy-unknown-values: allow - stateChange: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditStateChange' - stepSkipped: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditStepSkipped' - stepUpApproval: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditStepUpApproval' - taskCreated: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditNewTask' - taskCreatedFrom: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditNewTaskCreatedFrom' - taskEscalated: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditEscalateToEmergencyAccess' - taskRestarted: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditRestart' - ticketId: - description: The ticketId field. - readOnly: false + unenrollmentBehavior: + description: Defines how to handle the revocation of the entitlements in the catalog during unenrollment. + enum: + - REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_UNSPECIFIED + - REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_LEAVE_ACCESS_AS_IS + - REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_REVOKE_ALL + - REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_REVOKE_UNJUSTIFIED type: string - userId: - description: The userId field. - readOnly: false + x-speakeasy-unknown-values: allow + unenrollmentEntitlementBehavior: + description: Defines how to handle the revoke policies of the entitlements in the catalog during unenrollment. + enum: + - REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_UNSPECIFIED + - REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_BYPASS + - REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_ENFORCE type: string - waitStepAnalysisSuccess: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWaitForAnalysisStepSuccess' - waitStepAnalysisTimedOut: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWaitForAnalysisStepTimedOut' - waitStepAnalysisWaiting: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWaitForAnalysisStepWaiting' - waitStepSuccess: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWaitStepSuccess' - waitStepTimedOut: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWaitStepTimedOut' - waitStepUntilTime: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWaitStepUntilTime' - waitStepWaiting: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWaitStepWaiting' - webhookApprovalAttempt: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWebhookApprovalAttempt' - webhookApprovalBadResponse: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWebhookApprovalBadResponse' - webhookApprovalFatalError: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWebhookApprovalFatalError' - webhookApprovalSuccess: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWebhookApprovalSuccess' - webhookApprovalTriggered: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWebhookApprovalTriggered' - webhookAttempt: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWebhookAttempt' - webhookSuccess: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWebhookSuccess' - webhookTriggered: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWebhookTriggered' - workflowStep: - description: The workflowStep field. - format: int32 - readOnly: false - type: integer - title: Task Audit View + x-speakeasy-unknown-values: allow + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + visibleToEveryone: + description: If this is true, the access entitlement requirement is ignored. + type: boolean + title: Request Catalog type: object - x-speakeasy-name-override: TaskAuditView - c1.api.task.v1.TaskAuditViewRef: - description: The TaskAuditViewRef message. + x-speakeasy-entity: Access_Profile + x-speakeasy-name-override: RequestCatalog + c1.api.requestcatalog.v1.RequestCatalogExpandMask: + description: The RequestCatalogExpandMask includes the paths in the catalog view to expand in the return value of this call. properties: - id: - description: The ID of the audit event. - readOnly: false - type: string - title: Task Audit View Ref + paths: + description: An array of paths to be expanded in the response. May be any combination of "*", "created_by_user_id", "app_ids", and "access_entitlements". + items: + type: string + type: + - array + - "null" + title: Request Catalog Expand Mask type: object - x-speakeasy-name-override: TaskAuditViewRef - c1.api.task.v1.TaskAuditWaitForAnalysisStepSuccess: - description: The TaskAuditWaitForAnalysisStepSuccess message. - nullable: true + x-speakeasy-name-override: RequestCatalogExpandMask + c1.api.requestcatalog.v1.RequestCatalogManagementServiceAddAccessEntitlementsRequestInput: + description: |- + The RequestCatalogManagementServiceAddAccessEntitlementsRequest message is used to add access entitlements to a request + catalog to determine which users can view the request catalog. properties: - stepId: - description: The stepId field. - readOnly: false - type: string - succeededAt: - format: date-time - readOnly: false - type: string - title: Task Audit Wait For Analysis Step Success + accessEntitlements: + description: List of entitlements to add to the request catalog as access entitlements. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + required: + - accessEntitlements + title: Request Catalog Management Service Add Access Entitlements Request type: object - x-speakeasy-name-override: TaskAuditWaitForAnalysisStepSuccess - c1.api.task.v1.TaskAuditWaitForAnalysisStepTimedOut: - description: The TaskAuditWaitForAnalysisStepTimedOut message. - nullable: true - properties: - stepId: - description: The stepId field. - readOnly: false - type: string - timedOutAt: - format: date-time - readOnly: false - type: string - title: Task Audit Wait For Analysis Step Timed Out + x-speakeasy-entity: Access_Profile_Visibility_Bindings + x-speakeasy-name-override: RequestCatalogManagementServiceAddAccessEntitlementsRequest + c1.api.requestcatalog.v1.RequestCatalogManagementServiceAddAccessEntitlementsResponse: + description: Empty response with a status code indicating success. + title: Request Catalog Management Service Add Access Entitlements Response type: object - x-speakeasy-name-override: TaskAuditWaitForAnalysisStepTimedOut - c1.api.task.v1.TaskAuditWaitForAnalysisStepWaiting: - description: The TaskAuditWaitForAnalysisStepWaiting message. - nullable: true + x-speakeasy-name-override: RequestCatalogManagementServiceAddAccessEntitlementsResponse + c1.api.requestcatalog.v1.RequestCatalogManagementServiceAddAppEntitlementsRequestInput: + description: The RequestCatalogManagementServiceAddAppEntitlementsRequest object is used to add app requestable app entitlements to a request catalog. properties: - stepId: - description: The stepId field. - readOnly: false - type: string - title: Task Audit Wait For Analysis Step Waiting + appEntitlements: + description: List of entitlements to add to the request catalog. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + createRequests: + description: |- + Whether or not to create requests for newly added entitlements for users in the catalog. + By default, this is false and no requests are created. + type: boolean + required: + - appEntitlements + title: Request Catalog Management Service Add App Entitlements Request type: object - x-speakeasy-name-override: TaskAuditWaitForAnalysisStepWaiting - c1.api.task.v1.TaskAuditWaitStepSuccess: - description: The TaskAuditWaitStepSuccess message. - nullable: true + x-speakeasy-entity: Access_Profile_Requestable_Entries + x-speakeasy-name-override: RequestCatalogManagementServiceAddAppEntitlementsRequest + c1.api.requestcatalog.v1.RequestCatalogManagementServiceAddAppEntitlementsResponse: + description: Empty response with a status code indicating success. + title: Request Catalog Management Service Add App Entitlements Response + type: object + x-speakeasy-name-override: RequestCatalogManagementServiceAddAppEntitlementsResponse + c1.api.requestcatalog.v1.RequestCatalogManagementServiceCreateRequest: + description: Create a request catalog. properties: - condition: - description: The condition field. - readOnly: false + annotations: + additionalProperties: + type: string + description: |- + Bounded key/value metadata bag for IaC marking and customer tags. + See .rfcs/object-annotations.md §2. Limits: ≤16 entries; keys 1–128 + chars matching ^[A-Za-z][A-Za-z0-9._/-]{0,127}$; values 0–256 chars + matching URL-safe ASCII; total serialized ≤4096 bytes. Keys starting + with `c1/` are reserved for server-managed use and rejected on write. + + Well-known keys: `managed_by`, `iac_workspace`, + `iac_resource_address`, `iac_tool_version`. + type: object + x-speakeasy-terraform-plan-modifier: + imports: + - github.com/conductorone/terraform-provider-conductorone/internal/annotations + schemaDefinition: annotations.PlanModifier() + description: + description: The description of the new request catalog. type: string - stepId: - description: The stepId field. - readOnly: false + displayName: + description: The display name of the new request catalog. type: string - succeededAt: - format: date-time - readOnly: false + enrollmentBehavior: + description: Defines how to handle the request policies of the entitlements in the catalog during enrollment. + enum: + - REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_UNSPECIFIED + - REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_BYPASS_ENTITLEMENT_REQUEST_POLICY + - REQUEST_CATALOG_ENROLLMENT_BEHAVIOR_ENFORCE_ENTITLEMENT_REQUEST_POLICY type: string - title: Task Audit Wait Step Success - type: object - x-speakeasy-name-override: TaskAuditWaitStepSuccess - c1.api.task.v1.TaskAuditWaitStepTimedOut: - description: The TaskAuditWaitStepTimedOut message. - nullable: true - properties: - condition: - description: The condition field. - readOnly: false + x-speakeasy-unknown-values: allow + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogExpandMask' + - type: "null" + published: + description: Whether or not the new catalog should be created as published. + type: boolean + requestBundle: + description: Whether all the entitlements in the catalog can be requests at once. Your tenant must have the bundles feature to use this. + type: boolean + type: + description: |- + The type of access profile to create. Leave unset for + REQUEST_CATALOG_TYPE_CATALOG_AND_BUNDLE, which is what every profile + created before this field existed is. Setting it requires the + ACCESS_PROFILE_TYPES feature. + + PROFILE is rejected rather than resolved: it is deprecated, has no stored + counterpart, and shares wire number 2 with the stored BUNDLE, so honoring + it would silently persist a type the caller did not ask for. + enum: + - REQUEST_CATALOG_TYPE_UNSPECIFIED + - REQUEST_CATALOG_TYPE_CATALOG + - REQUEST_CATALOG_TYPE_PROFILE + - REQUEST_CATALOG_TYPE_CATALOG_AND_BUNDLE + - REQUEST_CATALOG_TYPE_BUNDLE type: string - stepId: - description: The stepId field. - readOnly: false + x-speakeasy-unknown-values: allow + unenrollmentBehavior: + description: Defines how to handle the revocation of the entitlements in the catalog during unenrollment. + enum: + - REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_UNSPECIFIED + - REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_LEAVE_ACCESS_AS_IS + - REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_REVOKE_ALL + - REQUEST_CATALOG_UNENROLLMENT_BEHAVIOR_REVOKE_UNJUSTIFIED type: string - timedOutAt: - format: date-time - readOnly: false + x-speakeasy-unknown-values: allow + unenrollmentEntitlementBehavior: + description: Defines how to handle the revoke policies of the entitlements in the catalog during unenrollment. + enum: + - REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_UNSPECIFIED + - REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_BYPASS + - REQUEST_CATALOG_UNENROLLMENT_ENTITLEMENT_BEHAVIOR_ENFORCE type: string - title: Task Audit Wait Step Timed Out + x-speakeasy-unknown-values: allow + visibleToEveryone: + description: Whether or not the new catalog is visible to everyone by default. + type: boolean + required: + - displayName + title: Request Catalog Management Service Create Request type: object - x-speakeasy-name-override: TaskAuditWaitStepTimedOut - c1.api.task.v1.TaskAuditWaitStepUntilTime: - description: The TaskAuditWaitStepUntilTime message. - nullable: true + x-speakeasy-entity: Access_Profile + x-speakeasy-name-override: RequestCatalogManagementServiceCreateRequest + c1.api.requestcatalog.v1.RequestCatalogManagementServiceCreateRequestableEntryRequestInput: + description: Create a single requestable entry properties: - stepId: - description: The stepId field. - readOnly: false - type: string - untilTime: - format: date-time - readOnly: false - type: string - title: Task Audit Wait Step Until Time + createRequests: + description: |- + Whether or not to create requests for newly added entitlement for users in the catalog. + By default, this is false and no requests are created. + type: boolean + title: Request Catalog Management Service Create Requestable Entry Request type: object - x-speakeasy-name-override: TaskAuditWaitStepUntilTime - c1.api.task.v1.TaskAuditWaitStepWaiting: - description: The TaskAuditWaitStepWaiting message. - nullable: true + x-speakeasy-entity: Access_Profile_Requestable_Entry + x-speakeasy-name-override: RequestCatalogManagementServiceCreateRequestableEntryRequest + c1.api.requestcatalog.v1.RequestCatalogManagementServiceCreateRequestableEntryResponse: + description: Response containing the created requestable entry properties: - condition: - description: The condition field. - readOnly: false - type: string - stepId: - description: The stepId field. - readOnly: false - type: string - title: Task Audit Wait Step Waiting + requestableEntry: + oneOf: + - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestableEntry' + - type: "null" + title: Request Catalog Management Service Create Requestable Entry Response type: object - x-speakeasy-name-override: TaskAuditWaitStepWaiting - c1.api.task.v1.TaskAuditWebhookApprovalAttempt: - description: The TaskAuditWebhookApprovalAttempt message. - nullable: true - properties: - webhookId: - description: The webhookId field. - readOnly: false - type: string - webhookInstanceId: - description: The webhookInstanceId field. - readOnly: false - type: string - webhookName: - description: The webhookName field. - readOnly: false - type: string - webhookUrl: - description: The webhookUrl field. - readOnly: false - type: string - title: Task Audit Webhook Approval Attempt + x-speakeasy-name-override: RequestCatalogManagementServiceCreateRequestableEntryResponse + c1.api.requestcatalog.v1.RequestCatalogManagementServiceDeleteRequestInput: + description: Delete a request catalog by Id. It uses URL value for input. + title: Request Catalog Management Service Delete Request type: object - x-speakeasy-name-override: TaskAuditWebhookApprovalAttempt - c1.api.task.v1.TaskAuditWebhookApprovalBadResponse: - description: The TaskAuditWebhookApprovalBadResponse message. - nullable: true - properties: - error: - description: The error field. - readOnly: false - type: string - webhookId: - description: The webhookId field. - readOnly: false - type: string - webhookInstanceId: - description: The webhookInstanceId field. - readOnly: false - type: string - webhookName: - description: The webhookName field. - readOnly: false - type: string - webhookUrl: - description: The webhookUrl field. - readOnly: false - type: string - title: Task Audit Webhook Approval Bad Response + x-speakeasy-entity: Access_Profile + x-speakeasy-name-override: RequestCatalogManagementServiceDeleteRequest + c1.api.requestcatalog.v1.RequestCatalogManagementServiceDeleteRequestableEntryRequestInput: + description: Delete a single requestable entry + title: Request Catalog Management Service Delete Requestable Entry Request type: object - x-speakeasy-name-override: TaskAuditWebhookApprovalBadResponse - c1.api.task.v1.TaskAuditWebhookApprovalFatalError: - description: The TaskAuditWebhookApprovalFatalError message. - nullable: true - properties: - error: - description: The error field. - readOnly: false - type: string - webhookId: - description: The webhookId field. - readOnly: false - type: string - webhookInstanceId: - description: The webhookInstanceId field. - readOnly: false - type: string - webhookName: - description: The webhookName field. - readOnly: false - type: string - webhookUrl: - description: The webhookUrl field. - readOnly: false - type: string - title: Task Audit Webhook Approval Fatal Error + x-speakeasy-entity: Access_Profile_Requestable_Entry + x-speakeasy-name-override: RequestCatalogManagementServiceDeleteRequestableEntryRequest + c1.api.requestcatalog.v1.RequestCatalogManagementServiceDeleteRequestableEntryResponse: + description: Empty response for delete operation + title: Request Catalog Management Service Delete Requestable Entry Response type: object - x-speakeasy-name-override: TaskAuditWebhookApprovalFatalError - c1.api.task.v1.TaskAuditWebhookApprovalSuccess: - description: The TaskAuditWebhookApprovalSuccess message. - nullable: true + x-speakeasy-name-override: RequestCatalogManagementServiceDeleteRequestableEntryResponse + c1.api.requestcatalog.v1.RequestCatalogManagementServiceDeleteResponse: + description: Empty response with a status code indicating success. + title: Request Catalog Management Service Delete Response + type: object + x-speakeasy-name-override: RequestCatalogManagementServiceDeleteResponse + c1.api.requestcatalog.v1.RequestCatalogManagementServiceGetRequestableEntryResponse: + description: Response containing the requested entry properties: - webhookId: - description: The webhookId field. - readOnly: false - type: string - webhookInstanceId: - description: The webhookInstanceId field. - readOnly: false - type: string - webhookName: - description: The webhookName field. - readOnly: false - type: string - webhookUrl: - description: The webhookUrl field. - readOnly: false - type: string - title: Task Audit Webhook Approval Success + requestableEntry: + oneOf: + - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestableEntry' + - type: "null" + title: Request Catalog Management Service Get Requestable Entry Response type: object - x-speakeasy-name-override: TaskAuditWebhookApprovalSuccess - c1.api.task.v1.TaskAuditWebhookApprovalTriggered: - description: The TaskAuditWebhookApprovalTriggered message. - nullable: true + x-speakeasy-name-override: RequestCatalogManagementServiceGetRequestableEntryResponse + c1.api.requestcatalog.v1.RequestCatalogManagementServiceGetResponse: + description: The request catalog management service get response returns a request catalog view with the expanded items in the expanded array indicated by the expand mask in the request. properties: - webhookId: - description: The webhookId field. - readOnly: false - type: string - webhookInstanceId: - description: The webhookInstanceId field. - readOnly: false - type: string - webhookName: - description: The webhookName field. - readOnly: false - type: string - webhookUrl: - description: The webhookUrl field. - readOnly: false - type: string - title: Task Audit Webhook Approval Triggered + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + requestCatalogView: + oneOf: + - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogView' + - type: "null" + title: Request Catalog Management Service Get Response type: object - x-speakeasy-name-override: TaskAuditWebhookApprovalTriggered - c1.api.task.v1.TaskAuditWebhookAttempt: - description: The TaskAuditWebhookAttempt message. - nullable: true + x-speakeasy-name-override: RequestCatalogManagementServiceGetResponse + c1.api.requestcatalog.v1.RequestCatalogManagementServiceListAllEntitlementIdsPerCatalogResponse: + description: The response message containing all requestable entitlement references in the catalog. properties: - webhookId: - description: The webhookId field. - readOnly: false - type: string - webhookInstanceId: - description: The webhookInstanceId field. - readOnly: false - type: string - webhookName: - description: The webhookName field. - readOnly: false - type: string - webhookUrl: - description: The webhookUrl field. - readOnly: false - type: string - title: Task Audit Webhook Attempt + refs: + description: The complete list of app entitlement references in this catalog. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + title: Request Catalog Management Service List All Entitlement Ids Per Catalog Response type: object - x-speakeasy-name-override: TaskAuditWebhookAttempt - c1.api.task.v1.TaskAuditWebhookSuccess: - description: The TaskAuditWebhookSuccess message. - nullable: true + x-speakeasy-name-override: RequestCatalogManagementServiceListAllEntitlementIdsPerCatalogResponse + c1.api.requestcatalog.v1.RequestCatalogManagementServiceListEntitlementsForAccessResponse: + description: The RequestCatalogManagementServiceListEntitlementsForAccessResponse message contains a list of results and a nextPageToken if applicable. properties: - webhookId: - description: The webhookId field. - readOnly: false - type: string - webhookInstanceId: - description: The webhookInstanceId field. - readOnly: false - type: string - webhookName: - description: The webhookName field. - readOnly: false - type: string - webhookUrl: - description: The webhookUrl field. - readOnly: false + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + list: + description: The list of results containing up to X results, where X is the page size defined in the request. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementView' + type: + - array + - "null" + nextPageToken: + description: |- + The nextPageToken is shown for the next page if the number of results is larger than the max page size. + The server returns one page of results and the nextPageToken until all results are retreived. + To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. type: string - title: Task Audit Webhook Success + title: Request Catalog Management Service List Entitlements For Access Response type: object - x-speakeasy-name-override: TaskAuditWebhookSuccess - c1.api.task.v1.TaskAuditWebhookTriggered: - description: The TaskAuditWebhookTriggered message. - nullable: true + x-speakeasy-name-override: RequestCatalogManagementServiceListEntitlementsForAccessResponse + c1.api.requestcatalog.v1.RequestCatalogManagementServiceListEntitlementsPerCatalogResponse: + description: The RequestCatalogManagementServiceListEntitlementsPerCatalogResponse message contains a list of results and a nextPageToken if applicable. properties: - webhookId: - description: The webhookId field. - readOnly: false - type: string - webhookInstanceId: - description: The webhookInstanceId field. - readOnly: false - type: string - webhookName: - description: The webhookName field. - readOnly: false - type: string - webhookUrl: - description: The webhookUrl field. - readOnly: false + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + list: + description: The list of results containing up to X results, where X is the page size defined in the request. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementView' + type: + - array + - "null" + nextPageToken: + description: |- + The nextPageToken is shown for the next page if the number of results is larger than the max page size. + The server returns one page of results and the nextPageToken until all results are retreived. + To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. type: string - title: Task Audit Webhook Triggered + title: Request Catalog Management Service List Entitlements Per Catalog Response type: object - x-speakeasy-name-override: TaskAuditWebhookTriggered - c1.api.task.v1.TaskExpandMask: - description: The task expand mask is an array of strings that specifes the related objects the requester wishes to have returned when making a request where the expand mask is part of the input. Use '*' to view all possible responses. + x-speakeasy-name-override: RequestCatalogManagementServiceListEntitlementsPerCatalogResponse + c1.api.requestcatalog.v1.RequestCatalogManagementServiceListResponse: + description: The RequestCatalogManagementServiceListResponse message. properties: - paths: - description: A list of paths to expand in the response. May be any combination of "*", "access_review_id", "user_id", "created_by_user_id", "app_id", "app_user_id", "app_entitlement_ids", "step_approver_ids", "approver_ids", "identity_user_id", "insight_ids", "app_user_last_usage", "entitlement_scope_bindings", and "scope_role_resources". + expanded: + description: List of serialized related objects. items: - type: string - nullable: true - readOnly: false - type: array - title: Task Expand Mask - type: object - x-speakeasy-name-override: TaskExpandMask - c1.api.task.v1.TaskGrantSource: - description: The TaskGrantSource message tracks which external URL was the source of the specificed grant ticket. - properties: - conversationId: - description: The ID of the conversation that created this ticket - readOnly: false - type: string - externalUrl: - description: The external url source of the grant ticket. - readOnly: false - type: string - integrationId: - description: The integration id for the source of tickets. - readOnly: false - type: string - isExtension: - description: Whether the grant task is an extension task. - readOnly: false - type: boolean - requestId: - description: the request id for the grant ticket if the source is external - readOnly: false + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + list: + description: The list of request catalogs. + items: + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogView' + type: + - array + - "null" + nextPageToken: + description: |- + The nextPageToken is shown for the next page if the number of results is larger than the max page size. + The server returns one page of results and the nextPageToken until all results are retreived. + To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. type: string - title: Task Grant Source + title: Request Catalog Management Service List Response type: object - x-speakeasy-name-override: TaskGrantSource - c1.api.task.v1.TaskRef: - description: This object references a task by ID. + x-speakeasy-name-override: RequestCatalogManagementServiceListResponse + c1.api.requestcatalog.v1.RequestCatalogManagementServiceRemoveAccessEntitlementsRequestInput: + description: |- + The RequestCatalogManagementServiceRemoveAccessEntitlementsRequest message is used to remove access entitlements from a request catalog. + The access entitlements are used to determine which users can view the request catalog. properties: - id: - description: The ID of the referenced Task - readOnly: false - type: string - title: Task Ref + accessEntitlements: + description: The list of access entitlements to remove from the catalog. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + title: Request Catalog Management Service Remove Access Entitlements Request type: object - x-speakeasy-name-override: TaskRef - c1.api.task.v1.TaskRevocationTarget: - description: An ancestor entitlement that will be revoked as part of an inheritance revocation. - properties: - entitlementRef: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' - title: Task Revocation Target + x-speakeasy-entity: Access_Profile_Visibility_Bindings + x-speakeasy-name-override: RequestCatalogManagementServiceRemoveAccessEntitlementsRequest + c1.api.requestcatalog.v1.RequestCatalogManagementServiceRemoveAccessEntitlementsResponse: + description: Empty response with a status code indicating success. + title: Request Catalog Management Service Remove Access Entitlements Response type: object - x-speakeasy-name-override: TaskRevocationTarget - c1.api.task.v1.TaskRevokeSource: - description: | - The TaskRevokeSource message indicates the source of the revoke task is one of expired, nonUsage, request, or review. - - This message contains a oneof named origin. Only a single field of the following list may be set at a time: - - review - - request - - expired - - nonUsage + x-speakeasy-name-override: RequestCatalogManagementServiceRemoveAccessEntitlementsResponse + c1.api.requestcatalog.v1.RequestCatalogManagementServiceRemoveAppEntitlementsRequestInput: + description: The RequestCatalogManagementServiceRemoveAppEntitlementsRequest message is used to remove app entitlements from a request catalog. properties: - expired: - $ref: '#/components/schemas/c1.api.task.v1.TaskRevokeSourceExpired' - nonUsage: - $ref: '#/components/schemas/c1.api.task.v1.TaskRevokeSourceNonUsage' - request: - $ref: '#/components/schemas/c1.api.task.v1.TaskRevokeSourceRequest' - review: - $ref: '#/components/schemas/c1.api.task.v1.TaskRevokeSourceReview' - title: Task Revoke Source + appEntitlements: + description: The list of app entitlements to remove from the catalog. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + title: Request Catalog Management Service Remove App Entitlements Request type: object - x-speakeasy-name-override: TaskRevokeSource - c1.api.task.v1.TaskRevokeSourceExpired: - description: The TaskRevokeSourceExpired message indicates that the source of the revoke task is due to a grant expiring. - nullable: true - properties: - expiredAt: - format: date-time - readOnly: false - type: string - title: Task Revoke Source Expired + x-speakeasy-entity: Access_Profile_Requestable_Entries + x-speakeasy-name-override: RequestCatalogManagementServiceRemoveAppEntitlementsRequest + c1.api.requestcatalog.v1.RequestCatalogManagementServiceRemoveAppEntitlementsResponse: + description: Empty response with a status code indicating success + title: Request Catalog Management Service Remove App Entitlements Response type: object - x-speakeasy-name-override: TaskRevokeSourceExpired - c1.api.task.v1.TaskRevokeSourceNonUsage: - description: The TaskRevokeSourceNonUsage message indicates that the source of the revoke task is due to the grant not being used. - nullable: true + x-speakeasy-name-override: RequestCatalogManagementServiceRemoveAppEntitlementsResponse + c1.api.requestcatalog.v1.RequestCatalogManagementServiceUpdateAppEntitlementsRequestInput: + description: The RequestCatalogManagementServiceUpdateAppEntitlementsRequest object is used to update app entitlements to a request catalog id. properties: - expiresAt: - format: date-time - readOnly: false - type: string - lastLogin: - format: date-time - readOnly: false - type: string - title: Task Revoke Source Non Usage + appEntitlements: + description: The entitlement to get from the request catalog. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + required: + - appEntitlements + title: Request Catalog Management Service Update App Entitlements Request type: object - x-speakeasy-name-override: TaskRevokeSourceNonUsage - c1.api.task.v1.TaskRevokeSourceRequest: - description: The TaskRevokeSourceRequest message indicates that the source of the revoke task was a request. - nullable: true - properties: - requestUserId: - description: The ID of the user who initiated the revoke request. - readOnly: false - type: string - title: Task Revoke Source Request + x-speakeasy-entity: Access_Profile_Requestable_Entries + x-speakeasy-name-override: RequestCatalogManagementServiceUpdateAppEntitlementsRequest + c1.api.requestcatalog.v1.RequestCatalogManagementServiceUpdateAppEntitlementsResponse: + description: The RequestCatalogManagementServiceUpdateAppEntitlementsResponse object is is the response from UpdateAppEntitlements endpoint. + title: Request Catalog Management Service Update App Entitlements Response type: object - x-speakeasy-name-override: TaskRevokeSourceRequest - c1.api.task.v1.TaskRevokeSourceReview: - description: The TaskRevokeSourceReview message tracks which access review was the source of the specificed revoke ticket. - nullable: true + x-speakeasy-name-override: RequestCatalogManagementServiceUpdateAppEntitlementsResponse + c1.api.requestcatalog.v1.RequestCatalogManagementServiceUpdateRequestInput: + description: Update a request catalog object by ID. properties: - accessReviewId: - description: The ID of the access review associated with the revoke task. - readOnly: false - type: string - certTicketId: - description: The ID of the certify ticket that was denied and created this revoke task. - readOnly: false - type: string - title: Task Revoke Source Review + catalog: + oneOf: + - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalog' + - type: "null" + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogExpandMask' + - type: "null" + updateMask: + type: + - string + - "null" + title: Request Catalog Management Service Update Request type: object - x-speakeasy-name-override: TaskRevokeSourceReview - c1.api.task.v1.TaskSearchRequest: - description: Search for tasks based on a plethora filters. + x-speakeasy-name-override: RequestCatalogManagementServiceUpdateRequest + c1.api.requestcatalog.v1.RequestCatalogSearchServiceSearchEntitlementsRequest: + description: The RequestCatalogSearchServiceSearchEntitlementsRequest searches entitlements, but only ones that are available to you through the open catalogs. properties: - accessReviewIds: - description: Search tasks that belong to any of the access reviews included in this list. - items: - type: string - nullable: true - readOnly: false - type: array - accountOwnerIds: - description: Search tasks that have any of these account owners. - items: - type: string - nullable: true - readOnly: false - type: array - accountTypes: - description: The accountTypes field. - items: - enum: - - APP_USER_TYPE_UNSPECIFIED - - APP_USER_TYPE_USER - - APP_USER_TYPE_SERVICE_ACCOUNT - - APP_USER_TYPE_SYSTEM_ACCOUNT - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - actorId: - description: Search tasks that have this actor ID. - readOnly: false - type: string - appEntitlementIds: - description: Search tasks that have any of these app entitlement IDs. - items: - type: string - nullable: true - readOnly: false - type: array - appResourceIds: - description: Search tasks that have any of these app resource IDs. - items: - type: string - nullable: true - readOnly: false - type: array - appResourceTypeIds: - description: Search tasks that have any of these app resource type IDs. - items: - type: string - nullable: true - readOnly: false - type: array - appUserSubjectIds: - description: Search tasks that have any of these app users as subjects. - items: - type: string - nullable: true - readOnly: false - type: array - applicationIds: - description: Search tasks that have any of these apps as targets. - items: - type: string - nullable: true - readOnly: false - type: array - assignedOrStepApproverUserId: - description: Search tasks that are currently assigned to this user, or that are closed and were previously approved by this user. - readOnly: false - type: string - assigneesInIds: - description: Search tasks by List of UserIDs which are currently assigned these Tasks - items: - type: string - nullable: true - readOnly: false - type: array - certifyOutcomes: - description: Search tasks by certify outcome - items: - enum: - - CERTIFY_OUTCOME_UNSPECIFIED - - CERTIFY_OUTCOME_CERTIFIED - - CERTIFY_OUTCOME_DECERTIFIED - - CERTIFY_OUTCOME_ERROR - - CERTIFY_OUTCOME_CANCELLED - - CERTIFY_OUTCOME_WAIT_TIMED_OUT - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - createdAfter: - format: date-time - readOnly: false - type: string - createdBefore: - format: date-time - readOnly: false + appDisplayName: + description: Search entitlements that belong to this app name (exact match). type: string - currentStep: - description: Search tasks that have this type of step as the current step. - enum: - - TASK_SEARCH_CURRENT_STEP_UNSPECIFIED - - TASK_SEARCH_CURRENT_STEP_APPROVAL - - TASK_SEARCH_CURRENT_STEP_PROVISION - readOnly: false + entitlementAlias: + description: Search for entitlements with this alias (exact match). type: string - x-speakeasy-unknown-values: allow - emergencyStatus: - description: Search tasks that are or are not emergency access. + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementExpandMask' + - type: "null" + grantedStatus: + description: Search entitlements with this granted status for your signed in user. enum: - UNSPECIFIED - ALL - - NON_EMERGENCY - - EMERGENCY - readOnly: false + - GRANTED + - NOT_GRANTED type: string x-speakeasy-unknown-values: allow - excludeAppEntitlementIds: - description: Search tasks that do not have any of these app entitlement IDs. - items: - type: string - nullable: true - readOnly: false - type: array - excludeAppResourceTypeIds: - description: Search tasks that do not have any of these app resource type IDs. - items: - type: string - nullable: true - readOnly: false - type: array - excludeApplicationIds: - description: Search tasks that do NOT have any of these apps as targets. - items: - type: string - nullable: true - readOnly: false - type: array - excludeIds: - description: Exclude Specific TaskIDs from this serach result. - items: - type: string - nullable: true - readOnly: false - type: array - expandMask: - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' - grantOutcomes: - description: Search tasks by grant outcome - items: - enum: - - GRANT_OUTCOME_UNSPECIFIED - - GRANT_OUTCOME_GRANTED - - GRANT_OUTCOME_DENIED - - GRANT_OUTCOME_ERROR - - GRANT_OUTCOME_CANCELLED - - GRANT_OUTCOME_WAIT_TIMED_OUT - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - includeActedAfter: - format: date-time - readOnly: false - type: string includeDeleted: - description: Whether or not to include deleted tasks. - readOnly: false + description: Include deleted entitlements type: boolean - myWorkUserIds: - description: Search tasks where the user would see this task in the My Work section - items: - type: string - nullable: true - readOnly: false - type: array - olderThanDuration: - format: duration - readOnly: false - type: string - openerIds: - description: Search tasks that were created by any of the users in this array. - items: - type: string - nullable: true - readOnly: false - type: array - openerOrSubjectUserId: - description: Search tasks that were opened by this user, or that the user is the subject of. - readOnly: false - type: string - outcomeAfter: - format: date-time - readOnly: false - type: string - outcomeBefore: - format: date-time - readOnly: false - type: string pageSize: description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) format: int32 - readOnly: false type: integer pageToken: description: The pageToken field. - readOnly: false - type: string - pendingActionFilter: - description: |- - Filter tasks by pending action status. Only applies when exactly one access_review_id is specified. - Requires the REVIEWS_PENDING_ACTIONS feature flag to be enabled. - enum: - - PENDING_ACTION_FILTER_UNSPECIFIED - - PENDING_ACTION_FILTER_WITH_PENDING - - PENDING_ACTION_FILTER_WITHOUT_PENDING - readOnly: false type: string - x-speakeasy-unknown-values: allow - previouslyActedOnIds: - description: Search tasks that were acted on by any of these users. - items: - type: string - nullable: true - readOnly: false - type: array query: - description: Fuzzy search tasks by display name, description, or ID. - readOnly: false - type: string - refs: - description: Query tasks by display name, description, or numeric ID. - items: - $ref: '#/components/schemas/c1.api.task.v1.TaskRef' - nullable: true - readOnly: false - type: array - requireApprovalReason: - description: Filter tasks where the current approval step requires an approval reason. - readOnly: false - type: boolean - requireDenialReason: - description: Filter tasks where the current approval step requires a denial reason. - readOnly: false - type: boolean - revokeOutcomes: - description: Search tasks by revoke outcome - items: - enum: - - REVOKE_OUTCOME_UNSPECIFIED - - REVOKE_OUTCOME_REVOKED - - REVOKE_OUTCOME_DENIED - - REVOKE_OUTCOME_ERROR - - REVOKE_OUTCOME_CANCELLED - - REVOKE_OUTCOME_WAIT_TIMED_OUT - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - sortBy: - description: Sort tasks in a specific order. - enum: - - TASK_SEARCH_SORT_BY_UNSPECIFIED - - TASK_SEARCH_SORT_BY_ACCOUNT - - TASK_SEARCH_SORT_BY_RESOURCE - - TASK_SEARCH_SORT_BY_ACCOUNT_OWNER - - TASK_SEARCH_SORT_BY_REVERSE_TICKET_ID - - TASK_SEARCH_SORT_BY_TICKET_ID - - TASK_SEARCH_SORT_BY_CREATED_AT - - TASK_SEARCH_SORT_BY_REVERSE_CREATED_AT - - TASK_SEARCH_SORT_BY_APP_RESOURCE_ID_AND_APP_ENTITLEMENT - readOnly: false + description: Fuzzy search the display name of resource types. type: string - x-speakeasy-unknown-values: allow - stepApprovalTypes: - description: Search tasks that have a current policy step of this type - items: - enum: - - STEP_APPROVAL_TYPE_UNSPECIFIED - - STEP_APPROVAL_TYPE_USERS - - STEP_APPROVAL_TYPE_MANAGER - - STEP_APPROVAL_TYPE_APP_OWNERS - - STEP_APPROVAL_TYPE_GROUP - - STEP_APPROVAL_TYPE_SELF - - STEP_APPROVAL_TYPE_ENTITLEMENT_OWNERS - - STEP_APPROVAL_TYPE_EXPRESSION - - STEP_APPROVAL_TYPE_WEBHOOK - - STEP_APPROVAL_TYPE_RESOURCE_OWNERS - - STEP_APPROVAL_TYPE_AGENT - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - subjectIds: - description: Search tasks where these users are the subject. - items: - type: string - nullable: true - readOnly: false - type: array - taskStates: - description: Search tasks with this task state. - items: - enum: - - TASK_STATE_UNSPECIFIED - - TASK_STATE_OPEN - - TASK_STATE_CLOSED - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - taskTypes: - description: Search tasks with this task type. This is a oneOf, and needs an object, which can be empty, to sort. - items: - $ref: '#/components/schemas/c1.api.task.v1.TaskType' - nullable: true - readOnly: false - type: array - userEmploymentStatuses: - description: The userEmploymentStatuses field. - items: - type: string - nullable: true - readOnly: false - type: array - title: Task Search Request + title: Request Catalog Search Service Search Entitlements Request type: object - x-speakeasy-name-override: TaskSearchRequest - c1.api.task.v1.TaskSearchResponse: - description: The TaskSearchResponse message contains a list of results and a nextPageToken if applicable. + x-speakeasy-name-override: RequestCatalogSearchServiceSearchEntitlementsRequest + c1.api.requestcatalog.v1.RequestCatalogSearchServiceSearchEntitlementsResponse: + description: The RequestCatalogSearchServiceSearchEntitlementsResponse message contains a list of results and a nextPageToken if applicable. properties: expanded: - description: The list of results containing up to X results, where X is the page size defined in the request. + description: List of serialized related objects. items: additionalProperties: true description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. @@ -25797,16693 +30976,34643 @@ components: '@type': description: The type of the serialized message. type: string - readOnly: false type: object - nullable: true - readOnly: false - type: array + type: + - array + - "null" list: - description: List of serialized related objects. + description: The list of results containing up to X results, where X is the page size defined in the request. items: - $ref: '#/components/schemas/c1.api.task.v1.TaskView' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.requestcatalog.v1.AppEntitlementWithUserBindings' + type: + - array + - "null" nextPageToken: description: |- The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false type: string - title: Task Search Response + title: Request Catalog Search Service Search Entitlements Response type: object - x-speakeasy-name-override: TaskSearchResponse - c1.api.task.v1.TaskServiceActionResponse: - description: A generic response for task action endpoints, containing the updated task and the ID of the action that was created. + x-speakeasy-name-override: RequestCatalogSearchServiceSearchEntitlementsResponse + c1.api.requestcatalog.v1.RequestCatalogView: + description: The request catalog view contains the serialized request catalog and paths to objects referenced by the request catalog. properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - taskView: - $ref: '#/components/schemas/c1.api.task.v1.TaskView' - ticketActionId: - description: The ID of the task action created by this request. - readOnly: false + accessEntitlementsPath: + description: JSONPATH expression indicating the location of the access entitlement objects, that the request catalog allows users to request, in the array. type: string - title: Task Service Action Response + createdByUserPath: + description: JSONPATH expression indicating the location of the User object, that created the request catalog, in the array. + type: string + memberCount: + description: Total number of the members of the catalog + format: int64 + type: string + requestCatalog: + oneOf: + - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalog' + - type: "null" + title: Request Catalog View type: object - x-speakeasy-name-override: TaskServiceActionResponse - c1.api.task.v1.TaskServiceCreateGrantRequest: - description: Create a grant task. + x-speakeasy-name-override: RequestCatalogView + c1.api.requestcatalog.v1.RequestableEntry: + description: A requestable entry in a catalog properties: - appEntitlementId: - description: The ID of the app entitlement to grant access to. - readOnly: false - type: string appId: - description: The ID of the app that is associated with the entitlement. - readOnly: false + description: The ID of the app that contains the entitlement type: string - appUserId: - description: The ID of the app user to grant access for. This field and identityUserId cannot both be set for a given request. - readOnly: false + catalogId: + description: The ID of the access profile (catalog) type: string - description: - description: The description of the request. - readOnly: false + entitlementId: + description: The ID of the entitlement type: string - emergencyAccess: - description: Boolean stating whether or not the task is marked as emergency access. - readOnly: false + title: Requestable Entry + type: object + x-speakeasy-name-override: RequestableEntry + c1.api.requestcatalog.v1.ResumePausedBundleAutomationRequestInput: + description: The request message for resuming a paused bundle automation. + title: Resume Paused Bundle Automation Request + type: object + x-speakeasy-name-override: ResumePausedBundleAutomationRequest + c1.api.requestcatalog.v1.ResumePausedBundleAutomationResponse: + description: The response message for resuming a paused bundle automation. + title: Resume Paused Bundle Automation Response + type: object + x-speakeasy-name-override: ResumePausedBundleAutomationResponse + c1.api.requestcatalog.v1.SetBundleAutomationRequestInput: + description: | + The request message for creating or updating a bundle automation rule on a catalog. + + This message contains a oneof named conditions. Only a single field of the following list may be set at a time: + - entitlements + - cel + properties: + cel: + oneOf: + - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomationRuleCEL' + - type: "null" + createTasks: + description: Whether to create access request tasks for matched users instead of granting directly. type: boolean - expandMask: - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' - grantDuration: - format: duration - readOnly: false - type: string - identityUserId: - description: The ID of the user associated with the app user we are granting access for. This field cannot be set if appUserID is also set. - readOnly: false + disableCircuitBreaker: + description: Whether to disable the circuit breaker that pauses the automation when excessive membership changes are detected. + type: boolean + enabled: + description: Whether the automation should actively run on its schedule. + type: boolean + enforceOnSmallProfiles: + description: |- + When true, the circuit breaker is evaluated even on profiles below the + tenant min-members floor. Defaults to false. + type: boolean + entitlements: + oneOf: + - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomationRuleEntitlement' + - type: "null" + removedMembersThresholdPercent: + description: |- + Per-automation override for the removed-members percent that trips the + circuit breaker (1-100). 0 / unset means inherit the tenant default. + format: int64 type: string - requestData: - additionalProperties: true - readOnly: false - type: object - source: - $ref: '#/components/schemas/c1.api.task.v1.TaskGrantSource' - required: - - appId - - appEntitlementId - title: Task Service Create Grant Request + title: Set Bundle Automation Request type: object - x-speakeasy-name-override: TaskServiceCreateGrantRequest - c1.api.task.v1.TaskServiceCreateGrantResponse: - description: The TaskServiceCreateGrantResponse returns a task view which has a task including JSONPATHs to the expanded items in the expanded array. + x-speakeasy-name-override: SetBundleAutomationRequest + c1.api.role_mining_management.v1.CohortHintInput: + description: The CohortHintInput message. properties: - expanded: - description: List of serialized related objects. + attribute: + description: The user attribute name to use for cohort grouping (e.g., "department", "job_title"). + type: string + priority: + description: Relative priority of this hint. Higher values cause the analysis to weight this attribute more heavily. + format: int32 + type: integer + values: + description: Specific attribute values to focus on. If empty, all values for the attribute are considered. items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: true - type: object - nullable: true - readOnly: true - type: array - taskView: - $ref: '#/components/schemas/c1.api.task.v1.TaskView' - title: Task Service Create Grant Response + type: string + type: + - array + - "null" + title: Cohort Hint Input type: object - x-speakeasy-name-override: TaskServiceCreateGrantResponse - c1.api.task.v1.TaskServiceCreateOffboardingRequest: - description: Create an offboarding task. + x-speakeasy-name-override: CohortHintInput + c1.api.role_mining_management.v1.CohortHintView: + description: The CohortHintView message. properties: - description: - description: The description of the offboarding request. - readOnly: false - type: string - expandMask: - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' - subjectUserId: - description: The ID of the user to offboard. - readOnly: false + attribute: + description: The user attribute name used for cohort grouping. type: string - title: Task Service Create Offboarding Request + priority: + description: Relative priority of this hint. + format: int32 + type: integer + values: + description: The specific attribute values targeted by this hint. + items: + type: string + type: + - array + - "null" + title: Cohort Hint View type: object - x-speakeasy-name-override: TaskServiceCreateOffboardingRequest - c1.api.task.v1.TaskServiceCreateOffboardingResponse: - description: The TaskServiceCreateOffboardingResponse returns the created offboarding task with optional expanded related objects. + x-speakeasy-name-override: CohortHintView + c1.api.role_mining_management.v1.CohortUserWithCoverage: + description: CohortUserWithCoverage pairs a user with the count of selected entitlements they hold. properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: true - type: object - nullable: true - readOnly: true - type: array - taskView: - $ref: '#/components/schemas/c1.api.task.v1.TaskView' - title: Task Service Create Offboarding Response + coveredCount: + description: Number of selected_entitlements that this user currently holds. + format: int32 + type: integer + user: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.User' + - type: "null" + title: Cohort User With Coverage type: object - x-speakeasy-name-override: TaskServiceCreateOffboardingResponse - c1.api.task.v1.TaskServiceCreateRevokeRequest: - description: Create a revoke task. + x-speakeasy-name-override: CohortUserWithCoverage + c1.api.role_mining_management.v1.CreateAccessProfileFromCohortRequest: + description: The CreateAccessProfileFromCohortRequest message. properties: - appEntitlementId: - description: The ID of the app entitlement to revoke access to. - readOnly: false - type: string - appId: - description: The ID of the app associated with the entitlement. - readOnly: false - type: string - appUserId: - description: The ID of the app user to revoke access from. This field and identityUserId cannot both be set for a given request. - readOnly: false + celExpression: + description: |- + Optional CEL expression for dynamic membership. When non-empty, used + instead of auto-generating from profile_filters. type: string + createTasks: + description: |- + If true, the automation will create JIT tasks for access changes. + If false, users are synced to membership without creating tasks. + type: boolean description: - description: The description of the request. - readOnly: false + description: Description for the access profile. type: string - expandMask: - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' - identityUserId: - description: The ID of the user associated with the app user we are revoking access from. This field cannot be set if appUserID is also set. - readOnly: false + displayName: + description: Display name for the access profile. type: string - required: - - appId - - appEntitlementId - title: Task Service Create Revoke Request - type: object - x-speakeasy-name-override: TaskServiceCreateRevokeRequest - c1.api.task.v1.TaskServiceCreateRevokeResponse: - description: The TaskServiceCreateRevokeResponse returns a task view which has a task including JSONPATHs to the expanded items in the expanded array. - properties: - expanded: - description: List of serialized related objects. + enableAutomation: + description: If true, enable the dynamic membership automation immediately. + type: boolean + entitlements: + description: Entitlements to add to the access profile. items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - taskView: - $ref: '#/components/schemas/c1.api.task.v1.TaskView' - title: Task Service Create Revoke Response - type: object - x-speakeasy-name-override: TaskServiceCreateRevokeResponse - c1.api.task.v1.TaskServiceGetResponse: - description: The TaskServiceGetResponse returns a task view which has a task including JSONPATHs to the expanded items in the expanded array. - properties: - expanded: - description: List of serialized related objects. + $ref: '#/components/schemas/c1.mcp.role_mining.v1.CohortEntitlement' + type: + - array + - "null" + profileFilters: + description: Profile filters defining the cohort for dynamic membership. items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: true - type: object - nullable: true - readOnly: true - type: array - taskView: - $ref: '#/components/schemas/c1.api.task.v1.TaskView' - title: Task Service Get Response - type: object - x-speakeasy-name-override: TaskServiceGetResponse - c1.api.task.v1.TaskType: - description: | - Task Type provides configuration for the type of task: certify, grant, or revoke - - This message contains a oneof named task_type. Only a single field of the following list may be set at a time: - - grant - - revoke - - certify - - offboarding - - action - - finding - properties: - action: - $ref: '#/components/schemas/c1.api.task.v1.TaskTypeAction' - certify: - $ref: '#/components/schemas/c1.api.task.v1.TaskTypeCertify' - finding: - $ref: '#/components/schemas/c1.api.task.v1.TaskTypeFinding' - grant: - $ref: '#/components/schemas/c1.api.task.v1.TaskTypeGrant' - offboarding: - $ref: '#/components/schemas/c1.api.task.v1.TaskTypeOffboarding' - revoke: - $ref: '#/components/schemas/c1.api.task.v1.TaskTypeRevoke' - title: Task Type + $ref: '#/components/schemas/c1.mcp.role_mining.v1.ProfileFilter' + type: + - array + - "null" + suggestionId: + description: Optional suggestion ID to mark as accepted after creating the profile. + type: string + title: Create Access Profile From Cohort Request type: object - x-speakeasy-name-override: TaskType - c1.api.task.v1.TaskTypeAction: - description: | - The TaskTypeAction message. - - This message contains a oneof named target_object. Only a single field of the following list may be set at a time: - - scopeRole - nullable: true + x-speakeasy-name-override: CreateAccessProfileFromCohortRequest + c1.api.role_mining_management.v1.CreateAccessProfileFromCohortResponse: + description: The CreateAccessProfileFromCohortResponse message. properties: - actionId: - description: |- - The ID of the admin-authored action to execute. Empty for synthesized - action tickets (e.g. scope-role grants) — those carry dispatch - configuration on action_instance and target_object instead. - readOnly: true - type: string - actionInstance: - $ref: '#/components/schemas/c1.api.task.v1.ActionInstance' - displayName: - description: |- - Display label captured on the action snapshot at ticket-creation time. - Stable under admin renames to a referenced Action row and populated for - synthesized tickets that have no Action row at all. UI reads this to - render the task title without an Action fetch. - readOnly: true + accessProfileId: + description: The ID of the created access profile. type: string - formValues: - additionalProperties: true - readOnly: true - type: object - outcome: - description: The outcome field. - enum: - - ACTION_OUTCOME_UNSPECIFIED - - ACTION_OUTCOME_SUCCESS - - ACTION_OUTCOME_DENIED - - ACTION_OUTCOME_ERROR - - ACTION_OUTCOME_CANCELLED - readOnly: true + celExpression: + description: The CEL expression generated for dynamic membership. type: string - x-speakeasy-unknown-values: allow - outcomeTime: + title: Create Access Profile From Cohort Response + type: object + x-speakeasy-name-override: CreateAccessProfileFromCohortResponse + c1.api.role_mining_management.v1.CustomAnalysisResultView: + description: CustomAnalysisResultView is a lightweight summary of a past custom analysis run. + properties: + cohortSize: + description: Number of users in the cohort. + format: int32 + type: integer + completedAt: format: date-time - readOnly: true + type: + - string + - "null" + createdAt: + format: date-time + type: + - string + - "null" + errorMessage: + description: Error message if the analysis failed, empty on success. type: string - scopeRole: - $ref: '#/components/schemas/c1.api.task.v1.ScopeRole' - type: - description: |- - Flavor of action the ticket represents — mirrors the snapshot's - target_ref variant. + id: + description: Unique identifier for this custom analysis result. + type: string + profileFilters: + description: Profile filters that defined the cohort for this analysis. + items: + $ref: '#/components/schemas/c1.mcp.role_mining.v1.ProfileFilter' + type: + - array + - "null" + status: + description: Execution status of this analysis (e.g., running, completed, failed). enum: - - TYPE_UNSPECIFIED - - TYPE_GRANT - - TYPE_WORKFLOW - - TYPE_RESOURCE_ACTION - readOnly: true + - RUN_STATUS_UNSPECIFIED + - RUN_STATUS_RUNNING + - RUN_STATUS_COMPLETED + - RUN_STATUS_FAILED type: string x-speakeasy-unknown-values: allow - title: Task Type Action + suggestionsGenerated: + description: Number of role suggestions generated. + format: int32 + type: integer + title: Custom Analysis Result View type: object - x-speakeasy-name-override: TaskTypeAction - c1.api.task.v1.TaskTypeCertify: - description: The TaskTypeCertify message indicates that a task is a certify task and all related details. - nullable: true + x-speakeasy-name-override: CustomAnalysisResultView + c1.api.role_mining_management.v1.EntitlementRef: + description: EntitlementRef identifies an entitlement by application and entitlement ID. properties: - accessReviewId: - description: The ID of the access review. - readOnly: true - type: string - accessReviewSelection: - description: The ID of the specific access review object that owns this certify task. This is also set on a revoke task if the revoke task is created from the denied outcome of a certify task. - readOnly: true - type: string - appEntitlementId: - description: The ID of the app entitlement. - readOnly: true - type: string appId: - description: The ID of the app. - readOnly: true - type: string - appUserId: - description: The ID of the app user. - readOnly: true - type: string - identityUserId: - description: The ID of the user. - readOnly: true - type: string - outcome: - description: The outcome of the certification. - enum: - - CERTIFY_OUTCOME_UNSPECIFIED - - CERTIFY_OUTCOME_CERTIFIED - - CERTIFY_OUTCOME_DECERTIFIED - - CERTIFY_OUTCOME_ERROR - - CERTIFY_OUTCOME_CANCELLED - - CERTIFY_OUTCOME_WAIT_TIMED_OUT - readOnly: true + description: Application that owns the entitlement. type: string - x-speakeasy-unknown-values: allow - outcomeTime: - format: date-time - readOnly: true + entitlementId: + description: Entitlement within the application. type: string - title: Task Type Certify + title: Entitlement Ref type: object - x-speakeasy-name-override: TaskTypeCertify - c1.api.task.v1.TaskTypeFinding: - description: The TaskTypeFinding message. - nullable: true + x-speakeasy-name-override: EntitlementRef + c1.api.role_mining_management.v1.EvaluateEntitlementSelectionRequestInput: + description: |- + EvaluateEntitlementSelectionRequest selects analyzed entitlements using an + inclusive coverage cutoff plus optional manual overrides. + properties: + explicitlyExcluded: + description: Analyzed entitlements to exclude when they meet the cutoff. + items: + $ref: '#/components/schemas/c1.api.role_mining_management.v1.EntitlementRef' + type: + - array + - "null" + explicitlyIncluded: + description: Analyzed entitlements to include even when they fall below the cutoff. + items: + $ref: '#/components/schemas/c1.api.role_mining_management.v1.EntitlementRef' + type: + - array + - "null" + includeFacets: + description: Whether to return profile attribute facets for exact holders. + type: boolean + minimumCoverageBasisPoints: + description: Inclusive minimum entitlement coverage in basis points, where 8000 is 80%. + format: int32 + type: integer + title: Evaluate Entitlement Selection Request + type: object + x-speakeasy-name-override: EvaluateEntitlementSelectionRequest + c1.api.role_mining_management.v1.EvaluateEntitlementSelectionResponse: + description: |- + EvaluateEntitlementSelectionResponse contains the exact impact of the + resolved entitlement selection. properties: - findingId: - description: Reference to the source finding. - readOnly: true + coreHolderFacets: + description: Profile attribute facets narrowed to users who hold every selected entitlement. + items: + $ref: '#/components/schemas/c1.mcp.role_mining.v1.AttributeFacet' + type: + - array + - "null" + selectedEntitlementCount: + description: Number of entitlements in the resolved selection. + format: int32 + type: integer + usersWithAllEntitlements: + description: Exact number of cohort users who hold every selected entitlement. + format: int32 + type: integer + title: Evaluate Entitlement Selection Response + type: object + x-speakeasy-name-override: EvaluateEntitlementSelectionResponse + c1.api.role_mining_management.v1.GetCustomAnalysisResultResponse: + description: The GetCustomAnalysisResultResponse message. + properties: + appsAnalyzed: + description: The appsAnalyzed field. + format: int32 + type: integer + clusters: + description: Cluster results. + items: + $ref: '#/components/schemas/c1.mcp.role_mining.v1.EntitlementCluster' + type: + - array + - "null" + cohortSize: + description: The cohortSize field. + format: int32 + type: integer + cutoffImpactPoints: + description: Exact holder counts at each distinct inclusive entitlement coverage cutoff. + items: + $ref: '#/components/schemas/c1.mcp.role_mining.v1.EntitlementCutoffImpactPoint' + type: + - array + - "null" + entitlements: + description: Entitlement coverage results. + items: + $ref: '#/components/schemas/c1.mcp.role_mining.v1.CohortEntitlement' + type: + - array + - "null" + errorMessage: + description: The errorMessage field. type: string - findingType: - description: The finding type discriminator. - readOnly: true + facetUserCount: + description: The facetUserCount field. + format: int32 + type: integer + facets: + description: Facet results. + items: + $ref: '#/components/schemas/c1.mcp.role_mining.v1.AttributeFacet' + type: + - array + - "null" + id: + description: The id field. type: string - outcome: - description: The outcome field. + status: + description: The status field. enum: - - FINDING_TASK_OUTCOME_UNSPECIFIED - - FINDING_TASK_OUTCOME_REMEDIATED - - FINDING_TASK_OUTCOME_RISK_ACCEPTED - - FINDING_TASK_OUTCOME_CANCELLED - readOnly: true + - RUN_STATUS_UNSPECIFIED + - RUN_STATUS_RUNNING + - RUN_STATUS_COMPLETED + - RUN_STATUS_FAILED type: string x-speakeasy-unknown-values: allow - outcomeTime: - format: date-time - readOnly: true + title: Get Custom Analysis Result Response + type: object + x-speakeasy-name-override: GetCustomAnalysisResultResponse + c1.api.role_mining_management.v1.GetLatestRunResponse: + description: The GetLatestRunResponse message. + properties: + run: + oneOf: + - $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningManagementRun' + - type: "null" + title: Get Latest Run Response + type: object + x-speakeasy-name-override: GetLatestRunResponse + c1.api.role_mining_management.v1.GetRoleMiningConfigResponse: + description: The GetRoleMiningConfigResponse message. + properties: + config: + oneOf: + - $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningManagementConfig' + - type: "null" + title: Get Role Mining Config Response + type: object + x-speakeasy-name-override: GetRoleMiningConfigResponse + c1.api.role_mining_management.v1.GetSuggestionResponse: + description: The GetSuggestionResponse message. + properties: + suggestion: + oneOf: + - $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningManagementSuggestion' + - type: "null" + title: Get Suggestion Response + type: object + x-speakeasy-name-override: GetSuggestionResponse + c1.api.role_mining_management.v1.ListCustomAnalysisResultsResponse: + description: The ListCustomAnalysisResultsResponse message. + properties: + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.role_mining_management.v1.CustomAnalysisResultView' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - title: Task Type Finding + title: List Custom Analysis Results Response type: object - x-speakeasy-name-override: TaskTypeFinding - c1.api.task.v1.TaskTypeGrant: - description: The TaskTypeGrant message indicates that a task is a grant task and all related details. - nullable: true + x-speakeasy-name-override: ListCustomAnalysisResultsResponse + c1.api.role_mining_management.v1.ListRunsResponse: + description: The ListRunsResponse message. properties: - appEntitlementId: - description: The ID of the app entitlement. - readOnly: true + list: + description: The list of role mining analysis runs. + items: + $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningManagementRun' + type: + - array + - "null" + nextPageToken: + description: Token to retrieve the next page of results, empty if no more results. type: string - appId: - description: The ID of the app. - readOnly: true + title: List Runs Response + type: object + x-speakeasy-name-override: ListRunsResponse + c1.api.role_mining_management.v1.ListSuggestionsResponse: + description: The ListSuggestionsResponse message. + properties: + list: + description: The list of role mining suggestions. + items: + $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningManagementSuggestion' + type: + - array + - "null" + nextPageToken: + description: Token to retrieve the next page of results, empty if no more results. type: string - appUserId: - description: The ID of the app user. - readOnly: true + title: List Suggestions Response + type: object + x-speakeasy-name-override: ListSuggestionsResponse + c1.api.role_mining_management.v1.RoleMiningManagementConfig: + description: The RoleMiningManagementConfig message. + properties: + cohortHints: + description: Configured cohort hints that guide which user attributes the analysis prioritizes. + items: + $ref: '#/components/schemas/c1.api.role_mining_management.v1.CohortHintView' + type: + - array + - "null" + maxSuggestions: + description: Maximum number of suggestions the analysis will produce per run. + format: int32 + type: integer + minCohortSize: + description: Minimum number of users a cohort must contain to generate a suggestion. + format: int32 + type: integer + title: Role Mining Management Config + type: object + x-speakeasy-name-override: RoleMiningManagementConfig + c1.api.role_mining_management.v1.RoleMiningManagementRun: + description: The RoleMiningManagementRun message. + properties: + cohortsAnalyzed: + description: Number of user cohorts evaluated during the analysis. + format: int32 + type: integer + completedAt: + format: date-time + type: + - string + - "null" + createdAt: + format: date-time + type: + - string + - "null" + errorMessage: + description: Error message if the run failed, empty on success. type: string - grantDuration: - format: duration - readOnly: true + id: + description: Unique identifier for this analysis run. type: string - identityUserId: - description: The ID of the user. - readOnly: true + status: + description: Current execution status of this run (e.g., running, completed, failed). + enum: + - RUN_STATUS_UNSPECIFIED + - RUN_STATUS_RUNNING + - RUN_STATUS_COMPLETED + - RUN_STATUS_FAILED type: string - outcome: - description: The outcome of the grant. + x-speakeasy-unknown-values: allow + suggestionsGenerated: + description: Number of role suggestions produced by this run. + format: int32 + type: integer + totalUsers: + description: Total number of users evaluated during the analysis. + format: int32 + type: integer + triggerDetail: + description: Additional detail about the trigger, such as the user or schedule that initiated the run. + type: string + triggerType: + description: How this run was initiated (e.g., manual, scheduled). enum: - - GRANT_OUTCOME_UNSPECIFIED - - GRANT_OUTCOME_GRANTED - - GRANT_OUTCOME_DENIED - - GRANT_OUTCOME_ERROR - - GRANT_OUTCOME_CANCELLED - - GRANT_OUTCOME_WAIT_TIMED_OUT - readOnly: true + - TRIGGER_TYPE_UNSPECIFIED + - TRIGGER_TYPE_MANUAL + - TRIGGER_TYPE_UPLIFT_COMPLETION + - TRIGGER_TYPE_SCHEDULED + - TRIGGER_TYPE_DIRECTORY_MERGE type: string x-speakeasy-unknown-values: allow - outcomeTime: + updatedAt: format: date-time - readOnly: true - type: string - source: - $ref: '#/components/schemas/c1.api.task.v1.TaskGrantSource' - title: Task Type Grant + type: + - string + - "null" + title: Role Mining Management Run type: object - x-speakeasy-name-override: TaskTypeGrant - c1.api.task.v1.TaskTypeOffboarding: - description: The TaskTypeOffboarding message. - nullable: true + x-speakeasy-name-override: RoleMiningManagementRun + c1.api.role_mining_management.v1.RoleMiningManagementSuggestion: + description: The RoleMiningManagementSuggestion message. properties: - outcome: - description: The outcome field. - enum: - - OFFBOARDING_OUTCOME_UNSPECIFIED - - OFFBOARDING_OUTCOME_IN_PROGRESS - - OFFBOARDING_OUTCOME_DONE - - OFFBOARDING_OUTCOME_ERROR - - OFFBOARDING_OUTCOME_CANCELLED - readOnly: true - type: string - x-speakeasy-unknown-values: allow - outcomeTime: + avgCoverage: + description: Average fraction of suggested entitlements held by each user in the cohort. + type: number + cohortFilters: + description: The profile filters that define which users belong to this cohort. + items: + $ref: '#/components/schemas/c1.mcp.role_mining.v1.ProfileFilter' + type: + - array + - "null" + cohortSize: + description: Total number of users in the cohort matching the profile filters. + format: int32 + type: integer + confidence: + description: Overall confidence score for this suggestion, from 0.0 to 1.0. + type: number + createdAt: format: date-time - readOnly: true - type: string - subjectUserId: - description: The subjectUserId field. - readOnly: true + type: + - string + - "null" + createdCatalogId: + description: The ID of the access profile created when this suggestion was accepted, empty if not yet accepted. type: string - title: Task Type Offboarding - type: object - x-speakeasy-name-override: TaskTypeOffboarding - c1.api.task.v1.TaskTypeRevoke: - description: The TaskTypeRevoke message indicates that a task is a revoke task and all related details. - nullable: true - properties: - appEntitlementId: - description: The ID of the app entitlement. - readOnly: true + description: + description: A human-readable description of the proposed role and the cohort it serves. type: string - appId: - description: The ID of the app. - readOnly: true + dimensionCount: + description: Number of distinct attribute dimensions used to define the cohort. + format: int32 + type: integer + entitlements: + description: The entitlements that are commonly held by users in this cohort. + items: + $ref: '#/components/schemas/c1.mcp.role_mining.v1.CohortEntitlement' + type: + - array + - "null" + existingProfileMatches: + description: Existing access profiles that overlap with this suggestion. + items: + $ref: '#/components/schemas/c1.mcp.role_mining.v1.AccessProfileMatch' + type: + - array + - "null" + id: + description: Unique identifier for this suggestion. type: string - appUserId: - description: The ID of the app user. - readOnly: true + insights: + description: Human-readable insights explaining why this role was suggested. + items: + type: string + type: + - array + - "null" + lastGeneratedAt: + format: date-time + type: + - string + - "null" + runId: + description: The ID of the analysis run that produced this suggestion. type: string - identityUserId: - description: The ID of the user. - readOnly: true + suggestedName: + description: The suggested display name for the proposed role. type: string - outcome: - description: The outcome of the revoke. + suggestionState: + description: Current workflow state of this suggestion (e.g., pending, accepted, dismissed). enum: - - REVOKE_OUTCOME_UNSPECIFIED - - REVOKE_OUTCOME_REVOKED - - REVOKE_OUTCOME_DENIED - - REVOKE_OUTCOME_ERROR - - REVOKE_OUTCOME_CANCELLED - - REVOKE_OUTCOME_WAIT_TIMED_OUT - readOnly: true + - SUGGESTION_STATE_UNSPECIFIED + - SUGGESTION_STATE_NEW + - SUGGESTION_STATE_DISMISSED + - SUGGESTION_STATE_ACCEPTED type: string x-speakeasy-unknown-values: allow - outcomeTime: - format: date-time - readOnly: true - type: string - source: - $ref: '#/components/schemas/c1.api.task.v1.TaskRevokeSource' - title: Task Type Revoke - type: object - x-speakeasy-name-override: TaskTypeRevoke - c1.api.task.v1.TaskView: - description: Contains a task and JSONPATH expressions that describe where in the expanded array related objects are located. This view can be used to display a fully-detailed dashboard of task information. - properties: - accessReviewPath: - description: JSONPATH expression indicating the location of the AccessReview object in the expanded array - readOnly: true - type: string - appPath: - description: JSONPATH expression indicating the location of the App object in the expanded array - readOnly: true - type: string - appUserLastUsagePath: - description: JSONPATH expression indicating the location of the AppUser last usage timestamp in the expanded array - readOnly: true - type: string - appUserPath: - description: JSONPATH expression indicating the location of the AppUser object in the expanded array - readOnly: true - type: string - approversPath: - description: JSONPATH expression indicating the location of the ApproverUsers objects in the expanded array. These are the users who have approved or denied this task. - readOnly: true - type: string - createdByUserPath: - description: JSONPATH expression indicating the location of the object of the User that created the ticket in the expanded array - readOnly: true - type: string - entitlementsPath: - description: JSONPATH expression indicating the location of the Entitlements objects in the expanded array - readOnly: true - type: string - identityUserPath: - description: JSONPATH expression indicating the location of the User object of the User that this task is targeting in the expanded array. This is the user that is the identity when the target of a task is an app user. - readOnly: true - type: string - insightsPath: - description: JSONPATH expression indicating the location of the Insights objects in the expanded array - readOnly: true - type: string - resourceBindingsPath: - description: JSONPATH expression indicating the location of the EntitlementScopeBindingList object in the expanded array. - readOnly: true - type: string - roleResourcePath: - description: JSONPATH expression indicating the location of the role AppResource for a scope-role action task in the expanded array. - readOnly: true - type: string - scopeResourcePath: - description: JSONPATH expression indicating the location of the scope AppResource for a scope-role action task in the expanded array. - readOnly: true - type: string - stepApproversPath: - description: JSONPATH expression indicating the location of the StepApproverUsers objects in the expanded array - readOnly: true - type: string - task: - $ref: '#/components/schemas/c1.api.task.v1.Task' - userPath: - description: JSONPATH expression indicating the location of the User object in the expanded array. This is the user that is a direct target of the ticket without a specific relationship to a potentially non-existent app user. - readOnly: true - type: string - title: Task View - type: object - x-speakeasy-name-override: TaskView - c1.api.user.v1.ExpiringUserDelegationBinding: - description: The ExpiringUserDelegationBinding message. - properties: - createdAt: - format: date-time - readOnly: false - type: string - delegatedUserId: - description: The delegatedUserId field. - readOnly: false - type: string - deletedAt: - format: date-time - readOnly: false - type: string - expirationAt: - format: date-time - readOnly: false - type: string - startAt: - format: date-time - readOnly: false - type: string updatedAt: format: date-time - readOnly: false - type: string - userId: - description: The userId field. - readOnly: false - type: string - title: Expiring User Delegation Binding - type: object - x-speakeasy-name-override: ExpiringUserDelegationBinding - c1.api.user.v1.GetUserProfileTypesResponse: - description: GetUserProfileTypesResponse is the response containing the profile types for a user. - properties: - profileTypes: - description: The list of profile types associated with the user across their connected apps. - items: - $ref: '#/components/schemas/c1.api.profiletype.v1.ProfileType' - nullable: true - readOnly: false - type: array - title: Get User Profile Types Response + type: + - string + - "null" + usersWithAll: + description: Number of users in the cohort that hold all of the suggested entitlements. + format: int32 + type: integer + title: Role Mining Management Suggestion type: object - x-speakeasy-name-override: GetUserProfileTypesResponse - c1.api.user.v1.SearchUsersRequest: - description: Search for users based on some filters. + x-speakeasy-name-override: RoleMiningManagementSuggestion + c1.api.role_mining_management.v1.RoleMiningSearchSuggestionsRequest: + description: The RoleMiningSearchSuggestionsRequest message. properties: - delegateStatus: - description: Filter for users based on their delegate status. - enum: - - DELEGATE_STATUS_UNSPECIFIED - - DELEGATE_STATUS_HAS_DELEGATE - - DELEGATE_STATUS_NO_DELEGATE - readOnly: false - type: string - x-speakeasy-unknown-values: allow - delegatedUserIds: - description: Filter for users that have any of the delegated user IDs on this list. - items: - type: string - nullable: true - readOnly: false - type: array - departments: - description: Search for users that have any of the departments on this list. - items: - type: string - nullable: true - readOnly: false - type: array - email: - description: Search for users based on their email (exact match). - readOnly: false - type: string - excludeIds: - description: An array of users IDs to exclude from the results. - items: - type: string - nullable: true - readOnly: false - type: array - excludeOrigins: - description: Filter to exclude users with these origins. - items: - enum: - - USER_ORIGIN_UNSPECIFIED - - USER_ORIGIN_DIRECTORY - - USER_ORIGIN_LOCAL - - USER_ORIGIN_SYSTEM - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - excludeTypes: - description: An array of types to exclude from the results. - items: - enum: - - USER_TYPE_UNSPECIFIED - - USER_TYPE_SYSTEM - - USER_TYPE_HUMAN - - USER_TYPE_SERVICE - - USER_TYPE_AGENT - type: string - x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - expandMask: - $ref: '#/components/schemas/c1.api.user.v1.UserExpandMask' - ids: - description: Deprecated. Use refs array instead. - items: - type: string - nullable: true - readOnly: false - type: array - isDelegate: - description: Filter for users who are delegates of at least one other user. - readOnly: false - type: boolean - jobTitles: - description: Search for users that have any of the job titles on this list. - items: - type: string - nullable: true - readOnly: false - type: array - managerIds: - description: Search for users that have any of the manager IDs on this list. + cohortTypes: + description: Filter by cohort type (e.g. "department", "job_title", "manager"). items: type: string - nullable: true - readOnly: false - type: array - origins: - description: Filter to include only users with these origins. + type: + - array + - "null" + matchTypes: + description: Filter by match type against existing access profiles. items: enum: - - USER_ORIGIN_UNSPECIFIED - - USER_ORIGIN_DIRECTORY - - USER_ORIGIN_LOCAL - - USER_ORIGIN_SYSTEM + - ACCESS_PROFILE_MATCH_TYPE_UNSPECIFIED + - ACCESS_PROFILE_MATCH_TYPE_EXACT + - ACCESS_PROFILE_MATCH_TYPE_SUPERSET + - ACCESS_PROFILE_MATCH_TYPE_PARTIAL type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array + type: + - array + - "null" pageSize: - description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) + description: Maximum number of suggestions to return per page. format: int32 - readOnly: false type: integer pageToken: - description: The pageToken field. - readOnly: false + description: Pagination token from a previous response. type: string query: - description: Query the apps with a fuzzy search on display name and emails. - readOnly: false + description: Text search — matches against suggested_name, description, and cohort filter values. type: string - refs: - description: An array of user refs to restrict the return values to by ID. - items: - $ref: '#/components/schemas/c1.api.user.v1.UserRef' - nullable: true - readOnly: false - type: array - roleIds: - description: Search for users that have any of the role IDs on this list. - items: - type: string - nullable: true - readOnly: false - type: array - userStatuses: - description: Search for users that have any of the statuses on this list. This can only be ENABLED, DISABLED, and DELETED + states: + description: Filter by suggestion state. items: enum: - - UNKNOWN - - ENABLED - - DISABLED - - DELETED + - SUGGESTION_STATE_UNSPECIFIED + - SUGGESTION_STATE_NEW + - SUGGESTION_STATE_DISMISSED + - SUGGESTION_STATE_ACCEPTED type: string x-speakeasy-unknown-values: allow - nullable: true - readOnly: false - type: array - title: Search Users Request + type: + - array + - "null" + title: Role Mining Search Suggestions Request type: object - x-speakeasy-name-override: SearchUsersRequest - c1.api.user.v1.SearchUsersResponse: - description: The SearchUsersResponse message. + x-speakeasy-name-override: RoleMiningSearchSuggestionsRequest + c1.api.role_mining_management.v1.RoleMiningSearchSuggestionsResponse: + description: The RoleMiningSearchSuggestionsResponse message. properties: - expanded: - description: List of related objects - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array list: - description: The list of results containing up to X results, where X is the page size defined in the request + description: The list of matching role mining suggestions. items: - $ref: '#/components/schemas/c1.api.user.v1.UserView' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningManagementSuggestion' + type: + - array + - "null" nextPageToken: - description: The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + description: Token to retrieve the next page of results, empty if no more results. type: string - title: Search Users Response + title: Role Mining Search Suggestions Response type: object - x-speakeasy-name-override: SearchUsersResponse - c1.api.user.v1.SetExpiringUserDelegationBindingByAdminRequestInput: - description: SetExpiringUserDelegationBindingByAdminRequest is the request for an admin to set a temporary delegation binding for a user. + x-speakeasy-name-override: RoleMiningSearchSuggestionsResponse + c1.api.role_mining_management.v1.SearchCohortUsersRequestInput: + description: The SearchCohortUsersRequest message. properties: - delegatedUserId: - description: The ID of the user who will act as delegate. Empty string removes the delegation. - readOnly: false + pageSize: + description: Maximum number of users to return per page. + format: int32 + type: integer + pageToken: + description: Pagination token from a previous response. type: string - delegationExpireAt: - format: date-time - readOnly: false + profileFilters: + description: Additional profile filters to narrow the cohort user search. + items: + $ref: '#/components/schemas/c1.mcp.role_mining.v1.ProfileFilter' + type: + - array + - "null" + selectedEntitlements: + deprecated: true + description: |- + Deprecated. This endpoint no longer computes per-user coverage and + ignores this field. + items: + $ref: '#/components/schemas/c1.api.role_mining_management.v1.EntitlementRef' + type: + - array + - "null" + title: Search Cohort Users Request + type: object + x-speakeasy-name-override: SearchCohortUsersRequest + c1.api.role_mining_management.v1.SearchCohortUsersResponse: + description: The SearchCohortUsersResponse message. + properties: + list: + description: The list of users matching the cohort and optional filters. + items: + $ref: '#/components/schemas/c1.api.user.v1.User' + type: + - array + - "null" + nextPageToken: + description: Token to retrieve the next page of results, empty if no more results. type: string - delegationStartAt: - format: date-time - readOnly: false + usersWithCoverage: + deprecated: true + description: |- + Deprecated. This endpoint no longer computes per-user coverage; this + list is always empty. + items: + $ref: '#/components/schemas/c1.api.role_mining_management.v1.CohortUserWithCoverage' + type: + - array + - "null" + title: Search Cohort Users Response + type: object + x-speakeasy-name-override: SearchCohortUsersResponse + c1.api.role_mining_management.v1.TriggerAnalysisRequest: + description: The TriggerAnalysisRequest message. + title: Trigger Analysis Request + type: object + x-speakeasy-name-override: TriggerAnalysisRequest + c1.api.role_mining_management.v1.TriggerAnalysisResponse: + description: The TriggerAnalysisResponse message. + properties: + runId: + description: The ID of the newly created analysis run. type: string - title: Set Expiring User Delegation Binding By Admin Request + title: Trigger Analysis Response type: object - x-speakeasy-name-override: SetExpiringUserDelegationBindingByAdminRequest - c1.api.user.v1.SetExpiringUserDelegationBindingByAdminResponse: - description: SetExpiringUserDelegationBindingByAdminResponse is the response containing the created or updated delegation binding. + x-speakeasy-name-override: TriggerAnalysisResponse + c1.api.role_mining_management.v1.TriggerCustomAnalysisRequest: + description: The TriggerCustomAnalysisRequest message. properties: - item: - $ref: '#/components/schemas/c1.api.user.v1.ExpiringUserDelegationBinding' - title: Set Expiring User Delegation Binding By Admin Response + profileFilters: + description: The profileFilters field. + items: + $ref: '#/components/schemas/c1.mcp.role_mining.v1.ProfileFilter' + type: + - array + - "null" + title: Trigger Custom Analysis Request type: object - x-speakeasy-name-override: SetExpiringUserDelegationBindingByAdminResponse - c1.api.user.v1.User: - description: The User object provides all of the details for an user, as well as some configuration. + x-speakeasy-name-override: TriggerCustomAnalysisRequest + c1.api.role_mining_management.v1.TriggerCustomAnalysisResponse: + description: The TriggerCustomAnalysisResponse message. properties: - createdAt: - format: date-time - readOnly: true - type: string - delegatedUserId: - description: The id of the user to whom tasks will be automatically reassigned to. - readOnly: false - type: string - deletedAt: - format: date-time - readOnly: true - type: string - department: - description: The department which the user belongs to in the organization. - readOnly: true + id: + description: The id field. type: string - departmentSources: - description: A list of objects mapped based on department attribute mappings configured in the system. - items: - $ref: '#/components/schemas/c1.api.user.v1.UserAttributeMappingSource' - nullable: true - readOnly: true - type: array - directoryIds: - description: A list of unique ids that represent different directories. + title: Trigger Custom Analysis Response + type: object + x-speakeasy-name-override: TriggerCustomAnalysisResponse + c1.api.role_mining_management.v1.UpdateRoleMiningConfigRequest: + description: The UpdateRoleMiningConfigRequest message. + properties: + cohortHints: + description: Hints that guide the analysis to prioritize specific user attributes and values when forming cohorts. items: - type: string - nullable: true - readOnly: true - type: array - directoryStatus: - description: The status of the user in the directory. + $ref: '#/components/schemas/c1.api.role_mining_management.v1.CohortHintInput' + type: + - array + - "null" + maxSuggestions: + description: Maximum number of suggestions the analysis should produce per run. + format: int32 + type: integer + minCohortSize: + description: Minimum number of users a cohort must contain to generate a suggestion. + format: int32 + type: integer + title: Update Role Mining Config Request + type: object + x-speakeasy-name-override: UpdateRoleMiningConfigRequest + c1.api.role_mining_management.v1.UpdateRoleMiningConfigResponse: + description: The UpdateRoleMiningConfigResponse message. + properties: + config: + oneOf: + - $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningManagementConfig' + - type: "null" + title: Update Role Mining Config Response + type: object + x-speakeasy-name-override: UpdateRoleMiningConfigResponse + c1.api.role_mining_management.v1.UpdateSuggestionStateRequestInput: + description: The UpdateSuggestionStateRequest message. + properties: + createdCatalogId: + description: The ID of the access profile created from this suggestion, set when accepting. + type: string + state: + description: The new state to transition the suggestion to. enum: - - UNKNOWN - - ENABLED - - DISABLED - - DELETED - readOnly: true + - SUGGESTION_STATE_UNSPECIFIED + - SUGGESTION_STATE_NEW + - SUGGESTION_STATE_DISMISSED + - SUGGESTION_STATE_ACCEPTED type: string x-speakeasy-unknown-values: allow - directoryStatusSources: - description: A list of objects mapped based on directoryStatus attribute mappings configured in the system. - items: - $ref: '#/components/schemas/c1.api.user.v1.UserAttributeMappingSource' - nullable: true - readOnly: true - type: array + title: Update Suggestion State Request + type: object + x-speakeasy-name-override: UpdateSuggestionStateRequest + c1.api.role_mining_management.v1.UpdateSuggestionStateResponse: + description: The UpdateSuggestionStateResponse message. + properties: + suggestion: + oneOf: + - $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningManagementSuggestion' + - type: "null" + title: Update Suggestion State Response + type: object + x-speakeasy-name-override: UpdateSuggestionStateResponse + c1.api.search.v1.FacetCategory: + description: | + The FacetCategory indicates a grouping of facets by type. For example, facets "OnePassword" and "Okta" would group under an "Apps" category. + + This message contains a oneof named item. Only a single field of the following list may be set at a time: + - value + - range + properties: displayName: - description: The display name of the user. - readOnly: true + description: The display name of the category. type: string - email: - description: This is the user's email. - readOnly: true + iconUrl: + description: An icon for the category. type: string - emailSources: - description: A list of source data for the email attribute. - items: - $ref: '#/components/schemas/c1.api.user.v1.UserAttributeMappingSource' - nullable: true - readOnly: true - type: array - emails: - description: This is a list of all of the user's emails from app users. - items: - type: string - nullable: true - readOnly: true - type: array - employeeIdSources: - description: A list of source data for the employee IDs attribute. - items: - $ref: '#/components/schemas/c1.api.user.v1.UserAttributeMappingSource' - nullable: true - readOnly: true - type: array - employeeIds: - description: This is a list of all of the user's employee IDs from app users. - items: - type: string - nullable: true - readOnly: true - type: array - employmentStatus: - description: The users employment status. - readOnly: true - type: string - employmentStatusSources: - description: A list of objects mapped based on employmentStatus attribute mappings configured in the system. - items: - $ref: '#/components/schemas/c1.api.user.v1.UserAttributeMappingSource' - nullable: true - readOnly: true - type: array - employmentType: - description: The employment type of the user. - readOnly: true - type: string - employmentTypeSources: - description: A list of objects mapped based on employmentType attribute mappings configured in the system. - items: - $ref: '#/components/schemas/c1.api.user.v1.UserAttributeMappingSource' - nullable: true - readOnly: true - type: array - id: - description: A unique identifier of the user. - readOnly: true - type: string - jobTitle: - description: The job title of the user. - readOnly: true + param: + description: The param that is being set when checking a facet in this category. type: string - jobTitleSources: - description: A list of objects mapped based on jobTitle attribute mappings configured in the system. - items: - $ref: '#/components/schemas/c1.api.user.v1.UserAttributeMappingSource' - nullable: true - readOnly: true - type: array - managerIds: - description: A list of ids of the user's managers. - items: - type: string - nullable: true - readOnly: true - type: array - managerSources: - description: A list of objects mapped based on managerId attribute mappings configured in the system. - items: - $ref: '#/components/schemas/c1.api.user.v1.UserAttributeMappingSource' - nullable: true - readOnly: true - type: array - origin: - description: The origin of the user, describing who owns the user's lifecycle. - enum: - - USER_ORIGIN_UNSPECIFIED - - USER_ORIGIN_DIRECTORY - - USER_ORIGIN_LOCAL - - USER_ORIGIN_SYSTEM - readOnly: true + range: + oneOf: + - $ref: '#/components/schemas/c1.api.search.v1.FacetRangeItem' + - type: "null" + value: + oneOf: + - $ref: '#/components/schemas/c1.api.search.v1.FacetValueItem' + - type: "null" + title: Facet Category + type: object + x-speakeasy-name-override: FacetCategory + c1.api.search.v1.FacetRange: + description: The FacetRange message. + properties: + count: + description: The count of items in the range. + format: int64 type: string - x-speakeasy-unknown-values: allow - profile: - additionalProperties: true - readOnly: true - type: object - roleIds: - description: A list of unique identifiers that maps to ConductorOne's user roles let you assign users permissions tailored to the work they do in the software. - items: - type: string - nullable: true - readOnly: false - type: array - status: - description: The status of the user in the system. - enum: - - UNKNOWN - - ENABLED - - DISABLED - - DELETED - readOnly: false + displayName: + description: The display name of the range. type: string - x-speakeasy-unknown-values: allow - type: - description: The type of the user. - enum: - - USER_TYPE_UNSPECIFIED - - USER_TYPE_SYSTEM - - USER_TYPE_HUMAN - - USER_TYPE_SERVICE - - USER_TYPE_AGENT - readOnly: true + from: + description: The starting value of the range. + format: int64 type: string - x-speakeasy-unknown-values: allow - updatedAt: - format: date-time - readOnly: true + iconUrl: + description: The icon of the range. type: string - username: - description: This is the user's primary username. Typically sourced from the primary directory. - readOnly: true + to: + description: The ending value of the range. + format: int64 type: string - usernameSources: - description: A list of source data for the usernames attribute. - items: - $ref: '#/components/schemas/c1.api.user.v1.UserAttributeMappingSource' - nullable: true - readOnly: true - type: array - usernames: - description: This is a list of all of the user's usernames from app users. + title: Facet Range + type: object + x-speakeasy-name-override: FacetRange + c1.api.search.v1.FacetRangeItem: + description: The FacetRangeItem message. + properties: + ranges: + description: An array of facet ranges. items: - type: string - nullable: true - readOnly: true - type: array - title: User + $ref: '#/components/schemas/c1.api.search.v1.FacetRange' + type: + - array + - "null" + title: Facet Range Item type: object - x-speakeasy-name-override: User - c1.api.user.v1.UserAttributeMappingSource: - description: The UserAttributeMappingSource message. + x-speakeasy-name-override: FacetRangeItem + c1.api.search.v1.FacetValue: + description: A FacetValue message contains count and value of the facet entry. properties: - appId: - description: The appId field. - readOnly: false - type: string - appUserId: - description: The appUserId field. - readOnly: false + count: + description: The count of the values in this facet. + format: int64 type: string - appUserProfileAttributeKey: - description: The appUserProfileAttributeKey field. - readOnly: false + displayName: + description: The name of this facet. type: string - userAttributeMappingId: - description: The userAttributeMappingId field. - readOnly: false + iconUrl: + description: The icon for this facet. type: string value: - description: The value field. - readOnly: false + description: The value of this facet. type: string - title: User Attribute Mapping Source + title: Facet Value type: object - x-speakeasy-name-override: UserAttributeMappingSource - c1.api.user.v1.UserExpandMask: - description: |- - The user expand mask is used to indicate which related objects should be expanded in the response. - The supported paths are 'role_ids', 'manager_ids', 'delegated_user_id', 'directory_ids', and '*'. + x-speakeasy-name-override: FacetValue + c1.api.search.v1.FacetValueItem: + description: The FacetValueItem message. properties: - paths: - description: An array of paths to be expanded in the response. + values: + description: An array of facet values. items: - type: string - nullable: true - readOnly: false - type: array - title: User Expand Mask + $ref: '#/components/schemas/c1.api.search.v1.FacetValue' + type: + - array + - "null" + title: Facet Value Item type: object - x-speakeasy-name-override: UserExpandMask - c1.api.user.v1.UserRef: - description: A reference to a user. + x-speakeasy-name-override: FacetValueItem + c1.api.search.v1.Facets: + description: Indicates one value of a facet. properties: - id: - description: The id of the user. - readOnly: false + count: + description: The count of items in this facet. + format: int64 type: string - title: User Ref - type: object - x-speakeasy-name-override: UserRef - c1.api.user.v1.UserServiceGetResponse: - description: The UserServiceGetResponse returns a user view which has a user including JSONPATHs to the expanded items in the expanded array. - properties: - expanded: - description: List of serialized related objects. + facets: + description: The facet being referenced. items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - userView: - $ref: '#/components/schemas/c1.api.user.v1.UserView' - title: User Service Get Response + $ref: '#/components/schemas/c1.api.search.v1.FacetCategory' + type: + - array + - "null" + title: Facets type: object - x-speakeasy-name-override: UserServiceGetResponse - c1.api.user.v1.UserServiceListResponse: - description: The UserServiceListResponse message contains a list of results and a nextPageToken if applicable. + x-speakeasy-name-override: Facets + c1.api.secrets.v1.PaperSecret: + description: |- + PaperSecret is the API view of a secret (combines Vault + PaperVault fields). + The vault_id is the primary identifier (Vault.id). properties: - expanded: - description: List of serialized related objects. + ageSuite: + description: Exact Age suite used by the stored ciphertext. + enum: + - AGE_SUITE_UNSPECIFIED + - AGE_SUITE_X25519 + - AGE_SUITE_MLKEM768X25519 + type: string + x-speakeasy-unknown-values: allow + allowedEmails: + description: The allowedEmails field. items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - list: - description: The list of results containing up to X results, where X is the page size defined in the request + type: string + type: + - array + - "null" + allowedUserIds: + description: Access control items: - $ref: '#/components/schemas/c1.api.user.v1.UserView' - nullable: true - readOnly: false - type: array - nextPageToken: - description: |- - The nextPageToken is shown for the next page if the number of results is larger than the max page size. - The server returns one page of results and the nextPageToken until all results are retreived. - To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. - readOnly: false + type: string + type: + - array + - "null" + contentDeleted: + description: The contentDeleted field. + type: boolean + contentExpiresAt: + format: date-time + type: + - string + - "null" + contentReady: + description: Whether content has been set (text uploaded or file uploaded) + type: boolean + contentType: + description: The contentType field. type: string - title: User Service List Response - type: object - x-speakeasy-name-override: UserServiceListResponse - c1.api.user.v1.UserView: - description: The UserView object provides a user response object, as well as JSONPATHs to related objects provided by expanders. - properties: - delegatedUserPath: - description: JSONPATH expression indicating the location of the user objects of delegates of the current user in the expanded array. + createdAt: + format: date-time readOnly: true + type: + - string + - "null" + creatorUserId: + description: Creator type: string - directoriesPath: - description: JSONPATH expression indicating the location of directory objects in the expanded array. + currentViews: + description: The currentViews field. + format: uint32 + type: integer + deletedAt: + format: date-time readOnly: true + type: + - string + - "null" + displayName: + description: From Vault type: string - managersPath: - description: JSONPATH expression indicating the location of the user objects that managed the current user in the expanded array. - readOnly: true + fileSize: + description: File metadata + format: int64 type: string - rolesPath: - description: JSONPATH expression indicating the location of the roles of the current user in the expanded array. - readOnly: true + filename: + description: 'For FILE secrets: original filename (sanitized)' type: string - user: - $ref: '#/components/schemas/c1.api.user.v1.User' - title: User View - type: object - x-speakeasy-name-override: UserView - c1.api.vault.v1.GroupAuthzVault: - description: GroupAuthzVault configures a vault that uses group-based authorization to control access to stored credentials. - nullable: true - title: Group Authz Vault - type: object - x-speakeasy-name-override: GroupAuthzVault - c1.api.vault.v1.MagicVault: - description: MagicVault configures a vault that grants time-limited credential access via magic links. - nullable: true - properties: - allowUnauthedViews: - description: Controls whether unauthenticated users can view credentials via a magic link. - readOnly: false - type: boolean - allowedViews: - description: The maximum number of times a credential in this vault may be viewed. + inputFormat: + description: The inputFormat field. + enum: + - SECRET_INPUT_FORMAT_UNSPECIFIED + - SECRET_INPUT_FORMAT_PLAINTEXT + - SECRET_INPUT_FORMAT_JSON + - SECRET_INPUT_FORMAT_YAML + - SECRET_INPUT_FORMAT_KEY_VALUE + type: string + x-speakeasy-unknown-values: allow + maxViews: + description: View tracking format: uint32 - readOnly: false type: integer - title: Magic Vault - type: object - x-speakeasy-name-override: MagicVault - c1.api.vault.v1.Vault: - description: | - Vault represents an external secret storage integration used to store connector credentials securely. - - This message contains a oneof named vault. Only a single field of the following list may be set at a time: - - groupAuthzVault - - magicVault - properties: - createdAt: - format: date-time - readOnly: true - type: string - credentialExpirationDuration: - format: duration - readOnly: false + secretType: + description: The secretType field. + enum: + - SECRET_TYPE_UNSPECIFIED + - SECRET_TYPE_TEXT + - SECRET_TYPE_FILE type: string - deletedAt: - format: date-time - readOnly: true + x-speakeasy-unknown-values: allow + shareCode: + description: Human-friendly share code (XXXX-XXXX-XXXX) for shareable URLs type: string - description: - description: A free-text description of the vault's purpose or configuration. - readOnly: false + shareUrl: + description: URL to share with recipients (populated when content_ready is true) type: string - displayName: - description: The human-readable name of the vault. - readOnly: false + sharingMode: + description: From PaperVault + enum: + - PAPER_VAULT_SHARING_MODE_UNSPECIFIED + - PAPER_VAULT_SHARING_MODE_INTERNAL + - PAPER_VAULT_SHARING_MODE_EXTERNAL type: string - groupAuthzVault: - $ref: '#/components/schemas/c1.api.vault.v1.GroupAuthzVault' - id: - description: The unique identifier of the vault. - readOnly: false + x-speakeasy-unknown-values: allow + status: + description: Computed status + enum: + - SECRET_STATUS_UNSPECIFIED + - SECRET_STATUS_ACTIVE + - SECRET_STATUS_EXPIRED + - SECRET_STATUS_BURNED + - SECRET_STATUS_REVOKED + - SECRET_STATUS_DATA_DELETED type: string - magicVault: - $ref: '#/components/schemas/c1.api.vault.v1.MagicVault' + x-speakeasy-unknown-values: allow updatedAt: format: date-time readOnly: true + type: + - string + - "null" + vaultId: + description: Vault.id - primary identifier for the secret type: string - title: Vault - type: object - x-speakeasy-entity: Vault - x-speakeasy-name-override: Vault - c1.api.vault.v1.VaultServiceCreateRequest: - description: | - VaultServiceCreateRequest is the request message for creating a new vault. - - This message contains a oneof named vault. Only a single field of the following list may be set at a time: - - groupAuthzVault - - magicVault - properties: - description: - description: A free-text description of the vault's purpose or configuration. - readOnly: false - type: string - displayName: - description: The human-readable name for the new vault. - readOnly: false - type: string - groupAuthzVault: - $ref: '#/components/schemas/c1.api.vault.v1.GroupAuthzVault' - magicVault: - $ref: '#/components/schemas/c1.api.vault.v1.MagicVault' - ownerIds: - description: The IDs of users to assign as owners of this vault. - items: - type: string - nullable: true - readOnly: false - type: array - required: - - displayName - title: Vault Service Create Request - type: object - x-speakeasy-name-override: VaultServiceCreateRequest - c1.api.vault.v1.VaultServiceCreateResponse: - description: VaultServiceCreateResponse is the response message for creating a new vault. - properties: - vault: - $ref: '#/components/schemas/c1.api.vault.v1.Vault' - title: Vault Service Create Response - type: object - x-speakeasy-name-override: VaultServiceCreateResponse - c1.api.vault.v1.VaultServiceDeleteRequestInput: - description: VaultServiceDeleteRequest is the request message for deleting a vault. - title: Vault Service Delete Request - type: object - x-speakeasy-name-override: VaultServiceDeleteRequest - c1.api.vault.v1.VaultServiceDeleteResponse: - description: Empty response body. Status code indicates success. - title: Vault Service Delete Response + title: Paper Secret type: object - x-speakeasy-name-override: VaultServiceDeleteResponse - c1.api.vault.v1.VaultServiceGetResponse: - description: VaultServiceGetResponse is the response message containing the requested vault. + x-speakeasy-name-override: PaperSecret + c1.api.secrets.v1.PaperSecretAdminServiceGetResponse: + description: The PaperSecretAdminServiceGetResponse message. properties: - vault: - $ref: '#/components/schemas/c1.api.vault.v1.Vault' - title: Vault Service Get Response + secret: + oneOf: + - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecret' + - type: "null" + title: Paper Secret Admin Service Get Response type: object - x-speakeasy-name-override: VaultServiceGetResponse - c1.api.vault.v1.VaultServiceUpdateRequestInput: - description: The VaultServiceUpdateRequest message contains the vault object to update and a field mask to indicate which fields to update. - properties: - updateMask: - nullable: true - readOnly: false - type: string - vault: - $ref: '#/components/schemas/c1.api.vault.v1.Vault' - title: Vault Service Update Request + x-speakeasy-name-override: PaperSecretAdminServiceGetResponse + c1.api.secrets.v1.PaperSecretAdminServiceRevokeRequestInput: + description: The PaperSecretAdminServiceRevokeRequest message. + title: Paper Secret Admin Service Revoke Request type: object - x-speakeasy-name-override: VaultServiceUpdateRequest - c1.api.vault.v1.VaultServiceUpdateResponse: - description: VaultServiceUpdateResponse is the response message containing the updated vault. + x-speakeasy-name-override: PaperSecretAdminServiceRevokeRequest + c1.api.secrets.v1.PaperSecretAdminServiceRevokeResponse: + description: The PaperSecretAdminServiceRevokeResponse message. properties: - vault: - $ref: '#/components/schemas/c1.api.vault.v1.Vault' - title: Vault Service Update Response + secret: + oneOf: + - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecret' + - type: "null" + title: Paper Secret Admin Service Revoke Response type: object - x-speakeasy-name-override: VaultServiceUpdateResponse - c1.api.webhooks.v1.Webhook: - description: The Webhook message. + x-speakeasy-name-override: PaperSecretAdminServiceRevokeResponse + c1.api.secrets.v1.PaperSecretAdminServiceSearchAuditEventsRequest: + description: The PaperSecretAdminServiceSearchAuditEventsRequest message. properties: - callbackTimeout: - format: duration - readOnly: false - type: string - createdAt: - format: date-time - readOnly: true - type: string - deletedAt: - format: date-time - readOnly: true - type: string - description: - description: An optional description of the webhook's purpose. - readOnly: false + actorEmail: + description: Filter by external email (partial match via full-text search) type: string - displayName: - description: The human-readable name of the webhook. - readOnly: false + actorUserId: + description: Filter by C1 user ID (internal users) type: string - id: - description: The unique identifier of the webhook. - readOnly: false + clientIp: + description: Filter by client IP (exact match) type: string - updatedAt: - format: date-time - readOnly: true + pageSize: + description: The pageSize field. + format: int32 + type: integer + pageToken: + description: The pageToken field. type: string - url: - description: The destination URL that receives event notification HTTP callbacks. - readOnly: false + vaultId: + description: Filter by specific vault type: string - title: Webhook + title: Paper Secret Admin Service Search Audit Events Request type: object - x-speakeasy-entity: Webhook - x-speakeasy-name-override: WebhookEndpoint - c1.api.webhooks.v1.WebhookInstance: - description: The WebhookInstance message. + x-speakeasy-name-override: PaperSecretAdminServiceSearchAuditEventsRequest + c1.api.secrets.v1.PaperSecretAdminServiceSearchAuditEventsResponse: + description: The PaperSecretAdminServiceSearchAuditEventsResponse message. properties: - attempts: - description: The attempts field. - format: int32 - readOnly: false - type: integer - completedAt: - format: date-time - readOnly: true + list: + description: |- + List contains OCSF events directly as JSON structs. + Follows the same pattern as SystemLogServiceListEventsResponse. + items: + additionalProperties: true + type: object + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - createdAt: + title: Paper Secret Admin Service Search Audit Events Response + type: object + x-speakeasy-name-override: PaperSecretAdminServiceSearchAuditEventsResponse + c1.api.secrets.v1.PaperSecretAdminServiceSearchRequest: + description: Admin search request - can filter by any user's secrets. + properties: + createdAfter: format: date-time - readOnly: true - type: string - expiresAt: + type: + - string + - "null" + createdBefore: format: date-time - readOnly: true - type: string - id: - description: The id field. - readOnly: false + type: + - string + - "null" + creatorUserIds: + description: Filter by creator user ID (admin can see all users' secrets) + items: + type: string + type: + - array + - "null" + includeDeleted: + description: Include deleted secrets + type: boolean + pageSize: + description: The pageSize field. + format: int32 + type: integer + pageToken: + description: The pageToken field. type: string - lastAttemptedAt: - format: date-time - readOnly: true + query: + description: Fuzzy search by display name type: string - source: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhookSource' - spec: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhookSpec' - state: - description: The state field. + secretType: + description: Filter by secret type (optional) enum: - - WEBHOOK_STATE_UNSPECIFIED - - WEBHOOK_STATE_PENDING - - WEBHOOK_STATE_RUNNING - - WEBHOOK_STATE_ERROR - - WEBHOOK_STATE_WAITING_CALLBACK - - WEBHOOK_STATE_PROCESS_RESPONSE - - WEBHOOK_STATE_SUCCESS - - WEBHOOK_STATE_FATAL_ERROR - readOnly: false + - SECRET_TYPE_UNSPECIFIED + - SECRET_TYPE_TEXT + - SECRET_TYPE_FILE type: string x-speakeasy-unknown-values: allow - updatedAt: - format: date-time - readOnly: true + sharingMode: + description: Filter by sharing mode (optional) + enum: + - PAPER_VAULT_SHARING_MODE_UNSPECIFIED + - PAPER_VAULT_SHARING_MODE_INTERNAL + - PAPER_VAULT_SHARING_MODE_EXTERNAL type: string - webhookId: - description: The webhookId field. - readOnly: false + x-speakeasy-unknown-values: allow + sortBy: + description: Sort order + enum: + - SEARCH_SORT_BY_UNSPECIFIED + - SEARCH_SORT_BY_CREATED_DESC + - SEARCH_SORT_BY_CREATED_ASC + - SEARCH_SORT_BY_EXPIRES_ASC + - SEARCH_SORT_BY_NAME_ASC type: string - title: Webhook Instance + x-speakeasy-unknown-values: allow + statuses: + description: Filter by status (optional) + items: + enum: + - SECRET_STATUS_UNSPECIFIED + - SECRET_STATUS_ACTIVE + - SECRET_STATUS_EXPIRED + - SECRET_STATUS_BURNED + - SECRET_STATUS_REVOKED + - SECRET_STATUS_DATA_DELETED + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + title: Paper Secret Admin Service Search Request type: object - x-speakeasy-name-override: WebhookInstance - c1.api.webhooks.v1.WebhookRef: - description: The WebhookRef message. + x-speakeasy-name-override: PaperSecretAdminServiceSearchRequest + c1.api.secrets.v1.PaperSecretAdminServiceSearchResponse: + description: The PaperSecretAdminServiceSearchResponse message. properties: - id: - description: The ID of the referenced webhook. - readOnly: false + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecret' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - title: Webhook Ref + title: Paper Secret Admin Service Search Response type: object - x-speakeasy-name-override: WebhookRef - c1.api.webhooks.v1.WebhookSource: - description: | - The WebhookSource message. - - This message contains a oneof named source. Only a single field of the following list may be set at a time: - - test - - policyPostAction - - approvalStep - - provisionStep - - workflowStep + x-speakeasy-name-override: PaperSecretAdminServiceSearchResponse + c1.api.secrets.v1.PaperSecretServiceCreateExternalRequest: + description: The PaperSecretServiceCreateExternalRequest message. properties: - approvalStep: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhookSource.WebhookSourceApprovalStep' - policyPostAction: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhookSource.WebhookSourcePolicyPostAction' - provisionStep: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhookSource.WebhookSourceProvisionStep' - test: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhookSource.WebhookSourceTest' - workflowStep: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhookSource.WebhookSourceWorkflowStep' - title: Webhook Source + allowedEmails: + description: |- + External email addresses allowed to view this secret (1 to 64). + Recipients authenticate via email magic link or Google OAuth. + items: + type: string + type: + - array + - "null" + contentType: + description: 'For FILE secrets: MIME content type of the original file. Ignored for TEXT secrets.' + type: string + displayName: + description: |- + Optional cleartext label visible to the creator in "My Secrets" view. + Not encrypted — do not put sensitive data here. + type: string + expiresIn: + format: duration + type: + - string + - "null" + fileSize: + description: 'For FILE secrets: expected file size in bytes (max 1GB). Ignored for TEXT secrets.' + format: int64 + type: string + filename: + description: 'For FILE secrets: original filename (sanitized server-side). Ignored for TEXT secrets.' + type: string + inputFormat: + description: |- + For TEXT secrets: hint about the plaintext format (e.g., JSON, YAML, key-value). + Used by the viewer UI for syntax highlighting. Does not affect encryption. + enum: + - SECRET_INPUT_FORMAT_UNSPECIFIED + - SECRET_INPUT_FORMAT_PLAINTEXT + - SECRET_INPUT_FORMAT_JSON + - SECRET_INPUT_FORMAT_YAML + - SECRET_INPUT_FORMAT_KEY_VALUE + type: string + x-speakeasy-unknown-values: allow + maxViews: + description: Maximum number of views before the secret is burned (0 = unlimited). + format: uint32 + type: integer + requiredAgeSuite: + description: Exact Age suite required for this submission. UNSPECIFIED preserves legacy X25519 behavior. + enum: + - AGE_SUITE_UNSPECIFIED + - AGE_SUITE_X25519 + - AGE_SUITE_MLKEM768X25519 + type: string + x-speakeasy-unknown-values: allow + secretType: + description: |- + Secret type: TEXT or FILE. + TEXT secrets use SetTextContent to upload encrypted content (max 64KB). + FILE secrets use the upload_url from CreateResponse to upload encrypted content (max 1GB). + enum: + - SECRET_TYPE_UNSPECIFIED + - SECRET_TYPE_TEXT + - SECRET_TYPE_FILE + type: string + x-speakeasy-unknown-values: allow + title: Paper Secret Service Create External Request type: object - x-speakeasy-name-override: WebhookSource - c1.api.webhooks.v1.WebhookSource.WebhookSourceApprovalStep: - description: The WebhookSourceApprovalStep message. - nullable: true + x-speakeasy-name-override: PaperSecretServiceCreateExternalRequest + c1.api.secrets.v1.PaperSecretServiceCreateInternalRequest: + description: The PaperSecretServiceCreateInternalRequest message. properties: - ticketId: - description: The ticketId field. - readOnly: false + allowedUserIds: + description: C1 User IDs allowed to view this secret (1 to 128). + items: + type: string + type: + - array + - "null" + contentType: + description: 'For FILE secrets: MIME content type of the original file. Ignored for TEXT secrets.' type: string - title: Webhook Source Approval Step + displayName: + description: |- + Optional cleartext label visible to the creator in "My Secrets" view. + Not encrypted — do not put sensitive data here. + type: string + expiresIn: + format: duration + type: + - string + - "null" + fileSize: + description: 'For FILE secrets: expected file size in bytes (max 1GB). Ignored for TEXT secrets.' + format: int64 + type: string + filename: + description: 'For FILE secrets: original filename (sanitized server-side). Ignored for TEXT secrets.' + type: string + inputFormat: + description: |- + For TEXT secrets: hint about the plaintext format (e.g., JSON, YAML, key-value). + Used by the viewer UI for syntax highlighting. Does not affect encryption. + enum: + - SECRET_INPUT_FORMAT_UNSPECIFIED + - SECRET_INPUT_FORMAT_PLAINTEXT + - SECRET_INPUT_FORMAT_JSON + - SECRET_INPUT_FORMAT_YAML + - SECRET_INPUT_FORMAT_KEY_VALUE + type: string + x-speakeasy-unknown-values: allow + maxViews: + description: Maximum number of views before the secret is burned (0 = unlimited). + format: uint32 + type: integer + requiredAgeSuite: + description: Exact Age suite required for this submission. UNSPECIFIED preserves legacy X25519 behavior. + enum: + - AGE_SUITE_UNSPECIFIED + - AGE_SUITE_X25519 + - AGE_SUITE_MLKEM768X25519 + type: string + x-speakeasy-unknown-values: allow + secretType: + description: |- + Secret type: TEXT or FILE. + TEXT secrets use SetTextContent to upload encrypted content (max 64KB). + FILE secrets use the upload_url from CreateResponse to upload encrypted content (max 1GB). + enum: + - SECRET_TYPE_UNSPECIFIED + - SECRET_TYPE_TEXT + - SECRET_TYPE_FILE + type: string + x-speakeasy-unknown-values: allow + title: Paper Secret Service Create Internal Request type: object - x-speakeasy-name-override: WebhookSourceApprovalStep - c1.api.webhooks.v1.WebhookSource.WebhookSourcePolicyPostAction: - description: The WebhookSourcePolicyPostAction message. - nullable: true + x-speakeasy-name-override: PaperSecretServiceCreateInternalRequest + c1.api.secrets.v1.PaperSecretServiceCreateResponse: + description: The PaperSecretServiceCreateResponse message. properties: - ticketId: - description: The ticketId field. - readOnly: false + ageRecipient: + description: |- + Canonical recipient public key for the exact age_suite returned below. + All content MUST be encrypted to this recipient using the Age encryption format + before calling SetTextContent or uploading to upload_url. + See: https://age-encryption.org type: string - title: Webhook Source Policy Post Action + ageSuite: + description: Exact Age suite required for this submission. + enum: + - AGE_SUITE_UNSPECIFIED + - AGE_SUITE_X25519 + - AGE_SUITE_MLKEM768X25519 + type: string + x-speakeasy-unknown-values: allow + secret: + oneOf: + - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecret' + - type: "null" + uploadUrl: + description: |- + For FILE secrets: capability URL for uploading the Age-encrypted file. + Send an HTTP PUT request with the Age-encrypted file bytes as the body + and Content-Type: application/octet-stream. The payload MUST begin with + the Age header "age-encryption.org/v1\n". Maximum file size: 1GB. + Empty for TEXT secrets. + type: string + vaultId: + description: Vault ID - primary identifier for this secret. + type: string + title: Paper Secret Service Create Response type: object - x-speakeasy-name-override: WebhookSourcePolicyPostAction - c1.api.webhooks.v1.WebhookSource.WebhookSourceProvisionStep: - description: The WebhookSourceProvisionStep message. - nullable: true + x-speakeasy-name-override: PaperSecretServiceCreateResponse + c1.api.secrets.v1.PaperSecretServiceGetContentRequestInput: + description: The PaperSecretServiceGetContentRequest message. properties: - ticketId: - description: The ticketId field. - readOnly: false + readerRecipient: + description: |- + Client's ephemeral Age recipient (age1...) for re-encryption + Server re-encrypts the content to this recipient type: string - title: Webhook Source Provision Step - type: object - x-speakeasy-name-override: WebhookSourceProvisionStep - c1.api.webhooks.v1.WebhookSource.WebhookSourceTest: - description: The WebhookSourceTest message. - nullable: true - title: Webhook Source Test + title: Paper Secret Service Get Content Request type: object - x-speakeasy-name-override: WebhookSourceTest - c1.api.webhooks.v1.WebhookSource.WebhookSourceWorkflowStep: - description: The WebhookSourceWorkflowStep message. - nullable: true + x-speakeasy-name-override: PaperSecretServiceGetContentRequest + c1.api.secrets.v1.PaperSecretServiceGetContentResponse: + description: | + The PaperSecretServiceGetContentResponse message. + + This message contains a oneof named content. Only a single field of the following list may be set at a time: + - encryptedContent + - downloadUrl properties: - workflowExecutionId: - description: The workflowExecutionId field. - format: int64 - readOnly: false + createdAt: + format: date-time + type: + - string + - "null" + creatorUserId: + description: The creatorUserId field. type: string - workflowStepId: - description: The workflowStepId field. - readOnly: false + downloadUrl: + description: |- + For file secrets: presigned S3 download URL (5 minute expiry) + File is still E2E encrypted - client must decrypt after download + This field is part of the `content` oneof. + See the documentation for `c1.api.secrets.v1.PaperSecretServiceGetContentResponse` for more details. + type: + - string + - "null" + encryptedContent: + description: |- + For text secrets: Age-encrypted content (encrypted to reader's recipient) + This field is part of the `content` oneof. + See the documentation for `c1.api.secrets.v1.PaperSecretServiceGetContentResponse` for more details. + format: base64 + type: + - string + - "null" + filename: + description: Original filename (file secrets only) type: string - title: Webhook Source Workflow Step + inputFormat: + description: Input format hint for rendering (text secrets only) + enum: + - SECRET_INPUT_FORMAT_UNSPECIFIED + - SECRET_INPUT_FORMAT_PLAINTEXT + - SECRET_INPUT_FORMAT_JSON + - SECRET_INPUT_FORMAT_YAML + - SECRET_INPUT_FORMAT_KEY_VALUE + type: string + x-speakeasy-unknown-values: allow + secretType: + description: Secret metadata + enum: + - SECRET_TYPE_UNSPECIFIED + - SECRET_TYPE_TEXT + - SECRET_TYPE_FILE + type: string + x-speakeasy-unknown-values: allow + viewsRemaining: + description: Views remaining after this view (-1 = unlimited) + format: int32 + type: integer + title: Paper Secret Service Get Content Response type: object - x-speakeasy-name-override: WebhookSourceWorkflowStep - c1.api.webhooks.v1.WebhookSpec: - description: The WebhookSpec message. + x-speakeasy-name-override: PaperSecretServiceGetContentResponse + c1.api.secrets.v1.PaperSecretServiceGetResponse: + description: The PaperSecretServiceGetResponse message. properties: - destination: - description: The destination field. - readOnly: false - type: string - title: Webhook Spec + secret: + oneOf: + - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecret' + - type: "null" + title: Paper Secret Service Get Response type: object - x-speakeasy-name-override: WebhookSpec - c1.api.webhooks.v1.WebhooksSearchRequest: - description: The WebhooksSearchRequest message. + x-speakeasy-name-override: PaperSecretServiceGetResponse + c1.api.secrets.v1.PaperSecretServiceRevokeRequestInput: + description: The PaperSecretServiceRevokeRequest message. + title: Paper Secret Service Revoke Request + type: object + x-speakeasy-name-override: PaperSecretServiceRevokeRequest + c1.api.secrets.v1.PaperSecretServiceRevokeResponse: + description: The PaperSecretServiceRevokeResponse message. + properties: + secret: + oneOf: + - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecret' + - type: "null" + title: Paper Secret Service Revoke Response + type: object + x-speakeasy-name-override: PaperSecretServiceRevokeResponse + c1.api.secrets.v1.PaperSecretServiceSearchAuditEventsRequest: + description: |- + PaperSecretServiceSearchAuditEventsRequest searches audit events for a secret + owned by the calling user. Only the secret creator may query events. Results + are sanitized to include only time, event type, and actor information. properties: pageSize: - description: The maximum number of webhooks to return per page. + description: Maximum number of results per page (0 uses server default, max 100). format: int32 - readOnly: false type: integer pageToken: - description: The pagination token from a previous search response to fetch the next page. - readOnly: false + description: Pagination token from a previous response's next_page_token. type: string - query: - description: A text query to match against webhook names and descriptions. - readOnly: false + vaultId: + description: Required. The vault ID of the secret whose audit events to retrieve. type: string - refs: - description: Optional set of webhook references to restrict the search to specific webhooks. - items: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhookRef' - nullable: true - readOnly: false - type: array - title: Webhooks Search Request + title: Paper Secret Service Search Audit Events Request type: object - x-speakeasy-name-override: WebhooksSearchRequest - c1.api.webhooks.v1.WebhooksSearchResponse: - description: The WebhooksSearchResponse message. + x-speakeasy-name-override: PaperSecretServiceSearchAuditEventsRequest + c1.api.secrets.v1.PaperSecretServiceSearchAuditEventsResponse: + description: |- + PaperSecretServiceSearchAuditEventsResponse contains a page of audit events + for the requested secret. properties: list: - description: The list of webhooks matching the search criteria. + description: |- + Sanitized OCSF events containing only time, event type, and actor fields. + Sensitive fields such as IP addresses, messages, and raw payloads are removed. items: - $ref: '#/components/schemas/c1.api.webhooks.v1.Webhook' - nullable: true - readOnly: false - type: array + additionalProperties: true + type: object + type: + - array + - "null" nextPageToken: - description: A token to retrieve the next page of results, or empty if there are no more results. - readOnly: false + description: Token to retrieve the next page of results. Empty when no more pages exist. type: string - title: Webhooks Search Response + title: Paper Secret Service Search Audit Events Response type: object - x-speakeasy-name-override: WebhooksSearchResponse - c1.api.webhooks.v1.WebhooksServiceCreateRequest: - description: The WebhooksServiceCreateRequest message. + x-speakeasy-name-override: PaperSecretServiceSearchAuditEventsResponse + c1.api.secrets.v1.PaperSecretServiceSearchMySecretsRequest: + description: |- + SearchMySecrets request - for end users viewing their own secrets. + Automatically scoped to current user. properties: - callbackTimeout: - format: duration - readOnly: false + pageSize: + description: The pageSize field. + format: int32 + type: integer + pageToken: + description: The pageToken field. type: string - description: - description: An optional description of the webhook's purpose. - readOnly: false + query: + description: Fuzzy search by display name type: string - displayName: - description: The human-readable name for the new webhook. - readOnly: false + secretType: + description: Filter by secret type (optional) + enum: + - SECRET_TYPE_UNSPECIFIED + - SECRET_TYPE_TEXT + - SECRET_TYPE_FILE type: string - url: - description: The destination URL that will receive event notification HTTP callbacks. - readOnly: false + x-speakeasy-unknown-values: allow + sharingMode: + description: Filter by sharing mode (optional) + enum: + - PAPER_VAULT_SHARING_MODE_UNSPECIFIED + - PAPER_VAULT_SHARING_MODE_INTERNAL + - PAPER_VAULT_SHARING_MODE_EXTERNAL type: string - required: - - displayName - - url - title: Webhooks Service Create Request + x-speakeasy-unknown-values: allow + sortBy: + description: Sort order + enum: + - SEARCH_SORT_BY_UNSPECIFIED + - SEARCH_SORT_BY_CREATED_DESC + - SEARCH_SORT_BY_CREATED_ASC + - SEARCH_SORT_BY_EXPIRES_ASC + - SEARCH_SORT_BY_NAME_ASC + type: string + x-speakeasy-unknown-values: allow + statuses: + description: Filter by status (optional) + items: + enum: + - SECRET_STATUS_UNSPECIFIED + - SECRET_STATUS_ACTIVE + - SECRET_STATUS_EXPIRED + - SECRET_STATUS_BURNED + - SECRET_STATUS_REVOKED + - SECRET_STATUS_DATA_DELETED + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + title: Paper Secret Service Search My Secrets Request type: object - x-speakeasy-name-override: WebhooksServiceCreateRequest - c1.api.webhooks.v1.WebhooksServiceCreateResponse: - description: The WebhooksServiceCreateResponse message. + x-speakeasy-name-override: PaperSecretServiceSearchMySecretsRequest + c1.api.secrets.v1.PaperSecretServiceSearchResponse: + description: Search response for user's own secrets properties: - webhook: - $ref: '#/components/schemas/c1.api.webhooks.v1.Webhook' - title: Webhooks Service Create Response - type: object - x-speakeasy-name-override: WebhooksServiceCreateResponse - c1.api.webhooks.v1.WebhooksServiceDeleteRequestInput: - description: The WebhooksServiceDeleteRequest message. - title: Webhooks Service Delete Request - type: object - x-speakeasy-name-override: WebhooksServiceDeleteRequest - c1.api.webhooks.v1.WebhooksServiceDeleteResponse: - description: Empty response body. Status code indicates success. - title: Webhooks Service Delete Response + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecret' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. + type: string + title: Paper Secret Service Search Response type: object - x-speakeasy-name-override: WebhooksServiceDeleteResponse - c1.api.webhooks.v1.WebhooksServiceGetResponse: - description: The WebhooksServiceGetResponse message. - properties: - webhook: - $ref: '#/components/schemas/c1.api.webhooks.v1.Webhook' - title: Webhooks Service Get Response - type: object - x-speakeasy-name-override: WebhooksServiceGetResponse - c1.api.webhooks.v1.WebhooksServiceListResponse: - description: The WebhooksServiceListResponse message. - properties: - list: - description: The list of webhooks for the current page. - items: - $ref: '#/components/schemas/c1.api.webhooks.v1.Webhook' - nullable: true - readOnly: false - type: array - nextPageToken: - description: A token to retrieve the next page of results, or empty if there are no more results. - readOnly: false - type: string - title: Webhooks Service List Response - type: object - x-speakeasy-name-override: WebhooksServiceListResponse - c1.api.webhooks.v1.WebhooksServiceTestRequestInput: - description: The WebhooksServiceTestRequest message. - title: Webhooks Service Test Request - type: object - x-speakeasy-name-override: WebhooksServiceTestRequest - c1.api.webhooks.v1.WebhooksServiceTestResponse: - description: The WebhooksServiceTestResponse message. - properties: - webhook: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhookInstance' - title: Webhooks Service Test Response - type: object - x-speakeasy-name-override: WebhooksServiceTestResponse - c1.api.webhooks.v1.WebhooksServiceUpdateRequestInput: - description: The WebhooksServiceUpdateRequest message contains the webhook object to update and a field mask to indicate which fields to update. It uses URL value for input. + x-speakeasy-name-override: PaperSecretServiceSearchResponse + c1.api.secrets.v1.PaperSecretServiceSetTextContentRequestInput: + description: The PaperSecretServiceSetTextContentRequest message. properties: - updateMask: - nullable: true - readOnly: false + encryptedContent: + description: |- + Age-encrypted content bytes. The plaintext MUST be encrypted using the Age + encryption format to the age_recipient returned by CreateInternal/CreateExternal. + The resulting bytes begin with "age-encryption.org/v1\n" followed by the + encrypted payload. Maximum 64KB after encryption — for larger content, create + a FILE secret and use the upload_url instead. + format: base64 type: string - webhook: - $ref: '#/components/schemas/c1.api.webhooks.v1.Webhook' - title: Webhooks Service Update Request - type: object - x-speakeasy-name-override: WebhooksServiceUpdateRequest - c1.api.webhooks.v1.WebhooksServiceUpdateResponse: - description: The WebhooksServiceUpdateResponse message. - properties: - webhook: - $ref: '#/components/schemas/c1.api.webhooks.v1.Webhook' - title: Webhooks Service Update Response - type: object - x-speakeasy-name-override: WebhooksServiceUpdateResponse - c1.api.workload_federation.v1.OIDCSettings: - description: |- - OIDCSettings is the kind-specific configuration block for classic OIDC - providers (GitHub Actions, GitLab CI, HCP Terraform, AWS IAM Outbound, - any CUSTOM provider). Empty for now; future fields like custom_jwks_url, - audience overrides, and required_claims land here. - nullable: true - title: Oidc Settings - type: object - x-speakeasy-name-override: OIDCSettings - c1.api.workload_federation.v1.SPIFFESettings: - description: |- - SPIFFESettings is the kind-specific configuration block for SPIFFE - trust-domain providers (issuer_url = spiffe://). - nullable: true - properties: - bundleEndpointUrl: + inputFormat: description: |- - HTTPS URL of the JWKS endpoint serving the trust domain's signing keys. - Required: the spiffe:// scheme has no discovery mechanism. - Typically the SPIRE OIDC Discovery Provider's /keys endpoint. - - Mutable: updates re-validate the new URL by fetching its JWKS before - persisting; the issuer (trust domain) itself remains immutable. - readOnly: false + Input format hint for the viewer UI when the secret is decrypted. + Does not affect encryption — this is metadata only. + enum: + - SECRET_INPUT_FORMAT_UNSPECIFIED + - SECRET_INPUT_FORMAT_PLAINTEXT + - SECRET_INPUT_FORMAT_JSON + - SECRET_INPUT_FORMAT_YAML + - SECRET_INPUT_FORMAT_KEY_VALUE type: string - title: Spiffe Settings + x-speakeasy-unknown-values: allow + title: Paper Secret Service Set Text Content Request type: object - x-speakeasy-name-override: SPIFFESettings - c1.api.workload_federation.v1.TestTokenStepResult: - description: TestTokenStepResult represents the result of a single validation step. + x-speakeasy-name-override: PaperSecretServiceSetTextContentRequest + c1.api.secrets.v1.PaperSecretServiceSetTextContentResponse: + description: The PaperSecretServiceSetTextContentResponse message. properties: - actual: - description: Actual value from the token. - readOnly: false - type: string - detail: - description: Human-readable detail message. - readOnly: false - type: string - expected: - description: Expected value (for comparison steps). - readOnly: false - type: string - passed: - description: Whether this step passed. - readOnly: false - type: boolean - skipped: - description: Whether this step was skipped (e.g., CIDR check when no allowlist configured). - readOnly: false - type: boolean - stepName: - description: Step name for display (e.g., "JWT decode", "Issuer match"). - readOnly: false - type: string - title: Test Token Step Result + secret: + oneOf: + - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecret' + - type: "null" + title: Paper Secret Service Set Text Content Response type: object - x-speakeasy-name-override: TestTokenStepResult - c1.api.workload_federation.v1.WorkloadFederationProvider: - description: | - WorkloadFederationProvider represents a tenant-level workload identity - issuer registration. Two issuer schemes are supported: - - - https://... classic OIDC issuer; `settings.oidc` MUST be set. - - spiffe://... SPIFFE trust-domain URI; `settings.spiffe` MUST be set. - - The (well_known_provider, issuer_url scheme, settings oneof) tuple is a - tri-invariant: SPIFFE wkp ⟺ spiffe:// issuer ⟺ settings.spiffe set; any - other wkp ⟺ https:// issuer ⟺ settings.oidc set. Issuer URLs are unique - within tenant. - - This message contains a oneof named settings. Only a single field of the following list may be set at a time: - - oidc - - spiffe + x-speakeasy-name-override: PaperSecretServiceSetTextContentResponse + c1.api.service_principal.v1.ServicePrincipal: + description: ServicePrincipal represents a tenant-managed non-human identity. properties: createdAt: format: date-time readOnly: true - type: string - description: - description: A description of what this provider is for. - readOnly: false - type: string - disabled: - description: Whether the provider is disabled. Disabled providers reject all token exchanges. - readOnly: false - type: boolean + type: + - string + - "null" displayName: - description: The display name of the provider. - readOnly: false + description: The display name of the service principal. type: string id: - description: The unique ID of the provider. - readOnly: true - type: string - issuerUrl: - description: |- - Canonical issuer URL. https:// for OIDC providers, spiffe:// for SPIFFE - trust domains. Unique within tenant. Immutable after creation. + description: The unique user ID of the service principal. readOnly: true type: string - oidc: - $ref: '#/components/schemas/c1.api.workload_federation.v1.OIDCSettings' - spiffe: - $ref: '#/components/schemas/c1.api.workload_federation.v1.SPIFFESettings' + objectPermissions: + oneOf: + - $ref: '#/components/schemas/c1.api.authorization.v1.ActorObjectPermissions' + - type: "null" updatedAt: format: date-time readOnly: true + type: + - string + - "null" + user: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.User' + - type: "null" + title: Service Principal + type: object + x-speakeasy-name-override: ServicePrincipal + c1.api.service_principal.v1.ServicePrincipalBinding: + description: |- + ServicePrincipalBinding is one row in the binding store, naming a + subject's link to a single service principal. + properties: + createdAt: + format: date-time + type: + - string + - "null" + servicePrincipalId: + description: The servicePrincipalId field. type: string - wellKnownProvider: - description: |- - Well-known provider type. Drives UX (wizard presets, docs, icons). - Set at creation time, immutable. - enum: - - WELL_KNOWN_WORKLOAD_PROVIDER_UNSPECIFIED - - WELL_KNOWN_WORKLOAD_PROVIDER_CUSTOM - - WELL_KNOWN_WORKLOAD_PROVIDER_GITHUB_ACTIONS - - WELL_KNOWN_WORKLOAD_PROVIDER_GITLAB_CI - - WELL_KNOWN_WORKLOAD_PROVIDER_HCP_TERRAFORM - - WELL_KNOWN_WORKLOAD_PROVIDER_AWS_IAM_OUTBOUND - - WELL_KNOWN_WORKLOAD_PROVIDER_SPIFFE - readOnly: true - type: string - x-speakeasy-unknown-values: allow - title: Workload Federation Provider + updatedAt: + format: date-time + type: + - string + - "null" + title: Service Principal Binding type: object - x-speakeasy-name-override: WorkloadFederationProvider - c1.api.workload_federation.v1.WorkloadFederationServiceCreateProviderRequest: + x-speakeasy-name-override: ServicePrincipalBinding + c1.api.service_principal.v1.ServicePrincipalBindingSubject: description: | - The WorkloadFederationServiceCreateProviderRequest message. + ServicePrincipalBindingSubject identifies the entity that is bound to a + service principal. Open-ended oneof so future subject kinds (workflows, + connectors, etc.) can be added without changing the RPC shape. - This message contains a oneof named settings. Only a single field of the following list may be set at a time: - - oidc - - spiffe + This message contains a oneof named kind. Only a single field of the following list may be set at a time: + - functionId properties: - description: - description: A description of what this provider is for. - readOnly: false + functionId: + description: |- + Function ID. The function authenticates outbound c1-api calls as + user: instead of function:. + This field is part of the `kind` oneof. + See the documentation for `c1.api.service_principal.v1.ServicePrincipalBindingSubject` for more details. + type: + - string + - "null" + title: Service Principal Binding Subject + type: object + x-speakeasy-name-override: ServicePrincipalBindingSubject + c1.api.service_principal.v1.ServicePrincipalCredential: + description: ServicePrincipalCredential represents a client credential for a service principal. + properties: + allowSourceCidrs: + description: CIDR restrictions for this credential. + items: + type: string + readOnly: true + type: + - array + - "null" + clientId: + description: 'The full client ID in format: ${cutename}@${tenant}.${installation}/spc' + readOnly: true type: string + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" displayName: - description: The display name for the new provider. - readOnly: false + description: The display name of the credential. type: string - issuerUrl: - description: |- - The issuer URL. For OIDC providers, this is an HTTPS URL validated via - OIDC discovery. For SPIFFE providers, this is the SPIFFE trust-domain URI - (e.g., spiffe://prod.example.com). Normalized on write: lowercase - scheme/host, no trailing slash. Unique within tenant. - readOnly: false + expiresAt: + format: date-time + readOnly: true + type: + - string + - "null" + id: + description: The unique ID of the credential (cutename format). + readOnly: true type: string - oidc: - $ref: '#/components/schemas/c1.api.workload_federation.v1.OIDCSettings' - spiffe: - $ref: '#/components/schemas/c1.api.workload_federation.v1.SPIFFESettings' - wellKnownProvider: - description: |- - Well-known provider type. Required -- UNSPECIFIED is rejected. - When set to a named source, the backend validates issuer_url consistency. - SPIFFE wkp requires `settings.spiffe`; all other wkp values require - `settings.oidc`. - enum: - - WELL_KNOWN_WORKLOAD_PROVIDER_UNSPECIFIED - - WELL_KNOWN_WORKLOAD_PROVIDER_CUSTOM - - WELL_KNOWN_WORKLOAD_PROVIDER_GITHUB_ACTIONS - - WELL_KNOWN_WORKLOAD_PROVIDER_GITLAB_CI - - WELL_KNOWN_WORKLOAD_PROVIDER_HCP_TERRAFORM - - WELL_KNOWN_WORKLOAD_PROVIDER_AWS_IAM_OUTBOUND - - WELL_KNOWN_WORKLOAD_PROVIDER_SPIFFE - readOnly: false + lastUsedAt: + format: date-time + readOnly: true + type: + - string + - "null" + requireDpop: + description: Whether DPoP proof-of-possession is required for this credential. + readOnly: true + type: boolean + scopedRoleIds: + description: Scoped role IDs for this credential (intersection with SP roles at token issuance). + items: + type: string + readOnly: true + type: + - array + - "null" + servicePrincipalId: + description: The service principal user ID this credential belongs to. + readOnly: true type: string - x-speakeasy-unknown-values: allow - title: Workload Federation Service Create Provider Request + title: Service Principal Credential type: object - x-speakeasy-name-override: WorkloadFederationServiceCreateProviderRequest - c1.api.workload_federation.v1.WorkloadFederationServiceCreateProviderResponse: - description: The WorkloadFederationServiceCreateProviderResponse message. + x-speakeasy-name-override: ServicePrincipalCredential + c1.api.service_principal.v1.ServicePrincipalServiceAddBindingRequest: + description: The ServicePrincipalServiceAddBindingRequest message. properties: - provider: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationProvider' - title: Workload Federation Service Create Provider Response + servicePrincipalId: + description: The servicePrincipalId field. + type: string + subject: + oneOf: + - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalBindingSubject' + - type: "null" + title: Service Principal Service Add Binding Request type: object - x-speakeasy-name-override: WorkloadFederationServiceCreateProviderResponse - c1.api.workload_federation.v1.WorkloadFederationServiceCreateTrustRequestInput: - description: The WorkloadFederationServiceCreateTrustRequest message. + x-speakeasy-name-override: ServicePrincipalServiceAddBindingRequest + c1.api.service_principal.v1.ServicePrincipalServiceAddBindingResponse: + description: The ServicePrincipalServiceAddBindingResponse message. + title: Service Principal Service Add Binding Response + type: object + x-speakeasy-name-override: ServicePrincipalServiceAddBindingResponse + c1.api.service_principal.v1.ServicePrincipalServiceCreateCredentialRequestInput: + description: The ServicePrincipalServiceCreateCredentialRequest message. properties: allowSourceCidrs: description: |- - IP allowlist for token exchange requests matching this trust. + A list of CIDRs to restrict this credential to. Accepts IPv4 (e.g. 10.0.0.0/24) or IPv6 (e.g. 2001:db8::/32) CIDRs. items: type: string - nullable: true - readOnly: false - type: array - conditionExpression: - description: |- - CEL expression evaluated against JWT claims. Must return bool. - Compiled and validated before storage. - readOnly: false - type: string - description: - description: A description of what this trust policy matches. - readOnly: false - type: string + type: + - array + - "null" displayName: - description: The display name for the trust. - readOnly: false + description: The display name for the new credential. type: string - passthroughClaims: - description: JWT claim names from the subject token to copy into the issued C1 token. + expires: + format: duration + type: + - string + - "null" + requireDpop: + description: If true, requires DPoP proof-of-possession for token exchange using this credential. + type: boolean + scopedRoles: + description: The list of roles to restrict the credential to. items: type: string - nullable: true - readOnly: false - type: array - providerId: - description: The provider this trust references. - readOnly: false + type: + - array + - "null" + title: Service Principal Service Create Credential Request + type: object + x-speakeasy-name-override: ServicePrincipalServiceCreateCredentialRequest + c1.api.service_principal.v1.ServicePrincipalServiceCreateCredentialResponse: + description: The ServicePrincipalServiceCreateCredentialResponse message. + properties: + clientSecret: + description: The client secret. Shown exactly once at creation -- cannot be retrieved again. type: string - scopedRoleIds: - description: Scoped role IDs. Effective permissions = min(SP roles, trust.scoped_role_ids). - items: - type: string - nullable: true - readOnly: false - type: array - title: Workload Federation Service Create Trust Request + credential: + oneOf: + - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalCredential' + - type: "null" + title: Service Principal Service Create Credential Response type: object - x-speakeasy-name-override: WorkloadFederationServiceCreateTrustRequest - c1.api.workload_federation.v1.WorkloadFederationServiceCreateTrustResponse: - description: The WorkloadFederationServiceCreateTrustResponse message. + x-speakeasy-name-override: ServicePrincipalServiceCreateCredentialResponse + c1.api.service_principal.v1.ServicePrincipalServiceCreateRequest: + description: The ServicePrincipalServiceCreateRequest message. properties: - trust: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationTrust' - title: Workload Federation Service Create Trust Response + displayName: + description: The display name for the new service principal. + type: string + title: Service Principal Service Create Request type: object - x-speakeasy-name-override: WorkloadFederationServiceCreateTrustResponse - c1.api.workload_federation.v1.WorkloadFederationServiceDeleteProviderRequestInput: - description: The WorkloadFederationServiceDeleteProviderRequest message. - title: Workload Federation Service Delete Provider Request + x-speakeasy-name-override: ServicePrincipalServiceCreateRequest + c1.api.service_principal.v1.ServicePrincipalServiceCreateResponse: + description: The ServicePrincipalServiceCreateResponse message. + properties: + servicePrincipal: + oneOf: + - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipal' + - type: "null" + title: Service Principal Service Create Response type: object - x-speakeasy-name-override: WorkloadFederationServiceDeleteProviderRequest - c1.api.workload_federation.v1.WorkloadFederationServiceDeleteProviderResponse: - description: The WorkloadFederationServiceDeleteProviderResponse message. - title: Workload Federation Service Delete Provider Response + x-speakeasy-name-override: ServicePrincipalServiceCreateResponse + c1.api.service_principal.v1.ServicePrincipalServiceDeleteBindingRequest: + description: The ServicePrincipalServiceDeleteBindingRequest message. + properties: + servicePrincipalId: + description: The servicePrincipalId field. + type: string + subject: + oneOf: + - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalBindingSubject' + - type: "null" + title: Service Principal Service Delete Binding Request type: object - x-speakeasy-name-override: WorkloadFederationServiceDeleteProviderResponse - c1.api.workload_federation.v1.WorkloadFederationServiceDeleteTrustRequestInput: - description: The WorkloadFederationServiceDeleteTrustRequest message. - title: Workload Federation Service Delete Trust Request + x-speakeasy-name-override: ServicePrincipalServiceDeleteBindingRequest + c1.api.service_principal.v1.ServicePrincipalServiceDeleteBindingResponse: + description: The ServicePrincipalServiceDeleteBindingResponse message. + title: Service Principal Service Delete Binding Response type: object - x-speakeasy-name-override: WorkloadFederationServiceDeleteTrustRequest - c1.api.workload_federation.v1.WorkloadFederationServiceDeleteTrustResponse: - description: The WorkloadFederationServiceDeleteTrustResponse message. - title: Workload Federation Service Delete Trust Response + x-speakeasy-name-override: ServicePrincipalServiceDeleteBindingResponse + c1.api.service_principal.v1.ServicePrincipalServiceDeleteRequestInput: + description: The ServicePrincipalServiceDeleteRequest message. + title: Service Principal Service Delete Request type: object - x-speakeasy-name-override: WorkloadFederationServiceDeleteTrustResponse - c1.api.workload_federation.v1.WorkloadFederationServiceGetProviderResponse: - description: The WorkloadFederationServiceGetProviderResponse message. + x-speakeasy-name-override: ServicePrincipalServiceDeleteRequest + c1.api.service_principal.v1.ServicePrincipalServiceDeleteResponse: + description: The ServicePrincipalServiceDeleteResponse message. + title: Service Principal Service Delete Response + type: object + x-speakeasy-name-override: ServicePrincipalServiceDeleteResponse + c1.api.service_principal.v1.ServicePrincipalServiceGetCredentialResponse: + description: The ServicePrincipalServiceGetCredentialResponse message. properties: - provider: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationProvider' - title: Workload Federation Service Get Provider Response + credential: + oneOf: + - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalCredential' + - type: "null" + title: Service Principal Service Get Credential Response type: object - x-speakeasy-name-override: WorkloadFederationServiceGetProviderResponse - c1.api.workload_federation.v1.WorkloadFederationServiceGetTrustResponse: - description: The WorkloadFederationServiceGetTrustResponse message. + x-speakeasy-name-override: ServicePrincipalServiceGetCredentialResponse + c1.api.service_principal.v1.ServicePrincipalServiceGetResponse: + description: The ServicePrincipalServiceGetResponse message. properties: - trust: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationTrust' - title: Workload Federation Service Get Trust Response + servicePrincipal: + oneOf: + - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipal' + - type: "null" + title: Service Principal Service Get Response type: object - x-speakeasy-name-override: WorkloadFederationServiceGetTrustResponse - c1.api.workload_federation.v1.WorkloadFederationServiceListProvidersResponse: - description: The WorkloadFederationServiceListProvidersResponse message. + x-speakeasy-name-override: ServicePrincipalServiceGetResponse + c1.api.service_principal.v1.ServicePrincipalServiceListBindingsRequest: + description: The ServicePrincipalServiceListBindingsRequest message. properties: - list: - description: The list field. + pageSize: + description: The pageSize field. + format: int32 + type: integer + pageToken: + description: The pageToken field. + type: string + subject: + oneOf: + - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalBindingSubject' + - type: "null" + title: Service Principal Service List Bindings Request + type: object + x-speakeasy-name-override: ServicePrincipalServiceListBindingsRequest + c1.api.service_principal.v1.ServicePrincipalServiceListBindingsResponse: + description: The ServicePrincipalServiceListBindingsResponse message. + properties: + bindings: + description: |- + Active bindings held by the subject in this page. Empty when the + subject is unbound. Order is unspecified. items: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationProvider' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalBinding' + type: + - array + - "null" nextPageToken: description: The nextPageToken field. - readOnly: false type: string - title: Workload Federation Service List Providers Response + title: Service Principal Service List Bindings Response type: object - x-speakeasy-name-override: WorkloadFederationServiceListProvidersResponse - c1.api.workload_federation.v1.WorkloadFederationServiceListTrustsResponse: - description: The WorkloadFederationServiceListTrustsResponse message. + x-speakeasy-name-override: ServicePrincipalServiceListBindingsResponse + c1.api.service_principal.v1.ServicePrincipalServiceListCredentialsResponse: + description: The ServicePrincipalServiceListCredentialsResponse message. properties: list: description: The list field. items: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationTrust' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalCredential' + type: + - array + - "null" nextPageToken: description: The nextPageToken field. - readOnly: false - type: string - title: Workload Federation Service List Trusts Response - type: object - x-speakeasy-name-override: WorkloadFederationServiceListTrustsResponse - c1.api.workload_federation.v1.WorkloadFederationServiceSearchTrustsRequest: - description: The WorkloadFederationServiceSearchTrustsRequest message. - properties: - pageSize: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - pageToken: - description: The pageToken field. - readOnly: false - type: string - providerId: - description: 'Optional: filter trusts by provider ID.' - readOnly: false - type: string - query: - description: 'Optional: full-text search on trust display name and description.' - readOnly: false - type: string - servicePrincipalId: - description: 'Optional: filter trusts by service principal ID.' - readOnly: false type: string - title: Workload Federation Service Search Trusts Request + title: Service Principal Service List Credentials Response type: object - x-speakeasy-name-override: WorkloadFederationServiceSearchTrustsRequest - c1.api.workload_federation.v1.WorkloadFederationServiceSearchTrustsResponse: - description: The WorkloadFederationServiceSearchTrustsResponse message. + x-speakeasy-name-override: ServicePrincipalServiceListCredentialsResponse + c1.api.service_principal.v1.ServicePrincipalServiceListResponse: + description: The ServicePrincipalServiceListResponse message. properties: list: description: The list field. items: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationTrust' - nullable: true - readOnly: false - type: array + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipal' + type: + - array + - "null" nextPageToken: description: The nextPageToken field. - readOnly: false type: string - title: Workload Federation Service Search Trusts Response + title: Service Principal Service List Response type: object - x-speakeasy-name-override: WorkloadFederationServiceSearchTrustsResponse - c1.api.workload_federation.v1.WorkloadFederationServiceTestCELRequest: - description: The WorkloadFederationServiceTestCELRequest message. - properties: - claimsJson: - description: |- - The claims to evaluate against, as a JSON string. - Parsed into map[string]any for CEL evaluation. - readOnly: false - type: string - expression: - description: The CEL expression to evaluate. Must return bool. - readOnly: false - type: string - title: Workload Federation Service Test Cel Request + x-speakeasy-name-override: ServicePrincipalServiceListResponse + c1.api.service_principal.v1.ServicePrincipalServiceRevokeCredentialRequestInput: + description: The ServicePrincipalServiceRevokeCredentialRequest message. + title: Service Principal Service Revoke Credential Request type: object - x-speakeasy-name-override: WorkloadFederationServiceTestCELRequest - c1.api.workload_federation.v1.WorkloadFederationServiceTestCELResponse: - description: The WorkloadFederationServiceTestCELResponse message. - properties: - error: - description: Error message if compilation or evaluation failed. - readOnly: false - type: string - expression: - description: The expression that was evaluated (echo back). - readOnly: false + x-speakeasy-name-override: ServicePrincipalServiceRevokeCredentialRequest + c1.api.service_principal.v1.ServicePrincipalServiceRevokeCredentialResponse: + description: The ServicePrincipalServiceRevokeCredentialResponse message. + title: Service Principal Service Revoke Credential Response + type: object + x-speakeasy-name-override: ServicePrincipalServiceRevokeCredentialResponse + c1.api.service_principal.v1.ServicePrincipalServiceUpdateCredentialRequestInput: + description: The ServicePrincipalServiceUpdateCredentialRequest message. + properties: + credential: + oneOf: + - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalCredential' + - type: "null" + updateMask: + type: + - string + - "null" + title: Service Principal Service Update Credential Request + type: object + x-speakeasy-name-override: ServicePrincipalServiceUpdateCredentialRequest + c1.api.service_principal.v1.ServicePrincipalServiceUpdateCredentialResponse: + description: The ServicePrincipalServiceUpdateCredentialResponse message. + properties: + credential: + oneOf: + - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalCredential' + - type: "null" + title: Service Principal Service Update Credential Response + type: object + x-speakeasy-name-override: ServicePrincipalServiceUpdateCredentialResponse + c1.api.service_principal.v1.ServicePrincipalServiceUpdateRequestInput: + description: The ServicePrincipalServiceUpdateRequest message. + properties: + servicePrincipal: + oneOf: + - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipal' + - type: "null" + updateMask: + type: + - string + - "null" + title: Service Principal Service Update Request + type: object + x-speakeasy-name-override: ServicePrincipalServiceUpdateRequest + c1.api.service_principal.v1.ServicePrincipalServiceUpdateResponse: + description: The ServicePrincipalServiceUpdateResponse message. + properties: + servicePrincipal: + oneOf: + - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipal' + - type: "null" + title: Service Principal Service Update Response + type: object + x-speakeasy-name-override: ServicePrincipalServiceUpdateResponse + c1.api.session_policy.v1.Allow: + description: Allow continues the session. + properties: + floorLevel: + description: The minimum assurance level that satisfies this rule. + enum: + - AUTH_LEVEL_UNSPECIFIED + - AUTH_LEVEL_NONE + - AUTH_LEVEL_SINGLE_FACTOR + - AUTH_LEVEL_MULTI_FACTOR + - AUTH_LEVEL_PHR + - AUTH_LEVEL_PHRH type: string - matched: - description: Whether the expression matched (returned true). - readOnly: false - type: boolean - title: Workload Federation Service Test Cel Response + x-speakeasy-unknown-values: allow + title: Allow type: object - x-speakeasy-name-override: WorkloadFederationServiceTestCELResponse - c1.api.workload_federation.v1.WorkloadFederationServiceTestTokenRequestInput: - description: The WorkloadFederationServiceTestTokenRequest message. + x-speakeasy-name-override: SessionPolicyAllow + c1.api.session_policy.v1.Assignment: + description: Assignment is one principal (user) assigned to a session policy. properties: - sourceIp: - description: |- - Optional: override source IP for CIDR testing. - If empty, uses the request's source IP. - Accepts IPv4 (e.g. 10.0.0.5) or IPv6 (e.g. 2001:db8::1) addresses, optionally with a CIDR prefix. - readOnly: false + source: + description: Whether the assignment is direct or conferred through a group. + enum: + - ASSIGNMENT_SOURCE_UNSPECIFIED + - ASSIGNMENT_SOURCE_DIRECT + - ASSIGNMENT_SOURCE_GROUP type: string - subjectToken: - description: The raw JWT to validate (the subject_token from a CI job). - readOnly: false + x-speakeasy-unknown-values: allow + userId: + description: The assigned user's ID. type: string - title: Workload Federation Service Test Token Request + title: Assignment type: object - x-speakeasy-name-override: WorkloadFederationServiceTestTokenRequest - c1.api.workload_federation.v1.WorkloadFederationServiceTestTokenResponse: - description: The WorkloadFederationServiceTestTokenResponse message. + x-speakeasy-name-override: Assignment + c1.api.session_policy.v1.ChallengeRequired: + description: ChallengeRequired asks for an additional factor. properties: - audienceValidation: - $ref: '#/components/schemas/c1.api.workload_federation.v1.TestTokenStepResult' - celEvaluation: - $ref: '#/components/schemas/c1.api.workload_federation.v1.TestTokenStepResult' - cidrCheck: - $ref: '#/components/schemas/c1.api.workload_federation.v1.TestTokenStepResult' - decodedClaimsJson: - description: |- - The decoded JWT claims (best-effort, even if signature fails). - Returned as JSON string for display. - readOnly: false - type: string - issuerMatch: - $ref: '#/components/schemas/c1.api.workload_federation.v1.TestTokenStepResult' - jwtDecode: - $ref: '#/components/schemas/c1.api.workload_federation.v1.TestTokenStepResult' - overallResult: - description: 'Overall result: true only if ALL steps passed.' - readOnly: false - type: boolean - signatureValidation: - $ref: '#/components/schemas/c1.api.workload_federation.v1.TestTokenStepResult' - subjectValidation: - $ref: '#/components/schemas/c1.api.workload_federation.v1.TestTokenStepResult' - tokenFreshness: - $ref: '#/components/schemas/c1.api.workload_federation.v1.TestTokenStepResult' - title: Workload Federation Service Test Token Response + types: + description: The types field. + items: + enum: + - CREDENTIAL_TYPE_UNSPECIFIED + - CREDENTIAL_TYPE_PASSKEY + - CREDENTIAL_TYPE_PASSWORD + - CREDENTIAL_TYPE_TOTP + - CREDENTIAL_TYPE_EMAIL_OTP + - CREDENTIAL_TYPE_RECOVERY_CODE + - CREDENTIAL_TYPE_DELEGATED_GOOGLE + - CREDENTIAL_TYPE_DELEGATED_MICROSOFT + - CREDENTIAL_TYPE_UPSTREAM_IDP + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + title: Challenge Required type: object - x-speakeasy-name-override: WorkloadFederationServiceTestTokenResponse - c1.api.workload_federation.v1.WorkloadFederationServiceUpdateProviderRequestInput: - description: The WorkloadFederationServiceUpdateProviderRequest message. + x-speakeasy-name-override: SessionPolicyChallengeRequired + c1.api.session_policy.v1.Deny: + description: Deny terminates the session. properties: - provider: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationProvider' - updateMask: - nullable: true - readOnly: false + reasonAdmin: + description: Reason shown in admin-only audit. type: string - title: Workload Federation Service Update Provider Request + reasonUser: + description: Reason safe to show the end user. + type: string + title: Deny type: object - x-speakeasy-name-override: WorkloadFederationServiceUpdateProviderRequest - c1.api.workload_federation.v1.WorkloadFederationServiceUpdateProviderResponse: - description: The WorkloadFederationServiceUpdateProviderResponse message. + x-speakeasy-name-override: SessionPolicyDeny + c1.api.session_policy.v1.EnrollmentRequired: + description: EnrollmentRequired tells the user to enroll a credential before continuing. properties: - provider: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationProvider' - title: Workload Federation Service Update Provider Response + credentialTypes: + description: The credentialTypes field. + items: + enum: + - CREDENTIAL_TYPE_UNSPECIFIED + - CREDENTIAL_TYPE_PASSKEY + - CREDENTIAL_TYPE_PASSWORD + - CREDENTIAL_TYPE_TOTP + - CREDENTIAL_TYPE_EMAIL_OTP + - CREDENTIAL_TYPE_RECOVERY_CODE + - CREDENTIAL_TYPE_DELEGATED_GOOGLE + - CREDENTIAL_TYPE_DELEGATED_MICROSOFT + - CREDENTIAL_TYPE_UPSTREAM_IDP + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + title: Enrollment Required type: object - x-speakeasy-name-override: WorkloadFederationServiceUpdateProviderResponse - c1.api.workload_federation.v1.WorkloadFederationServiceUpdateTrustRequestInput: - description: The WorkloadFederationServiceUpdateTrustRequest message. + x-speakeasy-name-override: SessionPolicyEnrollmentRequired + c1.api.session_policy.v1.PerCredentialDuration: + description: |- + PerCredentialDuration overrides session lifetimes for sessions established + with a particular credential type — stronger credentials can earn longer + sessions. properties: - trust: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationTrust' - updateMask: - nullable: true - readOnly: false + accessTokenTtlSeconds: + description: Access-token lifetime for this credential type, in seconds. + format: int32 + type: integer + credentialType: + description: The credentialType field. + enum: + - CREDENTIAL_TYPE_UNSPECIFIED + - CREDENTIAL_TYPE_PASSKEY + - CREDENTIAL_TYPE_PASSWORD + - CREDENTIAL_TYPE_TOTP + - CREDENTIAL_TYPE_EMAIL_OTP + - CREDENTIAL_TYPE_RECOVERY_CODE + - CREDENTIAL_TYPE_DELEGATED_GOOGLE + - CREDENTIAL_TYPE_DELEGATED_MICROSOFT + - CREDENTIAL_TYPE_UPSTREAM_IDP type: string - title: Workload Federation Service Update Trust Request + x-speakeasy-unknown-values: allow + maxSessionDurationSeconds: + description: Maximum total session duration for this credential type, in seconds. + format: int32 + type: integer + title: Per Credential Duration type: object - x-speakeasy-name-override: WorkloadFederationServiceUpdateTrustRequest - c1.api.workload_federation.v1.WorkloadFederationServiceUpdateTrustResponse: - description: The WorkloadFederationServiceUpdateTrustResponse message. + x-speakeasy-name-override: PerCredentialDuration + c1.api.session_policy.v1.PolicyOutcome: + description: | + PolicyOutcome is the effect of a matched rule. Exactly one kind is set. For + session continuous-evaluation, the meaningful kinds are Allow (continue), + Deny (terminate), and StepUpRequired. + + This message contains a oneof named kind. Only a single field of the following list may be set at a time: + - allow + - deny + - stepUpRequired + - challengeRequired + - enrollmentRequired + properties: + allow: + oneOf: + - $ref: '#/components/schemas/c1.api.session_policy.v1.Allow' + - type: "null" + challengeRequired: + oneOf: + - $ref: '#/components/schemas/c1.api.session_policy.v1.ChallengeRequired' + - type: "null" + deny: + oneOf: + - $ref: '#/components/schemas/c1.api.session_policy.v1.Deny' + - type: "null" + enrollmentRequired: + oneOf: + - $ref: '#/components/schemas/c1.api.session_policy.v1.EnrollmentRequired' + - type: "null" + stepUpRequired: + oneOf: + - $ref: '#/components/schemas/c1.api.session_policy.v1.StepUpRequired' + - type: "null" + title: Policy Outcome + type: object + x-speakeasy-name-override: SessionPolicyPolicyOutcome + c1.api.session_policy.v1.PolicyRule: + description: |- + PolicyRule is one rung of the ordered continuous-evaluation cascade. Rules + are evaluated top to bottom on every request; the first enforced rule whose + condition matches supplies the outcome. properties: - trust: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationTrust' - title: Workload Federation Service Update Trust Response + description: + description: The description field. + type: string + id: + description: The id field. + type: string + matchCel: + description: The matchCel field. + type: string + mode: + description: The mode field. + enum: + - POLICY_RULE_MODE_UNSPECIFIED + - POLICY_RULE_MODE_ENFORCE + - POLICY_RULE_MODE_OBSERVE + - POLICY_RULE_MODE_DISABLED + type: string + x-speakeasy-unknown-values: allow + outcome: + oneOf: + - $ref: '#/components/schemas/c1.api.session_policy.v1.PolicyOutcome' + - type: "null" + title: Policy Rule type: object - x-speakeasy-name-override: WorkloadFederationServiceUpdateTrustResponse - c1.api.workload_federation.v1.WorkloadFederationTrust: + x-speakeasy-name-override: SessionPolicyPolicyRule + c1.api.session_policy.v1.SSFReceiverConfig: description: |- - WorkloadFederationTrust represents a per-SP trust policy that references - a tenant-level provider and defines a CEL condition for claim matching. + SSFReceiverConfig selects which inbound shared-signals streams this session + trusts. Each stream's issuer, keys, expected audience, and per-event actions + are configured on the stream itself; this policy just lists the stream IDs. properties: - allowSourceCidrs: - description: IP allowlist for token exchange requests matching this trust. + enabled: + description: Whether inbound shared-signals consumption is enabled for this policy. + type: boolean + ssfReceiverStreamIds: + description: The inbound stream IDs this policy trusts. items: type: string - nullable: true - readOnly: false - type: array - clientId: - description: |- - The full client ID of the trust (e.g., "clever-fox-42195@acme.conductorone.com/wfe"). - Used as the client_id parameter in RFC 8693 token exchange requests. - readOnly: true - type: string - conditionExpression: + type: + - array + - "null" + title: Ssf Receiver Config + type: object + x-speakeasy-name-override: SSFReceiverConfig + c1.api.session_policy.v1.SSFTransmitterConfig: + description: |- + SSFTransmitterConfig selects which outbound shared-signals streams this + session emits security events to. Each stream's delivery endpoint, + authentication, and per-event allowlist are configured on the stream itself; + this policy just lists the stream IDs and the event types to emit. + properties: + enabled: + description: Whether outbound shared-signals emission is enabled for this policy. + type: boolean + eventTypes: + description: The shared-signals event types to emit at the policy level. + items: + type: string + type: + - array + - "null" + ssfTransmitterStreamIds: + description: The outbound stream IDs this policy emits to. + items: + type: string + type: + - array + - "null" + title: Ssf Transmitter Config + type: object + x-speakeasy-name-override: SSFTransmitterConfig + c1.api.session_policy.v1.SessionPolicy: + description: SessionPolicy defines session lifetime and continuous-evaluation behavior. + properties: + accessTokenTtlSeconds: + description: How long an access token is valid, in seconds. + format: int32 + type: integer + continuousDefaultOutcome: + oneOf: + - $ref: '#/components/schemas/c1.api.session_policy.v1.PolicyOutcome' + - type: "null" + continuousRules: description: |- - CEL expression evaluated against JWT claims. Must return bool. - Example: claims.sub.startsWith("repo:acme/infra:") && claims.environment == "production" - readOnly: false - type: string + The continuous-evaluation rule cascade, re-checked on every request and on + inbound shared-signals events. + items: + $ref: '#/components/schemas/c1.api.session_policy.v1.PolicyRule' + type: + - array + - "null" createdAt: format: date-time readOnly: true - type: string - description: - description: A description of what this trust policy matches. - readOnly: false - type: string - disabled: - description: Whether the trust is disabled. - readOnly: false - type: boolean + type: + - string + - "null" + credentialDurations: + description: Per-credential-type lifetime overrides. + items: + $ref: '#/components/schemas/c1.api.session_policy.v1.PerCredentialDuration' + type: + - array + - "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" displayName: - description: The display name of the trust. - readOnly: false + description: A human-readable name for the policy. type: string - passthroughClaims: - description: |- - JWT claim names from the subject token to copy into the issued C1 token. - Values are placed in the "c1wfc" claim as a map[string]string. - Only string-valued claims are copied; non-string claims are silently skipped. - Example: ["repository", "repository_owner", "job_workflow_ref"] - items: - type: string - nullable: true - readOnly: false - type: array - providerId: - description: The provider ID this trust references. Immutable after creation. + id: + description: Unique identifier for the policy. readOnly: true type: string - scopedRoleIds: - description: Scoped role IDs. Effective permissions = min(SP roles, trust.scoped_role_ids). - items: - type: string - nullable: true - readOnly: false - type: array - servicePrincipalId: - description: The service principal user ID this trust belongs to. + idleTimeoutSeconds: + description: How long a session may be idle before it ends, in seconds. + format: int32 + type: integer + isBuiltin: + description: |- + True for built-in policies provided by ConductorOne. Built-in policies + cannot be edited or deleted. readOnly: true + type: boolean + maxSessionDurationSeconds: + description: The maximum total lifetime of a session, in seconds. + format: int32 + type: integer + persistence: + description: Whether sessions may persist across browser restarts. + enum: + - PERSISTENCE_MODE_UNSPECIFIED + - PERSISTENCE_MODE_ALLOW_USER_CHOICE + - PERSISTENCE_MODE_ALWAYS_PERSIST + - PERSISTENCE_MODE_SESSION_ONLY type: string + x-speakeasy-unknown-values: allow + priority: + description: |- + When a user matches more than one policy, the policy with the highest + priority applies. + format: int32 + type: integer + refreshRotationWindowSeconds: + description: |- + Grace window after rotation during which the previous refresh token is + still accepted, in seconds (covers in-flight client retries). + format: int32 + type: integer + refreshTokenTtlSeconds: + description: How long a refresh token is valid, in seconds. + format: int32 + type: integer + rotateRefreshOnUse: + description: Whether to issue a new refresh token each time one is used. + type: boolean + ssfReceive: + oneOf: + - $ref: '#/components/schemas/c1.api.session_policy.v1.SSFReceiverConfig' + - type: "null" + ssfTransmit: + oneOf: + - $ref: '#/components/schemas/c1.api.session_policy.v1.SSFTransmitterConfig' + - type: "null" updatedAt: format: date-time readOnly: true - type: string - title: Workload Federation Trust + type: + - string + - "null" + title: Session Policy type: object - x-speakeasy-name-override: WorkloadFederationTrust - c1.mcp.role_mining.v1.AccessProfileMatch: - description: The AccessProfileMatch message. + x-speakeasy-entity: SessionPolicy + x-speakeasy-name-override: SessionPolicy + c1.api.session_policy.v1.SessionPolicyRef: + description: SessionPolicyRef is a lightweight reference to a session policy by ID. properties: - catalogDisplayName: - description: The catalogDisplayName field. - readOnly: false - type: string - catalogId: - description: The catalogId field. - readOnly: false - type: string - matchType: - description: The matchType field. - enum: - - ACCESS_PROFILE_MATCH_TYPE_UNSPECIFIED - - ACCESS_PROFILE_MATCH_TYPE_EXACT - - ACCESS_PROFILE_MATCH_TYPE_SUPERSET - - ACCESS_PROFILE_MATCH_TYPE_PARTIAL - readOnly: false + id: + description: The id field. type: string - x-speakeasy-unknown-values: allow - missingEntitlements: - description: The missingEntitlements field. - items: - $ref: '#/components/schemas/c1.mcp.role_mining.v1.CohortEntitlement' - nullable: true - readOnly: false - type: array - overlapRatio: - description: The overlapRatio field. - readOnly: false - type: number - title: Access Profile Match + title: Session Policy Ref type: object - x-speakeasy-name-override: AccessProfileMatch - c1.mcp.role_mining.v1.AttributeFacet: - description: AttributeFacet represents a filterable user profile attribute with its available values. + x-speakeasy-name-override: SessionPolicyRef + c1.api.session_policy.v1.SessionPolicyServiceAssignGroupRequestInput: + description: The SessionPolicyServiceAssignGroupRequest message. properties: - attribute: - description: The attribute field. - readOnly: false + groupAppEntitlementId: + description: The group's app-entitlement ID. Every member of the group becomes assigned. type: string - displayName: - description: The displayName field. - readOnly: false + required: + - groupAppEntitlementId + title: Session Policy Service Assign Group Request + type: object + x-speakeasy-name-override: SessionPolicyServiceAssignGroupRequest + c1.api.session_policy.v1.SessionPolicyServiceAssignGroupResponse: + description: The SessionPolicyServiceAssignGroupResponse message. + title: Session Policy Service Assign Group Response + type: object + x-speakeasy-name-override: SessionPolicyServiceAssignGroupResponse + c1.api.session_policy.v1.SessionPolicyServiceAssignUserRequestInput: + description: The SessionPolicyServiceAssignUserRequest message. + properties: + userId: + description: The user to assign. type: string - values: - description: The values field. - items: - $ref: '#/components/schemas/c1.mcp.role_mining.v1.AttributeValue' - nullable: true - readOnly: false - type: array - title: Attribute Facet + required: + - userId + title: Session Policy Service Assign User Request type: object - x-speakeasy-name-override: AttributeFacet - c1.mcp.role_mining.v1.AttributeValue: - description: AttributeValue represents a single value within a facet. + x-speakeasy-name-override: SessionPolicyServiceAssignUserRequest + c1.api.session_policy.v1.SessionPolicyServiceAssignUserResponse: + description: The SessionPolicyServiceAssignUserResponse message. + title: Session Policy Service Assign User Response + type: object + x-speakeasy-name-override: SessionPolicyServiceAssignUserResponse + c1.api.session_policy.v1.SessionPolicyServiceCreateRequest: + description: The SessionPolicyServiceCreateRequest message. properties: + accessTokenTtlSeconds: + description: The accessTokenTtlSeconds field. + format: int32 + type: integer + continuousDefaultOutcome: + oneOf: + - $ref: '#/components/schemas/c1.api.session_policy.v1.PolicyOutcome' + - type: "null" + continuousRules: + description: The continuousRules field. + items: + $ref: '#/components/schemas/c1.api.session_policy.v1.PolicyRule' + type: + - array + - "null" + credentialDurations: + description: The credentialDurations field. + items: + $ref: '#/components/schemas/c1.api.session_policy.v1.PerCredentialDuration' + type: + - array + - "null" displayName: description: The displayName field. - readOnly: false type: string - userCount: - description: The userCount field. + idleTimeoutSeconds: + description: The idleTimeoutSeconds field. format: int32 - readOnly: false type: integer - value: - description: The value field. - readOnly: false + maxSessionDurationSeconds: + description: The maxSessionDurationSeconds field. + format: int32 + type: integer + persistence: + description: The persistence field. + enum: + - PERSISTENCE_MODE_UNSPECIFIED + - PERSISTENCE_MODE_ALLOW_USER_CHOICE + - PERSISTENCE_MODE_ALWAYS_PERSIST + - PERSISTENCE_MODE_SESSION_ONLY type: string - title: Attribute Value + x-speakeasy-unknown-values: allow + priority: + description: The priority field. + format: int32 + type: integer + refreshRotationWindowSeconds: + description: The refreshRotationWindowSeconds field. + format: int32 + type: integer + refreshTokenTtlSeconds: + description: The refreshTokenTtlSeconds field. + format: int32 + type: integer + rotateRefreshOnUse: + description: The rotateRefreshOnUse field. + type: boolean + ssfReceive: + oneOf: + - $ref: '#/components/schemas/c1.api.session_policy.v1.SSFReceiverConfig' + - type: "null" + ssfTransmit: + oneOf: + - $ref: '#/components/schemas/c1.api.session_policy.v1.SSFTransmitterConfig' + - type: "null" + required: + - displayName + title: Session Policy Service Create Request + type: object + x-speakeasy-entity: SessionPolicy + x-speakeasy-name-override: SessionPolicyServiceCreateRequest + c1.api.session_policy.v1.SessionPolicyServiceCreateResponse: + description: The SessionPolicyServiceCreateResponse message. + properties: + sessionPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicy' + - type: "null" + title: Session Policy Service Create Response + type: object + x-speakeasy-name-override: SessionPolicyServiceCreateResponse + c1.api.session_policy.v1.SessionPolicyServiceDeleteRequestInput: + description: The SessionPolicyServiceDeleteRequest message. + title: Session Policy Service Delete Request + type: object + x-speakeasy-entity: SessionPolicy + x-speakeasy-name-override: SessionPolicyServiceDeleteRequest + c1.api.session_policy.v1.SessionPolicyServiceDeleteResponse: + description: The SessionPolicyServiceDeleteResponse message. + title: Session Policy Service Delete Response + type: object + x-speakeasy-name-override: SessionPolicyServiceDeleteResponse + c1.api.session_policy.v1.SessionPolicyServiceGetResponse: + description: The SessionPolicyServiceGetResponse message. + properties: + sessionPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicy' + - type: "null" + title: Session Policy Service Get Response + type: object + x-speakeasy-name-override: SessionPolicyServiceGetResponse + c1.api.session_policy.v1.SessionPolicyServiceListAssignmentsResponse: + description: The SessionPolicyServiceListAssignmentsResponse message. + properties: + assignments: + description: The assignments field. + items: + $ref: '#/components/schemas/c1.api.session_policy.v1.Assignment' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. + type: string + title: Session Policy Service List Assignments Response type: object - x-speakeasy-name-override: RoleMiningAttributeValue - c1.mcp.role_mining.v1.CohortEntitlement: - description: The CohortEntitlement message. + x-speakeasy-name-override: SessionPolicyServiceListAssignmentsResponse + c1.api.session_policy.v1.SessionPolicyServiceListResponse: + description: The SessionPolicyServiceListResponse message. properties: - appDisplayName: - description: The appDisplayName field. - readOnly: false - type: string - appId: - description: The appId field. - readOnly: false - type: string - appResourceDisplayName: - description: The appResourceDisplayName field. - readOnly: false - type: string - appResourceTypeDisplayName: - description: The appResourceTypeDisplayName field. - readOnly: false - type: string - coverage: - description: The coverage field. - readOnly: false - type: number - entitlementDisplayName: - description: The entitlementDisplayName field. - readOnly: false - type: string - entitlementId: - description: The entitlementId field. - readOnly: false + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicy' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. type: string - grantedCount: - description: The grantedCount field. + title: Session Policy Service List Response + type: object + x-speakeasy-name-override: SessionPolicyServiceListResponse + c1.api.session_policy.v1.SessionPolicyServiceSearchRequest: + description: The SessionPolicyServiceSearchRequest message. + properties: + pageSize: + description: The pageSize field. format: int32 - readOnly: false type: integer - title: Cohort Entitlement + pageToken: + description: The pageToken field. + type: string + query: + description: Free-text search over the policy name. Empty matches all policies. + type: string + refs: + description: Restrict results to these specific policies. Empty matches all policies. + items: + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyRef' + type: + - array + - "null" + title: Session Policy Service Search Request type: object - x-speakeasy-name-override: CohortEntitlement - c1.mcp.role_mining.v1.EntitlementCluster: - description: The EntitlementCluster message. + x-speakeasy-name-override: SessionPolicyServiceSearchRequest + c1.api.session_policy.v1.SessionPolicyServiceSearchResponse: + description: The SessionPolicyServiceSearchResponse message. properties: - avgCoverage: - description: The avgCoverage field. - readOnly: false - type: number - avgSimilarity: - description: The avgSimilarity field. - readOnly: false - type: number - entitlements: - description: The entitlements field. + list: + description: The list field. items: - $ref: '#/components/schemas/c1.mcp.role_mining.v1.CohortEntitlement' - nullable: true - readOnly: false - type: array - userCount: - description: The userCount field. - format: int32 - readOnly: false - type: integer - title: Entitlement Cluster + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicy' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. + type: string + title: Session Policy Service Search Response type: object - x-speakeasy-name-override: EntitlementCluster - c1.mcp.role_mining.v1.ProfileFilter: + x-speakeasy-name-override: SessionPolicyServiceSearchResponse + c1.api.session_policy.v1.SessionPolicyServiceUnassignGroupRequestInput: + description: The SessionPolicyServiceUnassignGroupRequest message. + title: Session Policy Service Unassign Group Request + type: object + x-speakeasy-name-override: SessionPolicyServiceUnassignGroupRequest + c1.api.session_policy.v1.SessionPolicyServiceUnassignGroupResponse: + description: The SessionPolicyServiceUnassignGroupResponse message. + title: Session Policy Service Unassign Group Response + type: object + x-speakeasy-name-override: SessionPolicyServiceUnassignGroupResponse + c1.api.session_policy.v1.SessionPolicyServiceUnassignUserRequestInput: + description: The SessionPolicyServiceUnassignUserRequest message. + title: Session Policy Service Unassign User Request + type: object + x-speakeasy-name-override: SessionPolicyServiceUnassignUserRequest + c1.api.session_policy.v1.SessionPolicyServiceUnassignUserResponse: + description: The SessionPolicyServiceUnassignUserResponse message. + title: Session Policy Service Unassign User Response + type: object + x-speakeasy-name-override: SessionPolicyServiceUnassignUserResponse + c1.api.session_policy.v1.SessionPolicyServiceUpdateRequestInput: + description: The SessionPolicyServiceUpdateRequest message. + properties: + sessionPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicy' + - type: "null" + updateMask: + type: + - string + - "null" + title: Session Policy Service Update Request + type: object + x-speakeasy-name-override: SessionPolicyServiceUpdateRequest + c1.api.session_policy.v1.SessionPolicyServiceUpdateResponse: + description: The SessionPolicyServiceUpdateResponse message. + properties: + sessionPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicy' + - type: "null" + title: Session Policy Service Update Response + type: object + x-speakeasy-name-override: SessionPolicyServiceUpdateResponse + c1.api.session_policy.v1.StepUpRequired: description: |- - ProfileFilter defines a filter on a user profile attribute. - Use GetOrgOverview to discover available attribute keys and their values. + StepUpRequired demands a stronger re-authentication before the session may + continue. properties: - attribute: - description: The attribute field. - readOnly: false + level: + description: The level field. + enum: + - AUTH_LEVEL_UNSPECIFIED + - AUTH_LEVEL_NONE + - AUTH_LEVEL_SINGLE_FACTOR + - AUTH_LEVEL_MULTI_FACTOR + - AUTH_LEVEL_PHR + - AUTH_LEVEL_PHRH type: string - values: - description: The values field. + x-speakeasy-unknown-values: allow + maxAgeSeconds: + description: How fresh the step-up must be, in seconds. + format: int32 + type: integer + types: + description: The types field. items: + enum: + - CREDENTIAL_TYPE_UNSPECIFIED + - CREDENTIAL_TYPE_PASSKEY + - CREDENTIAL_TYPE_PASSWORD + - CREDENTIAL_TYPE_TOTP + - CREDENTIAL_TYPE_EMAIL_OTP + - CREDENTIAL_TYPE_RECOVERY_CODE + - CREDENTIAL_TYPE_DELEGATED_GOOGLE + - CREDENTIAL_TYPE_DELEGATED_MICROSOFT + - CREDENTIAL_TYPE_UPSTREAM_IDP type: string - nullable: true - readOnly: false - type: array - title: Profile Filter + x-speakeasy-unknown-values: allow + type: + - array + - "null" + title: Step Up Required type: object - x-speakeasy-name-override: ProfileFilter - c1.webhooks.v1.Body: - description: The Body message. + x-speakeasy-name-override: SessionPolicyStepUpRequired + c1.api.settings.v1.AWSExternalID: + description: AWSExternalID contains the tenant's external ID for AWS IAM role trust policies. properties: - callbackUrl: - description: |- - If your receiver returns HTTP Status Code 202 Accepted, it MUST send its resposne to this URL as a POST - message body. - - If your receiver returns any other status code, it is expected to not use the callback url. - - This value will match the "Webhook-Callback-Url" header. - readOnly: false + externalId: + description: The external ID value to include in the AWS IAM role trust policy condition. type: string - event: - description: |- - The type of event that triggered this Webhook. - - This value will match the "Webhook-Event" header. - - The value will be one of: - - "c1.webhooks.v1.PayloadTest" - - "c1.webhooks.v1.PayloadPolicyApprovalStep" - - "c1.webhooks.v1.PayloadPolicyPostAction" - - "c1.webhooks.v1.PayloadProvisionStep" - readOnly: false + title: Aws External Id + type: object + x-speakeasy-entity: AWS_EXTERNAL_ID + x-speakeasy-name-override: AWSExternalID + c1.api.settings.v1.AWSSESProviderConfig: + description: AWSSESProviderConfig configures sending via a customer's AWS SES account. + properties: + configurationSetName: + description: Optional SES configuration set name for tracking/metrics. type: string - payload: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - version: - description: |- - version contains the constant value "v1". Future versions of the Webhook body will use a different string. - - This value will match the "Webhook-Version" header. - readOnly: false + region: + description: AWS region where SES identities are verified (e.g., "us-east-1"). type: string - webhookId: + roleArn: description: |- - Unique ID for this Webhook. Your receiver should only process this ID once. - - This value will match the "Webhook-Id" header. - readOnly: false + IAM role ARN for sts:AssumeRole. The trust policy should require the + tenant's AWS External ID (GET /api/v1/settings/aws-external-id). type: string - title: Body + title: Awsses Provider Config type: object - x-speakeasy-include: true - x-speakeasy-name-override: Body - c1.webhooks.v1.PayloadPolicyApprovalStep: - description: The PayloadPolicyApprovalStep message. + x-speakeasy-name-override: AWSSESProviderConfig + c1.api.settings.v1.AccessProvisionedPreference: + description: The AccessProvisionedPreference message. properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - taskView: - $ref: '#/components/schemas/c1.api.task.v1.TaskView' - title: Payload Policy Approval Step + enabled: + description: The enabled field. + type: boolean + locked: + description: The locked field. + type: boolean + title: Access Provisioned Preference type: object - x-speakeasy-include: true - x-speakeasy-name-override: PayloadPolicyApprovalStep - c1.webhooks.v1.PayloadPolicyPostAction: - description: The PayloadPolicyPostAction message. + x-speakeasy-name-override: AccessProvisionedPreference + c1.api.settings.v1.ApprovalNeededPreference: + description: The ApprovalNeededPreference message. properties: - expanded: - description: List of serialized related objects. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - taskView: - $ref: '#/components/schemas/c1.api.task.v1.TaskView' - title: Payload Policy Post Action + enabled: + description: The enabled field. + type: boolean + locked: + description: The locked field. + type: boolean + title: Approval Needed Preference type: object - x-speakeasy-include: true - x-speakeasy-name-override: PayloadPolicyPostAction - c1.webhooks.v1.PayloadProvisionStep: - description: The PayloadProvisionStep message. + x-speakeasy-name-override: ApprovalNeededPreference + c1.api.settings.v1.C1BuiltInProviderConfig: + description: |- + C1BuiltInProviderConfig selects the ConductorOne built-in email provider. + Emails are sent from no-reply@conductorone.com via the platform SendGrid account. + Only supports sending to C1 users — external email addresses are not supported. + No configuration fields required. + title: C 1 Built In Provider Config + type: object + x-speakeasy-name-override: C1BuiltInProviderConfig + c1.api.settings.v1.CIDRRestriction: + description: CIDRRestriction defines an IP-based access restriction with an enable toggle and a list of allowed CIDRs. properties: - expanded: - description: List of serialized related objects. + enabled: + description: Whether this CIDR restriction is enforced. + type: boolean + sourceCidr: + description: |- + The list of CIDR ranges that are allowed when the restriction is enabled. + Accepts IPv4 (e.g. 10.0.0.0/24) or IPv6 (e.g. 2001:db8::/32) CIDRs. items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - taskView: - $ref: '#/components/schemas/c1.api.task.v1.TaskView' - title: Payload Provision Step + type: string + type: + - array + - "null" + title: Cidr Restriction type: object - x-speakeasy-include: true - x-speakeasy-name-override: PayloadProvisionStep - c1.webhooks.v1.PayloadTest: - description: The PayloadTest message. - title: Payload Test + x-speakeasy-name-override: CIDRRestriction + c1.api.settings.v1.ChannelSettings: + description: ChannelSettings groups notification preferences for all supported channels. + properties: + email: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.EmailChannelSettings' + - type: "null" + slack: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.SlackChannelSettings' + - type: "null" + teams: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.MSTeamsChannelSettings' + - type: "null" + title: Channel Settings type: object - x-speakeasy-include: true - x-speakeasy-name-override: PayloadTest - c1.webhooks.v1.PayloadWorkflowStep: - description: The PayloadWorkflowStep message. + x-speakeasy-name-override: ChannelSettings + c1.api.settings.v1.CommentOnRequestPreference: + description: The CommentOnRequestPreference message. properties: - context: - additionalProperties: true - readOnly: false - type: object - workflowExecutionId: - description: The workflow execution ID - format: int64 - readOnly: false - type: string - workflowExecutionStepId: - description: The workflow execution step ID - readOnly: false - type: string - workflowId: - description: The workflow template ID - readOnly: false - type: string - title: Payload Workflow Step + enabled: + description: The enabled field. + type: boolean + locked: + description: The locked field. + type: boolean + title: Comment On Request Preference type: object - x-speakeasy-include: true - x-speakeasy-name-override: PayloadWorkflowStep - c1.webhooks.v1.ResponsePolicyApprovalStep: - description: | - The ResponsePolicyApprovalStep message. - - This message contains a oneof named action. Only a single field of the following list may be set at a time: - - approve - - deny - - reassign - - replacePolicy + x-speakeasy-name-override: CommentOnRequestPreference + c1.api.settings.v1.CompletionPreference: + description: The CompletionPreference message. properties: - approve: - $ref: '#/components/schemas/c1.webhooks.v1.ResponsePolicyApprovalStep.ResponsePolicyApprovalStepApprove' - deny: - $ref: '#/components/schemas/c1.webhooks.v1.ResponsePolicyApprovalStep.ResponsePolicyApprovalStepDeny' - reassign: - $ref: '#/components/schemas/c1.webhooks.v1.ResponsePolicyApprovalStep.ResponsePolicyApprovalStepReassign' - replacePolicy: - $ref: '#/components/schemas/c1.webhooks.v1.ResponsePolicyApprovalStep.ResponsePolicyApprovalReplacePolicy' - version: - description: |- - version contains the constant value "v1". Future versions of the Webhook Response - will use a different string. - readOnly: false - type: string - title: Response Policy Approval Step + enabled: + description: The enabled field. + type: boolean + locked: + description: The locked field. + type: boolean + title: Completion Preference type: object - x-speakeasy-include: true - x-speakeasy-name-override: ResponsePolicyApprovalStep - c1.webhooks.v1.ResponsePolicyApprovalStep.ResponsePolicyApprovalReplacePolicy: - description: The ResponsePolicyApprovalReplacePolicy message. - nullable: true + x-speakeasy-name-override: CompletionPreference + c1.api.settings.v1.ConnectorIssuesPreference: + description: The ConnectorIssuesPreference message. properties: - comment: - description: The comment field. - readOnly: false - type: string - policySteps: - description: The policySteps field. + enabled: + description: The enabled field. + type: boolean + locked: + description: The locked field. + type: boolean + title: Connector Issues Preference + type: object + x-speakeasy-name-override: ConnectorIssuesPreference + c1.api.settings.v1.Contacts: + description: Contacts represents the contact configuration for an organization. + properties: + billingEmails: + description: Email addresses of billing contacts for this organization. items: - $ref: '#/components/schemas/c1.api.policy.v1.PolicyStep' - nullable: true - readOnly: false - type: array - title: Response Policy Approval Replace Policy + type: string + type: + - array + - "null" + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + operationsEmails: + description: Email addresses of operations contacts for this organization. + items: + type: string + type: + - array + - "null" + securityEmails: + description: Email addresses of security contacts for this organization. + items: + type: string + type: + - array + - "null" + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Contacts type: object - x-speakeasy-name-override: ResponsePolicyApprovalReplacePolicy - c1.webhooks.v1.ResponsePolicyApprovalStep.ResponsePolicyApprovalStepApprove: - description: The ResponsePolicyApprovalStepApprove message. - nullable: true + x-speakeasy-name-override: Contacts + c1.api.settings.v1.DigestPreference: + description: DigestPreference controls whether summary digest notifications are sent and how often. properties: - comment: - description: optional comment - readOnly: false + dayOfWeek: + description: The day of the week to send weekly digests. + enum: + - WEEKDAY_UNSPECIFIED + - WEEKDAY_MONDAY + - WEEKDAY_TUESDAY + - WEEKDAY_WEDNESDAY + - WEEKDAY_THURSDAY + - WEEKDAY_FRIDAY + - WEEKDAY_SATURDAY + - WEEKDAY_SUNDAY type: string - title: Response Policy Approval Step Approve + x-speakeasy-unknown-values: allow + enabled: + description: Whether digest notifications are enabled. + type: boolean + frequency: + description: How often digest notifications are sent. + enum: + - DIGEST_FREQUENCY_UNSPECIFIED + - DIGEST_FREQUENCY_DAILY + - DIGEST_FREQUENCY_WEEKLY + type: string + x-speakeasy-unknown-values: allow + locked: + description: Whether this preference is locked by org-level settings, preventing users from overriding it. + type: boolean + title: Digest Preference type: object - x-speakeasy-name-override: ResponsePolicyApprovalStepApprove - c1.webhooks.v1.ResponsePolicyApprovalStep.ResponsePolicyApprovalStepDeny: - description: The ResponsePolicyApprovalStepDeny message. - nullable: true + x-speakeasy-name-override: DigestPreference + c1.api.settings.v1.EmailChannelSettings: + description: The EmailChannelSettings message. properties: - comment: - description: optional comment - readOnly: false - type: string - title: Response Policy Approval Step Deny + accessProvisioned: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.AccessProvisionedPreference' + - type: "null" + approvalNeeded: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ApprovalNeededPreference' + - type: "null" + commentOnRequest: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.CommentOnRequestPreference' + - type: "null" + completion: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.CompletionPreference' + - type: "null" + connectorIssues: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ConnectorIssuesPreference' + - type: "null" + digest: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.DigestPreference' + - type: "null" + enabled: + description: The enabled field. + type: boolean + expiringAccess: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ExpiringAccessPreference' + - type: "null" + provisioningRequest: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ProvisioningRequestPreference' + - type: "null" + requestCreated: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.RequestCreatedPreference' + - type: "null" + reviews: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ReviewsPreference' + - type: "null" + system: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.SystemPreference' + - type: "null" + taskReminders: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.TaskRemindersPreference' + - type: "null" + title: Email Channel Settings type: object - x-speakeasy-name-override: ResponsePolicyApprovalStepDeny - c1.webhooks.v1.ResponsePolicyApprovalStep.ResponsePolicyApprovalStepReassign: - description: The ResponsePolicyApprovalStepReassign message. - nullable: true + x-speakeasy-name-override: EmailChannelSettings + c1.api.settings.v1.ExpiringAccessPreference: + description: The ExpiringAccessPreference message. properties: - comment: - description: optional comment - readOnly: false - type: string - newStepUserIds: - description: The newStepUserIds field. - items: - type: string - nullable: true - readOnly: false - type: array - title: Response Policy Approval Step Reassign + enabled: + description: The enabled field. + type: boolean + locked: + description: The locked field. + type: boolean + title: Expiring Access Preference type: object - x-speakeasy-name-override: ResponsePolicyApprovalStepReassign - c1.webhooks.v1.ResponsePolicyPostAction: - description: The ResponsePolicyPostAction message. + x-speakeasy-name-override: ExpiringAccessPreference + c1.api.settings.v1.GetAWSExternalIDResponse: + description: The GetAWSExternalIDResponse message. properties: - version: + awsExternalId: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.AWSExternalID' + - type: "null" + title: Get Aws External Id Response + type: object + x-speakeasy-name-override: GetAWSExternalIDResponse + c1.api.settings.v1.GetContactsResponse: + description: The GetContactsResponse message. + properties: + contacts: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.Contacts' + - type: "null" + title: Get Contacts Response + type: object + x-speakeasy-name-override: GetContactsResponse + c1.api.settings.v1.GetEmailCapabilitiesResponse: + description: The GetEmailCapabilitiesResponse message. + properties: + externalEmailSupported: description: |- - version contains the constant value "v1". Future versions of the Webhook Response - will use a different string. - readOnly: false - type: string - title: Response Policy Post Action + True when external email addresses (outside C1 users) can be used as + recipients in automation email steps. False when only the C1 built-in + provider is configured (C1 users only). + type: boolean + title: Get Email Capabilities Response type: object - x-speakeasy-include: true - x-speakeasy-name-override: ResponsePolicyPostAction - c1.webhooks.v1.ResponseProvisionStep: - description: | - The ResponseProvisionStep message. - - This message contains a oneof named outcome. Only a single field of the following list may be set at a time: - - complete - - errored + x-speakeasy-name-override: GetEmailCapabilitiesResponse + c1.api.settings.v1.GetOnboardingSettingsResponse: + description: The GetOnboardingSettingsResponse message. properties: - complete: - $ref: '#/components/schemas/c1.webhooks.v1.ResponseProvisionStep.ResponseProvisionStepComplete' - errored: - $ref: '#/components/schemas/c1.webhooks.v1.ResponseProvisionStep.ResponseProvisionStepErrored' - version: + conversationId: + description: The identifier of the onboarding conversation thread, if one is in progress. + type: string + intents: + description: The intents field. + items: + type: string + type: + - array + - "null" + mcpOnboardingGoal: + description: The admin's free-form AIAM onboarding goal, captured at the Goals step. + type: string + mcpOnboardingStatus: description: |- - version contains the constant value "v1". Future versions of the Webhook Response - will use a different string. - readOnly: false + The current status of the AIAM MCP onboarding briefing, tracked + independently of `status`. + enum: + - MCP_ONBOARDING_STATUS_UNSPECIFIED + - MCP_ONBOARDING_STATUS_NOT_STARTED + - MCP_ONBOARDING_STATUS_IN_PROGRESS + - MCP_ONBOARDING_STATUS_COMPLETE + - MCP_ONBOARDING_STATUS_DISMISSED type: string - title: Response Provision Step + x-speakeasy-unknown-values: allow + mcpOnboardingTargets: + description: |- + Per-target progress of the AIAM briefing: the servers/apps the admin chose + to govern and how far each got. + items: + $ref: '#/components/schemas/c1.api.settings.v1.McpOnboardingTarget' + type: + - array + - "null" + orgContext: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.OnboardingOrgContext' + - type: "null" + status: + description: The current status of the tenant onboarding process. + enum: + - ONBOARDING_STATUS_UNSPECIFIED + - ONBOARDING_STATUS_NOT_STARTED + - ONBOARDING_STATUS_IN_PROGRESS + - ONBOARDING_STATUS_COMPLETE + - ONBOARDING_STATUS_DISMISSED + type: string + x-speakeasy-unknown-values: allow + title: Get Onboarding Settings Response type: object - x-speakeasy-include: true - x-speakeasy-name-override: ResponseProvisionStep - c1.webhooks.v1.ResponseProvisionStep.ResponseProvisionStepComplete: - description: The ResponseProvisionStepComplete message. - nullable: true + x-speakeasy-name-override: GetOnboardingSettingsResponse + c1.api.settings.v1.GetOrgNotificationSettingsResponse: + description: The GetOrgNotificationSettingsResponse message. properties: - comment: - description: optional comment - readOnly: false - type: string - title: Response Provision Step Complete + orgNotificationSettings: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.OrgNotificationSettings' + - type: "null" + title: Get Org Notification Settings Response type: object - x-speakeasy-name-override: ResponseProvisionStepComplete - c1.webhooks.v1.ResponseProvisionStep.ResponseProvisionStepErrored: - description: The ResponseProvisionStepErrored message. - nullable: true + x-speakeasy-name-override: GetOrgNotificationSettingsResponse + c1.api.settings.v1.GetRequestSettingsResponse: + description: The GetRequestSettingsResponse message. properties: - comment: - description: optional comment - readOnly: false - type: string - title: Response Provision Step Errored + requestSettings: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.RequestSettings' + - type: "null" + title: Get Request Settings Response type: object - x-speakeasy-name-override: ResponseProvisionStepErrored - c1.webhooks.v1.ResponseTest: - description: The ResponseTest message. + x-speakeasy-name-override: GetRequestSettingsResponse + c1.api.settings.v1.GetSessionSettingsResponse: + description: The GetSessionSettingsResponse message. properties: - version: - description: |- - version contains the constant value "v1". Future versions of the Webhook Response - will use a different string. - readOnly: false - type: string - title: Response Test + sessionSettings: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.SessionSettings' + - type: "null" + title: Get Session Settings Response type: object - x-speakeasy-include: true - x-speakeasy-name-override: ResponseTest - c1.webhooks.v1.ResponseWorkflowStep: - description: The ResponseWorkflowStep message. + x-speakeasy-name-override: GetSessionSettingsResponse + c1.api.settings.v1.GetTenantEmailProviderResponse: + description: The GetTenantEmailProviderResponse message. properties: - context: - additionalProperties: true - readOnly: false - type: object - version: - description: |- - version contains the constant value "v1". Future versions of the Webhook Response - will use a different string. - readOnly: false - type: string - title: Response Workflow Step + emailProvider: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.TenantEmailProvider' + - type: "null" + title: Get Tenant Email Provider Response type: object - x-speakeasy-include: true - x-speakeasy-name-override: ResponseWorkflowStep - google.rpc.Status: + x-speakeasy-name-override: GetTenantEmailProviderResponse + c1.api.settings.v1.GetUserDeveloperPreferencesResponse: + description: The GetUserDeveloperPreferencesResponse message. + properties: + userDeveloperPreferences: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.UserDeveloperPreferences' + - type: "null" + title: Get User Developer Preferences Response + type: object + x-speakeasy-name-override: GetUserDeveloperPreferencesResponse + c1.api.settings.v1.GetUserNotificationSettingsResponse: + description: The GetUserNotificationSettingsResponse message. + properties: + userNotificationSettings: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.UserNotificationSettings' + - type: "null" + title: Get User Notification Settings Response + type: object + x-speakeasy-name-override: GetUserNotificationSettingsResponse + c1.api.settings.v1.GoogleWorkspaceProviderConfig: description: |- - The `Status` type defines a logical error model that is suitable for - different programming environments, including REST APIs and RPC APIs. It is - used by [gRPC](https://github.com/grpc). Each `Status` message contains - three pieces of data: error code, error message, and error details. - - You can find out more about this error model and how to work with it in the - [API Design Guide](https://cloud.google.com/apis/design/errors). + GoogleWorkspaceProviderConfig configures sending via Google Workspace Gmail API + using domain-wide delegation with a service account. + Requires: customer Workspace super admin grants DWD to the service account's + OAuth client ID for the gmail.send scope. properties: - code: - description: The status code, which should be an enum value of [google.rpc.Code][google.rpc.Code]. - format: int32 - readOnly: false - type: integer - details: + delegatedUser: description: |- - A list of messages that carry the error details. There is a common set of - message types for APIs to use. - items: - additionalProperties: true - description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. - properties: - '@type': - description: The type of the serialized message. - type: string - readOnly: false - type: object - nullable: true - readOnly: false - type: array - message: + The Workspace user email to impersonate via domain-wide delegation. + Typically a dedicated sender like noreply@customer.com. + type: string + serviceAccountJson: description: |- - A developer-facing error message, which should be in English. Any - user-facing error message should be localized and sent in the - [google.rpc.Status.details][google.rpc.Status.details] field, or localized by the client. - readOnly: false + Service account JSON credentials. Write-only: accepted on create/update, never returned in Get. + Empty on update means "keep existing credentials". type: string - title: Status + title: Google Workspace Provider Config type: object - x-speakeasy-name-override: Status - validate.AnyRules: - description: |- - AnyRules describe constraints applied exclusively to the - `google.protobuf.Any` well-known type - nullable: true + x-speakeasy-name-override: GoogleWorkspaceProviderConfig + c1.api.settings.v1.ListOrgDomainsResponse: + description: The ListOrgDomainsResponse message. properties: - in: - description: |- - In specifies that this field's `type_url` must be equal to one of the - specified values. - items: - type: string - nullable: true - readOnly: false - type: array - notIn: - description: |- - NotIn specifies that this field's `type_url` must not be equal to any of - the specified values. + list: + description: The list of verified domains. items: - type: string - nullable: true - readOnly: false - type: array - required: - description: Required specifies that this field must be set - readOnly: false - type: boolean - title: Any Rules + $ref: '#/components/schemas/c1.api.settings.v1.OrgDomain' + type: + - array + - "null" + nextPageToken: + description: A token to retrieve the next page of results, or empty if there are no more results. + type: string + title: List Org Domains Response type: object - x-speakeasy-name-override: AnyRules - validate.BoolRules: - description: BoolRules describes the constraints applied to `bool` values - nullable: true + x-speakeasy-name-override: ListOrgDomainsResponse + c1.api.settings.v1.MSTeamsChannelSettings: + description: The MSTeamsChannelSettings message. properties: - const: - description: Const specifies that this field must be exactly the specified value - readOnly: false + accessProvisioned: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.AccessProvisionedPreference' + - type: "null" + approvalNeeded: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ApprovalNeededPreference' + - type: "null" + commentOnRequest: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.CommentOnRequestPreference' + - type: "null" + completion: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.CompletionPreference' + - type: "null" + connectorIssues: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ConnectorIssuesPreference' + - type: "null" + digest: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.DigestPreference' + - type: "null" + enabled: + description: The enabled field. type: boolean - title: Bool Rules + expiringAccess: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ExpiringAccessPreference' + - type: "null" + isConfigured: + description: The isConfigured field. + type: boolean + provisioningRequest: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ProvisioningRequestPreference' + - type: "null" + requestCreated: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.RequestCreatedPreference' + - type: "null" + reviews: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ReviewsPreference' + - type: "null" + system: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.SystemPreference' + - type: "null" + taskReminders: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.TaskRemindersPreference' + - type: "null" + title: Ms Teams Channel Settings type: object - x-speakeasy-name-override: BoolRules - validate.BytesRules: - description: | - BytesRules describe the constraints applied to `bytes` values - - This message contains a oneof named well_known. Only a single field of the following list may be set at a time: - - ip - - ipv4 - - ipv6 - nullable: true + x-speakeasy-name-override: MSTeamsChannelSettings + c1.api.settings.v1.McpOnboardingTarget: + description: |- + McpOnboardingTarget is one server/app the admin chose to govern during the + AIAM briefing, plus its progress. properties: - const: - description: Const specifies that this field must be exactly the specified value - format: base64 - readOnly: false + displayName: + description: Snapshot of the human label at selection time. type: string - contains: - description: |- - Contains specifies that this field must have the specified bytes - anywhere in the string. - format: base64 - readOnly: false + id: + description: Identifies the target within the id space named by kind. type: string - ignoreEmpty: - description: |- - IgnoreEmpty specifies that the validation rules of this field should be - evaluated only if the field is not empty - readOnly: false - type: boolean - in: - description: |- - In specifies that this field must be equal to one of the specified - values - items: - format: base64 - type: string - nullable: true - readOnly: false - type: array - ip: - description: |- - Ip specifies that the field must be a valid IP (v4 or v6) address in - byte format - This field is part of the `well_known` oneof. - See the documentation for `validate.BytesRules` for more details. - nullable: true - readOnly: false - type: boolean - ipv4: - description: |- - Ipv4 specifies that the field must be a valid IPv4 address in byte - format - This field is part of the `well_known` oneof. - See the documentation for `validate.BytesRules` for more details. - nullable: true - readOnly: false - type: boolean - ipv6: - description: |- - Ipv6 specifies that the field must be a valid IPv6 address in byte - format - This field is part of the `well_known` oneof. - See the documentation for `validate.BytesRules` for more details. - nullable: true - readOnly: false - type: boolean - len: - description: Len specifies that this field must be the specified number of bytes - format: uint64 - readOnly: false + kind: + description: The kind field. + enum: + - MCP_ONBOARDING_TARGET_KIND_UNSPECIFIED + - MCP_ONBOARDING_TARGET_KIND_APP + - MCP_ONBOARDING_TARGET_KIND_CATALOG_ENTRY + - MCP_ONBOARDING_TARGET_KIND_MCP_SERVER type: string - maxLen: - description: |- - MaxLen specifies that this field must be the specified number of bytes - at a maximum - format: uint64 - readOnly: false + x-speakeasy-unknown-values: allow + mcpServerId: + description: The registered MCP server a CATALOG_ENTRY target became, once registered. type: string - minLen: - description: |- - MinLen specifies that this field must be the specified number of bytes - at a minimum - format: uint64 - readOnly: false + status: + description: The status field. + enum: + - MCP_ONBOARDING_TARGET_STATUS_UNSPECIFIED + - MCP_ONBOARDING_TARGET_STATUS_PENDING + - MCP_ONBOARDING_TARGET_STATUS_DONE + - MCP_ONBOARDING_TARGET_STATUS_SKIPPED type: string - notIn: - description: |- - NotIn specifies that this field cannot be equal to one of the specified - values + x-speakeasy-unknown-values: allow + title: Mcp Onboarding Target + type: object + x-speakeasy-name-override: McpOnboardingTarget + c1.api.settings.v1.McpOnboardingTargetList: + description: |- + McpOnboardingTargetList wraps the target list so an update can distinguish + replace (present, even if empty) from leave-unchanged (omitted). + properties: + targets: + description: The targets field. items: - format: base64 - type: string - nullable: true - readOnly: false - type: array - pattern: - description: |- - Pattern specifes that this field must match against the specified - regular expression (RE2 syntax). The included expression should elide - any delimiters. - readOnly: false + $ref: '#/components/schemas/c1.api.settings.v1.McpOnboardingTarget' + type: + - array + - "null" + title: Mcp Onboarding Target List + type: object + x-speakeasy-name-override: McpOnboardingTargetList + c1.api.settings.v1.MicrosoftGraphProviderConfig: + description: |- + MicrosoftGraphProviderConfig configures sending via Microsoft Graph sendMail API. + Requires an Azure AD app registration with Mail.Send application permission (admin-consented). + properties: + azureTenantId: + description: Customer's Azure AD tenant ID (directory ID). type: string - prefix: - description: |- - Prefix specifies that this field must have the specified bytes at the - beginning of the string. - format: base64 - readOnly: false + clientId: + description: App registration client ID with Mail.Send application permission. type: string - suffix: + clientSecret: description: |- - Suffix specifies that this field must have the specified bytes at the - end of the string. - format: base64 - readOnly: false + Client secret. Write-only: accepted on create/update, never returned in Get. + Empty on update means "keep existing secret". type: string - title: Bytes Rules + title: Microsoft Graph Provider Config type: object - x-speakeasy-name-override: BytesRules - validate.DoubleRules: - description: DoubleRules describes the constraints applied to `double` values - nullable: true + x-speakeasy-name-override: MicrosoftGraphProviderConfig + c1.api.settings.v1.OnboardingOrgContext: + description: The OnboardingOrgContext message. properties: - const: - description: Const specifies that this field must be exactly the specified value - readOnly: false - type: number - gt: - description: |- - Gt specifies that this field must be greater than the specified value, - exclusive. If the value of Gt is larger than a specified Lt or Lte, the - range is reversed. - readOnly: false - type: number - gte: - description: |- - Gte specifies that this field must be greater than or equal to the - specified value, inclusive. If the value of Gte is larger than a - specified Lt or Lte, the range is reversed. - readOnly: false - type: number - ignoreEmpty: - description: |- - IgnoreEmpty specifies that the validation rules of this field should be - evaluated only if the field is not empty - readOnly: false + industry: + description: The industry field. + type: string + organizationSize: + description: The organizationSize field. + type: string + title: Onboarding Org Context + type: object + x-speakeasy-name-override: OnboardingOrgContext + c1.api.settings.v1.OrgDomain: + description: OrgDomain represents a verified email domain associated with the tenant. + properties: + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + domain: + description: The verified domain name (e.g., "example.com"). + type: string + id: + description: The unique identifier of the domain record. + type: string + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Org Domain + type: object + x-speakeasy-name-override: OrgDomain + c1.api.settings.v1.OrgNotificationSettings: + description: OrgNotificationSettings contains organization-wide notification channel configurations and default preferences. + properties: + channelSettings: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ChannelSettings' + - type: "null" + title: Org Notification Settings + type: object + x-speakeasy-name-override: OrgNotificationSettings + c1.api.settings.v1.ProvisioningRequestPreference: + description: The ProvisioningRequestPreference message. + properties: + enabled: + description: The enabled field. type: boolean - in: - description: |- - In specifies that this field must be equal to one of the specified - values - items: - type: number - nullable: true - readOnly: false - type: array - lt: - description: |- - Lt specifies that this field must be less than the specified value, - exclusive - readOnly: false - type: number - lte: + locked: + description: The locked field. + type: boolean + title: Provisioning Request Preference + type: object + x-speakeasy-name-override: ProvisioningRequestPreference + c1.api.settings.v1.RequestCreatedPreference: + description: The RequestCreatedPreference message. + properties: + enabled: + description: The enabled field. + type: boolean + locked: + description: The locked field. + type: boolean + title: Request Created Preference + type: object + x-speakeasy-name-override: RequestCreatedPreference + c1.api.settings.v1.RequestSettings: + description: RequestSettings holds tenant-wide configuration for the access-request flow. + properties: + maxBulkEntitlementSelection: description: |- - Lte specifies that this field must be less than or equal to the - specified value, inclusive - readOnly: false - type: number - notIn: + MaxBulkEntitlementSelection caps the number of entitlements a requester + may select in a single bulk access request. Reads always return the + effective value — an unset (0) value is presented as the system default of + 10. Writing 0 resets the field to unset in storage. Maximum 100. + format: int32 + type: integer + skipJustification: description: |- - NotIn specifies that this field cannot be equal to one of the specified - values - items: - type: number - nullable: true - readOnly: false - type: array - title: Double Rules + When true, request surfaces (webapp, Slack, MS Teams) skip prompting the + requester for a justification. + type: boolean + title: Request Settings type: object - x-speakeasy-name-override: DoubleRules - validate.DurationRules: - description: |- - DurationRules describe the constraints applied exclusively to the - `google.protobuf.Duration` well-known type - nullable: true + x-speakeasy-name-override: RequestSettings + c1.api.settings.v1.ReviewsPreference: + description: The ReviewsPreference message. properties: - const: - format: duration - readOnly: false - type: string - gt: - format: duration - readOnly: false + enabled: + description: The enabled field. + type: boolean + locked: + description: The locked field. + type: boolean + title: Reviews Preference + type: object + x-speakeasy-name-override: ReviewsPreference + c1.api.settings.v1.SearchEmailAuditEventsRequest: + description: The SearchEmailAuditEventsRequest message. + properties: + pageSize: + description: Maximum results per page (0 = server default, max 100). + format: int32 + type: integer + pageToken: + description: Pagination token from previous response. type: string - gte: - format: duration - readOnly: false + title: Search Email Audit Events Request + type: object + x-speakeasy-name-override: SearchEmailAuditEventsRequest + c1.api.settings.v1.SearchEmailAuditEventsResponse: + description: The SearchEmailAuditEventsResponse message. + properties: + list: + description: OCSF EmailActivity events as Struct for frontend rendering. + items: + additionalProperties: true + type: object + type: + - array + - "null" + nextPageToken: + description: Token for next page. Empty when no more pages. type: string - in: + title: Search Email Audit Events Response + type: object + x-speakeasy-name-override: SearchEmailAuditEventsResponse + c1.api.settings.v1.SendGridProviderConfig: + description: SendGridProviderConfig configures sending via a customer's SendGrid account. + properties: + apiKey: description: |- - In specifies that this field must be equal to one of the specified - values - items: - format: duration - readOnly: false - type: string - nullable: true - readOnly: false - type: array - lt: - format: duration - readOnly: false + Customer's SendGrid API key. Write-only: accepted on create/update, never returned in Get. + Empty on update means "keep existing key". type: string - lte: - format: duration - readOnly: false + title: Send Grid Provider Config + type: object + x-speakeasy-name-override: SendGridProviderConfig + c1.api.settings.v1.SessionSettings: + description: SessionSettings configures session security for the tenant, including timeouts and per-role IP restrictions. + properties: + clientIdApprovalRequestPolicyId: + description: Policy ID for REQUESTABLE mode approval routing. type: string - notIn: + clientIdMetadataDocumentPolicy: + description: Policy for metadata document client_id URLs. + enum: + - CLIENT_ID_METADATA_DOCUMENT_POLICY_UNSPECIFIED + - CLIENT_ID_METADATA_DOCUMENT_POLICY_ALLOW_ALL + - CLIENT_ID_METADATA_DOCUMENT_POLICY_REQUESTABLE + - CLIENT_ID_METADATA_DOCUMENT_POLICY_ALLOWLIST_ONLY + type: string + x-speakeasy-unknown-values: allow + connectorSource: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.CIDRRestriction' + - type: "null" + externalClientSource: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.CIDRRestriction' + - type: "null" + externalClientsEnabled: description: |- - NotIn specifies that this field cannot be equal to one of the specified - values - items: - format: duration - readOnly: false - type: string - nullable: true - readOnly: false - type: array - required: - description: Required specifies that this field must be set - readOnly: false + Enable external client registration (OAuth 2.0 DCR) for MCP clients + like Claude Desktop, Cursor, and other AI assistants. type: boolean - title: Duration Rules + maxSessionLength: + format: duration + type: + - string + - "null" + pccAdminSource: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.CIDRRestriction' + - type: "null" + pccUserSource: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.CIDRRestriction' + - type: "null" + ssoAdminSource: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.CIDRRestriction' + - type: "null" + ssoUserSource: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.CIDRRestriction' + - type: "null" + title: Session Settings type: object - x-speakeasy-name-override: DurationRules - validate.EnumRules: - description: EnumRules describe the constraints applied to enum values - nullable: true + x-speakeasy-name-override: SessionSettings + c1.api.settings.v1.SlackChannelSettings: + description: The SlackChannelSettings message. properties: - const: - description: Const specifies that this field must be exactly the specified value - format: int32 - readOnly: false - type: integer - definedOnly: - description: |- - DefinedOnly specifies that this field must be only one of the defined - values for this enum, failing on any undefined value. - readOnly: false + accessProvisioned: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.AccessProvisionedPreference' + - type: "null" + approvalNeeded: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ApprovalNeededPreference' + - type: "null" + commentOnRequest: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.CommentOnRequestPreference' + - type: "null" + completion: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.CompletionPreference' + - type: "null" + connectorIssues: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ConnectorIssuesPreference' + - type: "null" + digest: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.DigestPreference' + - type: "null" + enabled: + description: The enabled field. type: boolean - in: - description: |- - In specifies that this field must be equal to one of the specified - values - items: - format: int32 - type: integer - nullable: true - readOnly: false - type: array - notIn: - description: |- - NotIn specifies that this field cannot be equal to one of the specified - values - items: - format: int32 - type: integer - nullable: true - readOnly: false - type: array - title: Enum Rules + expiringAccess: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ExpiringAccessPreference' + - type: "null" + isConfigured: + description: The isConfigured field. + type: boolean + provisioningRequest: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ProvisioningRequestPreference' + - type: "null" + requestCreated: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.RequestCreatedPreference' + - type: "null" + reviews: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ReviewsPreference' + - type: "null" + system: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.SystemPreference' + - type: "null" + taskReminders: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.TaskRemindersPreference' + - type: "null" + title: Slack Channel Settings type: object - x-speakeasy-name-override: EnumRules - validate.FieldRules: - description: | - FieldRules encapsulates the rules for each type of field. Depending on the - field, the correct set should be used to ensure proper validations. - - This message contains a oneof named type. Only a single field of the following list may be set at a time: - - float - - double - - int32 - - int64 - - uint32 - - uint64 - - sint32 - - sint64 - - fixed32 - - fixed64 - - sfixed32 - - sfixed64 - - bool - - string - - bytes - - enum - - repeated - - map - - any - - duration - - timestamp + x-speakeasy-name-override: SlackChannelSettings + c1.api.settings.v1.SystemPreference: + description: The SystemPreference message. properties: - any: - $ref: '#/components/schemas/validate.AnyRules' - bool: - $ref: '#/components/schemas/validate.BoolRules' - bytes: - $ref: '#/components/schemas/validate.BytesRules' - double: - $ref: '#/components/schemas/validate.DoubleRules' - duration: - $ref: '#/components/schemas/validate.DurationRules' - enum: - $ref: '#/components/schemas/validate.EnumRules' - fixed32: - $ref: '#/components/schemas/validate.Fixed32Rules' - fixed64: - $ref: '#/components/schemas/validate.Fixed64Rules' - float: - $ref: '#/components/schemas/validate.FloatRules' - int32: - $ref: '#/components/schemas/validate.Int32Rules' - int64: - $ref: '#/components/schemas/validate.Int64Rules' - map: - $ref: '#/components/schemas/validate.MapRules' - message: - $ref: '#/components/schemas/validate.MessageRules' - repeated: - $ref: '#/components/schemas/validate.RepeatedRules' - sfixed32: - $ref: '#/components/schemas/validate.SFixed32Rules' - sfixed64: - $ref: '#/components/schemas/validate.SFixed64Rules' - sint32: - $ref: '#/components/schemas/validate.SInt32Rules' - sint64: - $ref: '#/components/schemas/validate.SInt64Rules' - string: - $ref: '#/components/schemas/validate.StringRules' - timestamp: - $ref: '#/components/schemas/validate.TimestampRules' - uint32: - $ref: '#/components/schemas/validate.UInt32Rules' - uint64: - $ref: '#/components/schemas/validate.UInt64Rules' - title: Field Rules + enabled: + description: The enabled field. + type: boolean + locked: + description: The locked field. + type: boolean + title: System Preference type: object - x-speakeasy-name-override: FieldRules - validate.Fixed32Rules: - description: Fixed32Rules describes the constraints applied to `fixed32` values - nullable: true + x-speakeasy-name-override: SystemPreference + c1.api.settings.v1.TaskRemindersPreference: + description: The TaskRemindersPreference message. properties: - const: - description: Const specifies that this field must be exactly the specified value - format: uint32 - readOnly: false - type: integer - gt: - description: |- - Gt specifies that this field must be greater than the specified value, - exclusive. If the value of Gt is larger than a specified Lt or Lte, the - range is reversed. - format: uint32 - readOnly: false - type: integer - gte: - description: |- - Gte specifies that this field must be greater than or equal to the - specified value, inclusive. If the value of Gte is larger than a - specified Lt or Lte, the range is reversed. - format: uint32 - readOnly: false - type: integer - ignoreEmpty: - description: |- - IgnoreEmpty specifies that the validation rules of this field should be - evaluated only if the field is not empty - readOnly: false + enabled: + description: The enabled field. type: boolean - in: - description: |- - In specifies that this field must be equal to one of the specified - values - items: - format: uint32 - type: integer - nullable: true - readOnly: false - type: array - lt: - description: |- - Lt specifies that this field must be less than the specified value, - exclusive - format: uint32 - readOnly: false - type: integer - lte: - description: |- - Lte specifies that this field must be less than or equal to the - specified value, inclusive - format: uint32 - readOnly: false - type: integer - notIn: - description: |- - NotIn specifies that this field cannot be equal to one of the specified - values - items: - format: uint32 - type: integer - nullable: true - readOnly: false - type: array - title: Fixed 32 Rules + locked: + description: The locked field. + type: boolean + title: Task Reminders Preference type: object - x-speakeasy-name-override: Fixed32Rules - validate.Fixed64Rules: - description: Fixed64Rules describes the constraints applied to `fixed64` values - nullable: true + x-speakeasy-name-override: TaskRemindersPreference + c1.api.settings.v1.TenantEmailProvider: + description: | + TenantEmailProvider is the API representation of the tenant's email provider. + + This message contains a oneof named provider. Only a single field of the following list may be set at a time: + - c1Builtin + - awsSes + - sendgrid + - microsoftGraph + - googleWorkspace properties: - const: - description: Const specifies that this field must be exactly the specified value - format: uint64 - readOnly: false - type: string - gt: + awsSes: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.AWSSESProviderConfig' + - type: "null" + c1Builtin: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.C1BuiltInProviderConfig' + - type: "null" + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + fromAddress: description: |- - Gt specifies that this field must be greater than the specified value, - exclusive. If the value of Gt is larger than a specified Lt or Lte, the - range is reversed. - format: uint64 - readOnly: false + Sender email address. Must be verified with the provider. + Ignored when using the C1 built-in provider (uses no-reply@conductorone.com). type: string - gte: + fromName: description: |- - Gte specifies that this field must be greater than or equal to the - specified value, inclusive. If the value of Gte is larger than a - specified Lt or Lte, the range is reversed. - format: uint64 - readOnly: false + Sender display name shown in the recipient's inbox (e.g., "Acme Corp IT"). + Used as the RFC 5322 display-name: "Acme Corp IT" . + Ignored when using the C1 built-in provider. type: string - ignoreEmpty: + googleWorkspace: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.GoogleWorkspaceProviderConfig' + - type: "null" + microsoftGraph: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.MicrosoftGraphProviderConfig' + - type: "null" + replyToAddress: + description: Optional reply-to address. + type: string + sendgrid: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.SendGridProviderConfig' + - type: "null" + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Tenant Email Provider + type: object + x-speakeasy-name-override: TenantEmailProvider + c1.api.settings.v1.TerraformPreferences: + description: |- + TerraformPreferences groups the user's preferences for the "Show + Terraform code" feature. + properties: + showCode: description: |- - IgnoreEmpty specifies that the validation rules of this field should be - evaluated only if the field is not empty - readOnly: false + When true, the user sees the "Show Terraform code" trigger on + supported detail pages and list rows. Defaults to false. + + Visibility is also role-gated: the trigger is shown only to users + with one of the SystemOwner, SystemOwnerReadOnly, IntegrationAdmin, + ApplicationAdmin, CampaignAdmin, or AccessRequestAdmin roles. Users + without one of these roles will not see the trigger even when this + flag is true. type: boolean - in: + title: Terraform Preferences + type: object + x-speakeasy-name-override: TerraformPreferences + c1.api.settings.v1.TestSourceIPRequest: + description: The TestSourceIPRequest message. + properties: + allowCidr: description: |- - In specifies that this field must be equal to one of the specified - values + The CIDR allowlist rules to test against. If empty, uses the tenant's current allowlist. + Accepts IPv4 (e.g. 10.0.0.0/24) or IPv6 (e.g. 2001:db8::/32) CIDRs. items: - format: uint64 type: string - nullable: true - readOnly: false - type: array - lt: - description: |- - Lt specifies that this field must be less than the specified value, - exclusive - format: uint64 - readOnly: false - type: string - lte: + type: + - array + - "null" + sourceIp: description: |- - Lte specifies that this field must be less than or equal to the - specified value, inclusive - format: uint64 - readOnly: false + if unset, uses the source IP of the request. + Accepts IPv4 (e.g. 10.0.0.5) or IPv6 (e.g. 2001:db8::1) addresses, optionally with a CIDR prefix. type: string - notIn: - description: |- - NotIn specifies that this field cannot be equal to one of the specified - values - items: - format: uint64 - type: string - nullable: true - readOnly: false - type: array - title: Fixed 64 Rules + title: Test Source Ip Request type: object - x-speakeasy-name-override: Fixed64Rules - validate.FloatRules: - description: FloatRules describes the constraints applied to `float` values - nullable: true + x-speakeasy-name-override: TestSourceIPRequest + c1.api.settings.v1.TestSourceIPResponse: + description: The TestSourceIPResponse message. properties: - const: - description: Const specifies that this field must be exactly the specified value - readOnly: false - type: number - gt: - description: |- - Gt specifies that this field must be greater than the specified value, - exclusive. If the value of Gt is larger than a specified Lt or Lte, the - range is reversed. - readOnly: false - type: number - gte: - description: |- - Gte specifies that this field must be greater than or equal to the - specified value, inclusive. If the value of Gte is larger than a - specified Lt or Lte, the range is reversed. - readOnly: false - type: number - ignoreEmpty: - description: |- - IgnoreEmpty specifies that the validation rules of this field should be - evaluated only if the field is not empty - readOnly: false + allowed: + description: Whether the tested IP address is allowed by the CIDR rules. type: boolean - in: - description: |- - In specifies that this field must be equal to one of the specified - values - items: - type: number - nullable: true - readOnly: false - type: array - lt: - description: |- - Lt specifies that this field must be less than the specified value, - exclusive - readOnly: false - type: number - lte: - description: |- - Lte specifies that this field must be less than or equal to the - specified value, inclusive - readOnly: false - type: number - notIn: - description: |- - NotIn specifies that this field cannot be equal to one of the specified - values - items: - type: number - nullable: true - readOnly: false - type: array - title: Float Rules + checkedIp: + description: The IP address that was checked, either from the request or inferred from the caller. + type: string + details: + oneOf: + - $ref: '#/components/schemas/google.rpc.Status' + - type: "null" + title: Test Source Ip Response type: object - x-speakeasy-name-override: FloatRules - validate.Int32Rules: - description: Int32Rules describes the constraints applied to `int32` values - nullable: true + x-speakeasy-name-override: TestSourceIPResponse + c1.api.settings.v1.TestTenantEmailProviderRequest: + description: The TestTenantEmailProviderRequest message. properties: - const: - description: Const specifies that this field must be exactly the specified value - format: int32 - readOnly: false - type: integer - gt: - description: |- - Gt specifies that this field must be greater than the specified value, - exclusive. If the value of Gt is larger than a specified Lt or Lte, the - range is reversed. - format: int32 - readOnly: false - type: integer - gte: - description: |- - Gte specifies that this field must be greater than or equal to the - specified value, inclusive. If the value of Gte is larger than a - specified Lt or Lte, the range is reversed. - format: int32 - readOnly: false - type: integer - ignoreEmpty: - description: |- - IgnoreEmpty specifies that the validation rules of this field should be - evaluated only if the field is not empty - readOnly: false + testRecipientEmail: + description: The email address to send the test email to. + type: string + title: Test Tenant Email Provider Request + type: object + x-speakeasy-name-override: TestTenantEmailProviderRequest + c1.api.settings.v1.TestTenantEmailProviderResponse: + description: The TestTenantEmailProviderResponse message. + properties: + message: + description: Human-readable detail about the result. + type: string + success: + description: Whether the test email was sent successfully. type: boolean - in: - description: |- - In specifies that this field must be equal to one of the specified - values - items: - format: int32 - type: integer - nullable: true - readOnly: false - type: array - lt: - description: |- - Lt specifies that this field must be less than the specified value, - exclusive - format: int32 - readOnly: false - type: integer - lte: + title: Test Tenant Email Provider Response + type: object + x-speakeasy-name-override: TestTenantEmailProviderResponse + c1.api.settings.v1.UpdateContactsRequest: + description: The UpdateContactsRequest message. + properties: + contacts: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.Contacts' + - type: "null" + updateMask: + type: + - string + - "null" + title: Update Contacts Request + type: object + x-speakeasy-name-override: UpdateContactsRequest + c1.api.settings.v1.UpdateContactsResponse: + description: The UpdateContactsResponse message. + properties: + contacts: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.Contacts' + - type: "null" + title: Update Contacts Response + type: object + x-speakeasy-name-override: UpdateContactsResponse + c1.api.settings.v1.UpdateOnboardingSettingsRequest: + description: The UpdateOnboardingSettingsRequest message. + properties: + conversationId: + description: The identifier of the onboarding conversation thread to associate. + type: string + mcpOnboardingGoal: + description: The admin's AIAM onboarding goal. Omit to leave unchanged; set to "" to clear. + type: + - string + - "null" + mcpOnboardingStatus: description: |- - Lte specifies that this field must be less than or equal to the - specified value, inclusive - format: int32 - readOnly: false - type: integer - notIn: + The new MCP onboarding status to set. Omit (or UNSPECIFIED) to leave it + unchanged. Setting NOT_STARTED restarts the briefing and clears the stored + mcp_onboarding_goal and mcp_onboarding_targets, unless this same request also + sets them (those win). + enum: + - MCP_ONBOARDING_STATUS_UNSPECIFIED + - MCP_ONBOARDING_STATUS_NOT_STARTED + - MCP_ONBOARDING_STATUS_IN_PROGRESS + - MCP_ONBOARDING_STATUS_COMPLETE + - MCP_ONBOARDING_STATUS_DISMISSED + type: + - string + - "null" + x-speakeasy-unknown-values: allow + mcpOnboardingTargets: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.McpOnboardingTargetList' + - type: "null" + status: description: |- - NotIn specifies that this field cannot be equal to one of the specified - values - items: - format: int32 - type: integer - nullable: true - readOnly: false - type: array - title: Int 32 Rules + The new onboarding status to set. UNSPECIFIED leaves the core onboarding + status unchanged (set mcp_onboarding_status alone to retire the AIAM + briefing without touching the core wizard). + enum: + - ONBOARDING_STATUS_UNSPECIFIED + - ONBOARDING_STATUS_NOT_STARTED + - ONBOARDING_STATUS_IN_PROGRESS + - ONBOARDING_STATUS_COMPLETE + - ONBOARDING_STATUS_DISMISSED + type: string + x-speakeasy-unknown-values: allow + title: Update Onboarding Settings Request type: object - x-speakeasy-name-override: Int32Rules - validate.Int64Rules: - description: Int64Rules describes the constraints applied to `int64` values - nullable: true + x-speakeasy-name-override: UpdateOnboardingSettingsRequest + c1.api.settings.v1.UpdateOnboardingSettingsResponse: + description: The UpdateOnboardingSettingsResponse message. properties: - const: - description: Const specifies that this field must be exactly the specified value - format: int64 - readOnly: false + mcpOnboardingGoal: + description: The updated AIAM onboarding goal. type: string - gt: - description: |- - Gt specifies that this field must be greater than the specified value, - exclusive. If the value of Gt is larger than a specified Lt or Lte, the - range is reversed. - format: int64 - readOnly: false + mcpOnboardingStatus: + description: The updated AIAM MCP onboarding status. + enum: + - MCP_ONBOARDING_STATUS_UNSPECIFIED + - MCP_ONBOARDING_STATUS_NOT_STARTED + - MCP_ONBOARDING_STATUS_IN_PROGRESS + - MCP_ONBOARDING_STATUS_COMPLETE + - MCP_ONBOARDING_STATUS_DISMISSED type: string - gte: - description: |- - Gte specifies that this field must be greater than or equal to the - specified value, inclusive. If the value of Gte is larger than a - specified Lt or Lte, the range is reversed. - format: int64 - readOnly: false + x-speakeasy-unknown-values: allow + mcpOnboardingTargets: + description: The updated AIAM onboarding targets. + items: + $ref: '#/components/schemas/c1.api.settings.v1.McpOnboardingTarget' + type: + - array + - "null" + status: + description: The updated onboarding status. + enum: + - ONBOARDING_STATUS_UNSPECIFIED + - ONBOARDING_STATUS_NOT_STARTED + - ONBOARDING_STATUS_IN_PROGRESS + - ONBOARDING_STATUS_COMPLETE + - ONBOARDING_STATUS_DISMISSED type: string - ignoreEmpty: - description: |- - IgnoreEmpty specifies that the validation rules of this field should be - evaluated only if the field is not empty - readOnly: false - type: boolean - in: - description: |- - In specifies that this field must be equal to one of the specified - values + x-speakeasy-unknown-values: allow + title: Update Onboarding Settings Response + type: object + x-speakeasy-name-override: UpdateOnboardingSettingsResponse + c1.api.settings.v1.UpdateOrgDomainRequest: + description: The UpdateOrgDomainRequest message. + properties: + newDomains: + description: The complete list of domain names that should be set as the tenant's verified domains. items: - format: int64 type: string - nullable: true - readOnly: false - type: array - lt: - description: |- - Lt specifies that this field must be less than the specified value, - exclusive - format: int64 - readOnly: false - type: string - lte: + type: + - array + - "null" + title: Update Org Domain Request + type: object + x-speakeasy-name-override: UpdateOrgDomainRequest + c1.api.settings.v1.UpdateOrgDomainResponse: + description: The UpdateOrgDomainResponse message. + properties: + list: + description: The resulting list of verified domains after the update. + items: + $ref: '#/components/schemas/c1.api.settings.v1.OrgDomain' + type: + - array + - "null" + title: Update Org Domain Response + type: object + x-speakeasy-name-override: UpdateOrgDomainResponse + c1.api.settings.v1.UpdateOrgNotificationSettingsRequest: + description: The UpdateOrgNotificationSettingsRequest message. + properties: + channelSettings: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ChannelSettings' + - type: "null" + title: Update Org Notification Settings Request + type: object + x-speakeasy-name-override: UpdateOrgNotificationSettingsRequest + c1.api.settings.v1.UpdateOrgNotificationSettingsResponse: + description: The UpdateOrgNotificationSettingsResponse message. + properties: + orgNotificationSettings: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.OrgNotificationSettings' + - type: "null" + title: Update Org Notification Settings Response + type: object + x-speakeasy-name-override: UpdateOrgNotificationSettingsResponse + c1.api.settings.v1.UpdateRequestSettingsRequest: + description: The UpdateRequestSettingsRequest message. + properties: + requestSettings: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.RequestSettings' + - type: "null" + updateMask: + type: + - string + - "null" + title: Update Request Settings Request + type: object + x-speakeasy-name-override: UpdateRequestSettingsRequest + c1.api.settings.v1.UpdateRequestSettingsResponse: + description: The UpdateRequestSettingsResponse message. + properties: + requestSettings: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.RequestSettings' + - type: "null" + title: Update Request Settings Response + type: object + x-speakeasy-name-override: UpdateRequestSettingsResponse + c1.api.settings.v1.UpdateSessionSettingsRequest: + description: The UpdateSessionSettingsRequest message. + properties: + sessionSettings: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.SessionSettings' + - type: "null" + updateMask: + type: + - string + - "null" + title: Update Session Settings Request + type: object + x-speakeasy-name-override: UpdateSessionSettingsRequest + c1.api.settings.v1.UpdateSessionSettingsResponse: + description: The UpdateSessionSettingsResponse message. + properties: + sessionSettings: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.SessionSettings' + - type: "null" + title: Update Session Settings Response + type: object + x-speakeasy-name-override: UpdateSessionSettingsResponse + c1.api.settings.v1.UpdateTenantEmailProviderRequest: + description: The UpdateTenantEmailProviderRequest message. + properties: + emailProvider: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.TenantEmailProvider' + - type: "null" + updateMask: + type: + - string + - "null" + title: Update Tenant Email Provider Request + type: object + x-speakeasy-name-override: UpdateTenantEmailProviderRequest + c1.api.settings.v1.UpdateTenantEmailProviderResponse: + description: The UpdateTenantEmailProviderResponse message. + properties: + emailProvider: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.TenantEmailProvider' + - type: "null" + title: Update Tenant Email Provider Response + type: object + x-speakeasy-name-override: UpdateTenantEmailProviderResponse + c1.api.settings.v1.UpdateUserDeveloperPreferencesRequest: + description: The UpdateUserDeveloperPreferencesRequest message. + properties: + terraform: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.TerraformPreferences' + - type: "null" + title: Update User Developer Preferences Request + type: object + x-speakeasy-name-override: UpdateUserDeveloperPreferencesRequest + c1.api.settings.v1.UpdateUserDeveloperPreferencesResponse: + description: The UpdateUserDeveloperPreferencesResponse message. + properties: + userDeveloperPreferences: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.UserDeveloperPreferences' + - type: "null" + title: Update User Developer Preferences Response + type: object + x-speakeasy-name-override: UpdateUserDeveloperPreferencesResponse + c1.api.settings.v1.UpdateUserNotificationSettingsRequest: + description: The UpdateUserNotificationSettingsRequest message. + properties: + channelSettings: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ChannelSettings' + - type: "null" + title: Update User Notification Settings Request + type: object + x-speakeasy-name-override: UpdateUserNotificationSettingsRequest + c1.api.settings.v1.UpdateUserNotificationSettingsResponse: + description: The UpdateUserNotificationSettingsResponse message. + properties: + userNotificationSettings: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.UserNotificationSettings' + - type: "null" + title: Update User Notification Settings Response + type: object + x-speakeasy-name-override: UpdateUserNotificationSettingsResponse + c1.api.settings.v1.UserDeveloperPreferences: + description: |- + UserDeveloperPreferences holds a user's developer-tooling preferences, + organized into per-feature clusters. + properties: + terraform: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.TerraformPreferences' + - type: "null" + title: User Developer Preferences + type: object + x-speakeasy-name-override: UserDeveloperPreferences + c1.api.settings.v1.UserNotificationSettings: + description: UserNotificationSettings contains the calling user's personal notification preferences. + properties: + channelSettings: + oneOf: + - $ref: '#/components/schemas/c1.api.settings.v1.ChannelSettings' + - type: "null" + title: User Notification Settings + type: object + x-speakeasy-name-override: UserNotificationSettings + c1.api.sign_in_policy.v1.Allow: + description: Allow permits the sign-in. + properties: + floorLevel: description: |- - Lte specifies that this field must be less than or equal to the - specified value, inclusive - format: int64 - readOnly: false + The minimum assurance level that satisfies this rule. Required on enforced + Allow rules. + enum: + - AUTH_LEVEL_UNSPECIFIED + - AUTH_LEVEL_NONE + - AUTH_LEVEL_SINGLE_FACTOR + - AUTH_LEVEL_MULTI_FACTOR + - AUTH_LEVEL_PHR + - AUTH_LEVEL_PHRH type: string - notIn: - description: |- - NotIn specifies that this field cannot be equal to one of the specified - values + x-speakeasy-unknown-values: allow + title: Allow + type: object + x-speakeasy-name-override: Allow + c1.api.sign_in_policy.v1.ChallengeRequired: + description: ChallengeRequired asks for an additional factor before the sign-in completes. + properties: + types: + description: The credential types that may satisfy the challenge. items: - format: int64 + enum: + - CREDENTIAL_TYPE_UNSPECIFIED + - CREDENTIAL_TYPE_PASSKEY + - CREDENTIAL_TYPE_PASSWORD + - CREDENTIAL_TYPE_TOTP + - CREDENTIAL_TYPE_EMAIL_OTP + - CREDENTIAL_TYPE_RECOVERY_CODE + - CREDENTIAL_TYPE_DELEGATED_GOOGLE + - CREDENTIAL_TYPE_DELEGATED_MICROSOFT + - CREDENTIAL_TYPE_UPSTREAM_IDP type: string - nullable: true - readOnly: false - type: array - title: Int 64 Rules + x-speakeasy-unknown-values: allow + type: + - array + - "null" + title: Challenge Required type: object - x-speakeasy-name-override: Int64Rules - validate.MapRules: - description: MapRules describe the constraints applied to `map` values - nullable: true + x-speakeasy-name-override: ChallengeRequired + c1.api.sign_in_policy.v1.Deny: + description: Deny rejects the sign-in. properties: - ignoreEmpty: - description: |- - IgnoreEmpty specifies that the validation rules of this field should be - evaluated only if the field is not empty - readOnly: false - type: boolean - keys: - $ref: '#/components/schemas/validate.FieldRules' - maxPairs: - description: |- - MaxPairs specifies that this field must have the specified number of - KVs at a maximum - format: uint64 - readOnly: false + reasonAdmin: + description: Reason shown in admin-only audit. type: string - minPairs: - description: |- - MinPairs specifies that this field must have the specified number of - KVs at a minimum - format: uint64 - readOnly: false + reasonUser: + description: Reason safe to show the end user. type: string - noSparse: + title: Deny + type: object + x-speakeasy-name-override: Deny + c1.api.sign_in_policy.v1.EnrollmentRequired: + description: EnrollmentRequired tells the user to enroll a credential before continuing. + properties: + credentialTypes: description: |- - NoSparse specifies values in this field cannot be unset. This only - applies to map's with message value types. - readOnly: false - type: boolean - values: - $ref: '#/components/schemas/validate.FieldRules' - title: Map Rules + The credential types the user may enroll. Empty means "complete identity + verification first". + items: + enum: + - CREDENTIAL_TYPE_UNSPECIFIED + - CREDENTIAL_TYPE_PASSKEY + - CREDENTIAL_TYPE_PASSWORD + - CREDENTIAL_TYPE_TOTP + - CREDENTIAL_TYPE_EMAIL_OTP + - CREDENTIAL_TYPE_RECOVERY_CODE + - CREDENTIAL_TYPE_DELEGATED_GOOGLE + - CREDENTIAL_TYPE_DELEGATED_MICROSOFT + - CREDENTIAL_TYPE_UPSTREAM_IDP + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + title: Enrollment Required type: object - x-speakeasy-name-override: MapRules - validate.MessageRules: + x-speakeasy-name-override: EnrollmentRequired + c1.api.sign_in_policy.v1.PolicyOutcome: + description: | + PolicyOutcome is the effect of a matched rule. Exactly one kind is set. + + This message contains a oneof named kind. Only a single field of the following list may be set at a time: + - allow + - deny + - stepUpRequired + - challengeRequired + - enrollmentRequired + properties: + allow: + oneOf: + - $ref: '#/components/schemas/c1.api.sign_in_policy.v1.Allow' + - type: "null" + challengeRequired: + oneOf: + - $ref: '#/components/schemas/c1.api.sign_in_policy.v1.ChallengeRequired' + - type: "null" + deny: + oneOf: + - $ref: '#/components/schemas/c1.api.sign_in_policy.v1.Deny' + - type: "null" + enrollmentRequired: + oneOf: + - $ref: '#/components/schemas/c1.api.sign_in_policy.v1.EnrollmentRequired' + - type: "null" + stepUpRequired: + oneOf: + - $ref: '#/components/schemas/c1.api.sign_in_policy.v1.StepUpRequired' + - type: "null" + title: Policy Outcome + type: object + x-speakeasy-name-override: PolicyOutcome + c1.api.sign_in_policy.v1.PolicyRule: description: |- - MessageRules describe the constraints applied to embedded message values. - For message-type fields, validation is performed recursively. + PolicyRule is one rung of the ordered sign-in cascade. Rules are evaluated + top to bottom; the first enforced rule whose condition matches supplies the + outcome. properties: - required: - description: Required specifies that this field must be set - readOnly: false - type: boolean - skip: - description: |- - Skip specifies that the validation rules of this field should not be - evaluated - readOnly: false - type: boolean - title: Message Rules + description: + description: A human-readable description shown in the admin UI. + type: string + id: + description: A stable identifier for the rule, surfaced in audit. + type: string + matchCel: + description: A boolean condition expression evaluated against the sign-in context. + type: string + mode: + description: Whether the rule is live, evaluated-only, or skipped. + enum: + - POLICY_RULE_MODE_UNSPECIFIED + - POLICY_RULE_MODE_ENFORCE + - POLICY_RULE_MODE_OBSERVE + - POLICY_RULE_MODE_DISABLED + type: string + x-speakeasy-unknown-values: allow + outcome: + oneOf: + - $ref: '#/components/schemas/c1.api.sign_in_policy.v1.PolicyOutcome' + - type: "null" + title: Policy Rule type: object - x-speakeasy-name-override: MessageRules - validate.RepeatedRules: - description: RepeatedRules describe the constraints applied to `repeated` values - nullable: true + x-speakeasy-name-override: PolicyRule + c1.api.sign_in_policy.v1.SignInPolicy: + description: SignInPolicy defines how users sign in. properties: - ignoreEmpty: + allowedMfaTypes: description: |- - IgnoreEmpty specifies that the validation rules of this field should be - evaluated only if the field is not empty - readOnly: false - type: boolean - items: - $ref: '#/components/schemas/validate.FieldRules' - maxItems: + The credential types accepted as a second factor. Must be a subset of the + credential types their inventory policy permits. + items: + enum: + - CREDENTIAL_TYPE_UNSPECIFIED + - CREDENTIAL_TYPE_PASSKEY + - CREDENTIAL_TYPE_PASSWORD + - CREDENTIAL_TYPE_TOTP + - CREDENTIAL_TYPE_EMAIL_OTP + - CREDENTIAL_TYPE_RECOVERY_CODE + - CREDENTIAL_TYPE_DELEGATED_GOOGLE + - CREDENTIAL_TYPE_DELEGATED_MICROSOFT + - CREDENTIAL_TYPE_UPSTREAM_IDP + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + allowedPrimaryTypes: description: |- - MaxItems specifies that this field must have the specified number of - items at a maximum - format: uint64 - readOnly: false + The primary credential types users may sign in with. Must be a subset of + the credential types their inventory policy permits. + items: + enum: + - CREDENTIAL_TYPE_UNSPECIFIED + - CREDENTIAL_TYPE_PASSKEY + - CREDENTIAL_TYPE_PASSWORD + - CREDENTIAL_TYPE_TOTP + - CREDENTIAL_TYPE_EMAIL_OTP + - CREDENTIAL_TYPE_RECOVERY_CODE + - CREDENTIAL_TYPE_DELEGATED_GOOGLE + - CREDENTIAL_TYPE_DELEGATED_MICROSOFT + - CREDENTIAL_TYPE_UPSTREAM_IDP + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + defaultOutcome: + oneOf: + - $ref: '#/components/schemas/c1.api.sign_in_policy.v1.PolicyOutcome' + - type: "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + displayName: + description: A human-readable name for the policy. type: string - minItems: - description: |- - MinItems specifies that this field must have the specified number of - items at a minimum - format: uint64 - readOnly: false + id: + description: Unique identifier for the policy. + readOnly: true type: string - unique: + isBuiltin: description: |- - Unique specifies that all elements in this field must be unique. This - contraint is only applicable to scalar and enum types (messages are not - supported). - readOnly: false + True for built-in policies provided by ConductorOne. Built-in policies + cannot be edited or deleted. + readOnly: true type: boolean - title: Repeated Rules - type: object - x-speakeasy-name-override: RepeatedRules - validate.SFixed32Rules: - description: SFixed32Rules describes the constraints applied to `sfixed32` values - nullable: true - properties: - const: - description: Const specifies that this field must be exactly the specified value - format: int32 - readOnly: false - type: integer - gt: - description: |- - Gt specifies that this field must be greater than the specified value, - exclusive. If the value of Gt is larger than a specified Lt or Lte, the - range is reversed. - format: int32 - readOnly: false - type: integer - gte: + priority: description: |- - Gte specifies that this field must be greater than or equal to the - specified value, inclusive. If the value of Gte is larger than a - specified Lt or Lte, the range is reversed. + When a user matches more than one policy, the policy with the highest + priority applies. format: int32 - readOnly: false type: integer - ignoreEmpty: - description: |- - IgnoreEmpty specifies that the validation rules of this field should be - evaluated only if the field is not empty - readOnly: false - type: boolean - in: - description: |- - In specifies that this field must be equal to one of the specified - values + rules: + description: The ordered rule cascade, evaluated top to bottom. items: - format: int32 - type: integer - nullable: true - readOnly: false - type: array - lt: + $ref: '#/components/schemas/c1.api.sign_in_policy.v1.PolicyRule' + type: + - array + - "null" + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Sign In Policy + type: object + x-speakeasy-entity: SignInPolicy + x-speakeasy-name-override: SignInPolicy + c1.api.sign_in_policy.v1.SignInPolicyRef: + description: SignInPolicyRef is a lightweight reference to a sign-in policy by ID. + properties: + id: + description: The id field. + type: string + title: Sign In Policy Ref + type: object + x-speakeasy-name-override: SignInPolicyRef + c1.api.sign_in_policy.v1.SignInPolicyServiceCreateRequest: + description: The SignInPolicyServiceCreateRequest message. + properties: + allowedMfaTypes: + description: The credential types accepted as a second factor. + items: + enum: + - CREDENTIAL_TYPE_UNSPECIFIED + - CREDENTIAL_TYPE_PASSKEY + - CREDENTIAL_TYPE_PASSWORD + - CREDENTIAL_TYPE_TOTP + - CREDENTIAL_TYPE_EMAIL_OTP + - CREDENTIAL_TYPE_RECOVERY_CODE + - CREDENTIAL_TYPE_DELEGATED_GOOGLE + - CREDENTIAL_TYPE_DELEGATED_MICROSOFT + - CREDENTIAL_TYPE_UPSTREAM_IDP + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + allowedPrimaryTypes: + description: The primary credential types users may sign in with. + items: + enum: + - CREDENTIAL_TYPE_UNSPECIFIED + - CREDENTIAL_TYPE_PASSKEY + - CREDENTIAL_TYPE_PASSWORD + - CREDENTIAL_TYPE_TOTP + - CREDENTIAL_TYPE_EMAIL_OTP + - CREDENTIAL_TYPE_RECOVERY_CODE + - CREDENTIAL_TYPE_DELEGATED_GOOGLE + - CREDENTIAL_TYPE_DELEGATED_MICROSOFT + - CREDENTIAL_TYPE_UPSTREAM_IDP + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + defaultOutcome: + oneOf: + - $ref: '#/components/schemas/c1.api.sign_in_policy.v1.PolicyOutcome' + - type: "null" + displayName: + description: A human-readable name for the policy. + type: string + priority: description: |- - Lt specifies that this field must be less than the specified value, - exclusive + When a user matches more than one policy, the policy with the highest + priority applies. format: int32 - readOnly: false type: integer - lte: - description: |- - Lte specifies that this field must be less than or equal to the - specified value, inclusive + rules: + description: The ordered rule cascade. + items: + $ref: '#/components/schemas/c1.api.sign_in_policy.v1.PolicyRule' + type: + - array + - "null" + required: + - displayName + title: Sign In Policy Service Create Request + type: object + x-speakeasy-entity: SignInPolicy + x-speakeasy-name-override: SignInPolicyServiceCreateRequest + c1.api.sign_in_policy.v1.SignInPolicyServiceCreateResponse: + description: The SignInPolicyServiceCreateResponse message. + properties: + signInPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.sign_in_policy.v1.SignInPolicy' + - type: "null" + title: Sign In Policy Service Create Response + type: object + x-speakeasy-name-override: SignInPolicyServiceCreateResponse + c1.api.sign_in_policy.v1.SignInPolicyServiceDeleteRequestInput: + description: The SignInPolicyServiceDeleteRequest message. + title: Sign In Policy Service Delete Request + type: object + x-speakeasy-entity: SignInPolicy + x-speakeasy-name-override: SignInPolicyServiceDeleteRequest + c1.api.sign_in_policy.v1.SignInPolicyServiceDeleteResponse: + description: The SignInPolicyServiceDeleteResponse message. + title: Sign In Policy Service Delete Response + type: object + x-speakeasy-name-override: SignInPolicyServiceDeleteResponse + c1.api.sign_in_policy.v1.SignInPolicyServiceGetResponse: + description: The SignInPolicyServiceGetResponse message. + properties: + signInPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.sign_in_policy.v1.SignInPolicy' + - type: "null" + title: Sign In Policy Service Get Response + type: object + x-speakeasy-name-override: SignInPolicyServiceGetResponse + c1.api.sign_in_policy.v1.SignInPolicyServiceListResponse: + description: The SignInPolicyServiceListResponse message. + properties: + list: + description: The page of policies. + items: + $ref: '#/components/schemas/c1.api.sign_in_policy.v1.SignInPolicy' + type: + - array + - "null" + nextPageToken: + description: A token to fetch the next page, or empty if there are no more results. + type: string + title: Sign In Policy Service List Response + type: object + x-speakeasy-name-override: SignInPolicyServiceListResponse + c1.api.sign_in_policy.v1.SignInPolicyServiceSearchRequest: + description: The SignInPolicyServiceSearchRequest message. + properties: + pageSize: + description: The maximum number of results to return per page. format: int32 - readOnly: false type: integer - notIn: - description: |- - NotIn specifies that this field cannot be equal to one of the specified - values + pageToken: + description: A pagination token from a previous Search response. + type: string + query: + description: Free-text search over the policy name. Empty matches all policies. + type: string + refs: + description: Restrict results to these specific policies. Empty matches all policies. items: - format: int32 - type: integer - nullable: true - readOnly: false - type: array - title: S Fixed 32 Rules + $ref: '#/components/schemas/c1.api.sign_in_policy.v1.SignInPolicyRef' + type: + - array + - "null" + title: Sign In Policy Service Search Request type: object - x-speakeasy-name-override: SFixed32Rules - validate.SFixed64Rules: - description: SFixed64Rules describes the constraints applied to `sfixed64` values - nullable: true + x-speakeasy-name-override: SignInPolicyServiceSearchRequest + c1.api.sign_in_policy.v1.SignInPolicyServiceSearchResponse: + description: The SignInPolicyServiceSearchResponse message. properties: - const: - description: Const specifies that this field must be exactly the specified value - format: int64 - readOnly: false + list: + description: The page of matching policies. + items: + $ref: '#/components/schemas/c1.api.sign_in_policy.v1.SignInPolicy' + type: + - array + - "null" + nextPageToken: + description: A token to fetch the next page, or empty if there are no more results. type: string - gt: - description: |- - Gt specifies that this field must be greater than the specified value, - exclusive. If the value of Gt is larger than a specified Lt or Lte, the - range is reversed. - format: int64 - readOnly: false + title: Sign In Policy Service Search Response + type: object + x-speakeasy-name-override: SignInPolicyServiceSearchResponse + c1.api.sign_in_policy.v1.SignInPolicyServiceUpdateRequestInput: + description: The SignInPolicyServiceUpdateRequest message. + properties: + signInPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.sign_in_policy.v1.SignInPolicy' + - type: "null" + updateMask: + type: + - string + - "null" + title: Sign In Policy Service Update Request + type: object + x-speakeasy-name-override: SignInPolicyServiceUpdateRequest + c1.api.sign_in_policy.v1.SignInPolicyServiceUpdateResponse: + description: The SignInPolicyServiceUpdateResponse message. + properties: + signInPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.sign_in_policy.v1.SignInPolicy' + - type: "null" + title: Sign In Policy Service Update Response + type: object + x-speakeasy-name-override: SignInPolicyServiceUpdateResponse + c1.api.sign_in_policy.v1.StepUpRequired: + description: StepUpRequired demands a stronger re-authentication before access is granted. + properties: + level: + description: The assurance level the step-up must reach. + enum: + - AUTH_LEVEL_UNSPECIFIED + - AUTH_LEVEL_NONE + - AUTH_LEVEL_SINGLE_FACTOR + - AUTH_LEVEL_MULTI_FACTOR + - AUTH_LEVEL_PHR + - AUTH_LEVEL_PHRH type: string - gte: - description: |- - Gte specifies that this field must be greater than or equal to the - specified value, inclusive. If the value of Gte is larger than a - specified Lt or Lte, the range is reversed. - format: int64 - readOnly: false - type: string - ignoreEmpty: - description: |- - IgnoreEmpty specifies that the validation rules of this field should be - evaluated only if the field is not empty - readOnly: false - type: boolean - in: - description: |- - In specifies that this field must be equal to one of the specified - values - items: - format: int64 - type: string - nullable: true - readOnly: false - type: array - lt: - description: |- - Lt specifies that this field must be less than the specified value, - exclusive - format: int64 - readOnly: false - type: string - lte: - description: |- - Lte specifies that this field must be less than or equal to the - specified value, inclusive - format: int64 - readOnly: false - type: string - notIn: - description: |- - NotIn specifies that this field cannot be equal to one of the specified - values - items: - format: int64 - type: string - nullable: true - readOnly: false - type: array - title: S Fixed 64 Rules - type: object - x-speakeasy-name-override: SFixed64Rules - validate.SInt32Rules: - description: SInt32Rules describes the constraints applied to `sint32` values - nullable: true - properties: - const: - description: Const specifies that this field must be exactly the specified value - format: int32 - readOnly: false - type: integer - gt: - description: |- - Gt specifies that this field must be greater than the specified value, - exclusive. If the value of Gt is larger than a specified Lt or Lte, the - range is reversed. - format: int32 - readOnly: false - type: integer - gte: - description: |- - Gte specifies that this field must be greater than or equal to the - specified value, inclusive. If the value of Gte is larger than a - specified Lt or Lte, the range is reversed. - format: int32 - readOnly: false - type: integer - ignoreEmpty: - description: |- - IgnoreEmpty specifies that the validation rules of this field should be - evaluated only if the field is not empty - readOnly: false - type: boolean - in: - description: |- - In specifies that this field must be equal to one of the specified - values - items: - format: int32 - type: integer - nullable: true - readOnly: false - type: array - lt: - description: |- - Lt specifies that this field must be less than the specified value, - exclusive - format: int32 - readOnly: false - type: integer - lte: - description: |- - Lte specifies that this field must be less than or equal to the - specified value, inclusive + x-speakeasy-unknown-values: allow + maxAgeSeconds: + description: How fresh the step-up must be, in seconds. format: int32 - readOnly: false type: integer - notIn: - description: |- - NotIn specifies that this field cannot be equal to one of the specified - values + types: + description: The credential types that may satisfy the step-up. items: - format: int32 - type: integer - nullable: true - readOnly: false - type: array - title: S Int 32 Rules + enum: + - CREDENTIAL_TYPE_UNSPECIFIED + - CREDENTIAL_TYPE_PASSKEY + - CREDENTIAL_TYPE_PASSWORD + - CREDENTIAL_TYPE_TOTP + - CREDENTIAL_TYPE_EMAIL_OTP + - CREDENTIAL_TYPE_RECOVERY_CODE + - CREDENTIAL_TYPE_DELEGATED_GOOGLE + - CREDENTIAL_TYPE_DELEGATED_MICROSOFT + - CREDENTIAL_TYPE_UPSTREAM_IDP + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + title: Step Up Required type: object - x-speakeasy-name-override: SInt32Rules - validate.SInt64Rules: - description: SInt64Rules describes the constraints applied to `sint64` values - nullable: true + x-speakeasy-name-override: StepUpRequired + c1.api.ssf_receiver.v1.SSFOutboundAuthBearer: + description: |- + SSFOutboundAuthBearer is a static bearer token for outbound auth. + Token is write-only: accepted on create/update, never returned. properties: - const: - description: Const specifies that this field must be exactly the specified value - format: int64 - readOnly: false + token: + description: The token field. type: string - gt: - description: |- - Gt specifies that this field must be greater than the specified value, - exclusive. If the value of Gt is larger than a specified Lt or Lte, the - range is reversed. - format: int64 - readOnly: false + title: Ssf Outbound Auth Bearer + type: object + x-speakeasy-name-override: SSFOutboundAuthBearer + c1.api.ssf_receiver.v1.SSFOutboundAuthOAuth2: + description: |- + SSFOutboundAuthOAuth2 uses OAuth2 client credentials for outbound auth. + client_secret is write-only: accepted on create/update, never returned. + properties: + clientId: + description: The clientId field. type: string - gte: - description: |- - Gte specifies that this field must be greater than or equal to the - specified value, inclusive. If the value of Gte is larger than a - specified Lt or Lte, the range is reversed. - format: int64 - readOnly: false + clientSecret: + description: The clientSecret field. type: string - ignoreEmpty: - description: |- - IgnoreEmpty specifies that the validation rules of this field should be - evaluated only if the field is not empty - readOnly: false - type: boolean - in: - description: |- - In specifies that this field must be equal to one of the specified - values + scopes: + description: The scopes field. items: - format: int64 type: string - nullable: true - readOnly: false - type: array - lt: - description: |- - Lt specifies that this field must be less than the specified value, - exclusive - format: int64 - readOnly: false - type: string - lte: - description: |- - Lte specifies that this field must be less than or equal to the - specified value, inclusive - format: int64 - readOnly: false + type: + - array + - "null" + tokenUrl: + description: The tokenUrl field. type: string - notIn: - description: |- - NotIn specifies that this field cannot be equal to one of the specified - values - items: - format: int64 - type: string - nullable: true - readOnly: false - type: array - title: S Int 64 Rules + title: Ssf Outbound Auth O Auth 2 type: object - x-speakeasy-name-override: SInt64Rules - validate.StringRules: - description: | - StringRules describe the constraints applied to `string` values - - This message contains a oneof named well_known. Only a single field of the following list may be set at a time: - - email - - hostname - - ip - - ipv4 - - ipv6 - - uri - - uriRef - - address - - uuid - - wellKnownRegex - nullable: true + x-speakeasy-name-override: SSFOutboundAuthOAuth2 + c1.api.ssf_receiver.v1.SSFReceiverEvent: + description: SSFReceiverEvent shows both wire-level data and C1 canonical outcome. properties: - address: + canonicalType: description: |- - Address specifies that the field must be either a valid hostname as - defined by RFC 1034 (which does not support internationalized domain - names or IDNs), or it can be a valid IP (v4 or v6). - This field is part of the `well_known` oneof. - See the documentation for `validate.StringRules` for more details. - nullable: true - readOnly: false - type: boolean - const: - description: Const specifies that this field must be exactly the specified value - readOnly: false + C1 canonical outcome (what C1 understood and did). + The normalized event type after mapping from the wire event type. + enum: + - SSF_CANONICAL_EVENT_TYPE_UNSPECIFIED + - SSF_CANONICAL_EVENT_TYPE_UNRECOGNIZED + - SSF_CANONICAL_EVENT_TYPE_SESSION_REVOKED + - SSF_CANONICAL_EVENT_TYPE_CREDENTIAL_CHANGED + - SSF_CANONICAL_EVENT_TYPE_TOKEN_CLAIMS_CHANGED + - SSF_CANONICAL_EVENT_TYPE_ASSURANCE_LEVEL_CHANGED + - SSF_CANONICAL_EVENT_TYPE_DEVICE_COMPLIANCE_CHANGED + - SSF_CANONICAL_EVENT_TYPE_RISK_LEVEL_CHANGED + - SSF_CANONICAL_EVENT_TYPE_SESSION_ESTABLISHED + - SSF_CANONICAL_EVENT_TYPE_SESSION_PRESENTED + - SSF_CANONICAL_EVENT_TYPE_ACCOUNT_DISABLED + - SSF_CANONICAL_EVENT_TYPE_ACCOUNT_ENABLED + - SSF_CANONICAL_EVENT_TYPE_ACCOUNT_PURGED + - SSF_CANONICAL_EVENT_TYPE_CREDENTIAL_COMPROMISE + - SSF_CANONICAL_EVENT_TYPE_RECOVERY_ACTIVATED + - SSF_CANONICAL_EVENT_TYPE_IDENTIFIER_CHANGED + - SSF_CANONICAL_EVENT_TYPE_VERIFICATION + - SSF_CANONICAL_EVENT_TYPE_STREAM_UPDATED type: string - contains: - description: |- - Contains specifies that this field must have the specified substring - anywhere in the string. - readOnly: false + x-speakeasy-unknown-values: allow + id: + description: The unique identifier of this event. type: string - email: - description: |- - Email specifies that the field must be a valid email address as - defined by RFC 5322 - This field is part of the `well_known` oneof. - See the documentation for `validate.StringRules` for more details. - nullable: true - readOnly: false - type: boolean - hostname: - description: |- - Hostname specifies that the field must be a valid hostname as - defined by RFC 1034. This constraint does not support - internationalized domain names (IDNs). - This field is part of the `well_known` oneof. - See the documentation for `validate.StringRules` for more details. - nullable: true - readOnly: false - type: boolean - ignoreEmpty: - description: |- - IgnoreEmpty specifies that the validation rules of this field should be - evaluated only if the field is not empty - readOnly: false - type: boolean - in: - description: |- - In specifies that this field must be equal to one of the specified - values - items: - type: string - nullable: true - readOnly: false - type: array - ip: - description: |- - Ip specifies that the field must be a valid IP (v4 or v6) address. - Valid IPv6 addresses should not include surrounding square brackets. - This field is part of the `well_known` oneof. - See the documentation for `validate.StringRules` for more details. - nullable: true - readOnly: false - type: boolean - ipv4: - description: |- - Ipv4 specifies that the field must be a valid IPv4 address. - This field is part of the `well_known` oneof. - See the documentation for `validate.StringRules` for more details. - nullable: true - readOnly: false - type: boolean - ipv6: - description: |- - Ipv6 specifies that the field must be a valid IPv6 address. Valid - IPv6 addresses should not include surrounding square brackets. - This field is part of the `well_known` oneof. - See the documentation for `validate.StringRules` for more details. - nullable: true - readOnly: false - type: boolean - len: - description: |- - Len specifies that this field must be the specified number of - characters (Unicode code points). Note that the number of - characters may differ from the number of bytes in the string. - format: uint64 - readOnly: false + matchMethod: + description: How the upstream subject was resolved to a ConductorOne user. + enum: + - SSF_SUBJECT_MATCH_METHOD_UNSPECIFIED + - SSF_SUBJECT_MATCH_METHOD_IDP_USER + - SSF_SUBJECT_MATCH_METHOD_EMAIL + - SSF_SUBJECT_MATCH_METHOD_NOT_FOUND + - SSF_SUBJECT_MATCH_METHOD_NOT_APPLICABLE type: string - lenBytes: - description: |- - LenBytes specifies that this field must be the specified number of bytes - at a minimum - format: uint64 - readOnly: false + x-speakeasy-unknown-values: allow + matchedUserId: + description: The ConductorOne user ID that the event subject was resolved to, if any. type: string - maxBytes: - description: |- - MaxBytes specifies that this field must be the specified number of bytes - at a maximum - format: uint64 - readOnly: false + outcome: + description: The action ConductorOne took in response to this event. + enum: + - SSF_EVENT_OUTCOME_UNSPECIFIED + - SSF_EVENT_OUTCOME_SESSIONS_REVOKED + - SSF_EVENT_OUTCOME_LOGGED + - SSF_EVENT_OUTCOME_PRINCIPAL_NOT_FOUND + - SSF_EVENT_OUTCOME_VERIFIED + - SSF_EVENT_OUTCOME_STREAM_STATUS_UPDATED + - SSF_EVENT_OUTCOME_UNRECOGNIZED + - SSF_EVENT_OUTCOME_ERROR type: string - maxLen: - description: |- - MaxLen specifies that this field must be the specified number of - characters (Unicode code points) at a maximum. Note that the number of - characters may differ from the number of bytes in the string. - format: uint64 - readOnly: false + x-speakeasy-unknown-values: allow + outcomeDetail: + description: Human-readable details about the outcome (e.g., error message or revocation summary). type: string - minBytes: + receivedAt: + format: date-time + type: + - string + - "null" + sessionsRevoked: + description: Number of sessions that were revoked as a result of this event. + format: int32 + type: integer + setJti: description: |- - MinBytes specifies that this field must be the specified number of bytes - at a minimum - format: uint64 - readOnly: false + Wire-level data (what the transmitter sent). + The SET (Security Event Token) JWT ID claim, uniquely identifying the token. type: string - minLen: - description: |- - MinLen specifies that this field must be the specified number of - characters (Unicode code points) at a minimum. Note that the number of - characters may differ from the number of bytes in the string. - format: uint64 - readOnly: false + streamId: + description: The SSF receiver stream that received this event. type: string - notContains: - description: |- - NotContains specifies that this field cannot have the specified substring - anywhere in the string. - readOnly: false + wireEventProfile: + description: The event profile URI from the SET, if present. type: string - notIn: - description: |- - NotIn specifies that this field cannot be equal to one of the specified - values - items: - type: string - nullable: true - readOnly: false - type: array - pattern: - description: |- - Pattern specifes that this field must match against the specified - regular expression (RE2 syntax). The included expression should elide - any delimiters. - readOnly: false + wireEventType: + description: The raw event type URI from the SET (e.g., "https://schemas.openid.net/secevent/caep/event-type/session-revoked"). type: string - prefix: - description: |- - Prefix specifies that this field must have the specified substring at - the beginning of the string. - readOnly: false + wireInitiatingEntity: + description: The entity that initiated the event, as reported by the transmitter. type: string - strict: - description: |- - This applies to regexes HTTP_HEADER_NAME and HTTP_HEADER_VALUE to enable - strict header validation. - By default, this is true, and HTTP header validations are RFC-compliant. - Setting to false will enable a looser validations that only disallows - \r\n\0 characters, which can be used to bypass header matching rules. - readOnly: false - type: boolean - suffix: - description: |- - Suffix specifies that this field must have the specified substring at - the end of the string. - readOnly: false + wireReasonAdmin: + description: The admin-facing reason string from the SET, if provided by the transmitter. type: string - uri: - description: |- - Uri specifies that the field must be a valid, absolute URI as defined - by RFC 3986 - This field is part of the `well_known` oneof. - See the documentation for `validate.StringRules` for more details. - nullable: true - readOnly: false - type: boolean - uriRef: - description: |- - UriRef specifies that the field must be a valid URI as defined by RFC - 3986 and may be relative or absolute. - This field is part of the `well_known` oneof. - See the documentation for `validate.StringRules` for more details. - nullable: true - readOnly: false - type: boolean - uuid: - description: |- - Uuid specifies that the field must be a valid UUID as defined by - RFC 4122 - This field is part of the `well_known` oneof. - See the documentation for `validate.StringRules` for more details. - nullable: true - readOnly: false - type: boolean - wellKnownRegex: - description: |- - WellKnownRegex specifies a common well known pattern defined as a regex. - This field is part of the `well_known` oneof. - See the documentation for `validate.StringRules` for more details. - enum: - - UNKNOWN - - HTTP_HEADER_NAME - - HTTP_HEADER_VALUE - nullable: true - readOnly: false + wireSubjectFormat: + description: The subject identifier format from the SET (e.g., "email", "iss_sub"). type: string - x-speakeasy-unknown-values: allow - title: String Rules + wireSubjectIdentifier: + description: The raw subject identifier value from the SET. + type: string + title: Ssf Receiver Event type: object - x-speakeasy-name-override: StringRules - validate.TimestampRules: - description: |- - TimestampRules describe the constraints applied exclusively to the - `google.protobuf.Timestamp` well-known type - nullable: true + x-speakeasy-name-override: SSFReceiverEvent + c1.api.ssf_receiver.v1.SSFReceiverEventSearchServiceSearchRequest: + description: SSFReceiverEventSearchServiceSearchRequest carries the search query and optional filters for narrowing results. properties: - const: - format: date-time - readOnly: false + eventType: + description: Restricts results to events matching this wire event type URI. Optional. type: string - gt: - format: date-time - readOnly: false + matchedUserId: + description: Restricts results to events matched to this ConductorOne user ID. Optional. type: string - gtNow: - description: |- - GtNow specifies that this must be greater than the current time. GtNow - can only be used with the Within rule. - readOnly: false - type: boolean - gte: - format: date-time - readOnly: false + outcome: + description: Restricts results to events with this processing outcome. Optional. + enum: + - SSF_EVENT_OUTCOME_UNSPECIFIED + - SSF_EVENT_OUTCOME_SESSIONS_REVOKED + - SSF_EVENT_OUTCOME_LOGGED + - SSF_EVENT_OUTCOME_PRINCIPAL_NOT_FOUND + - SSF_EVENT_OUTCOME_VERIFIED + - SSF_EVENT_OUTCOME_STREAM_STATUS_UPDATED + - SSF_EVENT_OUTCOME_UNRECOGNIZED + - SSF_EVENT_OUTCOME_ERROR type: string - lt: - format: date-time - readOnly: false + x-speakeasy-unknown-values: allow + pageSize: + description: Maximum number of events to return per page. + format: int32 + type: integer + pageToken: + description: Token from a previous SearchResponse to fetch the next page of results. type: string - ltNow: - description: |- - LtNow specifies that this must be less than the current time. LtNow - can only be used with the Within rule. - readOnly: false - type: boolean - lte: - format: date-time - readOnly: false + query: + description: Full-text search query matched against event fields. type: string - required: - description: Required specifies that this field must be set - readOnly: false - type: boolean - within: - format: duration - readOnly: false + streamId: + description: Restricts results to events from this SSF receiver stream. Optional. type: string - title: Timestamp Rules + title: Ssf Receiver Event Search Service Search Request type: object - x-speakeasy-name-override: TimestampRules - validate.UInt32Rules: - description: UInt32Rules describes the constraints applied to `uint32` values - nullable: true + x-speakeasy-name-override: SSFReceiverEventSearchServiceSearchRequest + c1.api.ssf_receiver.v1.SSFReceiverEventSearchServiceSearchResponse: + description: SSFReceiverEventSearchServiceSearchResponse contains the matching events and a pagination token. properties: - const: - description: Const specifies that this field must be exactly the specified value - format: uint32 - readOnly: false - type: integer - gt: - description: |- - Gt specifies that this field must be greater than the specified value, - exclusive. If the value of Gt is larger than a specified Lt or Lte, the - range is reversed. - format: uint32 - readOnly: false - type: integer - gte: - description: |- - Gte specifies that this field must be greater than or equal to the - specified value, inclusive. If the value of Gte is larger than a - specified Lt or Lte, the range is reversed. - format: uint32 - readOnly: false - type: integer - ignoreEmpty: - description: |- - IgnoreEmpty specifies that the validation rules of this field should be - evaluated only if the field is not empty - readOnly: false - type: boolean - in: - description: |- - In specifies that this field must be equal to one of the specified - values + list: + description: The SSF events matching the search criteria. items: - format: uint32 - type: integer - nullable: true - readOnly: false - type: array - lt: - description: |- - Lt specifies that this field must be less than the specified value, - exclusive - format: uint32 - readOnly: false + $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverEvent' + type: + - array + - "null" + nextPageToken: + description: Token to retrieve the next page. Empty when there are no more results. + type: string + title: Ssf Receiver Event Search Service Search Response + type: object + x-speakeasy-name-override: SSFReceiverEventSearchServiceSearchResponse + c1.api.ssf_receiver.v1.SSFReceiverEventServiceListResponse: + description: SSFReceiverEventServiceListResponse contains a page of received SSF events. + properties: + list: + description: The SSF events in the current page. + items: + $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverEvent' + type: + - array + - "null" + nextPageToken: + description: Token to retrieve the next page. Empty when there are no more results. + type: string + title: Ssf Receiver Event Service List Response + type: object + x-speakeasy-name-override: SSFReceiverEventServiceListResponse + c1.api.ssf_receiver.v1.SSFReceiverStream: + description: | + SSFReceiverStream is the public API representation. + Secrets (push_auth_token, outbound credentials) are write-only. + + This message contains a oneof named outbound_auth. Only a single field of the following list may be set at a time: + - outboundAuthBearer + - outboundAuthOauth2 + properties: + accountDisabledAction: + description: Action to take when an account-disabled event is received. + enum: + - SSF_REVOCATION_ACTION_UNSPECIFIED + - SSF_REVOCATION_ACTION_REVOKE_ALL + - SSF_REVOCATION_ACTION_LOG_ONLY + type: string + x-speakeasy-unknown-values: allow + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + credentialChangeAction: + description: Action to take when a credential-change event is received. + enum: + - SSF_REVOCATION_ACTION_UNSPECIFIED + - SSF_REVOCATION_ACTION_REVOKE_ALL + - SSF_REVOCATION_ACTION_LOG_ONLY + type: string + x-speakeasy-unknown-values: allow + credentialCompromiseAction: + description: Action to take when a credential-compromise event is received. + enum: + - SSF_REVOCATION_ACTION_UNSPECIFIED + - SSF_REVOCATION_ACTION_REVOKE_ALL + - SSF_REVOCATION_ACTION_LOG_ONLY + type: string + x-speakeasy-unknown-values: allow + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + deliveryMethod: + description: Controls whether events are received via push (transmitter POSTs to C1) or poll (C1 fetches from transmitter). + enum: + - SSF_DELIVERY_METHOD_UNSPECIFIED + - SSF_DELIVERY_METHOD_PUSH + - SSF_DELIVERY_METHOD_POLL + type: string + x-speakeasy-unknown-values: allow + description: + description: Optional description of the stream's purpose or source. + type: string + displayName: + description: Human-readable name for the stream shown in the UI. + type: string + enabled: + description: Controls whether this stream actively processes incoming events. When false, events are ignored. + type: boolean + eventTypesEnabled: + description: SSF/CAEP/RISC event type URIs that this stream is configured to accept. + items: + type: string + type: + - array + - "null" + expectedAudience: + description: Expected audience (aud) claim in incoming SETs. Optional. + type: string + id: + description: The unique identifier of this SSF receiver stream. + type: string + issuerUrl: + description: Upstream IdP identification. + type: string + jwksUrl: + description: The jwksUrl field. + type: string + lastErrorAt: + format: date-time + type: + - string + - "null" + lastErrorMessage: + description: The lastErrorMessage field. + type: string + lastVerifiedAt: + format: date-time + type: + - string + - "null" + outboundAuthBearer: + oneOf: + - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFOutboundAuthBearer' + - type: "null" + outboundAuthOauth2: + oneOf: + - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFOutboundAuthOAuth2' + - type: "null" + pollEndpointUrl: + description: URL of the transmitter's poll endpoint where C1 fetches events from. + type: string + pollInterval: + format: duration + type: + - string + - "null" + pushAuthToken: + description: 'Push auth token: write-only. Accepted on create, never returned in get/list.' + type: string + pushEndpointUrl: + description: 'Push delivery: C1 generates a unique endpoint URL.' + readOnly: true + type: string + sessionRevokedAction: + description: |- + Per-canonical-type action configuration. + Event types without a config here default to LOG_ONLY. + Action to take when a session-revoked event is received. + enum: + - SSF_REVOCATION_ACTION_UNSPECIFIED + - SSF_REVOCATION_ACTION_REVOKE_ALL + - SSF_REVOCATION_ACTION_LOG_ONLY + type: string + x-speakeasy-unknown-values: allow + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Ssf Receiver Stream + type: object + x-speakeasy-name-override: SSFReceiverStream + c1.api.ssf_receiver.v1.SSFReceiverStreamServiceCreateRequest: + description: SSFReceiverStreamServiceCreateRequest contains the configuration for a new SSF receiver stream. + properties: + accountDisabledAction: + description: Action to take when an account-disabled event is received. + enum: + - SSF_REVOCATION_ACTION_UNSPECIFIED + - SSF_REVOCATION_ACTION_REVOKE_ALL + - SSF_REVOCATION_ACTION_LOG_ONLY + type: string + x-speakeasy-unknown-values: allow + credentialChangeAction: + description: Action to take when a credential-change event is received. + enum: + - SSF_REVOCATION_ACTION_UNSPECIFIED + - SSF_REVOCATION_ACTION_REVOKE_ALL + - SSF_REVOCATION_ACTION_LOG_ONLY + type: string + x-speakeasy-unknown-values: allow + credentialCompromiseAction: + description: Action to take when a credential-compromise event is received. + enum: + - SSF_REVOCATION_ACTION_UNSPECIFIED + - SSF_REVOCATION_ACTION_REVOKE_ALL + - SSF_REVOCATION_ACTION_LOG_ONLY + type: string + x-speakeasy-unknown-values: allow + deliveryMethod: + description: Controls whether events are received via push or poll delivery. + enum: + - SSF_DELIVERY_METHOD_UNSPECIFIED + - SSF_DELIVERY_METHOD_PUSH + - SSF_DELIVERY_METHOD_POLL + type: string + x-speakeasy-unknown-values: allow + description: + description: Optional description of the stream's purpose or source. + type: string + displayName: + description: Human-readable name for the stream. + type: string + enabled: + description: Controls whether the stream starts processing events immediately after creation. + type: boolean + expectedAudience: + description: Expected audience claim in incoming SETs. If set, SETs with a different audience are rejected. + type: string + issuerUrl: + description: The issuer URL of the upstream SSF transmitter, used for token validation. + type: string + jwksUrl: + description: URL to fetch the transmitter's JSON Web Key Set for SET signature verification. + type: string + pollEndpointUrl: + description: URL of the transmitter's poll endpoint. Required when delivery_method is POLL. + type: string + pollInterval: + format: duration + type: + - string + - "null" + sessionRevokedAction: + description: |- + Per-event-type action configuration. + Action to take when a session-revoked event is received. + enum: + - SSF_REVOCATION_ACTION_UNSPECIFIED + - SSF_REVOCATION_ACTION_REVOKE_ALL + - SSF_REVOCATION_ACTION_LOG_ONLY + type: string + x-speakeasy-unknown-values: allow + required: + - displayName + - issuerUrl + title: Ssf Receiver Stream Service Create Request + type: object + x-speakeasy-name-override: SSFReceiverStreamServiceCreateRequest + c1.api.ssf_receiver.v1.SSFReceiverStreamServiceCreateResponse: + description: SSFReceiverStreamServiceCreateResponse returns the created stream and the push auth token in plaintext. + properties: + pushAuthTokenPlaintext: + description: Push auth token returned in plaintext ONLY on create. + type: string + ssfReceiverStream: + oneOf: + - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStream' + - type: "null" + title: Ssf Receiver Stream Service Create Response + type: object + x-speakeasy-name-override: SSFReceiverStreamServiceCreateResponse + c1.api.ssf_receiver.v1.SSFReceiverStreamServiceDeleteRequestInput: + description: SSFReceiverStreamServiceDeleteRequest identifies the SSF receiver stream to delete. + title: Ssf Receiver Stream Service Delete Request + type: object + x-speakeasy-name-override: SSFReceiverStreamServiceDeleteRequest + c1.api.ssf_receiver.v1.SSFReceiverStreamServiceDeleteResponse: + description: SSFReceiverStreamServiceDeleteResponse is empty on success. + title: Ssf Receiver Stream Service Delete Response + type: object + x-speakeasy-name-override: SSFReceiverStreamServiceDeleteResponse + c1.api.ssf_receiver.v1.SSFReceiverStreamServiceGetResponse: + description: SSFReceiverStreamServiceGetResponse contains the requested SSF receiver stream. + properties: + ssfReceiverStream: + oneOf: + - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStream' + - type: "null" + title: Ssf Receiver Stream Service Get Response + type: object + x-speakeasy-name-override: SSFReceiverStreamServiceGetResponse + c1.api.ssf_receiver.v1.SSFReceiverStreamServiceGetStatsResponse: + description: SSFReceiverStreamServiceGetStatsResponse contains the event processing statistics for the stream. + properties: + stats: + oneOf: + - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamStats' + - type: "null" + title: Ssf Receiver Stream Service Get Stats Response + type: object + x-speakeasy-name-override: SSFReceiverStreamServiceGetStatsResponse + c1.api.ssf_receiver.v1.SSFReceiverStreamServiceListResponse: + description: SSFReceiverStreamServiceListResponse contains a page of SSF receiver streams. + properties: + list: + description: The SSF receiver streams in the current page. + items: + $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStream' + type: + - array + - "null" + nextPageToken: + description: Token to retrieve the next page. Empty when there are no more results. + type: string + title: Ssf Receiver Stream Service List Response + type: object + x-speakeasy-name-override: SSFReceiverStreamServiceListResponse + c1.api.ssf_receiver.v1.SSFReceiverStreamServiceTestRequestInput: + description: SSFReceiverStreamServiceTestRequest identifies the stream to test and an optional subject for identity resolution validation. + properties: + testSubject: + description: |- + The upstream identifier to test resolution with. Typically an email address + (e.g., "alice@company.com") — the same value the IdP would send in a SET subject. + The Test RPC runs resolveSubject on this to verify the identity mapping works. + Optional: upstream identifier (email) to test identity resolution. + If empty, only JWKS reachability is tested. + type: string + title: Ssf Receiver Stream Service Test Request + type: object + x-speakeasy-name-override: SSFReceiverStreamServiceTestRequest + c1.api.ssf_receiver.v1.SSFReceiverStreamServiceTestResponse: + description: SSFReceiverStreamServiceTestResponse reports the results of the stream configuration test across JWKS, identity, and action readiness checks. + properties: + activeRefreshTokenCount: + description: Number of active refresh tokens for the matched user that would be affected. + format: int32 type: integer - lte: + activeSessionCount: + description: Number of active sessions for the matched user that would be affected. + format: int32 + type: integer + configuredSessionRevokedAction: description: |- - Lte specifies that this field must be less than or equal to the - specified value, inclusive - format: uint32 - readOnly: false + Step 3: Action preview. + The action configured for session-revoked events on this stream. + enum: + - SSF_REVOCATION_ACTION_UNSPECIFIED + - SSF_REVOCATION_ACTION_REVOKE_ALL + - SSF_REVOCATION_ACTION_LOG_ONLY + type: string + x-speakeasy-unknown-values: allow + identityLinkFound: + description: |- + Step 2: Identity mapping. + Whether the test subject was resolved to a ConductorOne user. + type: boolean + jwksError: + description: Error message if the JWKS endpoint could not be reached or returned invalid data. + type: string + jwksKeyCount: + description: Number of signing keys found at the JWKS endpoint. + format: int32 type: integer - notIn: + jwksReachable: description: |- - NotIn specifies that this field cannot be equal to one of the specified - values - items: - format: uint32 - type: integer - nullable: true - readOnly: false - type: array - title: U Int 32 Rules + Step 1: JWKS reachability. + Whether the JWKS endpoint was reachable and returned valid keys. + type: boolean + matchedUserId: + description: The ConductorOne user ID the test subject maps to, if an identity link was found. + type: string + ready: + description: |- + Overall readiness. + Whether the stream passed all test checks and is ready to process events. + type: boolean + upstreamSubject: + description: The upstream IdP subject identifier (e.g., Okta user ID "00u1234") resolved from the test subject. + type: string + title: Ssf Receiver Stream Service Test Response type: object - x-speakeasy-name-override: UInt32Rules - validate.UInt64Rules: - description: UInt64Rules describes the constraints applied to `uint64` values - nullable: true + x-speakeasy-name-override: SSFReceiverStreamServiceTestResponse + c1.api.ssf_receiver.v1.SSFReceiverStreamServiceUpdateRequestInput: + description: SSFReceiverStreamServiceUpdateRequest carries the stream to update and the mask of fields to modify. properties: - const: - description: Const specifies that this field must be exactly the specified value - format: uint64 - readOnly: false + ssfReceiverStream: + oneOf: + - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStream' + - type: "null" + updateMask: + type: + - string + - "null" + title: Ssf Receiver Stream Service Update Request + type: object + x-speakeasy-name-override: SSFReceiverStreamServiceUpdateRequest + c1.api.ssf_receiver.v1.SSFReceiverStreamServiceUpdateResponse: + description: SSFReceiverStreamServiceUpdateResponse contains the updated SSF receiver stream. + properties: + ssfReceiverStream: + oneOf: + - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStream' + - type: "null" + title: Ssf Receiver Stream Service Update Response + type: object + x-speakeasy-name-override: SSFReceiverStreamServiceUpdateResponse + c1.api.ssf_receiver.v1.SSFReceiverStreamStats: + description: SSFReceiverStreamStats is a lightweight read-only stats object. + properties: + eventsActedOnCount: + description: Number of events that triggered an action (e.g., session revocation). + format: int64 type: string - gt: + eventsFailedCount: + description: Number of events that failed processing. + format: int64 + type: string + eventsReceivedCount: + description: Total number of events received on this stream. + format: int64 + type: string + lastErrorAt: + format: date-time + type: + - string + - "null" + lastErrorMessage: + description: Human-readable description of the most recent processing error. + type: string + lastEventReceivedAt: + format: date-time + type: + - string + - "null" + lastVerifiedAt: + format: date-time + type: + - string + - "null" + streamId: + description: The SSF receiver stream these stats belong to. + type: string + transmitterStatus: + description: Current status reported by the transmitter (e.g., "enabled", "paused"). + type: string + transmitterStatusReason: + description: Reason provided by the transmitter for its current status. + type: string + title: Ssf Receiver Stream Stats + type: object + x-speakeasy-name-override: SSFReceiverStreamStats + c1.api.sso.v1.OIDCClaimMapping: + description: |- + OIDCClaimMapping releases one user attribute to the application as one + OIDC claim. + properties: + claimName: description: |- - Gt specifies that this field must be greater than the specified value, - exclusive. If the value of Gt is larger than a specified Lt or Lte, the - range is reversed. - format: uint64 - readOnly: false + The name of the claim as the application sees it. Namespace custom claims + so they cannot collide with the registered OIDC claim set. type: string - gte: + destination: + description: Where the claim is released. + enum: + - OIDC_CLAIM_DESTINATION_UNSPECIFIED + - OIDC_CLAIM_DESTINATION_ID_TOKEN_ONLY + - OIDC_CLAIM_DESTINATION_USERINFO_ONLY + type: string + x-speakeasy-unknown-values: allow + userAttributeMappingId: description: |- - Gte specifies that this field must be greater than or equal to the - specified value, inclusive. If the value of Gte is larger than a - specified Lt or Lte, the range is reversed. - format: uint64 - readOnly: false + The user attribute mapping that resolves the value, including its fallback + chain. type: string - ignoreEmpty: + required: + - userAttributeMappingId + - claimName + title: Oidc Claim Mapping + type: object + x-speakeasy-name-override: OIDCClaimMapping + c1.api.sso.v1.SAMLAttributeMapping: + description: |- + SAMLAttributeMapping releases one user attribute to the service provider + as one Attribute in the assertion's AttributeStatement. + properties: + friendlyName: + description: Optional FriendlyName, for service providers that display it. + type: string + name: + description: The Name attribute, dictated by the service provider. + type: string + nameFormat: + description: The NameFormat attribute. + enum: + - SAML_ATTRIBUTE_NAME_FORMAT_UNSPECIFIED + - SAML_ATTRIBUTE_NAME_FORMAT_URI + - SAML_ATTRIBUTE_NAME_FORMAT_BASIC + - SAML_ATTRIBUTE_NAME_FORMAT_UNSPECIFIED_URN + type: string + x-speakeasy-unknown-values: allow + userAttributeMappingId: description: |- - IgnoreEmpty specifies that the validation rules of this field should be - evaluated only if the field is not empty - readOnly: false + The user attribute mapping that resolves the value, including its fallback + chain. + type: string + required: + - userAttributeMappingId + - name + title: Saml Attribute Mapping + type: object + x-speakeasy-name-override: SAMLAttributeMapping + c1.api.sso.v1.SAMLMetadataFinding: + description: |- + SAMLMetadataFinding is one thing ConductorOne noticed while parsing a service + provider's metadata document. + properties: + component: + description: Where the finding fits in the parsed document. + enum: + - COMPONENT_UNSPECIFIED + - COMPONENT_DOCUMENT + - COMPONENT_ENTITY_ID + - COMPONENT_ACS_URL + - COMPONENT_NAME_ID_FORMAT + - COMPONENT_SIGNING_CERTIFICATE + - COMPONENT_ENCRYPTION_CERTIFICATE + - COMPONENT_REQUIREMENT + - COMPONENT_BINDING + type: string + x-speakeasy-unknown-values: allow + level: + description: The severity of this finding. + enum: + - LEVEL_UNSPECIFIED + - LEVEL_BLOCKING + - LEVEL_WARNING + type: string + x-speakeasy-unknown-values: allow + reason: + description: Plain-language explanation of why the finding was raised. + type: string + title: Saml Metadata Finding + type: object + x-speakeasy-name-override: SAMLMetadataFinding + c1.api.sso.v1.SSOApplication: + description: | + SSOApplication is one application your users sign in to through ConductorOne. + + This message contains a oneof named protocol. Only a single field of the following list may be set at a time: + - oidc + - saml + properties: + appEntitlementId: + description: |- + The entitlement a user must hold to sign in. Created with the SSO + application and not settable by the caller. + type: string + appId: + description: |- + The application in your catalog that owns this sign-in configuration. Its + owners, entitlements, and access reviews govern who may sign in. + type: string + assertionLifetime: + format: duration + type: + - string + - "null" + createdAt: + format: date-time + type: + - string + - "null" + description: + description: Description of the SSO application. + type: string + disabled: + description: |- + When true, sign-in through this application is refused. The application + and its entitlement are left in place. type: boolean - in: + displayName: + description: Display name for the SSO application. + type: string + id: + description: Unique identifier for this SSO application. + type: string + oidc: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationOIDCConfig' + - type: "null" + saml: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationSAMLConfig' + - type: "null" + sectorId: description: |- - In specifies that this field must be equal to one of the specified - values + The pairwise sector this application belongs to. Empty means the + application is its own sector and shares linkability with nothing; set a + shared value to issue one identifier across applications a user should + appear the same to. Ignored when the subject type resolves to PUBLIC. + Immutable once set. + type: string + subjectCompatibility: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOSubjectCompatibility' + - type: "null" + subjectType: + description: How the user's identifier reaches this application. + enum: + - SSO_SUBJECT_TYPE_UNSPECIFIED + - SSO_SUBJECT_TYPE_PAIRWISE + - SSO_SUBJECT_TYPE_PUBLIC + - SSO_SUBJECT_TYPE_COMPATIBILITY + type: string + x-speakeasy-unknown-values: allow + updatedAt: + format: date-time + type: + - string + - "null" + title: Sso Application + type: object + x-speakeasy-name-override: SSOApplication + c1.api.sso.v1.SSOApplicationHistoryEntry: + description: |- + SSOApplicationHistoryEntry is one version of an SSO application and its + history metadata. + properties: + metadata: + oneOf: + - $ref: '#/components/schemas/c1.api.history.v1.HistoryEntryMetadata' + - type: "null" + snapshot: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplication' + - type: "null" + title: Sso Application History Entry + type: object + x-speakeasy-name-override: SSOApplicationHistoryEntry + c1.api.sso.v1.SSOApplicationOIDCClient: + description: SSOApplicationOIDCClient is an App-owned OAuth client minted by C1. + properties: + appId: + description: Application that owns this client. + type: string + authentication: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationOIDCClientAuthentication' + - type: "null" + clientId: + description: Client ID generated by ConductorOne. + type: string + createdAt: + format: date-time + type: + - string + - "null" + displayName: + description: Human-readable client name. + type: string + pkcePolicy: + description: Effective PKCE policy. + enum: + - SSO_APPLICATION_OIDC_PKCE_POLICY_UNSPECIFIED + - SSO_APPLICATION_OIDC_PKCE_POLICY_REQUIRED_S256 + - SSO_APPLICATION_OIDC_PKCE_POLICY_ALLOW_MISSING_FOR_LEGACY + type: string + x-speakeasy-unknown-values: allow + redirectUris: + description: Exact callback URLs registered for this client. items: - format: uint64 type: string - nullable: true - readOnly: false - type: array - lt: - description: |- - Lt specifies that this field must be less than the specified value, - exclusive - format: uint64 - readOnly: false + type: + - array + - "null" + ssoApplicationId: + description: SSO application whose identity policy applies to this client. type: string - lte: + updatedAt: + format: date-time + type: + - string + - "null" + title: Sso Application Oidc Client + type: object + x-speakeasy-name-override: SSOApplicationOIDCClient + c1.api.sso.v1.SSOApplicationOIDCClientAuthClientSecretBasic: + description: RFC 6749 client_secret_basic. C1 generates and returns the secret once. + title: Sso Application Oidc Client Auth Client Secret Basic + type: object + x-speakeasy-name-override: SSOApplicationOIDCClientAuthClientSecretBasic + c1.api.sso.v1.SSOApplicationOIDCClientAuthClientSecretPost: + description: RFC 6749 client_secret_post. C1 generates and returns the secret once. + title: Sso Application Oidc Client Auth Client Secret Post + type: object + x-speakeasy-name-override: SSOApplicationOIDCClientAuthClientSecretPost + c1.api.sso.v1.SSOApplicationOIDCClientAuthNone: + description: Public client authentication. No client credential is issued. + title: Sso Application Oidc Client Auth None + type: object + x-speakeasy-name-override: SSOApplicationOIDCClientAuthNone + c1.api.sso.v1.SSOApplicationOIDCClientAuthPrivateKeyJWT: + description: |- + RFC 7523 private_key_jwt using an inline RFC 7517 JWK Set. Multiple public + signing keys allow overlap during relying-party key rotation; C1 selects by + the assertion's `kid`. The relying party retains every private key. + properties: + publicJwks: + description: The publicJwks field. + format: base64 + type: string + required: + - publicJwks + title: Sso Application Oidc Client Auth Private Key Jwt + type: object + x-speakeasy-name-override: SSOApplicationOIDCClientAuthPrivateKeyJWT + c1.api.sso.v1.SSOApplicationOIDCClientAuthentication: + description: | + SSOApplicationOIDCClientAuthentication is the exact token-endpoint client + authentication method assigned to an OIDC client. + + This message contains a oneof named method. Only a single field of the following list may be set at a time: + - none + - clientSecretBasic + - clientSecretPost + - privateKeyJwt + properties: + clientSecretBasic: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationOIDCClientAuthClientSecretBasic' + - type: "null" + clientSecretPost: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationOIDCClientAuthClientSecretPost' + - type: "null" + none: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationOIDCClientAuthNone' + - type: "null" + privateKeyJwt: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationOIDCClientAuthPrivateKeyJWT' + - type: "null" + title: Sso Application Oidc Client Authentication + type: object + x-speakeasy-name-override: SSOApplicationOIDCClientAuthentication + c1.api.sso.v1.SSOApplicationOIDCClientConfig: + description: |- + SSOApplicationOIDCClientConfig is the administrator-supplied configuration + from which C1 mints an App-owned OAuth client. The client ID is never input. + properties: + authentication: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationOIDCClientAuthentication' + - type: "null" + displayName: + description: Human-readable client name shown to administrators. + type: string + pkcePolicy: description: |- - Lte specifies that this field must be less than or equal to the - specified value, inclusive - format: uint64 - readOnly: false + PKCE is required by default on create. On update, UNSPECIFIED preserves + the current policy; set REQUIRED_S256 explicitly to tighten a legacy + confidential client. + enum: + - SSO_APPLICATION_OIDC_PKCE_POLICY_UNSPECIFIED + - SSO_APPLICATION_OIDC_PKCE_POLICY_REQUIRED_S256 + - SSO_APPLICATION_OIDC_PKCE_POLICY_ALLOW_MISSING_FOR_LEGACY type: string - notIn: + x-speakeasy-unknown-values: allow + redirectUris: description: |- - NotIn specifies that this field cannot be equal to one of the specified - values + Exact redirect URIs the client may use after authorization. HTTPS and + loopback HTTP are accepted; public clients may also use a reversed-DNS + private-use scheme for native-app redirects. items: - format: uint64 type: string - nullable: true - readOnly: false - type: array - title: U Int 64 Rules + type: + - array + - "null" + required: + - displayName + - authentication + title: Sso Application Oidc Client Config type: object - x-speakeasy-name-override: UInt64Rules - securitySchemes: - bearerAuth: - scheme: bearer + x-speakeasy-name-override: SSOApplicationOIDCClientConfig + c1.api.sso.v1.SSOApplicationOIDCConfig: + description: SSOApplicationOIDCConfig is the OIDC-specific sign-in configuration. + properties: + claimMappings: + description: |- + Custom claims released to this application, in addition to the standard + claims its granted scopes already release. + items: + $ref: '#/components/schemas/c1.api.sso.v1.OIDCClaimMapping' + type: + - array + - "null" + idTokenSignedResponseAlg: + description: The algorithm used to sign this application's id_token. + enum: + - OIDC_SIGNING_ALGORITHM_UNSPECIFIED + - OIDC_SIGNING_ALGORITHM_EDDSA + - OIDC_SIGNING_ALGORITHM_ES256 + - OIDC_SIGNING_ALGORITHM_RS256 + type: string + x-speakeasy-unknown-values: allow + title: Sso Application Oidc Config + type: object + x-speakeasy-name-override: SSOApplicationOIDCConfig + c1.api.sso.v1.SSOApplicationSAMLConfig: + description: SSOApplicationSAMLConfig is the SAML-specific sign-in configuration. + properties: + acsUrls: + description: |- + The Assertion Consumer Service URLs the assertion may be posted to. + Matched exactly; a URL that is not in this list is refused. + items: + type: string + type: + - array + - "null" + attributeMappings: + description: |- + The attributes released in the assertion's AttributeStatement. SAML has no + scopes, so this list is the whole release: the NameID carries the + identifier and these carry everything else. + items: + $ref: '#/components/schemas/c1.api.sso.v1.SAMLAttributeMapping' + type: + - array + - "null" + encryptAssertions: + description: Encrypt the assertion. + type: boolean + encryptionAlgorithm: + description: The algorithm used when encrypt_assertions is set. + enum: + - SAML_ENCRYPTION_ALGORITHM_UNSPECIFIED + - SAML_ENCRYPTION_ALGORITHM_AES256_GCM + - SAML_ENCRYPTION_ALGORITHM_AES128_GCM + - SAML_ENCRYPTION_ALGORITHM_AES256_CBC + type: string + x-speakeasy-unknown-values: allow + nameIdFormat: + description: |- + Set this when the service provider requires a specific NameID format. This + also selects the NameID value semantics: EMAIL_ADDRESS uses the user's + primary email, TRANSIENT creates a new value for each sign-in, and + PERSISTENT uses the application's pairwise subject. Immutable once set. + enum: + - SAML_NAME_ID_FORMAT_UNSPECIFIED + - SAML_NAME_ID_FORMAT_PERSISTENT + - SAML_NAME_ID_FORMAT_EMAIL_ADDRESS + - SAML_NAME_ID_FORMAT_UNSPECIFIED_URN + - SAML_NAME_ID_FORMAT_TRANSIENT + type: string + x-speakeasy-unknown-values: allow + requireSignedAuthnRequests: + description: |- + Reject any AuthnRequest that is not signed by one of + sp_signing_certificates. At least one signing certificate is required when + this is set. + type: boolean + signAssertions: + description: |- + Sign the assertion. At least one of sign_assertions or sign_responses must + be set. + type: boolean + signResponses: + description: |- + Sign the response envelope. At least one of sign_assertions or + sign_responses must be set. + type: boolean + spEncryptionCertificate: + description: |- + The service provider's DER-encoded encryption certificate, taken from the + encryption KeyDescriptor in its metadata. Required when encrypt_assertions + is set. + format: base64 + type: string + spEntityId: + description: |- + The service provider's entity ID, taken from its metadata. It is the + audience every assertion this application issues is restricted to, and it + is what the service provider presents at sign-in. Set it at creation: it is + fixed for the life of the application, because changing it re-points every + assertion already issued. An entity ID already in use by another SSO + application in the tenant is rejected. + type: string + spSigningCertificates: + description: |- + The service provider's DER-encoded signing certificates, taken from the + signing KeyDescriptors in its metadata. + items: + format: base64 + type: string + type: + - array + - "null" + required: + - spEntityId + - acsUrls + title: Sso Application Saml Config + type: object + x-speakeasy-name-override: SSOApplicationSAMLConfig + c1.api.sso.v1.SSOApplicationServiceBatchDeleteSubjectCompatibilityRequestInput: + description: |- + SSOApplicationServiceBatchDeleteSubjectCompatibilityRequest deletes a + bounded batch of compatibility-subject bindings. + properties: + userIds: + description: The userIds field. + items: + type: string + type: + - array + - "null" + title: Sso Application Service Batch Delete Subject Compatibility Request + type: object + x-speakeasy-name-override: SSOApplicationServiceBatchDeleteSubjectCompatibilityRequest + c1.api.sso.v1.SSOApplicationServiceBatchDeleteSubjectCompatibilityResponse: + description: |- + SSOApplicationServiceBatchDeleteSubjectCompatibilityResponse reports bounded + recovery progress. + properties: + deletedRows: + description: The deletedRows field. + format: int32 + type: integer + issues: + description: The issues field. + items: + $ref: '#/components/schemas/c1.api.sso.v1.SSOSubjectCompatibilityDeleteIssue' + type: + - array + - "null" + title: Sso Application Service Batch Delete Subject Compatibility Response + type: object + x-speakeasy-name-override: SSOApplicationServiceBatchDeleteSubjectCompatibilityResponse + c1.api.sso.v1.SSOApplicationServiceBatchImportSubjectCompatibilityRequestInput: + description: |- + SSOApplicationServiceBatchImportSubjectCompatibilityRequest validates or + imports a bounded batch of per-user subject bindings. + properties: + apply: + description: |- + When false, validate without writing. Clients should validate every batch + before beginning the apply pass. + type: boolean + entries: + description: Client-parsed rows. Each request is bounded to 50 entries. + items: + $ref: '#/components/schemas/c1.api.sso.v1.SSOSubjectCompatibilityImportEntry' + type: + - array + - "null" + importId: + description: Client-generated identifier shared by every batch from one source file. + type: string + title: Sso Application Service Batch Import Subject Compatibility Request + type: object + x-speakeasy-name-override: SSOApplicationServiceBatchImportSubjectCompatibilityRequest + c1.api.sso.v1.SSOApplicationServiceBatchImportSubjectCompatibilityResponse: + description: |- + SSOApplicationServiceBatchImportSubjectCompatibilityResponse summarizes one + bounded validation or apply batch. + properties: + blockingUserIds: + description: |- + Import-created binding owners that block one or more submitted corrections. + This is a subset of recoverable_user_ids. + items: + type: string + type: + - array + - "null" + importedRows: + description: |- + Number of bindings successfully written. Zero for validation-only + requests; may be less than valid_rows if apply stops on a write failure. + format: int32 + type: integer + importedUserIds: + description: |- + Users whose bindings were created by this import, or were already created + by an earlier retry carrying the same import_id. + items: + type: string + type: + - array + - "null" + issues: + description: Row-level validation or apply failures. + items: + $ref: '#/components/schemas/c1.api.sso.v1.SSOSubjectCompatibilityImportIssue' + type: + - array + - "null" + recoverableUserIds: + description: |- + Users whose import-created binding is implicated by a submitted row. This + may include the current owner of a submitted subject even when that owner + was not itself submitted. + items: + type: string + type: + - array + - "null" + totalRows: + description: Number of entries in this batch. + format: int32 + type: integer + validRows: + description: Number of rows that can be imported. + format: int32 + type: integer + title: Sso Application Service Batch Import Subject Compatibility Response + type: object + x-speakeasy-name-override: SSOApplicationServiceBatchImportSubjectCompatibilityResponse + c1.api.sso.v1.SSOApplicationServiceCreateClientRequestInput: + description: |- + SSOApplicationServiceCreateClientRequest mints an additional App-owned + client. The caller supplies configuration, never a client ID. + properties: + client: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationOIDCClientConfig' + - type: "null" + required: + - client + title: Sso Application Service Create Client Request + type: object + x-speakeasy-name-override: SSOApplicationServiceCreateClientRequest + c1.api.sso.v1.SSOApplicationServiceCreateClientResponse: + description: |- + SSOApplicationServiceCreateClientResponse contains the generated client and + its one-time secret, when applicable. + properties: + client: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationOIDCClient' + - type: "null" + clientSecret: + description: |- + Returned once for client_secret_basic/client_secret_post; empty for + none/private_key_jwt. + type: string + title: Sso Application Service Create Client Response + type: object + x-speakeasy-name-override: SSOApplicationServiceCreateClientResponse + c1.api.sso.v1.SSOApplicationServiceCreateRequestInput: + description: | + SSOApplicationServiceCreateRequest creates an SSO application. + + This message contains a oneof named protocol. Only a single field of the following list may be set at a time: + - oidc + - saml + properties: + assertionLifetime: + format: duration + type: + - string + - "null" + description: + description: Description of the SSO application. + type: string + displayName: + description: Display name for the SSO application. + type: string + initialClient: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationOIDCClientConfig' + - type: "null" + oidc: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationOIDCConfig' + - type: "null" + saml: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationSAMLConfig' + - type: "null" + sectorId: + description: |- + The pairwise sector this application belongs to. Empty means the + application is its own sector. Immutable after creation. + type: string + subjectCompatibility: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOSubjectCompatibility' + - type: "null" + subjectType: + description: |- + How the user's identifier reaches this application. Leave unset to use the + tenant default. + enum: + - SSO_SUBJECT_TYPE_UNSPECIFIED + - SSO_SUBJECT_TYPE_PAIRWISE + - SSO_SUBJECT_TYPE_PUBLIC + - SSO_SUBJECT_TYPE_COMPATIBILITY + type: string + x-speakeasy-unknown-values: allow + required: + - displayName + title: Sso Application Service Create Request + type: object + x-speakeasy-name-override: SSOApplicationServiceCreateRequest + c1.api.sso.v1.SSOApplicationServiceCreateResponse: + description: SSOApplicationServiceCreateResponse returns the created SSO application. + properties: + application: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplication' + - type: "null" + client: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationOIDCClient' + - type: "null" + clientSecret: + description: |- + Confidential-client secret returned once. Empty for SAML and public OIDC + clients. C1 stores only its hash. + type: string + title: Sso Application Service Create Response + type: object + x-speakeasy-name-override: SSOApplicationServiceCreateResponse + c1.api.sso.v1.SSOApplicationServiceDeleteClientRequestInput: + description: SSOApplicationServiceDeleteClientRequest deletes one App-owned OAuth client. + properties: + clientId: + description: Generated client ID to delete. + type: string + required: + - clientId + title: Sso Application Service Delete Client Request + type: object + x-speakeasy-name-override: SSOApplicationServiceDeleteClientRequest + c1.api.sso.v1.SSOApplicationServiceDeleteClientResponse: + description: SSOApplicationServiceDeleteClientResponse confirms deletion. + title: Sso Application Service Delete Client Response + type: object + x-speakeasy-name-override: SSOApplicationServiceDeleteClientResponse + c1.api.sso.v1.SSOApplicationServiceDeleteRequestInput: + description: SSOApplicationServiceDeleteRequest deletes an SSO application. + title: Sso Application Service Delete Request + type: object + x-speakeasy-name-override: SSOApplicationServiceDeleteRequest + c1.api.sso.v1.SSOApplicationServiceDeleteResponse: + description: SSOApplicationServiceDeleteResponse confirms deletion. + title: Sso Application Service Delete Response + type: object + x-speakeasy-name-override: SSOApplicationServiceDeleteResponse + c1.api.sso.v1.SSOApplicationServiceGetResponse: + description: SSOApplicationServiceGetResponse returns a single SSO application. + properties: + application: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplication' + - type: "null" + title: Sso Application Service Get Response + type: object + x-speakeasy-name-override: SSOApplicationServiceGetResponse + c1.api.sso.v1.SSOApplicationServiceListClientsResponse: + description: |- + SSOApplicationServiceListClientsResponse contains a page of App-owned OAuth + clients. + properties: + list: + description: App-owned clients in this page. + items: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationOIDCClient' + type: + - array + - "null" + nextPageToken: + description: Pagination token for the next page, or empty when complete. + type: string + title: Sso Application Service List Clients Response + type: object + x-speakeasy-name-override: SSOApplicationServiceListClientsResponse + c1.api.sso.v1.SSOApplicationServiceListHistoryResponse: + description: |- + SSOApplicationServiceListHistoryResponse returns SSO application history + entries. + properties: + list: + description: The page of history entries, newest first. + items: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationHistoryEntry' + type: + - array + - "null" + nextPageToken: + description: Pagination token for the next page, or empty if there are no more results. + type: string + title: Sso Application Service List History Response + type: object + x-speakeasy-name-override: SSOApplicationServiceListHistoryResponse + c1.api.sso.v1.SSOApplicationServiceListResponse: + description: SSOApplicationServiceListResponse returns a page of SSO applications. + properties: + list: + description: The page of SSO applications. + items: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplication' + type: + - array + - "null" + nextPageToken: + description: Pagination token for the next page, or empty if there are no more results. + type: string + title: Sso Application Service List Response + type: object + x-speakeasy-name-override: SSOApplicationServiceListResponse + c1.api.sso.v1.SSOApplicationServiceParseSAMLServiceProviderMetadataRequest: + description: |- + SSOApplicationServiceParseSAMLServiceProviderMetadataRequest carries one + SAML service-provider metadata document to parse. + properties: + metadataXml: + description: |- + The SP metadata XML document, exactly as downloaded or exported from the + service provider. Maximum 1 MiB. The document is parsed, never stored. + format: base64 + type: string + required: + - metadataXml + title: Sso Application Service Parse Saml Service Provider Metadata Request + type: object + x-speakeasy-name-override: SSOApplicationServiceParseSAMLServiceProviderMetadataRequest + c1.api.sso.v1.SSOApplicationServiceParseSAMLServiceProviderMetadataResponse: + description: |- + SSOApplicationServiceParseSAMLServiceProviderMetadataResponse returns the + SAML configuration derived from one metadata document and every finding the + parser raised about it. + properties: + config: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationSAMLConfig' + - type: "null" + findings: + description: |- + Everything the parser noticed about the document, including requirements + it could not map into the configuration. + items: + $ref: '#/components/schemas/c1.api.sso.v1.SAMLMetadataFinding' + type: + - array + - "null" + title: Sso Application Service Parse Saml Service Provider Metadata Response + type: object + x-speakeasy-name-override: SSOApplicationServiceParseSAMLServiceProviderMetadataResponse + c1.api.sso.v1.SSOApplicationServiceRotateClientSecretRequestInput: + description: |- + SSOApplicationServiceRotateClientSecretRequest rotates one confidential + App-owned client's secret. + properties: + clientId: + description: Generated client ID whose secret will be rotated. + type: string + required: + - clientId + title: Sso Application Service Rotate Client Secret Request + type: object + x-speakeasy-name-override: SSOApplicationServiceRotateClientSecretRequest + c1.api.sso.v1.SSOApplicationServiceRotateClientSecretResponse: + description: |- + SSOApplicationServiceRotateClientSecretResponse contains the replacement + secret. The value cannot be retrieved again. + properties: + clientSecret: + description: New client secret, shown exactly once. + type: string + title: Sso Application Service Rotate Client Secret Response + type: object + x-speakeasy-name-override: SSOApplicationServiceRotateClientSecretResponse + c1.api.sso.v1.SSOApplicationServiceSearchRequest: + description: SSOApplicationServiceSearchRequest searches SSO applications with filters. + properties: + appIds: + description: |- + Optional filter by applications in your catalog. Empty matches any + application. + items: + type: string + type: + - array + - "null" + pageSize: + description: Maximum number of results to return per page. + format: int32 + type: integer + pageToken: + description: Pagination token from a previous response. + type: string + query: + description: Optional text query matched against display_name and description. + type: string + title: Sso Application Service Search Request + type: object + x-speakeasy-name-override: SSOApplicationServiceSearchRequest + c1.api.sso.v1.SSOApplicationServiceSearchResponse: + description: SSOApplicationServiceSearchResponse returns matching SSO applications. + properties: + list: + description: Matching SSO applications. + items: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplication' + type: + - array + - "null" + nextPageToken: + description: Token for the next page. + type: string + title: Sso Application Service Search Response + type: object + x-speakeasy-name-override: SSOApplicationServiceSearchResponse + c1.api.sso.v1.SSOApplicationServiceUpdateClientRequestInput: + description: |- + SSOApplicationServiceUpdateClientRequest replaces display name, redirect + URIs, private-key JWKS, or tightens legacy PKCE to required. + properties: + client: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationOIDCClientConfig' + - type: "null" + clientId: + description: Generated client ID to update. + type: string + required: + - clientId + - client + title: Sso Application Service Update Client Request + type: object + x-speakeasy-name-override: SSOApplicationServiceUpdateClientRequest + c1.api.sso.v1.SSOApplicationServiceUpdateClientResponse: + description: SSOApplicationServiceUpdateClientResponse contains the updated client. + properties: + client: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationOIDCClient' + - type: "null" + title: Sso Application Service Update Client Response + type: object + x-speakeasy-name-override: SSOApplicationServiceUpdateClientResponse + c1.api.sso.v1.SSOApplicationServiceUpdateRequestInput: + description: SSOApplicationServiceUpdateRequest updates an SSO application. + properties: + application: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplication' + - type: "null" + updateMask: + type: + - string + - "null" + required: + - application + - updateMask + title: Sso Application Service Update Request + type: object + x-speakeasy-name-override: SSOApplicationServiceUpdateRequest + c1.api.sso.v1.SSOApplicationServiceUpdateResponse: + description: SSOApplicationServiceUpdateResponse returns the updated SSO application. + properties: + application: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOApplication' + - type: "null" + title: Sso Application Service Update Response + type: object + x-speakeasy-name-override: SSOApplicationServiceUpdateResponse + c1.api.sso.v1.SSOSettings: + description: |- + SSOSettings is the per-tenant configuration for ConductorOne acting as an SSO + provider. + properties: + createdAt: + format: date-time + type: + - string + - "null" + defaultAssertionLifetime: + format: duration + type: + - string + - "null" + defaultIdTokenSignedResponseAlg: + description: |- + The id_token signing algorithm applied to OIDC applications that do not + choose one. When unset, the server uses EdDSA. + enum: + - OIDC_SIGNING_ALGORITHM_UNSPECIFIED + - OIDC_SIGNING_ALGORITHM_EDDSA + - OIDC_SIGNING_ALGORITHM_ES256 + - OIDC_SIGNING_ALGORITHM_RS256 + type: string + x-speakeasy-unknown-values: allow + defaultSubjectType: + description: |- + The subject type materialized onto new SSO applications that do not choose + one. Changing this default does not change existing applications. When + unset, the server uses pairwise subjects. + enum: + - SSO_SUBJECT_TYPE_UNSPECIFIED + - SSO_SUBJECT_TYPE_PAIRWISE + - SSO_SUBJECT_TYPE_PUBLIC + - SSO_SUBJECT_TYPE_COMPATIBILITY + type: string + x-speakeasy-unknown-values: allow + enabled: + description: |- + Master switch for the SSO provider. ConductorOne also gates the feature + behind an operator-controlled rollout flag; this is the tenant + administrator's intent. Individual SSO applications can still be disabled + one at a time. + type: boolean + updatedAt: + format: date-time + type: + - string + - "null" + title: Sso Settings + type: object + x-speakeasy-name-override: SSOSettings + c1.api.sso.v1.SSOSettingsHistoryEntry: + description: |- + SSOSettingsHistoryEntry is one version of the tenant's SSO settings and its + change metadata. + properties: + metadata: + oneOf: + - $ref: '#/components/schemas/c1.api.history.v1.HistoryEntryMetadata' + - type: "null" + snapshot: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOSettings' + - type: "null" + title: Sso Settings History Entry + type: object + x-speakeasy-name-override: SSOSettingsHistoryEntry + c1.api.sso.v1.SSOSettingsServiceGetResponse: + description: SSOSettingsServiceGetResponse returns the tenant's SSO provider settings. + properties: + settings: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOSettings' + - type: "null" + title: Sso Settings Service Get Response + type: object + x-speakeasy-name-override: SSOSettingsServiceGetResponse + c1.api.sso.v1.SSOSettingsServiceListHistoryResponse: + description: SSOSettingsServiceListHistoryResponse returns SSO settings history entries. + properties: + list: + description: The page of history entries, newest first. + items: + $ref: '#/components/schemas/c1.api.sso.v1.SSOSettingsHistoryEntry' + type: + - array + - "null" + nextPageToken: + description: Pagination token for the next page, or empty if there are no more results. + type: string + title: Sso Settings Service List History Response + type: object + x-speakeasy-name-override: SSOSettingsServiceListHistoryResponse + c1.api.sso.v1.SSOSettingsServiceUpdateRequest: + description: SSOSettingsServiceUpdateRequest updates the tenant's SSO provider settings. + properties: + settings: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOSettings' + - type: "null" + updateMask: + type: + - string + - "null" + required: + - settings + - updateMask + title: Sso Settings Service Update Request + type: object + x-speakeasy-name-override: SSOSettingsServiceUpdateRequest + c1.api.sso.v1.SSOSettingsServiceUpdateResponse: + description: SSOSettingsServiceUpdateResponse returns the updated settings. + properties: + settings: + oneOf: + - $ref: '#/components/schemas/c1.api.sso.v1.SSOSettings' + - type: "null" + title: Sso Settings Service Update Response + type: object + x-speakeasy-name-override: SSOSettingsServiceUpdateResponse + c1.api.sso.v1.SSOSubjectCompatibility: + description: |- + SSOSubjectCompatibility configures preservation of subjects issued by a + previous identity provider. + properties: + userAttributeMappingId: + description: |- + Optional user-attribute mapping used to resolve a legacy subject on first + sign-in. The resolved value is frozen in an immutable per-user binding. + Correct the source attribute before deleting an attribute-derived binding; + otherwise the next sign-in resolves and freezes the same value again. + type: string + title: Sso Subject Compatibility + type: object + x-speakeasy-name-override: SSOSubjectCompatibility + c1.api.sso.v1.SSOSubjectCompatibilityDeleteIssue: + description: |- + SSOSubjectCompatibilityDeleteIssue describes one compatibility binding that + could not be deleted. + properties: + reason: + description: The reason field. + type: string + userId: + description: The userId field. + type: string + title: Sso Subject Compatibility Delete Issue + type: object + x-speakeasy-name-override: SSOSubjectCompatibilityDeleteIssue + c1.api.sso.v1.SSOSubjectCompatibilityImportEntry: + description: SSOSubjectCompatibilityImportEntry is one client-parsed source row. + properties: + row: + description: One-based row number in the source file, including its header. + format: int32 + type: integer + subject: + description: Exact legacy subject. C1 preserves these UTF-8 bytes without trimming. + type: string + userId: + description: ConductorOne user ID resolved by the client before this batch is sent. + type: string + title: Sso Subject Compatibility Import Entry + type: object + x-speakeasy-name-override: SSOSubjectCompatibilityImportEntry + c1.api.sso.v1.SSOSubjectCompatibilityImportIssue: + description: |- + SSOSubjectCompatibilityImportIssue describes one CSV row that cannot be + imported. + properties: + reason: + description: Human-readable reason this row cannot be imported. + type: string + row: + description: One-based CSV row number, including the header row. + format: int32 + type: integer + subject: + description: Legacy subject supplied by the batch entry. + type: string + userId: + description: ConductorOne user ID supplied by the batch entry. + type: string + title: Sso Subject Compatibility Import Issue + type: object + x-speakeasy-name-override: SSOSubjectCompatibilityImportIssue + c1.api.stepup.v1.CreateStepUpProviderRequest: + description: | + The CreateStepUpProviderRequest message. + + This message contains a oneof named settings. Only a single field of the following list may be set at a time: + - oauth2 + - microsoft + properties: + clientId: + description: The OAuth2 client ID used to authenticate with the step-up provider. + type: string + clientSecret: + description: The OAuth2 client secret. Write-only; never returned in responses. + type: string + displayName: + description: The human-readable name for the new step-up provider. + type: string + issuerUrl: + description: The OIDC issuer URL for the step-up provider. + type: string + microsoft: + oneOf: + - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpMicrosoftSettings' + - type: "null" + oauth2: + oneOf: + - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpOAuth2Settings' + - type: "null" + title: Create Step Up Provider Request + type: object + x-speakeasy-name-override: CreateStepUpProviderRequest + c1.api.stepup.v1.CreateStepUpProviderResponse: + description: The CreateStepUpProviderResponse message. + properties: + stepUpProvider: + oneOf: + - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpProvider' + - type: "null" + title: Create Step Up Provider Response + type: object + x-speakeasy-name-override: CreateStepUpProviderResponse + c1.api.stepup.v1.DeleteStepUpProviderRequestInput: + description: The DeleteStepUpProviderRequest message. + title: Delete Step Up Provider Request + type: object + x-speakeasy-name-override: DeleteStepUpProviderRequest + c1.api.stepup.v1.DeleteStepUpProviderResponse: + description: The DeleteStepUpProviderResponse message. + title: Delete Step Up Provider Response + type: object + x-speakeasy-name-override: DeleteStepUpProviderResponse + c1.api.stepup.v1.GetStepUpProviderResponse: + description: The GetStepUpProviderResponse message. + properties: + stepUpProvider: + oneOf: + - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpProvider' + - type: "null" + title: Get Step Up Provider Response + type: object + x-speakeasy-name-override: GetStepUpProviderResponse + c1.api.stepup.v1.GetStepUpTransactionResponse: + description: Response message containing the requested step-up transaction + properties: + transaction: + oneOf: + - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpTransaction' + - type: "null" + title: Get Step Up Transaction Response + type: object + x-speakeasy-name-override: GetStepUpTransactionResponse + c1.api.stepup.v1.ListStepUpProvidersResponse: + description: The ListStepUpProvidersResponse message. + properties: + list: + description: The list of step-up authentication providers. + items: + $ref: '#/components/schemas/c1.api.stepup.v1.StepUpProvider' + type: + - array + - "null" + nextPageToken: + description: A token to retrieve the next page of results, or empty if there are no more results. + type: string + title: List Step Up Providers Response + type: object + x-speakeasy-name-override: ListStepUpProvidersResponse + c1.api.stepup.v1.SearchStepUpProvidersRequest: + description: Request message for searching step-up providers + properties: + pageSize: + description: Maximum number of results to return + format: int32 + type: integer + pageToken: + description: Token for pagination + type: string + providerType: + description: The providerType field. + enum: + - PROVIDER_TYPE_UNSPECIFIED + - PROVIDER_TYPE_OAUTH2 + - PROVIDER_TYPE_MICROSOFT + type: string + x-speakeasy-unknown-values: allow + query: + description: Filter by name (partial match) + type: string + refs: + description: Filter to specific providers by their references. + items: + $ref: '#/components/schemas/c1.api.stepup.v1.StepUpProviderRef' + type: + - array + - "null" + title: Search Step Up Providers Request + type: object + x-speakeasy-name-override: SearchStepUpProvidersRequest + c1.api.stepup.v1.SearchStepUpProvidersResponse: + description: Response message for searching step-up providers + properties: + list: + description: List of providers matching the search criteria + items: + $ref: '#/components/schemas/c1.api.stepup.v1.StepUpProvider' + type: + - array + - "null" + nextPageToken: + description: Token for retrieving the next page of results + type: string + title: Search Step Up Providers Response + type: object + x-speakeasy-name-override: SearchStepUpProvidersResponse + c1.api.stepup.v1.SearchStepUpTransactionsRequest: + description: Request message for searching step-up transactions + properties: + createdAfter: + format: date-time + type: + - string + - "null" + createdBefore: + format: date-time + type: + - string + - "null" + pageSize: + description: Maximum number of results to return + format: int32 + type: integer + pageToken: + description: Token for pagination + type: string + providerId: + description: Filter by provider ID + type: string + state: + description: Filter by transaction state + enum: + - STEP_UP_TRANSACTION_STATE_UNSPECIFIED + - STEP_UP_TRANSACTION_STATE_PENDING + - STEP_UP_TRANSACTION_STATE_VERIFIED + - STEP_UP_TRANSACTION_STATE_ERROR + type: string + x-speakeasy-unknown-values: allow + targetType: + description: The targetType field. + enum: + - TARGET_TYPE_UNSPECIFIED + - TARGET_TYPE_TICKET + - TARGET_TYPE_TEST + type: string + x-speakeasy-unknown-values: allow + taskId: + description: Filter by task ID (only applicable if target_type is TICKET) + type: string + userId: + description: Filter by user ID + type: string + title: Search Step Up Transactions Request + type: object + x-speakeasy-name-override: SearchStepUpTransactionsRequest + c1.api.stepup.v1.SearchStepUpTransactionsResponse: + description: Response message for searching step-up transactions + properties: + list: + description: List of transactions matching the search criteria + items: + $ref: '#/components/schemas/c1.api.stepup.v1.StepUpTransaction' + type: + - array + - "null" + nextPageToken: + description: Token for retrieving the next page of results + type: string + title: Search Step Up Transactions Response + type: object + x-speakeasy-name-override: SearchStepUpTransactionsResponse + c1.api.stepup.v1.StepUpMicrosoftSettings: + description: StepUpMicrosoftSettings configures a Microsoft Entra step-up provider using Conditional Access. + properties: + conditionalAccessIds: + description: Authentication context IDs (C1-C99). Required for ACRS mode; ignored for OIDC mode. + items: + type: string + type: + - array + - "null" + tenant: + description: Microsoft Entra tenant ID (GUID or domain). Used for response validation. + type: string + validationMode: + description: Validation approach. See MicrosoftValidationMode for details on each mode. + enum: + - MICROSOFT_VALIDATION_MODE_UNSPECIFIED + - MICROSOFT_VALIDATION_MODE_ACRS + - MICROSOFT_VALIDATION_MODE_OIDC + type: string + x-speakeasy-unknown-values: allow + title: Step Up Microsoft Settings + type: object + x-speakeasy-name-override: StepUpMicrosoftSettings + c1.api.stepup.v1.StepUpOAuth2Settings: + description: |- + StepUpOAuth2Settings repersents an OAuth2 provider that supports RFC 9470 + + Common ACR values for OAuth2 providers include: + - "urn:okta:loa:1fa:any" (okta) + - "urn:okta:loa:1fa:pwd" (okta) + - "urn:okta:loa:2fa:any" (okta) + - "urn:okta:loa:2fa:any:ifpossible" (okta) + - "phr" (okta) + - "phrh" (okta) + properties: + acrValues: + description: The acrValues field. + items: + type: string + type: + - array + - "null" + title: Step Up O Auth 2 Settings + type: object + x-speakeasy-name-override: StepUpOAuth2Settings + c1.api.stepup.v1.StepUpProvider: + description: | + StepUpProvider represents a configured step-up authentication integration (e.g., Duo, custom OIDC). + + This message contains a oneof named settings. Only a single field of the following list may be set at a time: + - oauth2 + - microsoft + properties: + clientId: + description: The OAuth2 client ID used to authenticate with the step-up provider. + type: string + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + displayName: + description: The human-readable name of the step-up provider. + type: string + enabled: + description: Whether the step-up provider is active and available for use. + type: boolean + id: + description: The unique identifier of the step-up provider. + readOnly: true + type: string + issuerUrl: + description: The OIDC issuer URL for the step-up provider. + type: string + lastTestedAt: + format: date-time + readOnly: true + type: + - string + - "null" + microsoft: + oneOf: + - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpMicrosoftSettings' + - type: "null" + oauth2: + oneOf: + - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpOAuth2Settings' + - type: "null" + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Step Up Provider + type: object + x-speakeasy-name-override: StepUpProvider + c1.api.stepup.v1.StepUpProviderRef: + description: StepUpProviderRef is a lightweight reference to a step-up authentication provider. + properties: + id: + description: The unique identifier of the step-up provider. + type: string + title: Step Up Provider Ref + type: object + x-speakeasy-name-override: StepUpProviderRef + c1.api.stepup.v1.StepUpTransaction: + description: | + StepUpTransaction represents a record of a step-up authentication attempt + + This message contains a oneof named target. Only a single field of the following list may be set at a time: + - approveTask + - test + properties: + approveTask: + oneOf: + - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpTransaction.TargetTask' + - type: "null" + claims: + additionalProperties: true + type: + - object + - "null" + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + errorMessage: + description: Error message if the transaction failed + readOnly: true + type: string + expiresAt: + format: date-time + readOnly: true + type: + - string + - "null" + id: + description: Unique identifier for the transaction + type: string + providerId: + description: ID of the provider used for this step-up authentication + type: string + state: + description: Current state of the transaction + enum: + - STEP_UP_TRANSACTION_STATE_UNSPECIFIED + - STEP_UP_TRANSACTION_STATE_PENDING + - STEP_UP_TRANSACTION_STATE_VERIFIED + - STEP_UP_TRANSACTION_STATE_ERROR + readOnly: true + type: string + x-speakeasy-unknown-values: allow + test: + oneOf: + - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpTransaction.TargetTest' + - type: "null" + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + userId: + description: ID of the user who performed the step-up authentication + type: string + title: Step Up Transaction + type: object + x-speakeasy-name-override: StepUpTransaction + c1.api.stepup.v1.StepUpTransaction.TargetTask: + description: Target for approving a task + properties: + policyStepId: + description: ID of the policy step requiring step-up authentication + type: string + taskId: + description: ID of the task being approved + type: string + title: Target Task + type: object + x-speakeasy-name-override: TargetTask + c1.api.stepup.v1.StepUpTransaction.TargetTest: + description: Target for testing a provider + title: Target Test + type: object + x-speakeasy-name-override: TargetTest + c1.api.stepup.v1.TestStepUpProviderRequestInput: + description: The TestStepUpProviderRequest message. + title: Test Step Up Provider Request + type: object + x-speakeasy-name-override: TestStepUpProviderRequest + c1.api.stepup.v1.TestStepUpProviderResponse: + description: The TestStepUpProviderResponse message. + properties: + redirectUrl: + description: The URL to redirect the user to for testing the Step Up flow + type: string + title: Test Step Up Provider Response + type: object + x-speakeasy-name-override: TestStepUpProviderResponse + c1.api.stepup.v1.UpdateStepUpProviderRequestInput: + description: The UpdateStepUpProviderRequest message. + properties: + stepUpProvider: + oneOf: + - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpProvider' + - type: "null" + updateMask: + type: + - string + - "null" + title: Update Step Up Provider Request + type: object + x-speakeasy-name-override: UpdateStepUpProviderRequest + c1.api.stepup.v1.UpdateStepUpProviderResponse: + description: The UpdateStepUpProviderResponse message. + properties: + stepUpProvider: + oneOf: + - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpProvider' + - type: "null" + title: Update Step Up Provider Response + type: object + x-speakeasy-name-override: UpdateStepUpProviderResponse + c1.api.stepup.v1.UpdateStepUpProviderSecretRequestInput: + description: The UpdateStepUpProviderSecretRequest message. + properties: + clientSecret: + description: The new OAuth2 client secret. Write-only; never returned in responses. + type: string + title: Update Step Up Provider Secret Request + type: object + x-speakeasy-name-override: UpdateStepUpProviderSecretRequest + c1.api.stepup.v1.UpdateStepUpProviderSecretResponse: + description: The UpdateStepUpProviderSecretResponse message. + properties: + stepUpProvider: + oneOf: + - $ref: '#/components/schemas/c1.api.stepup.v1.StepUpProvider' + - type: "null" + title: Update Step Up Provider Secret Response + type: object + x-speakeasy-name-override: UpdateStepUpProviderSecretResponse + c1.api.systemlog.v1.ExportServiceCreateRequest: + description: | + The ExportServiceCreateRequest message is used to create a new system log exporter. + + This message contains a oneof named export_to. Only a single field of the following list may be set at a time: + - datasource + properties: + datasource: + oneOf: + - $ref: '#/components/schemas/c1.api.systemlog.v1.ExportToDatasource' + - type: "null" + displayName: + description: The display name of the new system log exporter. + type: string + title: Export Service Create Request + type: object + x-speakeasy-name-override: ExportServiceCreateRequest + c1.api.systemlog.v1.ExportServiceCreateResponse: + description: The ExportServiceCreateResponse message. + properties: + exporter: + oneOf: + - $ref: '#/components/schemas/c1.api.systemlog.v1.Exporter' + - type: "null" + title: Export Service Create Response + type: object + x-speakeasy-name-override: ExportServiceCreateResponse + c1.api.systemlog.v1.ExportServiceDeleteRequestInput: + description: The ExportServiceDeleteRequest message. + title: Export Service Delete Request + type: object + x-speakeasy-name-override: ExportServiceDeleteRequest + c1.api.systemlog.v1.ExportServiceDeleteResponse: + description: The ExportServiceDeleteResponse message. + title: Export Service Delete Response + type: object + x-speakeasy-name-override: ExportServiceDeleteResponse + c1.api.systemlog.v1.ExportServiceGetResponse: + description: The ExportServiceGetResponse message contains the system log exporter object. + properties: + exporter: + oneOf: + - $ref: '#/components/schemas/c1.api.systemlog.v1.Exporter' + - type: "null" + title: Export Service Get Response + type: object + x-speakeasy-name-override: ExportServiceGetResponse + c1.api.systemlog.v1.ExportServiceListEventsRequestInput: + description: ExportServiceListEventsRequest is the request for listing audit events within a specific export. + properties: + pageSize: + description: The pageSize field. + format: int32 + type: integer + pageToken: + description: The pageToken field. + type: string + title: Export Service List Events Request + type: object + x-speakeasy-name-override: ExportServiceListEventsRequest + c1.api.systemlog.v1.ExportServiceListEventsResponse: + description: ExportServiceListEventsResponse is the response containing audit events for an export. + properties: + list: + description: List contains an array of JSON OCSF events. + items: + additionalProperties: true + type: object + type: + - array + - "null" + nextPageToken: + description: The token to retrieve the next page of results, or empty if there are no more results. + type: string + title: Export Service List Events Response + type: object + x-speakeasy-name-override: ExportServiceListEventsResponse + c1.api.systemlog.v1.ExportServiceListResponse: + description: The ExportServiceListResponse message. + properties: + list: + description: The list of results containing up to X results, where X is the page size defined in the request + items: + $ref: '#/components/schemas/c1.api.systemlog.v1.Exporter' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. + type: string + title: Export Service List Response + type: object + x-speakeasy-name-override: ExportServiceListResponse + c1.api.systemlog.v1.ExportServiceUpdateRequestInput: + description: The ExportServiceUpdateRequest message. + properties: + exporter: + oneOf: + - $ref: '#/components/schemas/c1.api.systemlog.v1.Exporter' + - type: "null" + updateMask: + type: + - string + - "null" + title: Export Service Update Request + type: object + x-speakeasy-name-override: ExportServiceUpdateRequest + c1.api.systemlog.v1.ExportServiceUpdateResponse: + description: The ExportServiceUpdateResponse message. + properties: + exporter: + oneOf: + - $ref: '#/components/schemas/c1.api.systemlog.v1.Exporter' + - type: "null" + title: Export Service Update Response + type: object + x-speakeasy-name-override: ExportServiceUpdateResponse + c1.api.systemlog.v1.ExportToDatasource: + description: The ExportToDatasource message. + properties: + datasourceId: + description: The datasourceId field. + type: string + format: + description: The format field. + enum: + - EXPORT_FORMAT_UNSPECIFIED + - EXPORT_FORMAT_OCSF_JSON_ZSTD + - EXPORT_FORMAT_OCSF_JSON_GZIP + type: string + x-speakeasy-unknown-values: allow + prefix: + description: The prefix field. + type: string + title: Export To Datasource + type: object + x-speakeasy-name-override: ExportToDatasource + c1.api.systemlog.v1.Exporter: + description: | + The Exporter message. + + This message contains a oneof named export_to. Only a single field of the following list may be set at a time: + - datasource + properties: + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + datasource: + oneOf: + - $ref: '#/components/schemas/c1.api.systemlog.v1.ExportToDatasource' + - type: "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + displayName: + description: The displayName field. + type: string + exportId: + description: The exportId field. + readOnly: true + type: string + state: + description: The state field. + enum: + - EXPORT_STATE_UNSPECIFIED + - EXPORT_STATE_EXPORTING + - EXPORT_STATE_WAITING + - EXPORT_STATE_ERROR + readOnly: true + type: string + x-speakeasy-unknown-values: allow + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + watermarkEventId: + description: we've synchorized this far + readOnly: true + type: string + title: Exporter + type: object + x-speakeasy-name-override: Exporter + c1.api.systemlog.v1.ExporterRef: + description: The ExporterRef message. + properties: + exportId: + description: The exportId field. + type: string + title: Exporter Ref + type: object + x-speakeasy-name-override: ExporterRef + c1.api.systemlog.v1.ExportsSearchServiceSearchRequest: + description: ExportsSearchServiceSearchRequest is the request for searching system log exports. + properties: + displayName: + description: Search for system log exporters with a case insensitive match on the display name. + type: string + pageSize: + description: The pageSize field. + format: int32 + type: integer + pageToken: + description: The pageToken field. + type: string + query: + description: The query field. + type: string + refs: + description: The refs field. + items: + $ref: '#/components/schemas/c1.api.systemlog.v1.ExporterRef' + type: + - array + - "null" + title: Exports Search Service Search Request + type: object + x-speakeasy-name-override: ExportsSearchServiceSearchRequest + c1.api.systemlog.v1.ExportsSearchServiceSearchResponse: + description: ExportsSearchServiceSearchResponse is the response for searching system log exports. + properties: + list: + description: The list of system log exports matching the search criteria. + items: + $ref: '#/components/schemas/c1.api.systemlog.v1.Exporter' + type: + - array + - "null" + nextPageToken: + description: The token to retrieve the next page of results, or empty if there are no more results. + type: string + title: Exports Search Service Search Response + type: object + x-speakeasy-name-override: ExportsSearchServiceSearchResponse + c1.api.systemlog.v1.SystemLogServiceListEventsRequest: + description: The SystemLogServiceListEventsRequest message. + properties: + pageSize: + description: The pageSize field. + format: int32 + type: integer + pageToken: + description: The pageToken field. + type: string + since: + format: date-time + type: + - string + - "null" + sinceEventUid: + description: The sinceEventUid field. + type: string + sortDirection: + description: The sortDirection field. + enum: + - SORT_DIRECTION_UNSPECIFIED + - SORT_DIRECTION_ASC + - SORT_DIRECTION_DESC + type: string + x-speakeasy-unknown-values: allow + until: + format: date-time + type: + - string + - "null" + untilEventUid: + description: The untilEventUid field. + type: string + title: System Log Service List Events Request + type: object + x-speakeasy-name-override: SystemLogServiceListEventsRequest + c1.api.systemlog.v1.SystemLogServiceListEventsResponse: + description: The SystemLogServiceListEventsResponse message. + properties: + list: + description: List contains an array of JSON OCSF events. + items: + additionalProperties: true + type: object + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. + type: string + title: System Log Service List Events Response + type: object + x-speakeasy-name-override: SystemLogServiceListEventsResponse + c1.api.task.v1.ActionInstance: + description: | + ActionInstance is the API mirror of the internal immutable snapshot of an + Action captured on a TaskTypeAction at ticket-creation time. + + This message contains a oneof named target_ref. Only a single field of the following list may be set at a time: + - batonResourceActionRef + - connectorActionRef + properties: + batonResourceActionRef: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.BatonResourceActionRef' + - type: "null" + connectorActionRef: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.ConnectorActionRef' + - type: "null" + displayName: + description: |- + Display label at ticket-creation time. Same value as + TaskTypeAction.display_name; repeated here so clients that walk the + instance see a self-contained view. + readOnly: true + type: string + title: Action Instance + type: object + x-speakeasy-name-override: TaskActionInstance + c1.api.task.v1.BatonResourceActionRef: + description: |- + BatonResourceActionRef describes dispatch to a connector resource-create + action (for example, a group template that creates a group in the connected + application). + properties: + appId: + description: The app the resource is created in. + readOnly: true + type: string + batonActionDisplayName: + description: The connector-defined display name of the resource-create action. + readOnly: true + type: string + batonActionName: + description: The connector-defined name of the resource-create action. + readOnly: true + type: string + connectorId: + description: The connector that executes the resource-create action. + readOnly: true + type: string + resourceTypeId: + description: The type of resource the action creates (for example, "group"). + readOnly: true + type: string + title: Baton Resource Action Ref + type: object + x-speakeasy-name-override: BatonResourceActionRef + c1.api.task.v1.ConnectorActionRef: + description: |- + ConnectorActionRef describes dispatch through a connector's built-in + GrantManagerService Grant / Revoke RPC — i.e. the default connector + operation, used for synthesized tickets like scope-role requests. + properties: + appId: + description: The app whose connector handles the operation. + readOnly: true + type: string + connectorId: + description: The connector that will execute the Grant / Revoke. + readOnly: true + type: string + operation: + description: Which connector RPC this dispatches to. + enum: + - OPERATION_UNSPECIFIED + - OPERATION_GRANT + readOnly: true + type: string + x-speakeasy-unknown-values: allow + title: Connector Action Ref + type: object + x-speakeasy-name-override: ConnectorActionRef + c1.api.task.v1.ExternalRef: + description: A reference to an external source. This value is unused currently, but may be brought back. + properties: + externalRefSource: + description: The source of the external reference. + enum: + - UNSPECIFIED + - JIRA + readOnly: true + type: string + x-speakeasy-unknown-values: allow + name: + description: The name of the external reference. + readOnly: true + type: string + url: + description: The URL to the external reference. + readOnly: true + type: string + title: External Ref + type: object + x-speakeasy-name-override: ExternalRef + c1.api.task.v1.FindingTarget: + description: The finding an inert TYPE_MANUAL action ticket remediates. + properties: + findingId: + description: Reference to the source finding. + readOnly: true + type: string + findingType: + description: The finding type discriminator. + readOnly: true + type: string + title: Finding Target + type: object + x-speakeasy-name-override: FindingTarget + c1.api.task.v1.GatedToolCallTarget: + description: The GatedToolCallTarget message. + properties: + appEntitlementId: + description: The appEntitlementId field. + readOnly: true + type: string + appId: + description: The appId field. + readOnly: true + type: string + callerKind: + description: The callerKind field. + readOnly: true + type: string + connectorId: + description: The connectorId field. + readOnly: true + type: string + gateId: + description: The gateId field. + readOnly: true + type: string + inputSizeBytes: + description: The inputSizeBytes field. + format: int32 + readOnly: true + type: integer + toolError: + description: The toolError field. + readOnly: true + type: string + toolId: + description: The toolId field. + readOnly: true + type: string + toolInput: + additionalProperties: true + readOnly: true + type: + - object + - "null" + toolKind: + description: The toolKind field. + readOnly: true + type: string + toolName: + description: The toolName field. + readOnly: true + type: string + toolOutput: + readOnly: true + type: + - string + - number + - object + - array + - boolean + - "null" + title: Gated Tool Call Target + type: object + x-speakeasy-name-override: GatedToolCallTarget + c1.api.task.v1.ScopeRole: + description: |- + Scope-role variant of TaskTypeAction.target_object. The UI uses the + embedded identifiers to build links and title strings without a separate + Action fetch. + properties: + appId: + description: The IaaS/sparse-ACL app the (scope, role) pair lives on. + readOnly: true + type: string + grantDuration: + format: duration + readOnly: true + type: + - string + - "null" + roleResourceId: + description: The roleResourceId field. + readOnly: true + type: string + roleResourceTypeId: + description: The roleResourceTypeId field. + readOnly: true + type: string + scopeResourceId: + description: The scopeResourceId field. + readOnly: true + type: string + scopeResourceTypeId: + description: The scopeResourceTypeId field. + readOnly: true + type: string + title: Scope Role + type: object + x-speakeasy-name-override: ScopeRole + c1.api.task.v1.Task: + description: A fully-fleged task object. Includes its policy, references to external apps, its type, its processing history, and more. + properties: + actions: + description: The actions that can be performed on the task by the current user. + items: + enum: + - TASK_ACTION_TYPE_UNSPECIFIED + - TASK_ACTION_TYPE_CLOSE + - TASK_ACTION_TYPE_APPROVE + - TASK_ACTION_TYPE_DENY + - TASK_ACTION_TYPE_COMMENT + - TASK_ACTION_TYPE_DELETE + - TASK_ACTION_TYPE_REASSIGN + - TASK_ACTION_TYPE_RESTART + - TASK_ACTION_TYPE_SEND_REMINDER + - TASK_ACTION_TYPE_PROVISION_COMPLETE + - TASK_ACTION_TYPE_PROVISION_CANCELLED + - TASK_ACTION_TYPE_PROVISION_ERRORED + - TASK_ACTION_TYPE_ROLLBACK_SKIPPED + - TASK_ACTION_TYPE_PROVISION_APP_USER_TARGET_CREATED + - TASK_ACTION_TYPE_HARD_RESET + - TASK_ACTION_TYPE_ESCALATE_TO_EMERGENCY_ACCESS + - TASK_ACTION_TYPE_CHANGE_POLICY + - TASK_ACTION_TYPE_RECALCULATE_DENIAL_FROM_BASE_POLICY_DECISIONS + - TASK_ACTION_TYPE_SET_INSIGHTS_AND_RECOMMENDATION + - TASK_ACTION_TYPE_SET_ANALYSIS_ID + - TASK_ACTION_TYPE_RECALCULATE_APPROVERS_LIST + - TASK_ACTION_TYPE_PROCESS_NOW + - TASK_ACTION_TYPE_APPROVE_WITH_STEP_UP + - TASK_ACTION_TYPE_SKIP_STEP + - TASK_ACTION_TYPE_ROLLBACK_CANCELLED + - TASK_ACTION_TYPE_UPDATE_REQUEST_DATA + - TASK_ACTION_TYPE_UPDATE_GRANT_DURATION + - TASK_ACTION_TYPE_RETRY_PROVISIONING + type: string + x-speakeasy-unknown-values: allow + readOnly: true + type: + - array + - "null" + analysisId: + description: The ID of the analysis object associated with this task created by an analysis workflow if the analysis feature is enabled for your tenant. + readOnly: true + type: string + annotations: + description: An array of `google.protobuf.Any` annotations with various base64-encoded data. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + readOnly: true + type: object + readOnly: true + type: + - array + - "null" + approverIds: + description: An array of IDs belonging to Identity Users that have approved or denied any step in this task. + items: + type: string + readOnly: true + type: + - array + - "null" + commentCount: + description: The count of comments. + format: int32 + readOnly: true + type: integer + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + createdByUserId: + description: The ID of the user that is the creator of this task. This may not always match the userId field. + readOnly: true + type: string + data: + additionalProperties: true + readOnly: true + type: + - object + - "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + description: + description: The description of the task. This is also known as justification. + readOnly: true + type: string + displayName: + description: The display name of the task. + readOnly: true + type: string + emergencyAccess: + description: A field indicating whether this task was created using an emergency access flow, or escalated to emergency access. On task creation, it will also use the app entitlement's emergency policy when possible. + readOnly: true + type: boolean + externalRefs: + description: An array of external references to the task. Historically that has been items like Jira task IDs. This is currently unused, but may come back in the future for integrations. + items: + $ref: '#/components/schemas/c1.api.task.v1.ExternalRef' + readOnly: true + type: + - array + - "null" + form: + oneOf: + - $ref: '#/components/schemas/c1.api.form.v1.Form' + - type: "null" + id: + description: The ID of the task. + readOnly: true + type: string + insightIds: + description: The insightIds field. + items: + type: string + type: + - array + - "null" + numericId: + description: A human-usable numeric ID of a task which can be included in place of the fully qualified task id in path parmeters (but not search queries). + format: int64 + readOnly: true + type: string + origin: + description: The origin field. + enum: + - TASK_ORIGIN_UNSPECIFIED + - TASK_ORIGIN_PROFILE_MEMBERSHIP_AUTOMATION + - TASK_ORIGIN_SLACK + - TASK_ORIGIN_API + - TASK_ORIGIN_JIRA + - TASK_ORIGIN_COPILOT + - TASK_ORIGIN_WEBAPP + - TASK_ORIGIN_TIME_REVOKE + - TASK_ORIGIN_NON_USAGE_REVOKE + - TASK_ORIGIN_PROFILE_MEMBERSHIP_MANUAL + - TASK_ORIGIN_PROFILE_MEMBERSHIP + - TASK_ORIGIN_AUTOMATION + - TASK_ORIGIN_ACCESS_REVIEW + - TASK_ORIGIN_CASCADE_DELETE + type: string + x-speakeasy-unknown-values: allow + policy: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.PolicyInstance' + - type: "null" + policyGenerationId: + description: The policy generation id refers to the current policy's generation ID. This is changed when the policy is changed on a task. + readOnly: true + type: string + processing: + description: The processing state of a task as defined by the `processing_enum` + enum: + - TASK_PROCESSING_TYPE_UNSPECIFIED + - TASK_PROCESSING_TYPE_PROCESSING + - TASK_PROCESSING_TYPE_WAITING + - TASK_PROCESSING_TYPE_DONE + readOnly: true + type: string + x-speakeasy-unknown-values: allow + recommendation: + description: The recommendation field. + enum: + - INSIGHT_RECOMMENDATION_UNSPECIFIED + - INSIGHT_RECOMMENDATION_APPROVE + - INSIGHT_RECOMMENDATION_DENY + - INSIGHT_RECOMMENDATION_REVIEW + type: string + x-speakeasy-unknown-values: allow + revocationTargets: + description: |- + Ancestor entitlements that will also be revoked when this revoke task is approved. + Populated at ticket creation time for inherited grant revocations. + items: + $ref: '#/components/schemas/c1.api.task.v1.TaskRevocationTarget' + readOnly: true + type: + - array + - "null" + state: + description: The current state of the task as defined by the `state_enum` + enum: + - TASK_STATE_UNSPECIFIED + - TASK_STATE_OPEN + - TASK_STATE_CLOSED + readOnly: true + type: string + x-speakeasy-unknown-values: allow + stepApproverIds: + description: An array of IDs belonging to Identity Users that are allowed to review this step in a task. + items: + type: string + readOnly: true + type: + - array + - "null" + type: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskType' + - type: "null" + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + userId: + description: The ID of the user that is the target of this task. This may be empty if we're targeting a specific app user that has no known identity user. + readOnly: true + type: string + title: Task + type: object + x-speakeasy-name-override: Task + c1.api.task.v1.TaskAction: + description: Represents a single action that was performed on a task. + properties: + actionType: + description: The type of action that was performed. + enum: + - TASK_ACTION_TYPE_UNSPECIFIED + - TASK_ACTION_TYPE_CLOSE + - TASK_ACTION_TYPE_APPROVE + - TASK_ACTION_TYPE_DENY + - TASK_ACTION_TYPE_COMMENT + - TASK_ACTION_TYPE_DELETE + - TASK_ACTION_TYPE_REASSIGN + - TASK_ACTION_TYPE_RESTART + - TASK_ACTION_TYPE_SEND_REMINDER + - TASK_ACTION_TYPE_PROVISION_COMPLETE + - TASK_ACTION_TYPE_PROVISION_CANCELLED + - TASK_ACTION_TYPE_PROVISION_ERRORED + - TASK_ACTION_TYPE_ROLLBACK_SKIPPED + - TASK_ACTION_TYPE_PROVISION_APP_USER_TARGET_CREATED + - TASK_ACTION_TYPE_HARD_RESET + - TASK_ACTION_TYPE_ESCALATE_TO_EMERGENCY_ACCESS + - TASK_ACTION_TYPE_CHANGE_POLICY + - TASK_ACTION_TYPE_RECALCULATE_DENIAL_FROM_BASE_POLICY_DECISIONS + - TASK_ACTION_TYPE_SET_INSIGHTS_AND_RECOMMENDATION + - TASK_ACTION_TYPE_SET_ANALYSIS_ID + - TASK_ACTION_TYPE_RECALCULATE_APPROVERS_LIST + - TASK_ACTION_TYPE_PROCESS_NOW + - TASK_ACTION_TYPE_APPROVE_WITH_STEP_UP + - TASK_ACTION_TYPE_SKIP_STEP + - TASK_ACTION_TYPE_ROLLBACK_CANCELLED + - TASK_ACTION_TYPE_UPDATE_REQUEST_DATA + - TASK_ACTION_TYPE_UPDATE_GRANT_DURATION + - TASK_ACTION_TYPE_RETRY_PROVISIONING + type: string + x-speakeasy-unknown-values: allow + bulkActionId: + description: The ID of the bulk action this action belongs to, if it was part of a bulk operation. + type: string + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + id: + description: The unique ID of this action. + type: string + policyStepId: + description: The ID of the policy step this action was performed on. + type: string + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + userId: + description: The ID of the user who performed the action. + type: string + title: Task Action + type: object + x-speakeasy-name-override: SubmittedTaskAction + c1.api.task.v1.TaskActionsServiceApproveRequestInput: + description: The TaskActionsServiceApproveRequest object lets you approve a task. + properties: + comment: + description: The comment attached to the request. + type: string + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + policyStepId: + description: The ID of the policy step on the given task to approve. + type: string + required: + - policyStepId + title: Task Actions Service Approve Request + type: object + x-speakeasy-name-override: TaskActionsServiceApproveRequest + c1.api.task.v1.TaskActionsServiceApproveResponse: + description: The TaskActionsServiceApproveResponse returns a task view with paths indicating the location of expanded items in the array. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + readOnly: true + type: object + readOnly: true + type: + - array + - "null" + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + ticketActionId: + description: The ID of the task approve action created by this request. + readOnly: true + type: string + title: Task Actions Service Approve Response + type: object + x-speakeasy-name-override: TaskActionsServiceApproveResponse + c1.api.task.v1.TaskActionsServiceApproveWithStepUpRequestInput: + description: TaskActionsServiceApproveWithStepUpRequest is used to approve a task with step-up authentication + properties: + comment: + description: The comment attached to the request. + type: string + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + policyStepId: + description: The ID of the policy step on the given task to approve. + type: string + stepUpTransactionId: + description: |- + The step-up transaction ID that was verified. + If unset, the response will include a redirect URL to + complete the step-up authentication. + type: string + required: + - policyStepId + - stepUpTransactionId + title: Task Actions Service Approve With Step Up Request + type: object + x-speakeasy-name-override: TaskActionsServiceApproveWithStepUpRequest + c1.api.task.v1.TaskActionsServiceApproveWithStepUpResponse: + description: TaskActionsServiceApproveWithStepUpResponse is the response for approving a task with step-up authentication + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + readOnly: true + type: object + readOnly: true + type: + - array + - "null" + redirectUrl: + description: The redirect URL the client must visit to complete the step-up authentication. + type: string + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + ticketActionId: + description: The ID of the task approve action created by this request. + readOnly: true + type: string + title: Task Actions Service Approve With Step Up Response + type: object + x-speakeasy-name-override: TaskActionsServiceApproveWithStepUpResponse + c1.api.task.v1.TaskActionsServiceCloseRequestInput: + description: The TaskActionsServiceCloseRequest object lets you close or cancel a task. + properties: + comment: + description: An optional comment attached to the close action. + type: string + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + title: Task Actions Service Close Request + type: object + x-speakeasy-name-override: TaskActionsServiceCloseRequest + c1.api.task.v1.TaskActionsServiceCloseResponse: + description: The TaskActionsServiceCloseResponse returns a task view with paths indicating the location of expanded items in the array. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + readOnly: true + type: object + readOnly: true + type: + - array + - "null" + taskActionId: + description: The ID of the task close action created by this request. + readOnly: true + type: string + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + title: Task Actions Service Close Response + type: object + x-speakeasy-name-override: TaskActionsServiceCloseResponse + c1.api.task.v1.TaskActionsServiceCommentRequestInput: + description: The TaskActionsServiceCommentRequest object lets you create a new comment on a task. + properties: + comment: + description: The comment to be posted to the task. + type: string + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + title: Task Actions Service Comment Request + type: object + x-speakeasy-name-override: TaskActionsServiceCommentRequest + c1.api.task.v1.TaskActionsServiceCommentResponse: + description: Task actions service comment response returns the task view inluding the expanded array of items that are indicated by the expand mask on the request. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + title: Task Actions Service Comment Response + type: object + x-speakeasy-name-override: TaskActionsServiceCommentResponse + c1.api.task.v1.TaskActionsServiceDenyRequestInput: + description: The TaskActionsServiceDenyRequest object lets you deny a task. + properties: + comment: + description: The comment attached to the request. + type: string + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + policyStepId: + description: The ID of the current policy step. This is the step you want to deny. + type: string + title: Task Actions Service Deny Request + type: object + x-speakeasy-name-override: TaskActionsServiceDenyRequest + c1.api.task.v1.TaskActionsServiceDenyResponse: + description: The TaskActionsServiceDenyResponse returns a task view with paths indicating the location of expanded items in the array. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + readOnly: true + type: object + readOnly: true + type: + - array + - "null" + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + ticketActionId: + description: The ID of the task deny action created by this request. + readOnly: true + type: string + title: Task Actions Service Deny Response + type: object + x-speakeasy-name-override: TaskActionsServiceDenyResponse + c1.api.task.v1.TaskActionsServiceEscalateToEmergencyAccessRequestInput: + description: The TaskActionsServiceEscalateToEmergencyAccessRequest object lets you escalate a task to the emergency access workflow. + properties: + comment: + description: An optional comment attached to the escalation. + type: string + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + policyStepId: + description: The ID of the current policy step being escalated from. + type: string + title: Task Actions Service Escalate To Emergency Access Request + type: object + x-speakeasy-name-override: TaskActionsServiceEscalateToEmergencyAccessRequest + c1.api.task.v1.TaskActionsServiceHardResetRequestInput: + description: The TaskActionsServiceHardResetRequest object lets you reset a task and recalculate its policy. + properties: + comment: + description: The comment attached to the request. + type: string + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + title: Task Actions Service Hard Reset Request + type: object + x-speakeasy-name-override: TaskActionsServiceHardResetRequest + c1.api.task.v1.TaskActionsServiceHardResetResponse: + description: The TaskActionsServiceHardResetResponse returns the updated task after a hard reset. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + ticketActionId: + description: The ID of the task reset action created by this request. + type: string + title: Task Actions Service Hard Reset Response + type: object + x-speakeasy-name-override: TaskActionsServiceHardResetResponse + c1.api.task.v1.TaskActionsServiceProcessNowRequestInput: + description: The TaskActionsServiceProcessNowRequest object lets you trigger processing of a task immediately. + properties: + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + title: Task Actions Service Process Now Request + type: object + x-speakeasy-name-override: TaskActionsServiceProcessNowRequest + c1.api.task.v1.TaskActionsServiceProcessNowResponse: + description: The TaskActionsServiceProcessNowResponse returns the task view after triggering immediate processing. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + title: Task Actions Service Process Now Response + type: object + x-speakeasy-name-override: TaskActionsServiceProcessNowResponse + c1.api.task.v1.TaskActionsServiceReassignRequestInput: + description: The TaskActionsServiceReassignRequest object lets you reassign a task's current policy step to different users. + properties: + comment: + description: An optional comment attached to the reassignment. + type: string + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + newStepUserIds: + description: The IDs of the users to reassign the current policy step to. Must be from the allowed reassignees list. + items: + type: string + type: + - array + - "null" + policyStepId: + description: The ID of the current policy step to reassign. Must match the task's active step. + type: string + title: Task Actions Service Reassign Request + type: object + x-speakeasy-name-override: TaskActionsServiceReassignRequest + c1.api.task.v1.TaskActionsServiceReassignResponse: + description: The TaskActionsServiceReassignResponse returns a task view with paths indicating the location of expanded items in the array. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + readOnly: true + type: object + readOnly: true + type: + - array + - "null" + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + ticketActionId: + description: The ID of the task reassign action created by this request. + readOnly: true + type: string + title: Task Actions Service Reassign Response + type: object + x-speakeasy-name-override: TaskActionsServiceReassignResponse + c1.api.task.v1.TaskActionsServiceRestartRequestInput: + description: The TaskActionsServiceRestartRequest object lets you restart a task. + properties: + comment: + description: The comment attached to the request. + type: string + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + policyStepId: + description: Deprecated. This field is accepted but does not affect behavior. + type: string + title: Task Actions Service Restart Request + type: object + x-speakeasy-name-override: TaskActionsServiceRestartRequest + c1.api.task.v1.TaskActionsServiceRestartResponse: + description: The TaskActionsServiceRestartResponse returns the updated task after restarting. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + ticketActionId: + description: The ID of the task restart action created by this request. + type: string + title: Task Actions Service Restart Response + type: object + x-speakeasy-name-override: TaskActionsServiceRestartResponse + c1.api.task.v1.TaskActionsServiceRetryProvisioningRequestInput: + description: Request to retry a task's failed connector provisioning. + properties: + comment: + description: An optional comment attached to the action. + type: string + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + policyStepId: + description: The ID of the provision policy step to retry. + type: string + title: Task Actions Service Retry Provisioning Request + type: object + x-speakeasy-name-override: TaskActionsServiceRetryProvisioningRequest + c1.api.task.v1.TaskActionsServiceSkipStepRequestInput: + description: The TaskActionsServiceSkipStepRequest object lets you skip a policy step in a task. + properties: + comment: + description: The comment attached to the request. + type: string + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + policyStepId: + description: The ID of the policy step to skip. + type: string + required: + - policyStepId + title: Task Actions Service Skip Step Request + type: object + x-speakeasy-name-override: TaskActionsServiceSkipStepRequest + c1.api.task.v1.TaskActionsServiceUpdateGrantDurationRequestInput: + description: The TaskActionsServiceUpdateGrantDurationRequest object lets you change the grant duration on a grant task. + properties: + duration: + format: duration + type: + - string + - "null" + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + required: + - duration + title: Task Actions Service Update Grant Duration Request + type: object + x-speakeasy-name-override: TaskActionsServiceUpdateGrantDurationRequest + c1.api.task.v1.TaskActionsServiceUpdateRequestDataRequestInput: + description: The TaskActionsServiceUpdateRequestDataRequest object lets you submit form data for a task that is in a form policy step. + properties: + data: + additionalProperties: true + type: + - object + - "null" + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + title: Task Actions Service Update Request Data Request + type: object + x-speakeasy-name-override: TaskActionsServiceUpdateRequestDataRequest + c1.api.task.v1.TaskAuditAccessRequestOutcome: + description: The TaskAuditAccessRequestOutcome message. + properties: + outcome: + description: The outcome field. + enum: + - ACCESS_REQUEST_OUTCOME_UNSPECIFIED + - ACCESS_REQUEST_OUTCOME_APPROVED + - ACCESS_REQUEST_OUTCOME_DENIED + - ACCESS_REQUEST_OUTCOME_ERROR + - ACCESS_REQUEST_OUTCOME_CANCELLED + type: string + x-speakeasy-unknown-values: allow + title: Task Audit Access Request Outcome + type: object + x-speakeasy-name-override: TaskAuditAccessRequestOutcome + c1.api.task.v1.TaskAuditAccountDeleted: + description: |- + TaskAuditAccountDeleted records an account deletion reported by a connector + while completing a revoke action. + properties: + appId: + description: The appId field. + type: string + appUserId: + description: The appUserId field. + type: string + connectorResourceId: + description: The connectorResourceId field. + type: string + displayName: + description: The displayName field. + type: string + email: + description: The email field. + type: string + username: + description: The username field. + type: string + title: Task Audit Account Deleted + type: object + x-speakeasy-name-override: TaskAuditAccountDeleted + c1.api.task.v1.TaskAuditAccountLifecycleActionCreated: + description: The TaskAuditAccountLifecycleActionCreated message. + properties: + batonActionDisplayName: + description: The batonActionDisplayName field. + type: string + batonActionInvocationId: + description: The batonActionInvocationId field. + type: string + batonActionName: + description: The batonActionName field. + type: string + batonAppId: + description: The batonAppId field. + type: string + batonConnectorId: + description: The batonConnectorId field. + type: string + title: Task Audit Account Lifecycle Action Created + type: object + x-speakeasy-name-override: TaskAuditAccountLifecycleActionCreated + c1.api.task.v1.TaskAuditAccountLifecycleActionFailed: + description: The TaskAuditAccountLifecycleActionFailed message. + properties: + batonActionDisplayName: + description: The batonActionDisplayName field. + type: string + batonActionInvocationId: + description: The batonActionInvocationId field. + type: string + batonActionName: + description: The batonActionName field. + type: string + batonAppId: + description: The batonAppId field. + type: string + batonConnectorId: + description: The batonConnectorId field. + type: string + error: + description: The error field. + type: string + title: Task Audit Account Lifecycle Action Failed + type: object + x-speakeasy-name-override: TaskAuditAccountLifecycleActionFailed + c1.api.task.v1.TaskAuditActionInstanceCreated: + description: The TaskAuditActionInstanceCreated message. + properties: + instance: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ActionInstance' + - type: "null" + title: Task Audit Action Instance Created + type: object + x-speakeasy-name-override: TaskAuditActionInstanceCreated + c1.api.task.v1.TaskAuditActionInstanceFailed: + description: The TaskAuditActionInstanceFailed message. + properties: + instance: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ActionInstance' + - type: "null" + title: Task Audit Action Instance Failed + type: object + x-speakeasy-name-override: TaskAuditActionInstanceFailed + c1.api.task.v1.TaskAuditActionInstanceSucceeded: + description: The TaskAuditActionInstanceSucceeded message. + properties: + instance: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ActionInstance' + - type: "null" + title: Task Audit Action Instance Succeeded + type: object + x-speakeasy-name-override: TaskAuditActionInstanceSucceeded + c1.api.task.v1.TaskAuditActionSubmitted: + description: The TaskAuditActionSubmitted message. + properties: + action: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAction' + - type: "null" + title: Task Audit Action Submitted + type: object + x-speakeasy-name-override: TaskAuditActionSubmitted + c1.api.task.v1.TaskAuditApprovalAutoAcceptedByPolicy: + description: The TaskAuditApprovalAutoAcceptedByPolicy message. + title: Task Audit Approval Auto Accepted By Policy + type: object + x-speakeasy-name-override: TaskAuditApprovalAutoAcceptedByPolicy + c1.api.task.v1.TaskAuditApprovalAutoRejectedByPolicy: + description: The TaskAuditApprovalAutoRejectedByPolicy message. + title: Task Audit Approval Auto Rejected By Policy + type: object + x-speakeasy-name-override: TaskAuditApprovalAutoRejectedByPolicy + c1.api.task.v1.TaskAuditApprovalHappenedAutomatically: + description: The TaskAuditApprovalHappenedAutomatically message. + title: Task Audit Approval Happened Automatically + type: object + x-speakeasy-name-override: TaskAuditApprovalHappenedAutomatically + c1.api.task.v1.TaskAuditApprovalInstanceChange: + description: The TaskAuditApprovalInstanceChange message. + properties: + instance: + oneOf: + - $ref: '#/components/schemas/c1.api.policy.v1.ApprovalInstance' + - type: "null" + title: Task Audit Approval Instance Change + type: object + x-speakeasy-name-override: TaskAuditApprovalInstanceChange + c1.api.task.v1.TaskAuditAutomationTriggered: + description: |- + TaskAuditAutomationTriggered attributes a system-created task to the + automation execution that created it. + properties: + automationExecutionId: + description: The specific execution of the automation that created the task. + format: int64 + type: string + automationId: + description: The automation that created the task. + type: string + automationName: + description: |- + The automation's display name as of task creation, so the event stays + readable after the automation is renamed or deleted. + type: string + title: Task Audit Automation Triggered + type: object + x-speakeasy-name-override: TaskAuditAutomationTriggered + c1.api.task.v1.TaskAuditBulkActionError: + description: The TaskAuditBulkActionError message. + properties: + error: + description: The error field. + type: string + title: Task Audit Bulk Action Error + type: object + x-speakeasy-name-override: TaskAuditBulkActionError + c1.api.task.v1.TaskAuditCertifyOutcome: + description: The TaskAuditCertifyOutcome message. + properties: + outcome: + description: The outcome field. + enum: + - CERTIFY_OUTCOME_UNSPECIFIED + - CERTIFY_OUTCOME_CERTIFIED + - CERTIFY_OUTCOME_DECERTIFIED + - CERTIFY_OUTCOME_ERROR + - CERTIFY_OUTCOME_CANCELLED + - CERTIFY_OUTCOME_WAIT_TIMED_OUT + type: string + x-speakeasy-unknown-values: allow + title: Task Audit Certify Outcome + type: object + x-speakeasy-name-override: TaskAuditCertifyOutcome + c1.api.task.v1.TaskAuditComment: + description: The TaskAuditComment message. + properties: + comment: + description: The comment field. + type: string + updatedAt: + format: date-time + type: + - string + - "null" + updatedBy: + description: The updatedBy field. + type: string + title: Task Audit Comment + type: object + x-speakeasy-name-override: TaskAuditComment + c1.api.task.v1.TaskAuditConditionalPolicyExecutionResult: + description: The TaskAuditConditionalPolicyExecutionResult message. + properties: + chainDepth: + description: The depth of this policy in the chain (0 = root, 1 = first hop, etc.). + format: int32 + type: integer + condition: + description: The condition field. + type: string + conditionMatched: + description: The conditionMatched field. + type: boolean + defaultCondition: + description: The defaultCondition field. + type: boolean + error: + description: The error field. + type: string + outcomePolicyId: + description: |- + When this rule's outcome is a reference to another Policy, the ID of + that referenced policy. Empty when the outcome is an inline policy_key. + type: string + policyId: + description: |- + The policy in which this rule was evaluated. Empty for results recorded + before chained policy references existed; populated for every result + emitted by recursive evaluation. + type: string + policyKey: + description: The policyKey field. + type: string + title: Task Audit Conditional Policy Execution Result + type: object + x-speakeasy-name-override: TaskAuditConditionalPolicyExecutionResult + c1.api.task.v1.TaskAuditConnectorActionResult: + description: | + The TaskAuditConnectorActionResult message. + + This message contains a oneof named result. Only a single field of the following list may be set at a time: + - success + - error + - cancelled + - pending + properties: + appEntitlementId: + description: The appEntitlementId field. + type: string + appId: + description: The appId field. + type: string + cancelled: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.TaskAuditCancelledResult' + - type: "null" + connectorActionId: + description: The connectorActionId field. + type: string + connectorId: + description: The connectorId field. + type: string + error: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.TaskAuditErrorResult' + - type: "null" + pending: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.TaskAuditPendingResult' + - type: "null" + success: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.TaskAuditSuccessResult' + - type: "null" + title: Task Audit Connector Action Result + type: object + x-speakeasy-name-override: TaskAuditConnectorActionResult + c1.api.task.v1.TaskAuditCreatedReplacementExtensionGrantTask: + description: |- + TaskAuditCreatedReplacementExtensionGrantTask is used when a replacement extension grant task is created + (e.g. when an extension grant task is cancelled due to app user deletion). + properties: + newTaskId: + description: The ID of the newly created replacement task + type: string + newTaskNumericId: + description: The numeric ID of the newly created replacement task (for display) + format: int64 + type: string + title: Task Audit Created Replacement Extension Grant Task + type: object + x-speakeasy-name-override: TaskAuditCreatedReplacementExtensionGrantTask + c1.api.task.v1.TaskAuditEscalateToEmergencyAccess: + description: The TaskAuditEscalateToEmergencyAccess message. + properties: + oldPolicyId: + description: The oldPolicyId field. + type: string + oldPolicyStepId: + description: The oldPolicyStepId field. + type: string + title: Task Audit Escalate To Emergency Access + type: object + x-speakeasy-name-override: TaskAuditEscalateToEmergencyAccess + c1.api.task.v1.TaskAuditExpressionPolicyStepError: + description: The TaskAuditExpressionPolicyStepError message. + properties: + error: + description: The error field. + type: string + title: Task Audit Expression Policy Step Error + type: object + x-speakeasy-name-override: TaskAuditExpressionPolicyStepError + c1.api.task.v1.TaskAuditExternalTicketCreated: + description: The TaskAuditExternalTicketCreated message. + properties: + appId: + description: The appId field. + type: string + connectorId: + description: The connectorId field. + type: string + externalTicketId: + description: The externalTicketId field. + type: string + externalTicketProvisionerConfigId: + description: The externalTicketProvisionerConfigId field. + type: string + externalTicketProvisionerConfigName: + description: The externalTicketProvisionerConfigName field. + type: string + externalTicketUrl: + description: The externalTicketUrl field. + type: string + title: Task Audit External Ticket Created + type: object + x-speakeasy-name-override: TaskAuditExternalTicketCreated + c1.api.task.v1.TaskAuditExternalTicketError: + description: The TaskAuditExternalTicketError message. + properties: + errorMessage: + description: The errorMessage field. + type: string + title: Task Audit External Ticket Error + type: object + x-speakeasy-name-override: TaskAuditExternalTicketError + c1.api.task.v1.TaskAuditExternalTicketProvisionStepResolved: + description: The TaskAuditExternalTicketProvisionStepResolved message. + properties: + appId: + description: The appId field. + type: string + connectorId: + description: The connectorId field. + type: string + externalTicketId: + description: The externalTicketId field. + type: string + externalTicketProvisionerConfigId: + description: The externalTicketProvisionerConfigId field. + type: string + externalTicketUrl: + description: The externalTicketUrl field. + type: string + title: Task Audit External Ticket Provision Step Resolved + type: object + x-speakeasy-name-override: TaskAuditExternalTicketProvisionStepResolved + c1.api.task.v1.TaskAuditExternalTicketTriggered: + description: The TaskAuditExternalTicketTriggered message. + properties: + appId: + description: The appId field. + type: string + connectorId: + description: The connectorId field. + type: string + externalTicketId: + description: The externalTicketId field. + type: string + externalTicketProvisionerConfigId: + description: The externalTicketProvisionerConfigId field. + type: string + externalTicketProvisionerConfigName: + description: The externalTicketProvisionerConfigName field. + type: string + title: Task Audit External Ticket Triggered + type: object + x-speakeasy-name-override: TaskAuditExternalTicketTriggered + c1.api.task.v1.TaskAuditFinishedConnectorActions: + description: The TaskAuditFinishedConnectorActions message. + properties: + policyStepId: + description: The policyStepId field. + type: string + title: Task Audit Finished Connector Actions + type: object + x-speakeasy-name-override: TaskAuditFinishedConnectorActions + c1.api.task.v1.TaskAuditFormInstanceChange: + description: The TaskAuditFormInstanceChange message. + properties: + isValid: + description: The isValid field. + type: boolean + title: Task Audit Form Instance Change + type: object + x-speakeasy-name-override: TaskAuditFormInstanceChange + c1.api.task.v1.TaskAuditGrantDurationUpdated: + description: The TaskAuditGrantDurationUpdated message. + properties: + duration: + format: duration + type: + - string + - "null" + title: Task Audit Grant Duration Updated + type: object + x-speakeasy-name-override: TaskAuditGrantDurationUpdated + c1.api.task.v1.TaskAuditGrantOutcome: + description: The TaskAuditGrantOutcome message. + properties: + outcome: + description: The outcome field. + enum: + - GRANT_OUTCOME_UNSPECIFIED + - GRANT_OUTCOME_GRANTED + - GRANT_OUTCOME_DENIED + - GRANT_OUTCOME_ERROR + - GRANT_OUTCOME_CANCELLED + - GRANT_OUTCOME_WAIT_TIMED_OUT + type: string + x-speakeasy-unknown-values: allow + title: Task Audit Grant Outcome + type: object + x-speakeasy-name-override: TaskAuditGrantOutcome + c1.api.task.v1.TaskAuditHardReset: + description: The TaskAuditHardReset message. + properties: + oldPolicyStepId: + description: The oldPolicyStepId field. + type: string + title: Task Audit Hard Reset + type: object + x-speakeasy-name-override: TaskAuditHardReset + c1.api.task.v1.TaskAuditListRequest: + description: The TaskAuditListRequest message. + properties: + commentsOnly: + description: |- + When true, only comment events are returned, so a page of page_size holds + page_size comments rather than a mix of comments and state-change events. + type: boolean + excludeComments: + description: |- + When true, comment events are excluded from the response and the count, so + a page of page_size holds page_size non-comment events. Mutually exclusive + with comments_only. + type: boolean + newestFirst: + description: |- + When true, events are returned newest-first (descending created_at) instead + of the default chronological (ascending) order. + type: boolean + pageSize: + description: The maximum number of audit events to return per page. + format: int32 + type: integer + pageToken: + description: A pagination token from a previous response to retrieve the next page. + type: string + refs: + description: References to specific audit events to retrieve. If provided, only these events are returned. + items: + $ref: '#/components/schemas/c1.api.task.v1.TaskAuditViewRef' + type: + - array + - "null" + taskId: + description: The ID of the task to list audit events for. + type: string + title: Task Audit List Request + type: object + x-speakeasy-name-override: TaskAuditListRequest + c1.api.task.v1.TaskAuditListResponse: + description: The TaskAuditListResponse message. + properties: + list: + description: The list of audit events for the task. + items: + $ref: '#/components/schemas/c1.api.task.v1.TaskAuditView' + type: + - array + - "null" + nextPageToken: + description: A pagination token to retrieve the next page of results. + type: string + totalCount: + description: |- + The total number of audit events the list returns for this request: + comment events when comments_only is true, non-comment events when + exclude_comments is true, all events otherwise. This is an upper bound: + a small number of internal-only events (e.g. connector-action results + with no pending reason) are omitted from list, so the count can exceed + the rows reachable by paging. Only returned for the first page (a request + with no page_token). Unset when the request filters by refs (the count is + undefined for ref lookups) or when the count could not be computed. + format: int64 + type: + - string + - "null" + title: Task Audit List Response + type: object + x-speakeasy-name-override: TaskAuditListResponse + c1.api.task.v1.TaskAuditMetaData: + description: The TaskAuditMetaData message. + properties: + user: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.User' + - type: "null" + title: Task Audit Meta Data + type: object + x-speakeasy-name-override: TaskAuditMetaData + c1.api.task.v1.TaskAuditNewTask: + description: The TaskAuditNewTask message. + title: Task Audit New Task + type: object + x-speakeasy-name-override: TaskAuditNewTask + c1.api.task.v1.TaskAuditNewTaskCreatedFrom: + description: |- + TaskAuditNewTaskCreatedFrom is used when a task is created from another task + (e.g. when a replacement extension grant task is created after the original is cancelled). + This is set on the NEW task to indicate its origin. + properties: + originalTaskId: + description: The originalTaskId field. + type: string + originalTaskNumericId: + description: The originalTaskNumericId field. + format: int64 + type: string + originalTaskType: + description: The task type of the original task (e.g. "grant", "revoke", "certify"). + type: string + title: Task Audit New Task Created From + type: object + x-speakeasy-name-override: TaskAuditNewTaskCreatedFrom + c1.api.task.v1.TaskAuditPolicyApprovalReassigned: + description: The TaskAuditPolicyApprovalReassigned message. + properties: + newPolicyStepId: + description: The newPolicyStepId field. + type: string + newUsers: + description: The newUsers field. + items: + type: string + type: + - array + - "null" + oldPolicyStepId: + description: The oldPolicyStepId field. + type: string + users: + description: The users field. + items: + $ref: '#/components/schemas/c1.api.user.v1.User' + type: + - array + - "null" + title: Task Audit Policy Approval Reassigned + type: object + x-speakeasy-name-override: TaskAuditPolicyApprovalReassigned + c1.api.task.v1.TaskAuditPolicyChanged: + description: The TaskAuditPolicyChanged message. + properties: + newPolicyId: + description: The newPolicyId field. + type: string + oldPolicyId: + description: The oldPolicyId field. + type: string + title: Task Audit Policy Changed + type: object + x-speakeasy-name-override: TaskAuditPolicyChanged + c1.api.task.v1.TaskAuditPolicyEvaluationStep: + description: The TaskAuditPolicyEvaluationStep message. + properties: + stepComment: + description: The stepComment field. + type: string + title: Task Audit Policy Evaluation Step + type: object + x-speakeasy-name-override: TaskAuditPolicyEvaluationStep + c1.api.task.v1.TaskAuditPolicyProvisionCancelled: + description: The TaskAuditPolicyProvisionCancelled message. + properties: + cancelReason: + description: The cancelReason field. + type: string + title: Task Audit Policy Provision Cancelled + type: object + x-speakeasy-name-override: TaskAuditPolicyProvisionCancelled + c1.api.task.v1.TaskAuditPolicyProvisionError: + description: The TaskAuditPolicyProvisionError message. + properties: + error: + description: The error field. + type: string + title: Task Audit Policy Provision Error + type: object + x-speakeasy-name-override: TaskAuditPolicyProvisionError + c1.api.task.v1.TaskAuditPolicyProvisionReassigned: + description: The TaskAuditPolicyProvisionReassigned message. + properties: + newPolicyStepId: + description: The newPolicyStepId field. + type: string + newUsers: + description: The newUsers field. + items: + type: string + type: + - array + - "null" + oldPolicyStepId: + description: The oldPolicyStepId field. + type: string + users: + description: The users field. + items: + $ref: '#/components/schemas/c1.api.user.v1.User' + type: + - array + - "null" + title: Task Audit Policy Provision Reassigned + type: object + x-speakeasy-name-override: TaskAuditPolicyProvisionReassigned + c1.api.task.v1.TaskAuditProvisionEntitlementMergeCompleted: + description: The TaskAuditProvisionEntitlementMergeCompleted message. + properties: + appEntitlementId: + description: The appEntitlementId field. + type: string + appId: + description: The appId field. + type: string + title: Task Audit Provision Entitlement Merge Completed + type: object + x-speakeasy-name-override: TaskAuditProvisionEntitlementMergeCompleted + c1.api.task.v1.TaskAuditProvisionEntitlementMergeTimedOut: + description: The TaskAuditProvisionEntitlementMergeTimedOut message. + properties: + appEntitlementId: + description: The appEntitlementId field. + type: string + appId: + description: The appId field. + type: string + title: Task Audit Provision Entitlement Merge Timed Out + type: object + x-speakeasy-name-override: TaskAuditProvisionEntitlementMergeTimedOut + c1.api.task.v1.TaskAuditProvisionWaitingForEntitlementMerge: + description: The TaskAuditProvisionWaitingForEntitlementMerge message. + properties: + appEntitlementId: + description: The appEntitlementId field. + type: string + appId: + description: The appId field. + type: string + fallbackAt: + format: date-time + type: + - string + - "null" + title: Task Audit Provision Waiting For Entitlement Merge + type: object + x-speakeasy-name-override: TaskAuditProvisionWaitingForEntitlementMerge + c1.api.task.v1.TaskAuditReassignedToDelegate: + description: The TaskAuditReassignedToDelegate message. + properties: + delegatedAssigneeUser: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.User' + - type: "null" + delegatedAssigneeUserId: + description: The delegatedAssigneeUserId field. + type: string + originalAssigneeUser: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.User' + - type: "null" + originalAssigneeUserId: + description: The originalAssigneeUserId field. + type: string + title: Task Audit Reassigned To Delegate + type: object + x-speakeasy-name-override: TaskAuditReassignedToDelegate + c1.api.task.v1.TaskAuditReassignmentFallbackToAdmin: + description: |- + TaskAuditReassignmentFallbackToAdmin is used when no eligible reviewers are found + from the policy configuration and the task falls back to system administrators + without creating a new policy step. This prevents reassignment loops. + properties: + adminUserIds: + description: The IDs of the system administrator users that the task is being assigned to + items: + type: string + type: + - array + - "null" + adminUsers: + description: The system administrator users (populated for display) + items: + $ref: '#/components/schemas/c1.api.user.v1.User' + type: + - array + - "null" + title: Task Audit Reassignment Fallback To Admin + type: object + x-speakeasy-name-override: TaskAuditReassignmentFallbackToAdmin + c1.api.task.v1.TaskAuditReassignmentListError: + description: The TaskAuditReassignmentListError message. + properties: + errorMessage: + description: The errorMessage field. + type: string + title: Task Audit Reassignment List Error + type: object + x-speakeasy-name-override: TaskAuditReassignmentListError + c1.api.task.v1.TaskAuditRequestDefaultsApplied: + description: |- + TaskAuditRequestDefaultsApplied records which tier of the request-settings + precedence chain supplied the defaults for a grant request. The rule ID, not + its name, is stored; consumers resolve the current display name via + (app_id, routing_rule_id). + properties: + appId: + description: The appId field. + type: string + routingRuleId: + description: The routingRuleId field. + type: string + source: + description: The source field. + enum: + - APPLIED_SETTINGS_SOURCE_UNSPECIFIED + - APPLIED_SETTINGS_SOURCE_ENTITLEMENT_OVERRIDE + - APPLIED_SETTINGS_SOURCE_ROUTING_RULE + - APPLIED_SETTINGS_SOURCE_ENTITLEMENT_DEFAULT + - APPLIED_SETTINGS_SOURCE_APP_DEFAULT + - APPLIED_SETTINGS_SOURCE_ACCESS_PROFILE_DEFAULT + type: string + x-speakeasy-unknown-values: allow + title: Task Audit Request Defaults Applied + type: object + x-speakeasy-name-override: TaskAuditRequestDefaultsApplied + c1.api.task.v1.TaskAuditRestart: + description: The TaskAuditRestart message. + properties: + oldPolicyStepId: + description: The oldPolicyStepId field. + type: string + title: Task Audit Restart + type: object + x-speakeasy-name-override: TaskAuditRestart + c1.api.task.v1.TaskAuditRevokeOutcome: + description: The TaskAuditRevokeOutcome message. + properties: + outcome: + description: The outcome field. + enum: + - REVOKE_OUTCOME_UNSPECIFIED + - REVOKE_OUTCOME_REVOKED + - REVOKE_OUTCOME_DENIED + - REVOKE_OUTCOME_ERROR + - REVOKE_OUTCOME_CANCELLED + - REVOKE_OUTCOME_WAIT_TIMED_OUT + type: string + x-speakeasy-unknown-values: allow + title: Task Audit Revoke Outcome + type: object + x-speakeasy-name-override: TaskAuditRevokeOutcome + c1.api.task.v1.TaskAuditSLAEscalation: + description: The TaskAuditSLAEscalation message. + properties: + message: + description: The message field. + type: string + title: Task Audit Sla Escalation + type: object + x-speakeasy-name-override: TaskAuditSLAEscalation + c1.api.task.v1.TaskAuditStartedConnectorActions: + description: The TaskAuditStartedConnectorActions message. + properties: + policyStepId: + description: The policyStepId field. + type: string + title: Task Audit Started Connector Actions + type: object + x-speakeasy-name-override: TaskAuditStartedConnectorActions + c1.api.task.v1.TaskAuditStateChange: + description: The TaskAuditStateChange message. + properties: + previousState: + description: The previousState field. + enum: + - TASK_STATE_UNSPECIFIED + - TASK_STATE_OPEN + - TASK_STATE_CLOSED + type: string + x-speakeasy-unknown-values: allow + title: Task Audit State Change + type: object + x-speakeasy-name-override: TaskAuditStateChange + c1.api.task.v1.TaskAuditStepSkipped: + description: The TaskAuditStepSkipped message. + properties: + skippedBy: + description: The skippedBy field. + type: string + title: Task Audit Step Skipped + type: object + x-speakeasy-name-override: TaskAuditStepSkipped + c1.api.task.v1.TaskAuditStepUpApproval: + description: The TaskAuditStepUpApproval message. + properties: + stepUpTransactionId: + description: The stepUpTransactionId field. + type: string + title: Task Audit Step Up Approval + type: object + x-speakeasy-name-override: TaskAuditStepUpApproval + c1.api.task.v1.TaskAuditView: + description: | + The TaskAuditView message. + + This message contains a oneof named typ. Only a single field of the following list may be set at a time: + - comment + - stateChange + - approvalInstanceChange + - connectorActionsStart + - connectorActionsEnd + - actionResult + - taskCreated + - certifyOutcome + - actionSubmitted + - grantOutcome + - revokeOutcome + - approvalReassigned + - taskRestarted + - accessRequestOutcome + - provisionReassigned + - provisionError + - approvedAutomatically + - reassignedToDelegate + - hardReset + - taskEscalated + - conditionalPolicyExecutionResult + - expressionPolicyStepError + - approvalAutoAcceptedByPolicy + - approvalAutoRejectedByPolicy + - bulkActionError + - webhookTriggered + - webhookAttempt + - webhookSuccess + - policyEvaluationStep + - waitStepSuccess + - waitStepWaiting + - waitStepTimedOut + - webhookApprovalTriggered + - webhookApprovalAttempt + - webhookApprovalSuccess + - webhookApprovalBadResponse + - externalTicketTriggered + - externalTicketCreated + - externalTicketError + - waitStepAnalysisSuccess + - waitStepAnalysisWaiting + - waitStepAnalysisTimedOut + - stepUpApproval + - externalTicketProvisionStepResolved + - stepSkipped + - reassignmentListError + - slaEscalation + - policyChanged + - formInstanceChange + - grantDurationUpdated + - waitStepUntilTime + - webhookApprovalFatalError + - accountLifecycleActionCreated + - accountLifecycleActionFailed + - provisionCancelled + - actionInstanceCreated + - actionInstanceSucceeded + - actionInstanceFailed + - createdReplacementExtensionGrantTask + - taskCreatedFrom + - reassignmentFallbackToAdmin + - requestDefaultsApplied + - provisionWaitingForEntitlementMerge + - provisionEntitlementMergeCompleted + - provisionEntitlementMergeTimedOut + - accountDeleted + - automationTriggered + properties: + accessRequestOutcome: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditAccessRequestOutcome' + - type: "null" + accountDeleted: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditAccountDeleted' + - type: "null" + accountLifecycleActionCreated: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditAccountLifecycleActionCreated' + - type: "null" + accountLifecycleActionFailed: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditAccountLifecycleActionFailed' + - type: "null" + actionInstanceCreated: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditActionInstanceCreated' + - type: "null" + actionInstanceFailed: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditActionInstanceFailed' + - type: "null" + actionInstanceSucceeded: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditActionInstanceSucceeded' + - type: "null" + actionResult: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditConnectorActionResult' + - type: "null" + actionSubmitted: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditActionSubmitted' + - type: "null" + approvalAutoAcceptedByPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditApprovalAutoAcceptedByPolicy' + - type: "null" + approvalAutoRejectedByPolicy: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditApprovalAutoRejectedByPolicy' + - type: "null" + approvalInstanceChange: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditApprovalInstanceChange' + - type: "null" + approvalReassigned: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditPolicyApprovalReassigned' + - type: "null" + approvedAutomatically: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditApprovalHappenedAutomatically' + - type: "null" + automationTriggered: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditAutomationTriggered' + - type: "null" + bulkActionError: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditBulkActionError' + - type: "null" + certifyOutcome: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditCertifyOutcome' + - type: "null" + comment: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditComment' + - type: "null" + conditionalPolicyExecutionResult: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditConditionalPolicyExecutionResult' + - type: "null" + connectorActionsEnd: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditFinishedConnectorActions' + - type: "null" + connectorActionsStart: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditStartedConnectorActions' + - type: "null" + created: + format: date-time + type: + - string + - "null" + createdReplacementExtensionGrantTask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditCreatedReplacementExtensionGrantTask' + - type: "null" + currentState: + description: The currentState field. + enum: + - TASK_STATE_UNSPECIFIED + - TASK_STATE_OPEN + - TASK_STATE_CLOSED + type: string + x-speakeasy-unknown-values: allow + eventType: + description: The eventType field. + enum: + - TASK_AUDIT_EVENT_TYPE_UNSPECIFIED + - TASK_AUDIT_EVENT_TYPE_NEUTRAL + - TASK_AUDIT_EVENT_TYPE_ERROR + type: string + x-speakeasy-unknown-values: allow + expressionPolicyStepError: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditExpressionPolicyStepError' + - type: "null" + externalTicketCreated: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditExternalTicketCreated' + - type: "null" + externalTicketError: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditExternalTicketError' + - type: "null" + externalTicketProvisionStepResolved: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditExternalTicketProvisionStepResolved' + - type: "null" + externalTicketTriggered: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditExternalTicketTriggered' + - type: "null" + formInstanceChange: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditFormInstanceChange' + - type: "null" + grantDurationUpdated: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditGrantDurationUpdated' + - type: "null" + grantOutcome: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditGrantOutcome' + - type: "null" + hardReset: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditHardReset' + - type: "null" + id: + description: The id field. + type: string + metadata: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditMetaData' + - type: "null" + policyChanged: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditPolicyChanged' + - type: "null" + policyEvaluationStep: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditPolicyEvaluationStep' + - type: "null" + provisionCancelled: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditPolicyProvisionCancelled' + - type: "null" + provisionEntitlementMergeCompleted: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditProvisionEntitlementMergeCompleted' + - type: "null" + provisionEntitlementMergeTimedOut: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditProvisionEntitlementMergeTimedOut' + - type: "null" + provisionError: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditPolicyProvisionError' + - type: "null" + provisionReassigned: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditPolicyProvisionReassigned' + - type: "null" + provisionWaitingForEntitlementMerge: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditProvisionWaitingForEntitlementMerge' + - type: "null" + reassignedToDelegate: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditReassignedToDelegate' + - type: "null" + reassignmentFallbackToAdmin: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditReassignmentFallbackToAdmin' + - type: "null" + reassignmentListError: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditReassignmentListError' + - type: "null" + requestDefaultsApplied: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditRequestDefaultsApplied' + - type: "null" + revokeOutcome: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditRevokeOutcome' + - type: "null" + slaEscalation: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditSLAEscalation' + - type: "null" + source: + description: The source field. + enum: + - SOURCE_UNSPECIFIED + - SOURCE_C1 + - SOURCE_JIRA + - SOURCE_SLACK + - SOURCE_COPILOT_AGENTS + type: string + x-speakeasy-unknown-values: allow + stateChange: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditStateChange' + - type: "null" + stepSkipped: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditStepSkipped' + - type: "null" + stepUpApproval: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditStepUpApproval' + - type: "null" + taskCreated: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditNewTask' + - type: "null" + taskCreatedFrom: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditNewTaskCreatedFrom' + - type: "null" + taskEscalated: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditEscalateToEmergencyAccess' + - type: "null" + taskRestarted: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditRestart' + - type: "null" + ticketId: + description: The ticketId field. + type: string + userId: + description: The userId field. + type: string + waitStepAnalysisSuccess: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWaitForAnalysisStepSuccess' + - type: "null" + waitStepAnalysisTimedOut: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWaitForAnalysisStepTimedOut' + - type: "null" + waitStepAnalysisWaiting: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWaitForAnalysisStepWaiting' + - type: "null" + waitStepSuccess: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWaitStepSuccess' + - type: "null" + waitStepTimedOut: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWaitStepTimedOut' + - type: "null" + waitStepUntilTime: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWaitStepUntilTime' + - type: "null" + waitStepWaiting: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWaitStepWaiting' + - type: "null" + webhookApprovalAttempt: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWebhookApprovalAttempt' + - type: "null" + webhookApprovalBadResponse: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWebhookApprovalBadResponse' + - type: "null" + webhookApprovalFatalError: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWebhookApprovalFatalError' + - type: "null" + webhookApprovalSuccess: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWebhookApprovalSuccess' + - type: "null" + webhookApprovalTriggered: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWebhookApprovalTriggered' + - type: "null" + webhookAttempt: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWebhookAttempt' + - type: "null" + webhookSuccess: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWebhookSuccess' + - type: "null" + webhookTriggered: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditWebhookTriggered' + - type: "null" + workflowStep: + description: The workflowStep field. + format: int32 + type: integer + title: Task Audit View + type: object + x-speakeasy-name-override: TaskAuditView + c1.api.task.v1.TaskAuditViewRef: + description: The TaskAuditViewRef message. + properties: + id: + description: The ID of the audit event. + type: string + title: Task Audit View Ref + type: object + x-speakeasy-name-override: TaskAuditViewRef + c1.api.task.v1.TaskAuditWaitForAnalysisStepSuccess: + description: The TaskAuditWaitForAnalysisStepSuccess message. + properties: + stepId: + description: The stepId field. + type: string + succeededAt: + format: date-time + type: + - string + - "null" + title: Task Audit Wait For Analysis Step Success + type: object + x-speakeasy-name-override: TaskAuditWaitForAnalysisStepSuccess + c1.api.task.v1.TaskAuditWaitForAnalysisStepTimedOut: + description: The TaskAuditWaitForAnalysisStepTimedOut message. + properties: + stepId: + description: The stepId field. + type: string + timedOutAt: + format: date-time + type: + - string + - "null" + title: Task Audit Wait For Analysis Step Timed Out + type: object + x-speakeasy-name-override: TaskAuditWaitForAnalysisStepTimedOut + c1.api.task.v1.TaskAuditWaitForAnalysisStepWaiting: + description: The TaskAuditWaitForAnalysisStepWaiting message. + properties: + stepId: + description: The stepId field. + type: string + title: Task Audit Wait For Analysis Step Waiting + type: object + x-speakeasy-name-override: TaskAuditWaitForAnalysisStepWaiting + c1.api.task.v1.TaskAuditWaitStepSuccess: + description: The TaskAuditWaitStepSuccess message. + properties: + condition: + description: The condition field. + type: string + stepId: + description: The stepId field. + type: string + succeededAt: + format: date-time + type: + - string + - "null" + title: Task Audit Wait Step Success + type: object + x-speakeasy-name-override: TaskAuditWaitStepSuccess + c1.api.task.v1.TaskAuditWaitStepTimedOut: + description: The TaskAuditWaitStepTimedOut message. + properties: + condition: + description: The condition field. + type: string + stepId: + description: The stepId field. + type: string + timedOutAt: + format: date-time + type: + - string + - "null" + title: Task Audit Wait Step Timed Out + type: object + x-speakeasy-name-override: TaskAuditWaitStepTimedOut + c1.api.task.v1.TaskAuditWaitStepUntilTime: + description: The TaskAuditWaitStepUntilTime message. + properties: + stepId: + description: The stepId field. + type: string + untilTime: + format: date-time + type: + - string + - "null" + title: Task Audit Wait Step Until Time + type: object + x-speakeasy-name-override: TaskAuditWaitStepUntilTime + c1.api.task.v1.TaskAuditWaitStepWaiting: + description: The TaskAuditWaitStepWaiting message. + properties: + condition: + description: The condition field. + type: string + stepId: + description: The stepId field. + type: string + title: Task Audit Wait Step Waiting + type: object + x-speakeasy-name-override: TaskAuditWaitStepWaiting + c1.api.task.v1.TaskAuditWebhookApprovalAttempt: + description: The TaskAuditWebhookApprovalAttempt message. + properties: + webhookId: + description: The webhookId field. + type: string + webhookInstanceId: + description: The webhookInstanceId field. + type: string + webhookName: + description: The webhookName field. + type: string + webhookUrl: + description: The webhookUrl field. + type: string + title: Task Audit Webhook Approval Attempt + type: object + x-speakeasy-name-override: TaskAuditWebhookApprovalAttempt + c1.api.task.v1.TaskAuditWebhookApprovalBadResponse: + description: The TaskAuditWebhookApprovalBadResponse message. + properties: + error: + description: The error field. + type: string + webhookId: + description: The webhookId field. + type: string + webhookInstanceId: + description: The webhookInstanceId field. + type: string + webhookName: + description: The webhookName field. + type: string + webhookUrl: + description: The webhookUrl field. + type: string + title: Task Audit Webhook Approval Bad Response + type: object + x-speakeasy-name-override: TaskAuditWebhookApprovalBadResponse + c1.api.task.v1.TaskAuditWebhookApprovalFatalError: + description: The TaskAuditWebhookApprovalFatalError message. + properties: + error: + description: The error field. + type: string + webhookId: + description: The webhookId field. + type: string + webhookInstanceId: + description: The webhookInstanceId field. + type: string + webhookName: + description: The webhookName field. + type: string + webhookUrl: + description: The webhookUrl field. + type: string + title: Task Audit Webhook Approval Fatal Error + type: object + x-speakeasy-name-override: TaskAuditWebhookApprovalFatalError + c1.api.task.v1.TaskAuditWebhookApprovalSuccess: + description: The TaskAuditWebhookApprovalSuccess message. + properties: + webhookId: + description: The webhookId field. + type: string + webhookInstanceId: + description: The webhookInstanceId field. + type: string + webhookName: + description: The webhookName field. + type: string + webhookUrl: + description: The webhookUrl field. + type: string + title: Task Audit Webhook Approval Success + type: object + x-speakeasy-name-override: TaskAuditWebhookApprovalSuccess + c1.api.task.v1.TaskAuditWebhookApprovalTriggered: + description: The TaskAuditWebhookApprovalTriggered message. + properties: + webhookId: + description: The webhookId field. + type: string + webhookInstanceId: + description: The webhookInstanceId field. + type: string + webhookName: + description: The webhookName field. + type: string + webhookUrl: + description: The webhookUrl field. + type: string + title: Task Audit Webhook Approval Triggered + type: object + x-speakeasy-name-override: TaskAuditWebhookApprovalTriggered + c1.api.task.v1.TaskAuditWebhookAttempt: + description: The TaskAuditWebhookAttempt message. + properties: + webhookId: + description: The webhookId field. + type: string + webhookInstanceId: + description: The webhookInstanceId field. + type: string + webhookName: + description: The webhookName field. + type: string + webhookUrl: + description: The webhookUrl field. + type: string + title: Task Audit Webhook Attempt + type: object + x-speakeasy-name-override: TaskAuditWebhookAttempt + c1.api.task.v1.TaskAuditWebhookSuccess: + description: The TaskAuditWebhookSuccess message. + properties: + comment: + description: Optional comment supplied by the provisioning callback. + type: string + webhookId: + description: The webhookId field. + type: string + webhookInstanceId: + description: The webhookInstanceId field. + type: string + webhookName: + description: The webhookName field. + type: string + webhookUrl: + description: The webhookUrl field. + type: string + title: Task Audit Webhook Success + type: object + x-speakeasy-name-override: TaskAuditWebhookSuccess + c1.api.task.v1.TaskAuditWebhookTriggered: + description: The TaskAuditWebhookTriggered message. + properties: + webhookId: + description: The webhookId field. + type: string + webhookInstanceId: + description: The webhookInstanceId field. + type: string + webhookName: + description: The webhookName field. + type: string + webhookUrl: + description: The webhookUrl field. + type: string + title: Task Audit Webhook Triggered + type: object + x-speakeasy-name-override: TaskAuditWebhookTriggered + c1.api.task.v1.TaskExpandMask: + description: The task expand mask is an array of strings that specifes the related objects the requester wishes to have returned when making a request where the expand mask is part of the input. Use '*' to view all possible responses. + properties: + paths: + description: A list of paths to expand in the response. May be any combination of "*", "access_review_id", "user_id", "created_by_user_id", "app_id", "app_user_id", "app_entitlement_ids", "step_approver_ids", "approver_ids", "identity_user_id", "insight_ids", "app_user_last_usage", "entitlement_scope_bindings", "scope_role_resources", and "resource". + items: + type: string + type: + - array + - "null" + title: Task Expand Mask + type: object + x-speakeasy-name-override: TaskExpandMask + c1.api.task.v1.TaskGrantSource: + description: The TaskGrantSource message tracks which external URL was the source of the specificed grant ticket. + properties: + conversationId: + description: The ID of the conversation that created this ticket + type: string + externalUrl: + description: The external url source of the grant ticket. + type: string + integrationId: + description: The integration id for the source of tickets. + type: string + isExtension: + description: Whether the grant task is an extension task. + type: boolean + requestId: + description: the request id for the grant ticket if the source is external + type: string + title: Task Grant Source + type: object + x-speakeasy-name-override: TaskGrantSource + c1.api.task.v1.TaskRef: + description: This object references a task by ID. + properties: + id: + description: The ID of the referenced Task + type: string + title: Task Ref + type: object + x-speakeasy-name-override: TaskRef + c1.api.task.v1.TaskRevocationTarget: + description: An ancestor entitlement that will be revoked as part of an inheritance revocation. + properties: + entitlementRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + - type: "null" + title: Task Revocation Target + type: object + x-speakeasy-name-override: TaskRevocationTarget + c1.api.task.v1.TaskRevokeSource: + description: | + The TaskRevokeSource message indicates the source of the revoke task is one of expired, nonUsage, request, or review. + + This message contains a oneof named origin. Only a single field of the following list may be set at a time: + - review + - request + - expired + - nonUsage + properties: + expired: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskRevokeSourceExpired' + - type: "null" + nonUsage: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskRevokeSourceNonUsage' + - type: "null" + request: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskRevokeSourceRequest' + - type: "null" + review: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskRevokeSourceReview' + - type: "null" + title: Task Revoke Source + type: object + x-speakeasy-name-override: TaskRevokeSource + c1.api.task.v1.TaskRevokeSourceExpired: + description: The TaskRevokeSourceExpired message indicates that the source of the revoke task is due to a grant expiring. + properties: + expiredAt: + format: date-time + type: + - string + - "null" + title: Task Revoke Source Expired + type: object + x-speakeasy-name-override: TaskRevokeSourceExpired + c1.api.task.v1.TaskRevokeSourceNonUsage: + description: The TaskRevokeSourceNonUsage message indicates that the source of the revoke task is due to the grant not being used. + properties: + expiresAt: + format: date-time + type: + - string + - "null" + lastLogin: + format: date-time + type: + - string + - "null" + title: Task Revoke Source Non Usage + type: object + x-speakeasy-name-override: TaskRevokeSourceNonUsage + c1.api.task.v1.TaskRevokeSourceRequest: + description: The TaskRevokeSourceRequest message indicates that the source of the revoke task was a request. + properties: + requestUserId: + description: The ID of the user who initiated the revoke request. + type: string + title: Task Revoke Source Request + type: object + x-speakeasy-name-override: TaskRevokeSourceRequest + c1.api.task.v1.TaskRevokeSourceReview: + description: The TaskRevokeSourceReview message tracks which access review was the source of the specificed revoke ticket. + properties: + accessReviewId: + description: The ID of the access review associated with the revoke task. + type: string + certTicketId: + description: The ID of the certify ticket that was denied and created this revoke task. + type: string + title: Task Revoke Source Review + type: object + x-speakeasy-name-override: TaskRevokeSourceReview + c1.api.task.v1.TaskSearchRequest: + description: Search for tasks based on a plethora filters. + properties: + accessReviewIds: + description: Search tasks that belong to any of the access reviews included in this list. + items: + type: string + type: + - array + - "null" + accountOwnerIds: + description: Search tasks that have any of these account owners. + items: + type: string + type: + - array + - "null" + accountStatuses: + description: Search tasks by the account status of the app user subject. + items: + enum: + - STATUS_UNSPECIFIED + - STATUS_ENABLED + - STATUS_DISABLED + - STATUS_DELETED + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + accountTypes: + description: The accountTypes field. + items: + enum: + - APP_USER_TYPE_UNSPECIFIED + - APP_USER_TYPE_USER + - APP_USER_TYPE_SERVICE_ACCOUNT + - APP_USER_TYPE_SYSTEM_ACCOUNT + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + actorId: + description: Search tasks that have this actor ID. + type: string + appEntitlementIds: + description: Search tasks that have any of these app entitlement IDs. + items: + type: string + type: + - array + - "null" + appResourceIds: + description: Search tasks that have any of these app resource IDs. + items: + type: string + type: + - array + - "null" + appResourceTypeIds: + description: Search tasks that have any of these app resource type IDs. + items: + type: string + type: + - array + - "null" + appUserSubjectIds: + description: Search tasks that have any of these app users as subjects. + items: + type: string + type: + - array + - "null" + applicationIds: + description: Search tasks that have any of these apps as targets. + items: + type: string + type: + - array + - "null" + assignedOrStepApproverUserId: + description: Search tasks that are currently assigned to this user, or that are closed and were previously approved by this user. + type: string + assigneesInIds: + description: Search tasks by List of UserIDs which are currently assigned these Tasks + items: + type: string + type: + - array + - "null" + certifyOutcomes: + description: Search tasks by certify outcome + items: + enum: + - CERTIFY_OUTCOME_UNSPECIFIED + - CERTIFY_OUTCOME_CERTIFIED + - CERTIFY_OUTCOME_DECERTIFIED + - CERTIFY_OUTCOME_ERROR + - CERTIFY_OUTCOME_CANCELLED + - CERTIFY_OUTCOME_WAIT_TIMED_OUT + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + createdAfter: + format: date-time + type: + - string + - "null" + createdBefore: + format: date-time + type: + - string + - "null" + currentStep: + description: Search tasks that have this type of step as the current step. + enum: + - TASK_SEARCH_CURRENT_STEP_UNSPECIFIED + - TASK_SEARCH_CURRENT_STEP_APPROVAL + - TASK_SEARCH_CURRENT_STEP_PROVISION + type: string + x-speakeasy-unknown-values: allow + emergencyStatus: + description: Search tasks that are or are not emergency access. + enum: + - UNSPECIFIED + - ALL + - NON_EMERGENCY + - EMERGENCY + type: string + x-speakeasy-unknown-values: allow + excludeAppEntitlementIds: + description: Search tasks that do not have any of these app entitlement IDs. + items: + type: string + type: + - array + - "null" + excludeAppResourceTypeIds: + description: Search tasks that do not have any of these app resource type IDs. + items: + type: string + type: + - array + - "null" + excludeApplicationIds: + description: Search tasks that do NOT have any of these apps as targets. + items: + type: string + type: + - array + - "null" + excludeIds: + description: Exclude Specific TaskIDs from this serach result. + items: + type: string + type: + - array + - "null" + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + grantOutcomes: + description: Search tasks by grant outcome + items: + enum: + - GRANT_OUTCOME_UNSPECIFIED + - GRANT_OUTCOME_GRANTED + - GRANT_OUTCOME_DENIED + - GRANT_OUTCOME_ERROR + - GRANT_OUTCOME_CANCELLED + - GRANT_OUTCOME_WAIT_TIMED_OUT + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + includeActedAfter: + format: date-time + type: + - string + - "null" + includeDeleted: + description: Whether or not to include deleted tasks. + type: boolean + myWorkUserIds: + description: Search tasks where the user would see this task in the My Work section + items: + type: string + type: + - array + - "null" + olderThanDuration: + format: duration + type: + - string + - "null" + openerIds: + description: Search tasks that were created by any of the users in this array. + items: + type: string + type: + - array + - "null" + openerOrSubjectUserId: + description: Search tasks that were opened by this user, or that the user is the subject of. + type: string + outcomeAfter: + format: date-time + type: + - string + - "null" + outcomeBefore: + format: date-time + type: + - string + - "null" + pageSize: + description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) + format: int32 + type: integer + pageToken: + description: The pageToken field. + type: string + pendingActionFilter: + description: |- + Filter tasks by pending action status. Only applies when exactly one access_review_id is specified. + Requires the REVIEWS_PENDING_ACTIONS feature flag to be enabled. + enum: + - PENDING_ACTION_FILTER_UNSPECIFIED + - PENDING_ACTION_FILTER_WITH_PENDING + - PENDING_ACTION_FILTER_WITHOUT_PENDING + type: string + x-speakeasy-unknown-values: allow + previouslyActedOnIds: + description: Search tasks that were acted on by any of these users. + items: + type: string + type: + - array + - "null" + query: + description: Fuzzy search tasks by display name, description, or ID. + type: string + refs: + description: Query tasks by display name, description, or numeric ID. + items: + $ref: '#/components/schemas/c1.api.task.v1.TaskRef' + type: + - array + - "null" + requireApprovalReason: + description: Filter tasks where the current approval step requires an approval reason. + type: boolean + requireDenialReason: + description: Filter tasks where the current approval step requires a denial reason. + type: boolean + revokeOutcomes: + description: Search tasks by revoke outcome + items: + enum: + - REVOKE_OUTCOME_UNSPECIFIED + - REVOKE_OUTCOME_REVOKED + - REVOKE_OUTCOME_DENIED + - REVOKE_OUTCOME_ERROR + - REVOKE_OUTCOME_CANCELLED + - REVOKE_OUTCOME_WAIT_TIMED_OUT + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + sortBy: + description: Sort tasks in a specific order. + enum: + - TASK_SEARCH_SORT_BY_UNSPECIFIED + - TASK_SEARCH_SORT_BY_ACCOUNT + - TASK_SEARCH_SORT_BY_RESOURCE + - TASK_SEARCH_SORT_BY_ACCOUNT_OWNER + - TASK_SEARCH_SORT_BY_REVERSE_TICKET_ID + - TASK_SEARCH_SORT_BY_TICKET_ID + - TASK_SEARCH_SORT_BY_CREATED_AT + - TASK_SEARCH_SORT_BY_REVERSE_CREATED_AT + - TASK_SEARCH_SORT_BY_APP_RESOURCE_ID_AND_APP_ENTITLEMENT + type: string + x-speakeasy-unknown-values: allow + stepApprovalTypes: + description: Search tasks that have a current policy step of this type + items: + enum: + - STEP_APPROVAL_TYPE_UNSPECIFIED + - STEP_APPROVAL_TYPE_USERS + - STEP_APPROVAL_TYPE_MANAGER + - STEP_APPROVAL_TYPE_APP_OWNERS + - STEP_APPROVAL_TYPE_GROUP + - STEP_APPROVAL_TYPE_SELF + - STEP_APPROVAL_TYPE_ENTITLEMENT_OWNERS + - STEP_APPROVAL_TYPE_EXPRESSION + - STEP_APPROVAL_TYPE_WEBHOOK + - STEP_APPROVAL_TYPE_RESOURCE_OWNERS + - STEP_APPROVAL_TYPE_AGENT + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + subjectIds: + description: Search tasks where these users are the subject. + items: + type: string + type: + - array + - "null" + taskStates: + description: Search tasks with this task state. + items: + enum: + - TASK_STATE_UNSPECIFIED + - TASK_STATE_OPEN + - TASK_STATE_CLOSED + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + taskTypes: + description: Search tasks with this task type. This is a oneOf, and needs an object, which can be empty, to sort. + items: + $ref: '#/components/schemas/c1.api.task.v1.TaskType' + type: + - array + - "null" + userEmploymentStatuses: + description: The userEmploymentStatuses field. + items: + type: string + type: + - array + - "null" + title: Task Search Request + type: object + x-speakeasy-name-override: TaskSearchRequest + c1.api.task.v1.TaskSearchResponse: + description: The TaskSearchResponse message contains a list of results and a nextPageToken if applicable. + properties: + expanded: + description: The list of results containing up to X results, where X is the page size defined in the request. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + list: + description: List of serialized related objects. + items: + $ref: '#/components/schemas/c1.api.task.v1.TaskView' + type: + - array + - "null" + nextPageToken: + description: |- + The nextPageToken is shown for the next page if the number of results is larger than the max page size. + The server returns one page of results and the nextPageToken until all results are retreived. + To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. + type: string + title: Task Search Response + type: object + x-speakeasy-name-override: TaskSearchResponse + c1.api.task.v1.TaskServiceActionResponse: + description: A generic response for task action endpoints, containing the updated task and the ID of the action that was created. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + ticketActionId: + description: The ID of the task action created by this request. + type: string + title: Task Service Action Response + type: object + x-speakeasy-name-override: TaskServiceActionResponse + c1.api.task.v1.TaskServiceCreateActionRequest: + description: The TaskServiceCreateActionRequest message submits a request action (requestable automation). + properties: + actionId: + description: The ID of the action to request. + type: string + description: + description: An optional description of the request. + type: string + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + formValues: + additionalProperties: true + type: + - object + - "null" + title: Task Service Create Action Request + type: object + x-speakeasy-name-override: TaskServiceCreateActionRequest + c1.api.task.v1.TaskServiceCreateActionResponse: + description: The TaskServiceCreateActionResponse returns the created action task with optional expanded related objects. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + readOnly: true + type: object + readOnly: true + type: + - array + - "null" + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + title: Task Service Create Action Response + type: object + x-speakeasy-name-override: TaskServiceCreateActionResponse + c1.api.task.v1.TaskServiceCreateGrantRequest: + description: Create a grant task. + properties: + appEntitlementId: + description: The ID of the app entitlement to grant access to. + type: string + appId: + description: The ID of the app that is associated with the entitlement. + type: string + appUserId: + description: The ID of the app user to grant access for. This field and identityUserId cannot both be set for a given request. + type: string + description: + description: The description of the request. + type: string + emergencyAccess: + description: Boolean stating whether or not the task is marked as emergency access. + type: boolean + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + grantDuration: + format: duration + type: + - string + - "null" + identityUserId: + description: The ID of the user associated with the app user we are granting access for. This field cannot be set if appUserID is also set. + type: string + requestData: + additionalProperties: true + type: + - object + - "null" + source: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskGrantSource' + - type: "null" + required: + - appId + - appEntitlementId + title: Task Service Create Grant Request + type: object + x-speakeasy-name-override: TaskServiceCreateGrantRequest + c1.api.task.v1.TaskServiceCreateGrantResponse: + description: The TaskServiceCreateGrantResponse returns a task view which has a task including JSONPATHs to the expanded items in the expanded array. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + readOnly: true + type: object + readOnly: true + type: + - array + - "null" + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + title: Task Service Create Grant Response + type: object + x-speakeasy-name-override: TaskServiceCreateGrantResponse + c1.api.task.v1.TaskServiceCreateOffboardingRequest: + description: Create an offboarding task. + properties: + description: + description: The description of the offboarding request. + type: string + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + subjectUserId: + description: The ID of the user to offboard. + type: string + title: Task Service Create Offboarding Request + type: object + x-speakeasy-name-override: TaskServiceCreateOffboardingRequest + c1.api.task.v1.TaskServiceCreateOffboardingResponse: + description: The TaskServiceCreateOffboardingResponse returns the created offboarding task with optional expanded related objects. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + readOnly: true + type: object + readOnly: true + type: + - array + - "null" + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + title: Task Service Create Offboarding Response + type: object + x-speakeasy-name-override: TaskServiceCreateOffboardingResponse + c1.api.task.v1.TaskServiceCreateResourceActionRequest: + description: The TaskServiceCreateResourceActionRequest submits a request to execute a connector resource-create action, for example creating a group from a group template. + properties: + actionId: + description: The ID of the resource-create action to execute. + type: string + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + formValues: + additionalProperties: true + type: + - object + - "null" + required: + - actionId + title: Task Service Create Resource Action Request + type: object + x-speakeasy-name-override: TaskServiceCreateResourceActionRequest + c1.api.task.v1.TaskServiceCreateResourceActionResponse: + description: The TaskServiceCreateResourceActionResponse returns the created action task with optional expanded related objects. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + readOnly: true + type: object + readOnly: true + type: + - array + - "null" + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + title: Task Service Create Resource Action Response + type: object + x-speakeasy-name-override: TaskServiceCreateResourceActionResponse + c1.api.task.v1.TaskServiceCreateRevokeRequest: + description: Create a revoke task. + properties: + appEntitlementId: + description: The ID of the app entitlement to revoke access to. + type: string + appId: + description: The ID of the app associated with the entitlement. + type: string + appUserId: + description: The ID of the app user to revoke access from. This field and identityUserId cannot both be set for a given request. + type: string + description: + description: The description of the request. + type: string + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskExpandMask' + - type: "null" + identityUserId: + description: The ID of the user associated with the app user we are revoking access from. This field cannot be set if appUserID is also set. + type: string + required: + - appId + - appEntitlementId + title: Task Service Create Revoke Request + type: object + x-speakeasy-name-override: TaskServiceCreateRevokeRequest + c1.api.task.v1.TaskServiceCreateRevokeResponse: + description: The TaskServiceCreateRevokeResponse returns a task view which has a task including JSONPATHs to the expanded items in the expanded array. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + title: Task Service Create Revoke Response + type: object + x-speakeasy-name-override: TaskServiceCreateRevokeResponse + c1.api.task.v1.TaskServiceGetResponse: + description: The TaskServiceGetResponse returns a task view which has a task including JSONPATHs to the expanded items in the expanded array. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + readOnly: true + type: object + readOnly: true + type: + - array + - "null" + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + title: Task Service Get Response + type: object + x-speakeasy-name-override: TaskServiceGetResponse + c1.api.task.v1.TaskType: + description: | + Task Type provides configuration for the type of task: certify, grant, or revoke + + This message contains a oneof named task_type. Only a single field of the following list may be set at a time: + - grant + - revoke + - certify + - offboarding + - action + - finding + properties: + action: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskTypeAction' + - type: "null" + certify: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskTypeCertify' + - type: "null" + finding: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskTypeFinding' + - type: "null" + grant: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskTypeGrant' + - type: "null" + offboarding: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskTypeOffboarding' + - type: "null" + revoke: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskTypeRevoke' + - type: "null" + title: Task Type + type: object + x-speakeasy-name-override: TaskType + c1.api.task.v1.TaskTypeAction: + description: | + The TaskTypeAction message. + + This message contains a oneof named target_object. Only a single field of the following list may be set at a time: + - scopeRole + - toolCall + - finding + properties: + actionId: + description: |- + The ID of the admin-authored action to execute. Empty for synthesized + action tickets (e.g. scope-role grants) — those carry dispatch + configuration on action_instance and target_object instead. + readOnly: true + type: string + actionInstance: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.ActionInstance' + - type: "null" + createdAppEntitlementIds: + description: |- + The C1 IDs of the AppEntitlements materialized from the connector response + (for a group, typically its members and owners entitlements). Use these to + request access, attach a virtual entitlement, or otherwise manage the new + resource. Empty until outcome is SUCCESS; may be empty on SUCCESS if + materialization was skipped or failed, in which case the entitlements + appear after the next connector sync. + items: + type: string + readOnly: true + type: + - array + - "null" + createdAppResourceId: + description: |- + Populated when a resource-create action completes: the C1 ID of the + AppResource materialized from the connector response. + readOnly: true + type: string + createdAppResourceTypeId: + description: The resource type ID of the materialized AppResource. + readOnly: true + type: string + displayName: + description: |- + Display label captured on the action snapshot at ticket-creation time. + Stable under admin renames to a referenced Action row and populated for + synthesized tickets that have no Action row at all. UI reads this to + render the task title without an Action fetch. + readOnly: true + type: string + finding: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.FindingTarget' + - type: "null" + formValues: + additionalProperties: true + readOnly: true + type: + - object + - "null" + outcome: + description: The outcome field. + enum: + - ACTION_OUTCOME_UNSPECIFIED + - ACTION_OUTCOME_SUCCESS + - ACTION_OUTCOME_DENIED + - ACTION_OUTCOME_ERROR + - ACTION_OUTCOME_CANCELLED + readOnly: true + type: string + x-speakeasy-unknown-values: allow + outcomeTime: + format: date-time + readOnly: true + type: + - string + - "null" + scopeRole: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.ScopeRole' + - type: "null" + toolCall: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.GatedToolCallTarget' + - type: "null" + type: + description: |- + Flavor of action the ticket represents — mirrors the snapshot's + target_ref variant. + enum: + - TYPE_UNSPECIFIED + - TYPE_GRANT + - TYPE_WORKFLOW + - TYPE_RESOURCE_ACTION + - TYPE_TOOL_CALL + - TYPE_MANUAL + readOnly: true + type: string + x-speakeasy-unknown-values: allow + title: Task Type Action + type: object + x-speakeasy-name-override: TaskTypeAction + c1.api.task.v1.TaskTypeCertify: + description: | + The TaskTypeCertify message indicates that a task is a certify task and all related details. + + This message contains a oneof named principal. Only a single field of the following list may be set at a time: + - resource + properties: + accessReviewId: + description: The ID of the access review. + readOnly: true + type: string + accessReviewSelection: + description: The ID of the specific access review object that owns this certify task. This is also set on a revoke task if the revoke task is created from the denied outcome of a certify task. + readOnly: true + type: string + appEntitlementId: + description: The ID of the app entitlement. + readOnly: true + type: string + appId: + description: The ID of the app. + readOnly: true + type: string + appUserId: + description: The ID of the app user. + readOnly: true + type: string + identityUserId: + description: The ID of the user. + readOnly: true + type: string + outcome: + description: The outcome of the certification. + enum: + - CERTIFY_OUTCOME_UNSPECIFIED + - CERTIFY_OUTCOME_CERTIFIED + - CERTIFY_OUTCOME_DECERTIFIED + - CERTIFY_OUTCOME_ERROR + - CERTIFY_OUTCOME_CANCELLED + - CERTIFY_OUTCOME_WAIT_TIMED_OUT + readOnly: true + type: string + x-speakeasy-unknown-values: allow + outcomeTime: + format: date-time + readOnly: true + type: + - string + - "null" + resource: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppResourceRef' + - type: "null" + title: Task Type Certify + type: object + x-speakeasy-name-override: TaskTypeCertify + c1.api.task.v1.TaskTypeFinding: + description: The TaskTypeFinding message. + properties: + findingId: + description: Reference to the source finding. + readOnly: true + type: string + findingType: + description: The finding type discriminator. + readOnly: true + type: string + outcome: + description: The outcome field. + enum: + - FINDING_TASK_OUTCOME_UNSPECIFIED + - FINDING_TASK_OUTCOME_REMEDIATED + - FINDING_TASK_OUTCOME_RISK_ACCEPTED + - FINDING_TASK_OUTCOME_CANCELLED + readOnly: true + type: string + x-speakeasy-unknown-values: allow + outcomeTime: + format: date-time + readOnly: true + type: + - string + - "null" + title: Task Type Finding + type: object + x-speakeasy-name-override: TaskTypeFinding + c1.api.task.v1.TaskTypeGrant: + description: The TaskTypeGrant message indicates that a task is a grant task and all related details. + properties: + appEntitlementId: + description: The ID of the app entitlement. + readOnly: true + type: string + appId: + description: The ID of the app. + readOnly: true + type: string + appUserId: + description: The ID of the app user. + readOnly: true + type: string + grantDuration: + format: duration + readOnly: true + type: + - string + - "null" + identityUserId: + description: The ID of the user. + readOnly: true + type: string + outcome: + description: The outcome of the grant. + enum: + - GRANT_OUTCOME_UNSPECIFIED + - GRANT_OUTCOME_GRANTED + - GRANT_OUTCOME_DENIED + - GRANT_OUTCOME_ERROR + - GRANT_OUTCOME_CANCELLED + - GRANT_OUTCOME_WAIT_TIMED_OUT + readOnly: true + type: string + x-speakeasy-unknown-values: allow + outcomeTime: + format: date-time + readOnly: true + type: + - string + - "null" + source: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskGrantSource' + - type: "null" + title: Task Type Grant + type: object + x-speakeasy-name-override: TaskTypeGrant + c1.api.task.v1.TaskTypeOffboarding: + description: The TaskTypeOffboarding message. + properties: + outcome: + description: The outcome field. + enum: + - OFFBOARDING_OUTCOME_UNSPECIFIED + - OFFBOARDING_OUTCOME_IN_PROGRESS + - OFFBOARDING_OUTCOME_DONE + - OFFBOARDING_OUTCOME_ERROR + - OFFBOARDING_OUTCOME_CANCELLED + readOnly: true + type: string + x-speakeasy-unknown-values: allow + outcomeTime: + format: date-time + readOnly: true + type: + - string + - "null" + subjectUserId: + description: The subjectUserId field. + readOnly: true + type: string + title: Task Type Offboarding + type: object + x-speakeasy-name-override: TaskTypeOffboarding + c1.api.task.v1.TaskTypeRevoke: + description: | + The TaskTypeRevoke message indicates that a task is a revoke task and all related details. + + This message contains a oneof named principal. Only a single field of the following list may be set at a time: + - resource + properties: + appEntitlementId: + description: The ID of the app entitlement. + readOnly: true + type: string + appId: + description: The ID of the app. + readOnly: true + type: string + appUserId: + description: The ID of the app user. + readOnly: true + type: string + identityUserId: + description: The ID of the user. + readOnly: true + type: string + outcome: + description: The outcome of the revoke. + enum: + - REVOKE_OUTCOME_UNSPECIFIED + - REVOKE_OUTCOME_REVOKED + - REVOKE_OUTCOME_DENIED + - REVOKE_OUTCOME_ERROR + - REVOKE_OUTCOME_CANCELLED + - REVOKE_OUTCOME_WAIT_TIMED_OUT + readOnly: true + type: string + x-speakeasy-unknown-values: allow + outcomeTime: + format: date-time + readOnly: true + type: + - string + - "null" + resource: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppResourceRef' + - type: "null" + source: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskRevokeSource' + - type: "null" + title: Task Type Revoke + type: object + x-speakeasy-name-override: TaskTypeRevoke + c1.api.task.v1.TaskView: + description: Contains a task and JSONPATH expressions that describe where in the expanded array related objects are located. This view can be used to display a fully-detailed dashboard of task information. + properties: + accessReviewPath: + description: JSONPATH expression indicating the location of the AccessReview object in the expanded array + readOnly: true + type: string + appPath: + description: JSONPATH expression indicating the location of the App object in the expanded array + readOnly: true + type: string + appUserLastUsagePath: + description: JSONPATH expression indicating the location of the AppUser last usage timestamp in the expanded array + readOnly: true + type: string + appUserPath: + description: JSONPATH expression indicating the location of the AppUser object in the expanded array + readOnly: true + type: string + approversPath: + description: JSONPATH expression indicating the location of the ApproverUsers objects in the expanded array. These are the users who have approved or denied this task. + readOnly: true + type: string + createdByUserPath: + description: JSONPATH expression indicating the location of the object of the User that created the ticket in the expanded array + readOnly: true + type: string + entitlementsPath: + description: JSONPATH expression indicating the location of the Entitlements objects in the expanded array + readOnly: true + type: string + identityUserPath: + description: JSONPATH expression indicating the location of the User object of the User that this task is targeting in the expanded array. This is the user that is the identity when the target of a task is an app user. + readOnly: true + type: string + insightsPath: + description: JSONPATH expression indicating the location of the Insights objects in the expanded array + readOnly: true + type: string + objectPermissions: + oneOf: + - $ref: '#/components/schemas/c1.api.authorization.v1.ActorObjectPermissions' + - type: "null" + principalResourcePath: + description: JSONPATH expression indicating the location of the AppResource under review for a resource-principal certify task in the expanded array. + readOnly: true + type: string + resourceBindingsPath: + description: JSONPATH expression indicating the location of the EntitlementScopeBindingList object in the expanded array. + readOnly: true + type: string + roleResourcePath: + description: JSONPATH expression indicating the location of the role AppResource for a scope-role action task in the expanded array. + readOnly: true + type: string + scopeResourcePath: + description: JSONPATH expression indicating the location of the scope AppResource for a scope-role action task in the expanded array. + readOnly: true + type: string + stepApproversPath: + description: JSONPATH expression indicating the location of the StepApproverUsers objects in the expanded array + readOnly: true + type: string + task: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.Task' + - type: "null" + userPath: + description: JSONPATH expression indicating the location of the User object in the expanded array. This is the user that is a direct target of the ticket without a specific relationship to a potentially non-existent app user. + readOnly: true + type: string + title: Task View + type: object + x-speakeasy-name-override: TaskView + c1.api.terraform_export.v1.CompositeKeyField: + description: |- + CompositeKeyField names one sibling component of a composite-key + reference lookup. + properties: + c1Field: + description: |- + C1 API field name on the parent message (snake_case proto + field). The collector reads the runtime value at this path. + type: string + tfField: + description: |- + Attribute name in the Terraform data source's `refs[]` struct. + Usually identical to c1_field (the conductorone provider + matches them 1:1 today). Distinct fields anyway so a future + provider rename is wire-safe — no migration needed. + type: string + title: Composite Key Field + type: object + x-speakeasy-name-override: CompositeKeyField + c1.api.terraform_export.v1.CompositeKeyFieldSet: + description: |- + CompositeKeyFieldSet groups a non-empty set of composite-key + fields as declared by one or more consumer reference sites that + target the same Terraform type. Used in `TFSchemaMapping + .referer_shapes` (the "inverted index" of composite-key shapes + targeting this kind) so a multi-root producer can register + canonical lookup keys for every shape its consumers might + compute. + + Invariant: `fields` MUST be non-empty. The bare-id (single-id) + form is implicit — every producer registers under + `canonicalRefKey(id, {})` unconditionally, and consumer sites + with empty composite_key_fields are not represented here. The + backend's inverted-index computation skips them; including an + empty `fields` would just round-trip to the bare-id form and + produce a duplicate registration. + properties: + fields: + description: The fields field. + items: + $ref: '#/components/schemas/c1.api.terraform_export.v1.CompositeKeyField' + type: + - array + - "null" + title: Composite Key Field Set + type: object + x-speakeasy-name-override: CompositeKeyFieldSet + c1.api.terraform_export.v1.EnumValue: + description: EnumValue is one declared variant of a proto enum. + properties: + name: + description: |- + Full proto enum value name (e.g. "POLICY_TYPE_GRANT"). The + conductorone provider accepts this verbatim as a quoted-string HCL + literal. + type: string + number: + description: |- + Proto enum number — the value on the wire (e.g. 1 for + POLICY_TYPE_GRANT). + format: int32 + type: integer + title: Enum Value + type: object + x-speakeasy-name-override: EnumValue + c1.api.terraform_export.v1.GetSchemaResponse: + description: The GetSchemaResponse message. + properties: + schema: + oneOf: + - $ref: '#/components/schemas/c1.api.terraform_export.v1.TFSchemaMapping' + - type: "null" + title: Get Schema Response + type: object + x-speakeasy-name-override: GetSchemaResponse + c1.api.terraform_export.v1.ImportIDShape: + description: | + ImportIDShape describes the structure of the `id` value in a + Terraform `import { to = ..., id = "..." }` block. Most resources use + a single string; binding-style resources (App_Owner, + App_Entitlement_Owner, …) use a composite of multiple field values. + + This message contains a oneof named shape. Only a single field of the following list may be set at a time: + - singleString + - composite + properties: + composite: + oneOf: + - $ref: '#/components/schemas/c1.api.terraform_export.v1.ImportIDShape.Composite' + - type: "null" + singleString: + oneOf: + - $ref: '#/components/schemas/c1.api.terraform_export.v1.ImportIDShape.SingleString' + - type: "null" + title: Import Id Shape + type: object + x-speakeasy-name-override: ImportIDShape + c1.api.terraform_export.v1.ImportIDShape.Composite: + description: |- + Composite import IDs combine values from multiple component fields + per the declared `format`. + properties: + fields: + description: |- + Component fields, in the order they participate in the import + ID. + items: + $ref: '#/components/schemas/c1.api.terraform_export.v1.ImportIDShape.CompositeField' + type: + - array + - "null" + format: + description: |- + Wire format the provider expects. Defaults to + FORMAT_JSON_OBJECT. + enum: + - FORMAT_JSON_OBJECT + - FORMAT_COLON_SEPARATED + - FORMAT_UNDERSCORE_SEPARATED + type: string + x-speakeasy-unknown-values: allow + title: Composite + type: object + x-speakeasy-name-override: Composite + c1.api.terraform_export.v1.ImportIDShape.CompositeField: + description: CompositeField names one component of a composite import ID. + properties: + c1Field: + description: The C1 API field whose value supplies this component. + type: string + tfType: + description: The TF attribute type of the component value. + enum: + - TF_TYPE_UNSPECIFIED + - TF_TYPE_STRING + - TF_TYPE_NUMBER + - TF_TYPE_BOOL + - TF_TYPE_LIST + - TF_TYPE_SET + - TF_TYPE_MAP + - TF_TYPE_OBJECT + - TF_TYPE_TUPLE + type: string + x-speakeasy-unknown-values: allow + title: Composite Field + type: object + x-speakeasy-name-override: CompositeField + c1.api.terraform_export.v1.ImportIDShape.SingleString: + description: Single-string import IDs use the resource's id value verbatim. + title: Single String + type: object + x-speakeasy-name-override: SingleString + c1.api.terraform_export.v1.TFFieldMapping: + description: |- + TFFieldMapping describes how one field of a C1 API object maps to one + attribute of a Terraform block. + properties: + c1Field: + description: The C1 API field name (proto field name, snake_case). + type: string + computed: + description: |- + Whether the server populates this field. A field that is + `computed` and neither `optional` nor `required` is server-only — + do not emit it in user-authored HCL. + type: boolean + elementTfType: + description: |- + For collection fields (list/set/tuple/map) whose elements are + primitives (string/number/bool), the TF type of those elements. + TF_TYPE_UNSPECIFIED for non-collection fields and for collections + of objects (where `nested_fields` describes the element shape). + enum: + - TF_TYPE_UNSPECIFIED + - TF_TYPE_STRING + - TF_TYPE_NUMBER + - TF_TYPE_BOOL + - TF_TYPE_LIST + - TF_TYPE_SET + - TF_TYPE_MAP + - TF_TYPE_OBJECT + - TF_TYPE_TUPLE + type: string + x-speakeasy-unknown-values: allow + enumValues: + description: |- + Declared variants for fields whose C1-side proto type is an enum. + Empty for non-enum fields. The conductorone provider accepts the + full proto enum name as a quoted string (e.g. + `policy_type = "POLICY_TYPE_GRANT"`); emit `EnumValue.name` as the + literal value. + items: + $ref: '#/components/schemas/c1.api.terraform_export.v1.EnumValue' + type: + - array + - "null" + nestedFields: + description: |- + For object-typed fields and list/set/tuple fields whose elements + are objects, the shape of the nested attributes. Empty for + primitive scalars and primitive-element collections. + items: + $ref: '#/components/schemas/c1.api.terraform_export.v1.TFFieldMapping' + type: + - array + - "null" + oneofField: + description: |- + When this Terraform attribute corresponds to one variant of a + proto `oneof`, `oneof_field` names the proto oneof and + `oneof_variant` names the active case. Both unset for regular + (non-oneof) fields, which is the common case. + + Example: a oneof `target` with variant `automation` on message + `Action` exposed as the TF attribute `action_target_automation`: + + oneof_field = "target" + oneof_variant = "automation" + type: string + oneofVariant: + description: The oneofVariant field. + type: string + optional: + description: |- + Whether the user may supply this field. May co-occur with + `computed` (i.e. either the user or the server can set the value). + type: boolean + references: + oneOf: + - $ref: '#/components/schemas/c1.api.terraform_export.v1.TFReference' + - type: "null" + required: + description: Whether the user must supply this field in HCL. + type: boolean + sensitive: + description: |- + Whether the value is a secret. Sensitive values must not be + rendered verbatim; emit a placeholder so callers wire the value + through a Terraform variable or vault data source. + type: boolean + tfField: + description: |- + The Terraform attribute name. Usually matches c1_field but may + differ in casing or pluralization. + type: string + tfType: + description: |- + The Terraform attribute type. For collections of structured + objects, the element shape is in `nested_fields`. For collections + of primitives, the element type is in `element_tf_type`. + enum: + - TF_TYPE_UNSPECIFIED + - TF_TYPE_STRING + - TF_TYPE_NUMBER + - TF_TYPE_BOOL + - TF_TYPE_LIST + - TF_TYPE_SET + - TF_TYPE_MAP + - TF_TYPE_OBJECT + - TF_TYPE_TUPLE + type: string + x-speakeasy-unknown-values: allow + title: Tf Field Mapping + type: object + x-speakeasy-name-override: TFFieldMapping + c1.api.terraform_export.v1.TFReference: + description: |- + TFReference describes the Terraform type(s) an ID-shaped field may + reference, plus any sibling fields needed to disambiguate a + composite-key lookup. + + `tf_type_names` covers the polymorphic / preferred-default + dimension. `composite_key_fields` covers the multi-key dimension — + some referents can't be resolved with a single id (every + `conductorone_app_entitlement` lookup needs `(app_id, id)`, + every `conductorone_app_entitlement_user_binding` needs three + keys, etc.). + properties: + compositeKeyFields: + description: |- + Sibling fields on the SAME parent message whose runtime values + must be paired with this reference's id to look the referent up + via its Terraform data source. + + Examples (each entry's c1_field is the C1 proto field name on + the parent message; tf_field is the attribute name in the data + source's `refs[]` struct): + + `AppEntitlementAutomation.app_entitlement_id` → + `[{c1_field: "app_id", tf_field: "app_id"}]` (2 keys total) + + `AppEntitlementUserBinding.app_user_id` → + `[{c1_field: "app_id", tf_field: "app_id"}, + {c1_field: "app_entitlement_id", tf_field: "app_entitlement_id"}]` + (3 keys total) + + `AppResourceOwner.user_id` → + `[{c1_field: "app_id", tf_field: "app_id"}, + {c1_field: "app_resource_type_id", tf_field: "app_resource_type_id"}, + {c1_field: "app_resource_id", tf_field: "app_resource_id"}]` + (4 keys total) + + The reference id field itself is always emitted as `id` in the + data source's ref struct (provider convention) — it is NOT + re-listed here. + + Empty/unset means single-id lookup is sufficient (User, Policy, + App today). Mirrors `ImportIDShape.Composite.fields`'s + structured shape. + items: + $ref: '#/components/schemas/c1.api.terraform_export.v1.CompositeKeyField' + type: + - array + - "null" + tfTypeNames: + description: |- + Candidate Terraform types this field may reference. The first + entry is the preferred default when no other signal disambiguates. + Empty means the field is not a reference. + items: + type: string + type: + - array + - "null" + title: Tf Reference + type: object + x-speakeasy-name-override: TFReference + c1.api.terraform_export.v1.TFSchemaMapping: + description: | + TFSchemaMapping describes how to translate one C1 API object into a + single Terraform block. Variant-specific metadata (e.g. `import_id` for + resources) lives on the `block` oneof. + + This message contains a oneof named block. Only a single field of the following list may be set at a time: + - resource + - dataSource + properties: + dataSource: + oneOf: + - $ref: '#/components/schemas/c1.api.terraform_export.v1.TFSchemaMapping.DataSource' + - type: "null" + fields: + description: |- + Per-attribute mapping. Order matches the provider schema; preserve + it when emitting for stable output. + items: + $ref: '#/components/schemas/c1.api.terraform_export.v1.TFFieldMapping' + type: + - array + - "null" + providerVersion: + description: |- + The conductorone provider version this schema was derived from + (e.g. "1.0.40"). + type: string + refererShapes: + description: |- + The set of distinct composite-key-field shapes that consumers + declare when referencing this target via a TFReference. Used by + the FE multi-root producer to enumerate canonical lookup keys for + its `addressByImportId` registration so cross-root references + collapse correctly to direct expressions regardless of which + consumer site does the lookup. + + Each entry is one distinct shape (one `CompositeKeyFieldSet` + with non-empty `fields`). The single-id (bare-id) form is + implicit and is NOT represented here — every producer registers + under `canonicalRefKey(id, {})` unconditionally as a baseline. + + Computed at schema-load time from `references_table.go` by + grouping consumer-site `composite_key_fields` declarations + by target tf_type and de-duplicating distinct shapes. Targets + with no composite-key consumers (User, Policy, App today) + ship an empty list. + items: + $ref: '#/components/schemas/c1.api.terraform_export.v1.CompositeKeyFieldSet' + type: + - array + - "null" + resource: + oneOf: + - $ref: '#/components/schemas/c1.api.terraform_export.v1.TFSchemaMapping.Resource' + - type: "null" + tfTypeName: + description: |- + The Terraform type identifier — the string immediately after the + `resource` or `data` keyword in HCL (e.g. "conductorone_app"). + type: string + title: Tf Schema Mapping + type: object + x-speakeasy-name-override: TFSchemaMapping + c1.api.terraform_export.v1.TFSchemaMapping.DataSource: + description: |- + Data-source-specific schema metadata. Reserved for future use; empty + in v1. + title: Data Source + type: object + x-speakeasy-name-override: DataSource + c1.api.terraform_export.v1.TFSchemaMapping.Resource: + description: Resource-specific schema metadata. + properties: + importId: + oneOf: + - $ref: '#/components/schemas/c1.api.terraform_export.v1.ImportIDShape' + - type: "null" + title: Resource + type: object + x-speakeasy-name-override: Resource + c1.api.user.v1.ExpiringUserDelegationBinding: + description: The ExpiringUserDelegationBinding message. + properties: + createdAt: + format: date-time + type: + - string + - "null" + delegatedUserId: + description: The delegatedUserId field. + type: string + deletedAt: + format: date-time + type: + - string + - "null" + expirationAt: + format: date-time + type: + - string + - "null" + startAt: + format: date-time + type: + - string + - "null" + updatedAt: + format: date-time + type: + - string + - "null" + userId: + description: The userId field. + type: string + title: Expiring User Delegation Binding + type: object + x-speakeasy-name-override: ExpiringUserDelegationBinding + c1.api.user.v1.GetUserProfileTypesResponse: + description: GetUserProfileTypesResponse is the response containing the profile types for a user. + properties: + profileTypes: + description: The list of profile types associated with the user across their connected apps. + items: + $ref: '#/components/schemas/c1.api.profiletype.v1.ProfileType' + type: + - array + - "null" + title: Get User Profile Types Response + type: object + x-speakeasy-name-override: GetUserProfileTypesResponse + c1.api.user.v1.IntrospectRequest: + description: The IntrospectRequest message. + properties: + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserExpandMask' + - type: "null" + title: Introspect Request + type: object + x-speakeasy-name-override: UserIntrospectRequest + c1.api.user.v1.IntrospectResponse: + description: The IntrospectResponse message. + properties: + expanded: + description: The expanded field. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + userView: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserView' + - type: "null" + title: Introspect Response + type: object + x-speakeasy-name-override: UserIntrospectResponse + c1.api.user.v1.SearchUsersRequest: + description: Search for users based on some filters. + properties: + delegateStatus: + description: Filter for users based on their delegate status. + enum: + - DELEGATE_STATUS_UNSPECIFIED + - DELEGATE_STATUS_HAS_DELEGATE + - DELEGATE_STATUS_NO_DELEGATE + type: string + x-speakeasy-unknown-values: allow + delegatedUserIds: + description: Filter for users that have any of the delegated user IDs on this list. + items: + type: string + type: + - array + - "null" + departments: + description: Search for users that have any of the departments on this list. + items: + type: string + type: + - array + - "null" + email: + description: Search for users based on their email (exact match). + type: string + excludeIds: + description: An array of users IDs to exclude from the results. + items: + type: string + type: + - array + - "null" + excludeOrigins: + description: Filter to exclude users with these origins. + items: + enum: + - USER_ORIGIN_UNSPECIFIED + - USER_ORIGIN_DIRECTORY + - USER_ORIGIN_LOCAL + - USER_ORIGIN_SYSTEM + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + excludeTypes: + description: An array of types to exclude from the results. + items: + enum: + - USER_TYPE_UNSPECIFIED + - USER_TYPE_SYSTEM + - USER_TYPE_HUMAN + - USER_TYPE_SERVICE + - USER_TYPE_AGENT + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + expandMask: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserExpandMask' + - type: "null" + ids: + description: Deprecated. Use refs array instead. + items: + type: string + type: + - array + - "null" + isDelegate: + description: Filter for users who are delegates of at least one other user. + type: boolean + jobTitles: + description: Search for users that have any of the job titles on this list. + items: + type: string + type: + - array + - "null" + managerIds: + description: Search for users that have any of the manager IDs on this list. + items: + type: string + type: + - array + - "null" + origins: + description: Filter to include only users with these origins. + items: + enum: + - USER_ORIGIN_UNSPECIFIED + - USER_ORIGIN_DIRECTORY + - USER_ORIGIN_LOCAL + - USER_ORIGIN_SYSTEM + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + pageSize: + description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) + format: int32 + type: integer + pageToken: + description: The pageToken field. + type: string + query: + description: Query the apps with a fuzzy search on display name and emails. + type: string + refs: + description: An array of user refs to restrict the return values to by ID. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserRef' + type: + - array + - "null" + roleIds: + description: Search for users that have any of the role IDs on this list. + items: + type: string + type: + - array + - "null" + sourceAppIds: + description: |- + Filter to include only users sourced from any of these apps (directories). + Each value is an app ID; a user matches when its source_app_ids map + contains any of the listed app IDs. Combined with `origins` using OR. + items: + type: string + type: + - array + - "null" + userStatuses: + description: Search for users that have any of the statuses on this list. This can only be ENABLED, DISABLED, and DELETED + items: + enum: + - UNKNOWN + - ENABLED + - DISABLED + - DELETED + type: string + x-speakeasy-unknown-values: allow + type: + - array + - "null" + title: Search Users Request + type: object + x-speakeasy-name-override: SearchUsersRequest + c1.api.user.v1.SearchUsersResponse: + description: The SearchUsersResponse message. + properties: + expanded: + description: List of related objects + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + list: + description: The list of results containing up to X results, where X is the page size defined in the request + items: + $ref: '#/components/schemas/c1.api.user.v1.UserView' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken is shown for the next page if the number of results is larger than the max page size. The server returns one page of results and the nextPageToken until all results are retreived. To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. + type: string + title: Search Users Response + type: object + x-speakeasy-name-override: SearchUsersResponse + c1.api.user.v1.SetExpiringUserDelegationBindingByAdminRequestInput: + description: SetExpiringUserDelegationBindingByAdminRequest is the request for an admin to set a temporary delegation binding for a user. + properties: + delegatedUserId: + description: The ID of the user who will act as delegate. Empty string removes the delegation. + type: string + delegationExpireAt: + format: date-time + type: + - string + - "null" + delegationStartAt: + format: date-time + type: + - string + - "null" + title: Set Expiring User Delegation Binding By Admin Request + type: object + x-speakeasy-name-override: SetExpiringUserDelegationBindingByAdminRequest + c1.api.user.v1.SetExpiringUserDelegationBindingByAdminResponse: + description: SetExpiringUserDelegationBindingByAdminResponse is the response containing the created or updated delegation binding. + properties: + item: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.ExpiringUserDelegationBinding' + - type: "null" + title: Set Expiring User Delegation Binding By Admin Response + type: object + x-speakeasy-name-override: SetExpiringUserDelegationBindingByAdminResponse + c1.api.user.v1.User: + description: The User object provides all of the details for an user, as well as some configuration. + properties: + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + delegatedUserId: + description: The id of the user to whom tasks will be automatically reassigned to. + type: string + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + department: + description: The department which the user belongs to in the organization. + readOnly: true + type: string + departmentSources: + description: A list of objects mapped based on department attribute mappings configured in the system. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserAttributeMappingSource' + readOnly: true + type: + - array + - "null" + directoryIds: + description: A list of unique ids that represent different directories. + items: + type: string + readOnly: true + type: + - array + - "null" + directoryStatus: + description: The status of the user in the directory. + enum: + - UNKNOWN + - ENABLED + - DISABLED + - DELETED + readOnly: true + type: string + x-speakeasy-unknown-values: allow + directoryStatusSources: + description: A list of objects mapped based on directoryStatus attribute mappings configured in the system. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserAttributeMappingSource' + readOnly: true + type: + - array + - "null" + displayName: + description: The display name of the user. + readOnly: true + type: string + email: + description: This is the user's email. + readOnly: true + type: string + emailSources: + description: A list of source data for the email attribute. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserAttributeMappingSource' + readOnly: true + type: + - array + - "null" + emails: + description: This is a list of all of the user's emails from app users. + items: + type: string + readOnly: true + type: + - array + - "null" + employeeIdSources: + description: A list of source data for the employee IDs attribute. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserAttributeMappingSource' + readOnly: true + type: + - array + - "null" + employeeIds: + description: This is a list of all of the user's employee IDs from app users. + items: + type: string + readOnly: true + type: + - array + - "null" + employmentStatus: + description: The users employment status. + readOnly: true + type: string + employmentStatusSources: + description: A list of objects mapped based on employmentStatus attribute mappings configured in the system. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserAttributeMappingSource' + readOnly: true + type: + - array + - "null" + employmentType: + description: The employment type of the user. + readOnly: true + type: string + employmentTypeSources: + description: A list of objects mapped based on employmentType attribute mappings configured in the system. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserAttributeMappingSource' + readOnly: true + type: + - array + - "null" + id: + description: A unique identifier of the user. + readOnly: true + type: string + jobTitle: + description: The job title of the user. + readOnly: true + type: string + jobTitleSources: + description: A list of objects mapped based on jobTitle attribute mappings configured in the system. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserAttributeMappingSource' + readOnly: true + type: + - array + - "null" + managerIds: + description: A list of ids of the user's managers. + items: + type: string + readOnly: true + type: + - array + - "null" + managerSources: + description: A list of objects mapped based on managerId attribute mappings configured in the system. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserAttributeMappingSource' + readOnly: true + type: + - array + - "null" + origin: + description: The origin of the user, describing who owns the user's lifecycle. + enum: + - USER_ORIGIN_UNSPECIFIED + - USER_ORIGIN_DIRECTORY + - USER_ORIGIN_LOCAL + - USER_ORIGIN_SYSTEM + readOnly: true + type: string + x-speakeasy-unknown-values: allow + profile: + additionalProperties: true + readOnly: true + type: + - object + - "null" + roleIds: + description: A list of unique identifiers that maps to ConductorOne's user roles let you assign users permissions tailored to the work they do in the software. + items: + type: string + type: + - array + - "null" + status: + description: The status of the user in the system. + enum: + - UNKNOWN + - ENABLED + - DISABLED + - DELETED + type: string + x-speakeasy-unknown-values: allow + type: + description: The type of the user. + enum: + - USER_TYPE_UNSPECIFIED + - USER_TYPE_SYSTEM + - USER_TYPE_HUMAN + - USER_TYPE_SERVICE + - USER_TYPE_AGENT + readOnly: true + type: string + x-speakeasy-unknown-values: allow + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + username: + description: This is the user's primary username. Typically sourced from the primary directory. + readOnly: true + type: string + usernameSources: + description: A list of source data for the usernames attribute. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserAttributeMappingSource' + readOnly: true + type: + - array + - "null" + usernames: + description: This is a list of all of the user's usernames from app users. + items: + type: string + readOnly: true + type: + - array + - "null" + title: User + type: object + x-speakeasy-name-override: User + c1.api.user.v1.UserAttributeMappingSource: + description: The UserAttributeMappingSource message. + properties: + appId: + description: The appId field. + type: string + appUserId: + description: The appUserId field. + type: string + appUserProfileAttributeKey: + description: The appUserProfileAttributeKey field. + type: string + priority: + description: Lower number = higher precedence; sources[0] is the winning source. + format: uint32 + readOnly: true + type: integer + userAttributeMappingId: + description: The userAttributeMappingId field. + type: string + value: + description: The value field. + type: string + title: User Attribute Mapping Source + type: object + x-speakeasy-name-override: UserAttributeMappingSource + c1.api.user.v1.UserExpandMask: + description: |- + The user expand mask is used to indicate which related objects should be expanded in the response. + The supported paths are 'role_ids', 'manager_ids', 'delegated_user_id', 'directory_ids', and '*'. + properties: + paths: + description: An array of paths to be expanded in the response. + items: + type: string + type: + - array + - "null" + title: User Expand Mask + type: object + x-speakeasy-name-override: UserExpandMask + c1.api.user.v1.UserRef: + description: A reference to a user. + properties: + id: + description: The id of the user. + type: string + title: User Ref + type: object + x-speakeasy-name-override: UserRef + c1.api.user.v1.UserServiceGetResponse: + description: The UserServiceGetResponse returns a user view which has a user including JSONPATHs to the expanded items in the expanded array. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + userView: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserView' + - type: "null" + title: User Service Get Response + type: object + x-speakeasy-name-override: UserServiceGetResponse + c1.api.user.v1.UserServiceListResponse: + description: The UserServiceListResponse message contains a list of results and a nextPageToken if applicable. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + list: + description: The list of results containing up to X results, where X is the page size defined in the request + items: + $ref: '#/components/schemas/c1.api.user.v1.UserView' + type: + - array + - "null" + nextPageToken: + description: |- + The nextPageToken is shown for the next page if the number of results is larger than the max page size. + The server returns one page of results and the nextPageToken until all results are retreived. + To retrieve the next page, use the same request and append a pageToken field with the value of nextPageToken shown on the previous page. + type: string + title: User Service List Response + type: object + x-speakeasy-name-override: UserServiceListResponse + c1.api.user.v1.UserView: + description: The UserView object provides a user response object, as well as JSONPATHs to related objects provided by expanders. + properties: + delegatedUserPath: + description: JSONPATH expression indicating the location of the user objects of delegates of the current user in the expanded array. + readOnly: true + type: string + directoriesPath: + description: JSONPATH expression indicating the location of directory objects in the expanded array. + readOnly: true + type: string + managersPath: + description: JSONPATH expression indicating the location of the user objects that managed the current user in the expanded array. + readOnly: true + type: string + objectPermissions: + oneOf: + - $ref: '#/components/schemas/c1.api.authorization.v1.ActorObjectPermissions' + - type: "null" + rolesPath: + description: JSONPATH expression indicating the location of the roles of the current user in the expanded array. + readOnly: true + type: string + user: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.User' + - type: "null" + userId: + description: The id of the user. + readOnly: true + type: string + title: User View + type: object + x-speakeasy-name-override: UserView + c1.api.user.v2.CreateUserEntitlementOwnerRequestInput: + description: CreateUserEntitlementOwnerRequest is the request for creating an entitlement ownership source on a user (service account). + properties: + appEntitlementRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + - type: "null" + title: Create User Entitlement Owner Request + type: object + x-speakeasy-name-override: CreateUserEntitlementOwnerRequest + c1.api.user.v2.CreateUserEntitlementOwnerResponse: + description: CreateUserEntitlementOwnerResponse is the response for creating an entitlement ownership source on a user (service account). + properties: + userOwnerEntitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v2.UserOwnerEntitlement' + - type: "null" + title: Create User Entitlement Owner Response + type: object + x-speakeasy-name-override: CreateUserEntitlementOwnerResponse + c1.api.user.v2.CreateUserUserOwnerRequestInput: + description: CreateUserUserOwnerRequest is the request for creating a user ownership source on a user (service account). + properties: + userRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + title: Create User User Owner Request + type: object + x-speakeasy-name-override: CreateUserUserOwnerRequest + c1.api.user.v2.CreateUserUserOwnerResponse: + description: CreateUserUserOwnerResponse is the response for creating a user ownership source on a user (service account). + properties: + userOwnerUser: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v2.UserOwnerUser' + - type: "null" + title: Create User User Owner Response + type: object + x-speakeasy-name-override: CreateUserUserOwnerResponse + c1.api.user.v2.DeleteUserEntitlementOwnerRequestInput: + description: DeleteUserEntitlementOwnerRequest is the request for deleting an entitlement ownership source on a user (service account). + properties: + appEntitlementRef: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + - type: "null" + title: Delete User Entitlement Owner Request + type: object + x-speakeasy-name-override: DeleteUserEntitlementOwnerRequest + c1.api.user.v2.DeleteUserEntitlementOwnerResponse: + description: DeleteUserEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source on a user (service account). + title: Delete User Entitlement Owner Response + type: object + x-speakeasy-name-override: DeleteUserEntitlementOwnerResponse + c1.api.user.v2.DeleteUserUserOwnerRequestInput: + description: DeleteUserUserOwnerRequest is the request for deleting a user ownership source on a user (service account). + properties: + userRef: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.UserRef' + - type: "null" + title: Delete User User Owner Request + type: object + x-speakeasy-name-override: DeleteUserUserOwnerRequest + c1.api.user.v2.DeleteUserUserOwnerResponse: + description: DeleteUserUserOwnerResponse is the empty response for deleting a user ownership source on a user (service account). + title: Delete User User Owner Response + type: object + x-speakeasy-name-override: DeleteUserUserOwnerResponse + c1.api.user.v2.SearchUserEntitlementOwnersResponse: + description: SearchUserEntitlementOwnersResponse is the response for searching entitlement ownership sources on a user (service account). + properties: + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.user.v2.UserOwnerEntitlement' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. + type: string + title: Search User Entitlement Owners Response + type: object + x-speakeasy-name-override: SearchUserEntitlementOwnersResponse + c1.api.user.v2.SearchUserOwnersResponse: + description: SearchUserOwnersResponse is the response for searching user ownership sources on a user (service account). + properties: + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.user.v2.UserOwnerUser' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. + type: string + title: Search User Owners Response + type: object + x-speakeasy-name-override: SearchUserOwnersResponse + c1.api.user.v2.SetUserOwnersV2RequestInput: + description: SetUserOwnersV2Request is the request for setting the owners of a user (service account) for a given role. + properties: + appEntitlementRefs: + description: The appEntitlementRefs field. + items: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementRef' + type: + - array + - "null" + roleSlug: + description: The roleSlug field. + type: string + userRefs: + description: The userRefs field. + items: + $ref: '#/components/schemas/c1.api.user.v1.UserRef' + type: + - array + - "null" + title: Set User Owners V 2 Request + type: object + x-speakeasy-name-override: SetUserOwnersV2Request + c1.api.user.v2.SetUserOwnersV2Response: + description: SetUserOwnersV2Response is the empty response for setting user owners. + title: Set User Owners V 2 Response + type: object + x-speakeasy-name-override: SetUserOwnersV2Response + c1.api.user.v2.UserOwnerEntitlement: + description: UserOwnerEntitlement represents an entitlement ownership source for a canonical User (a service account). + properties: + appEntitlement: + oneOf: + - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlement' + - type: "null" + createdAt: + format: date-time + type: + - string + - "null" + roleSlug: + description: The roleSlug field. + type: string + userId: + description: The userId field. + type: string + title: User Owner Entitlement + type: object + x-speakeasy-name-override: UserOwnerEntitlement + c1.api.user.v2.UserOwnerUser: + description: UserOwnerUser represents a user ownership source for a canonical User (a service account). + properties: + createdAt: + format: date-time + type: + - string + - "null" + roleSlug: + description: The roleSlug field. + type: string + user: + oneOf: + - $ref: '#/components/schemas/c1.api.user.v1.User' + - type: "null" + userId: + description: The userId field. + type: string + title: User Owner User + type: object + x-speakeasy-name-override: UserOwnerUser + c1.api.vault.v1.GroupAuthzVault: + description: GroupAuthzVault configures a vault that uses group-based authorization to control access to stored credentials. + title: Group Authz Vault + type: object + x-speakeasy-name-override: GroupAuthzVault + c1.api.vault.v1.MagicVault: + description: MagicVault configures a vault that grants time-limited credential access via magic links. + properties: + allowUnauthedViews: + description: Controls whether unauthenticated users can view credentials via a magic link. + type: boolean + allowedViews: + description: The maximum number of times a credential in this vault may be viewed. + format: uint32 + type: integer + title: Magic Vault + type: object + x-speakeasy-name-override: MagicVault + c1.api.vault.v1.Vault: + description: | + Vault represents an external secret storage integration used to store connector credentials securely. + + This message contains a oneof named vault. Only a single field of the following list may be set at a time: + - groupAuthzVault + - magicVault + properties: + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + credentialExpirationDuration: + format: duration + type: + - string + - "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + description: + description: A free-text description of the vault's purpose or configuration. + type: string + displayName: + description: The human-readable name of the vault. + type: string + groupAuthzVault: + oneOf: + - $ref: '#/components/schemas/c1.api.vault.v1.GroupAuthzVault' + - type: "null" + id: + description: The unique identifier of the vault. + type: string + magicVault: + oneOf: + - $ref: '#/components/schemas/c1.api.vault.v1.MagicVault' + - type: "null" + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Vault + type: object + x-speakeasy-entity: Vault + x-speakeasy-name-override: Vault + c1.api.vault.v1.VaultServiceCreateRequest: + description: | + VaultServiceCreateRequest is the request message for creating a new vault. + + This message contains a oneof named vault. Only a single field of the following list may be set at a time: + - groupAuthzVault + - magicVault + properties: + description: + description: A free-text description of the vault's purpose or configuration. + type: string + displayName: + description: The human-readable name for the new vault. + type: string + groupAuthzVault: + oneOf: + - $ref: '#/components/schemas/c1.api.vault.v1.GroupAuthzVault' + - type: "null" + magicVault: + oneOf: + - $ref: '#/components/schemas/c1.api.vault.v1.MagicVault' + - type: "null" + ownerIds: + description: The IDs of users to assign as owners of this vault. + items: + type: string + type: + - array + - "null" + required: + - displayName + title: Vault Service Create Request + type: object + x-speakeasy-name-override: VaultServiceCreateRequest + c1.api.vault.v1.VaultServiceCreateResponse: + description: VaultServiceCreateResponse is the response message for creating a new vault. + properties: + vault: + oneOf: + - $ref: '#/components/schemas/c1.api.vault.v1.Vault' + - type: "null" + title: Vault Service Create Response + type: object + x-speakeasy-name-override: VaultServiceCreateResponse + c1.api.vault.v1.VaultServiceDeleteRequestInput: + description: VaultServiceDeleteRequest is the request message for deleting a vault. + title: Vault Service Delete Request + type: object + x-speakeasy-name-override: VaultServiceDeleteRequest + c1.api.vault.v1.VaultServiceDeleteResponse: + description: Empty response body. Status code indicates success. + title: Vault Service Delete Response + type: object + x-speakeasy-name-override: VaultServiceDeleteResponse + c1.api.vault.v1.VaultServiceGetResponse: + description: VaultServiceGetResponse is the response message containing the requested vault. + properties: + vault: + oneOf: + - $ref: '#/components/schemas/c1.api.vault.v1.Vault' + - type: "null" + title: Vault Service Get Response + type: object + x-speakeasy-name-override: VaultServiceGetResponse + c1.api.vault.v1.VaultServiceUpdateRequestInput: + description: The VaultServiceUpdateRequest message contains the vault object to update and a field mask to indicate which fields to update. + properties: + updateMask: + type: + - string + - "null" + vault: + oneOf: + - $ref: '#/components/schemas/c1.api.vault.v1.Vault' + - type: "null" + title: Vault Service Update Request + type: object + x-speakeasy-name-override: VaultServiceUpdateRequest + c1.api.vault.v1.VaultServiceUpdateResponse: + description: VaultServiceUpdateResponse is the response message containing the updated vault. + properties: + vault: + oneOf: + - $ref: '#/components/schemas/c1.api.vault.v1.Vault' + - type: "null" + title: Vault Service Update Response + type: object + x-speakeasy-name-override: VaultServiceUpdateResponse + c1.api.webhooks.v1.Webhook: + description: The Webhook message. + properties: + callbackTimeout: + format: duration + type: + - string + - "null" + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + deletedAt: + format: date-time + readOnly: true + type: + - string + - "null" + description: + description: An optional description of the webhook's purpose. + type: string + displayName: + description: The human-readable name of the webhook. + type: string + id: + description: The unique identifier of the webhook. + type: string + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + url: + description: The destination URL that receives event notification HTTP callbacks. + type: string + title: Webhook + type: object + x-speakeasy-entity: Webhook + x-speakeasy-name-override: WebhookEndpoint + c1.api.webhooks.v1.WebhookInstance: + description: The WebhookInstance message. + properties: + attempts: + description: The attempts field. + format: int32 + type: integer + completedAt: + format: date-time + readOnly: true + type: + - string + - "null" + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + expiresAt: + format: date-time + readOnly: true + type: + - string + - "null" + id: + description: The id field. + type: string + lastAttemptedAt: + format: date-time + readOnly: true + type: + - string + - "null" + source: + oneOf: + - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhookSource' + - type: "null" + spec: + oneOf: + - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhookSpec' + - type: "null" + state: + description: The state field. + enum: + - WEBHOOK_STATE_UNSPECIFIED + - WEBHOOK_STATE_PENDING + - WEBHOOK_STATE_RUNNING + - WEBHOOK_STATE_ERROR + - WEBHOOK_STATE_WAITING_CALLBACK + - WEBHOOK_STATE_PROCESS_RESPONSE + - WEBHOOK_STATE_SUCCESS + - WEBHOOK_STATE_FATAL_ERROR + type: string + x-speakeasy-unknown-values: allow + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + webhookId: + description: The webhookId field. + type: string + title: Webhook Instance + type: object + x-speakeasy-name-override: WebhookInstance + c1.api.webhooks.v1.WebhookRef: + description: The WebhookRef message. + properties: + id: + description: The ID of the referenced webhook. + type: string + title: Webhook Ref + type: object + x-speakeasy-name-override: WebhookRef + c1.api.webhooks.v1.WebhookSource: + description: | + The WebhookSource message. + + This message contains a oneof named source. Only a single field of the following list may be set at a time: + - test + - policyPostAction + - approvalStep + - provisionStep + - workflowStep + properties: + approvalStep: + oneOf: + - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhookSource.WebhookSourceApprovalStep' + - type: "null" + policyPostAction: + oneOf: + - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhookSource.WebhookSourcePolicyPostAction' + - type: "null" + provisionStep: + oneOf: + - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhookSource.WebhookSourceProvisionStep' + - type: "null" + test: + oneOf: + - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhookSource.WebhookSourceTest' + - type: "null" + workflowStep: + oneOf: + - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhookSource.WebhookSourceWorkflowStep' + - type: "null" + title: Webhook Source + type: object + x-speakeasy-name-override: WebhookSource + c1.api.webhooks.v1.WebhookSource.WebhookSourceApprovalStep: + description: The WebhookSourceApprovalStep message. + properties: + ticketId: + description: The ticketId field. + type: string + title: Webhook Source Approval Step + type: object + x-speakeasy-name-override: WebhookSourceApprovalStep + c1.api.webhooks.v1.WebhookSource.WebhookSourcePolicyPostAction: + description: The WebhookSourcePolicyPostAction message. + properties: + ticketId: + description: The ticketId field. + type: string + title: Webhook Source Policy Post Action + type: object + x-speakeasy-name-override: WebhookSourcePolicyPostAction + c1.api.webhooks.v1.WebhookSource.WebhookSourceProvisionStep: + description: The WebhookSourceProvisionStep message. + properties: + ticketId: + description: The ticketId field. + type: string + title: Webhook Source Provision Step + type: object + x-speakeasy-name-override: WebhookSourceProvisionStep + c1.api.webhooks.v1.WebhookSource.WebhookSourceTest: + description: The WebhookSourceTest message. + title: Webhook Source Test + type: object + x-speakeasy-name-override: WebhookSourceTest + c1.api.webhooks.v1.WebhookSource.WebhookSourceWorkflowStep: + description: The WebhookSourceWorkflowStep message. + properties: + workflowExecutionId: + description: The workflowExecutionId field. + format: int64 + type: string + workflowStepId: + description: The workflowStepId field. + type: string + title: Webhook Source Workflow Step + type: object + x-speakeasy-name-override: WebhookSourceWorkflowStep + c1.api.webhooks.v1.WebhookSpec: + description: The WebhookSpec message. + properties: + destination: + description: The destination field. + type: string + title: Webhook Spec + type: object + x-speakeasy-name-override: WebhookSpec + c1.api.webhooks.v1.WebhooksSearchRequest: + description: The WebhooksSearchRequest message. + properties: + pageSize: + description: The maximum number of webhooks to return per page. + format: int32 + type: integer + pageToken: + description: The pagination token from a previous search response to fetch the next page. + type: string + query: + description: A text query to match against webhook names and descriptions. + type: string + refs: + description: Optional set of webhook references to restrict the search to specific webhooks. + items: + $ref: '#/components/schemas/c1.api.webhooks.v1.WebhookRef' + type: + - array + - "null" + title: Webhooks Search Request + type: object + x-speakeasy-name-override: WebhooksSearchRequest + c1.api.webhooks.v1.WebhooksSearchResponse: + description: The WebhooksSearchResponse message. + properties: + list: + description: The list of webhooks matching the search criteria. + items: + $ref: '#/components/schemas/c1.api.webhooks.v1.Webhook' + type: + - array + - "null" + nextPageToken: + description: A token to retrieve the next page of results, or empty if there are no more results. + type: string + title: Webhooks Search Response + type: object + x-speakeasy-name-override: WebhooksSearchResponse + c1.api.webhooks.v1.WebhooksServiceCreateRequest: + description: The WebhooksServiceCreateRequest message. + properties: + callbackTimeout: + format: duration + type: + - string + - "null" + description: + description: An optional description of the webhook's purpose. + type: string + displayName: + description: The human-readable name for the new webhook. + type: string + url: + description: The destination URL that will receive event notification HTTP callbacks. + type: string + required: + - displayName + - url + title: Webhooks Service Create Request + type: object + x-speakeasy-name-override: WebhooksServiceCreateRequest + c1.api.webhooks.v1.WebhooksServiceCreateResponse: + description: The WebhooksServiceCreateResponse message. + properties: + webhook: + oneOf: + - $ref: '#/components/schemas/c1.api.webhooks.v1.Webhook' + - type: "null" + title: Webhooks Service Create Response + type: object + x-speakeasy-name-override: WebhooksServiceCreateResponse + c1.api.webhooks.v1.WebhooksServiceDeleteRequestInput: + description: The WebhooksServiceDeleteRequest message. + title: Webhooks Service Delete Request + type: object + x-speakeasy-name-override: WebhooksServiceDeleteRequest + c1.api.webhooks.v1.WebhooksServiceDeleteResponse: + description: Empty response body. Status code indicates success. + title: Webhooks Service Delete Response + type: object + x-speakeasy-name-override: WebhooksServiceDeleteResponse + c1.api.webhooks.v1.WebhooksServiceGetResponse: + description: The WebhooksServiceGetResponse message. + properties: + webhook: + oneOf: + - $ref: '#/components/schemas/c1.api.webhooks.v1.Webhook' + - type: "null" + title: Webhooks Service Get Response + type: object + x-speakeasy-name-override: WebhooksServiceGetResponse + c1.api.webhooks.v1.WebhooksServiceListResponse: + description: The WebhooksServiceListResponse message. + properties: + list: + description: The list of webhooks for the current page. + items: + $ref: '#/components/schemas/c1.api.webhooks.v1.Webhook' + type: + - array + - "null" + nextPageToken: + description: A token to retrieve the next page of results, or empty if there are no more results. + type: string + title: Webhooks Service List Response + type: object + x-speakeasy-name-override: WebhooksServiceListResponse + c1.api.webhooks.v1.WebhooksServiceTestRequestInput: + description: The WebhooksServiceTestRequest message. + title: Webhooks Service Test Request + type: object + x-speakeasy-name-override: WebhooksServiceTestRequest + c1.api.webhooks.v1.WebhooksServiceTestResponse: + description: The WebhooksServiceTestResponse message. + properties: + webhook: + oneOf: + - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhookInstance' + - type: "null" + title: Webhooks Service Test Response + type: object + x-speakeasy-name-override: WebhooksServiceTestResponse + c1.api.webhooks.v1.WebhooksServiceUpdateRequestInput: + description: The WebhooksServiceUpdateRequest message contains the webhook object to update and a field mask to indicate which fields to update. It uses URL value for input. + properties: + updateMask: + type: + - string + - "null" + webhook: + oneOf: + - $ref: '#/components/schemas/c1.api.webhooks.v1.Webhook' + - type: "null" + title: Webhooks Service Update Request + type: object + x-speakeasy-name-override: WebhooksServiceUpdateRequest + c1.api.webhooks.v1.WebhooksServiceUpdateResponse: + description: The WebhooksServiceUpdateResponse message. + properties: + webhook: + oneOf: + - $ref: '#/components/schemas/c1.api.webhooks.v1.Webhook' + - type: "null" + title: Webhooks Service Update Response + type: object + x-speakeasy-name-override: WebhooksServiceUpdateResponse + c1.api.workload_federation.v1.OIDCSettings: + description: |- + OIDCSettings is the kind-specific configuration block for classic OIDC + providers (GitHub Actions, GitLab CI, HCP Terraform, AWS IAM Outbound, + any CUSTOM provider). Empty for now; future fields like custom_jwks_url, + audience overrides, and required_claims land here. + title: Oidc Settings + type: object + x-speakeasy-name-override: OIDCSettings + c1.api.workload_federation.v1.SPIFFESettings: + description: |- + SPIFFESettings is the kind-specific configuration block for SPIFFE + trust-domain providers (issuer_url = spiffe://). + properties: + bundleEndpointUrl: + description: |- + HTTPS URL of the JWKS endpoint serving the trust domain's signing keys. + Required: the spiffe:// scheme has no discovery mechanism. + Typically the SPIRE OIDC Discovery Provider's /keys endpoint. + + Mutable: updates re-validate the new URL by fetching its JWKS before + persisting; the issuer (trust domain) itself remains immutable. + type: string + title: Spiffe Settings + type: object + x-speakeasy-name-override: SPIFFESettings + c1.api.workload_federation.v1.TestTokenStepResult: + description: TestTokenStepResult represents the result of a single validation step. + properties: + actual: + description: Actual value from the token. + type: string + detail: + description: Human-readable detail message. + type: string + expected: + description: Expected value (for comparison steps). + type: string + passed: + description: Whether this step passed. + type: boolean + skipped: + description: Whether this step was skipped (e.g., CIDR check when no allowlist configured). + type: boolean + stepName: + description: Step name for display (e.g., "JWT decode", "Issuer match"). + type: string + title: Test Token Step Result + type: object + x-speakeasy-name-override: TestTokenStepResult + c1.api.workload_federation.v1.WorkloadFederationProvider: + description: | + WorkloadFederationProvider represents a tenant-level workload identity + issuer registration. Two issuer schemes are supported: + + - https://... classic OIDC issuer; `settings.oidc` MUST be set. + - spiffe://... SPIFFE trust-domain URI; `settings.spiffe` MUST be set. + + The (well_known_provider, issuer_url scheme, settings oneof) tuple is a + tri-invariant: SPIFFE wkp ⟺ spiffe:// issuer ⟺ settings.spiffe set; any + other wkp ⟺ https:// issuer ⟺ settings.oidc set. Issuer URLs are unique + within tenant. + + This message contains a oneof named settings. Only a single field of the following list may be set at a time: + - oidc + - spiffe + properties: + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + description: + description: A description of what this provider is for. + type: string + disabled: + description: Whether the provider is disabled. Disabled providers reject all token exchanges. + type: boolean + displayName: + description: The display name of the provider. + type: string + id: + description: The unique ID of the provider. + readOnly: true + type: string + issuerUrl: + description: |- + Canonical issuer URL. https:// for OIDC providers, spiffe:// for SPIFFE + trust domains. Unique within tenant. Immutable after creation. + readOnly: true + type: string + oidc: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.OIDCSettings' + - type: "null" + spiffe: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.SPIFFESettings' + - type: "null" + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + wellKnownProvider: + description: |- + Well-known provider type. Drives UX (wizard presets, docs, icons). + Set at creation time, immutable. + enum: + - WELL_KNOWN_WORKLOAD_PROVIDER_UNSPECIFIED + - WELL_KNOWN_WORKLOAD_PROVIDER_CUSTOM + - WELL_KNOWN_WORKLOAD_PROVIDER_GITHUB_ACTIONS + - WELL_KNOWN_WORKLOAD_PROVIDER_GITLAB_CI + - WELL_KNOWN_WORKLOAD_PROVIDER_HCP_TERRAFORM + - WELL_KNOWN_WORKLOAD_PROVIDER_AWS_IAM_OUTBOUND + - WELL_KNOWN_WORKLOAD_PROVIDER_SPIFFE + readOnly: true + type: string + x-speakeasy-unknown-values: allow + title: Workload Federation Provider + type: object + x-speakeasy-name-override: WorkloadFederationProvider + c1.api.workload_federation.v1.WorkloadFederationServiceCreateProviderRequest: + description: | + The WorkloadFederationServiceCreateProviderRequest message. + + This message contains a oneof named settings. Only a single field of the following list may be set at a time: + - oidc + - spiffe + properties: + description: + description: A description of what this provider is for. + type: string + displayName: + description: The display name for the new provider. + type: string + issuerUrl: + description: |- + The issuer URL. For OIDC providers, this is an HTTPS URL validated via + OIDC discovery. For SPIFFE providers, this is the SPIFFE trust-domain URI + (e.g., spiffe://prod.example.com). Normalized on write: lowercase + scheme/host, no trailing slash. Unique within tenant. + type: string + oidc: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.OIDCSettings' + - type: "null" + spiffe: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.SPIFFESettings' + - type: "null" + wellKnownProvider: + description: |- + Well-known provider type. Required -- UNSPECIFIED is rejected. + When set to a named source, the backend validates issuer_url consistency. + SPIFFE wkp requires `settings.spiffe`; all other wkp values require + `settings.oidc`. + enum: + - WELL_KNOWN_WORKLOAD_PROVIDER_UNSPECIFIED + - WELL_KNOWN_WORKLOAD_PROVIDER_CUSTOM + - WELL_KNOWN_WORKLOAD_PROVIDER_GITHUB_ACTIONS + - WELL_KNOWN_WORKLOAD_PROVIDER_GITLAB_CI + - WELL_KNOWN_WORKLOAD_PROVIDER_HCP_TERRAFORM + - WELL_KNOWN_WORKLOAD_PROVIDER_AWS_IAM_OUTBOUND + - WELL_KNOWN_WORKLOAD_PROVIDER_SPIFFE + type: string + x-speakeasy-unknown-values: allow + title: Workload Federation Service Create Provider Request + type: object + x-speakeasy-name-override: WorkloadFederationServiceCreateProviderRequest + c1.api.workload_federation.v1.WorkloadFederationServiceCreateProviderResponse: + description: The WorkloadFederationServiceCreateProviderResponse message. + properties: + provider: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationProvider' + - type: "null" + title: Workload Federation Service Create Provider Response + type: object + x-speakeasy-name-override: WorkloadFederationServiceCreateProviderResponse + c1.api.workload_federation.v1.WorkloadFederationServiceCreateTrustRequestInput: + description: The WorkloadFederationServiceCreateTrustRequest message. + properties: + allowSourceCidrs: + description: |- + IP allowlist for token exchange requests matching this trust. + Accepts IPv4 (e.g. 10.0.0.0/24) or IPv6 (e.g. 2001:db8::/32) CIDRs. + items: + type: string + type: + - array + - "null" + conditionExpression: + description: |- + CEL expression evaluated against JWT claims. Must return bool. + Compiled and validated before storage. + type: string + description: + description: A description of what this trust policy matches. + type: string + displayName: + description: The display name for the trust. + type: string + passthroughClaims: + description: JWT claim names from the subject token to copy into the issued C1 token. + items: + type: string + type: + - array + - "null" + providerId: + description: The provider this trust references. + type: string + scopedRoleIds: + description: Scoped role IDs. Effective permissions = min(SP roles, trust.scoped_role_ids). + items: + type: string + type: + - array + - "null" + title: Workload Federation Service Create Trust Request + type: object + x-speakeasy-name-override: WorkloadFederationServiceCreateTrustRequest + c1.api.workload_federation.v1.WorkloadFederationServiceCreateTrustResponse: + description: The WorkloadFederationServiceCreateTrustResponse message. + properties: + trust: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationTrust' + - type: "null" + title: Workload Federation Service Create Trust Response + type: object + x-speakeasy-name-override: WorkloadFederationServiceCreateTrustResponse + c1.api.workload_federation.v1.WorkloadFederationServiceDeleteProviderRequestInput: + description: The WorkloadFederationServiceDeleteProviderRequest message. + title: Workload Federation Service Delete Provider Request + type: object + x-speakeasy-name-override: WorkloadFederationServiceDeleteProviderRequest + c1.api.workload_federation.v1.WorkloadFederationServiceDeleteProviderResponse: + description: The WorkloadFederationServiceDeleteProviderResponse message. + title: Workload Federation Service Delete Provider Response + type: object + x-speakeasy-name-override: WorkloadFederationServiceDeleteProviderResponse + c1.api.workload_federation.v1.WorkloadFederationServiceDeleteTrustRequestInput: + description: The WorkloadFederationServiceDeleteTrustRequest message. + title: Workload Federation Service Delete Trust Request + type: object + x-speakeasy-name-override: WorkloadFederationServiceDeleteTrustRequest + c1.api.workload_federation.v1.WorkloadFederationServiceDeleteTrustResponse: + description: The WorkloadFederationServiceDeleteTrustResponse message. + title: Workload Federation Service Delete Trust Response + type: object + x-speakeasy-name-override: WorkloadFederationServiceDeleteTrustResponse + c1.api.workload_federation.v1.WorkloadFederationServiceGetProviderResponse: + description: The WorkloadFederationServiceGetProviderResponse message. + properties: + provider: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationProvider' + - type: "null" + title: Workload Federation Service Get Provider Response + type: object + x-speakeasy-name-override: WorkloadFederationServiceGetProviderResponse + c1.api.workload_federation.v1.WorkloadFederationServiceGetTrustResponse: + description: The WorkloadFederationServiceGetTrustResponse message. + properties: + trust: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationTrust' + - type: "null" + title: Workload Federation Service Get Trust Response + type: object + x-speakeasy-name-override: WorkloadFederationServiceGetTrustResponse + c1.api.workload_federation.v1.WorkloadFederationServiceListProvidersResponse: + description: The WorkloadFederationServiceListProvidersResponse message. + properties: + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationProvider' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. + type: string + title: Workload Federation Service List Providers Response + type: object + x-speakeasy-name-override: WorkloadFederationServiceListProvidersResponse + c1.api.workload_federation.v1.WorkloadFederationServiceListTrustsResponse: + description: The WorkloadFederationServiceListTrustsResponse message. + properties: + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationTrust' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. + type: string + title: Workload Federation Service List Trusts Response + type: object + x-speakeasy-name-override: WorkloadFederationServiceListTrustsResponse + c1.api.workload_federation.v1.WorkloadFederationServiceSearchTrustsRequest: + description: The WorkloadFederationServiceSearchTrustsRequest message. + properties: + pageSize: + description: The pageSize field. + format: int32 + type: integer + pageToken: + description: The pageToken field. + type: string + providerId: + description: 'Optional: filter trusts by provider ID.' + type: string + query: + description: 'Optional: full-text search on trust display name and description.' + type: string + servicePrincipalId: + description: 'Optional: filter trusts by service principal ID.' + type: string + title: Workload Federation Service Search Trusts Request + type: object + x-speakeasy-name-override: WorkloadFederationServiceSearchTrustsRequest + c1.api.workload_federation.v1.WorkloadFederationServiceSearchTrustsResponse: + description: The WorkloadFederationServiceSearchTrustsResponse message. + properties: + list: + description: The list field. + items: + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationTrust' + type: + - array + - "null" + nextPageToken: + description: The nextPageToken field. + type: string + title: Workload Federation Service Search Trusts Response + type: object + x-speakeasy-name-override: WorkloadFederationServiceSearchTrustsResponse + c1.api.workload_federation.v1.WorkloadFederationServiceTestCELRequest: + description: The WorkloadFederationServiceTestCELRequest message. + properties: + claimsJson: + description: |- + The claims to evaluate against, as a JSON string. + Parsed into map[string]any for CEL evaluation. + type: string + expression: + description: The CEL expression to evaluate. Must return bool. + type: string + title: Workload Federation Service Test Cel Request + type: object + x-speakeasy-name-override: WorkloadFederationServiceTestCELRequest + c1.api.workload_federation.v1.WorkloadFederationServiceTestCELResponse: + description: The WorkloadFederationServiceTestCELResponse message. + properties: + error: + description: Error message if compilation or evaluation failed. + type: string + expression: + description: The expression that was evaluated (echo back). + type: string + matched: + description: Whether the expression matched (returned true). + type: boolean + title: Workload Federation Service Test Cel Response + type: object + x-speakeasy-name-override: WorkloadFederationServiceTestCELResponse + c1.api.workload_federation.v1.WorkloadFederationServiceTestTokenRequestInput: + description: The WorkloadFederationServiceTestTokenRequest message. + properties: + sourceIp: + description: |- + Optional: override source IP for CIDR testing. + If empty, uses the request's source IP. + Accepts IPv4 (e.g. 10.0.0.5) or IPv6 (e.g. 2001:db8::1) addresses, optionally with a CIDR prefix. + type: string + subjectToken: + description: The raw JWT to validate (the subject_token from a CI job). + type: string + title: Workload Federation Service Test Token Request + type: object + x-speakeasy-name-override: WorkloadFederationServiceTestTokenRequest + c1.api.workload_federation.v1.WorkloadFederationServiceTestTokenResponse: + description: The WorkloadFederationServiceTestTokenResponse message. + properties: + audienceValidation: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.TestTokenStepResult' + - type: "null" + celEvaluation: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.TestTokenStepResult' + - type: "null" + cidrCheck: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.TestTokenStepResult' + - type: "null" + decodedClaimsJson: + description: |- + The decoded JWT claims (best-effort, even if signature fails). + Returned as JSON string for display. + type: string + issuerMatch: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.TestTokenStepResult' + - type: "null" + jwtDecode: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.TestTokenStepResult' + - type: "null" + overallResult: + description: 'Overall result: true only if ALL steps passed.' + type: boolean + signatureValidation: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.TestTokenStepResult' + - type: "null" + subjectValidation: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.TestTokenStepResult' + - type: "null" + tokenFreshness: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.TestTokenStepResult' + - type: "null" + title: Workload Federation Service Test Token Response + type: object + x-speakeasy-name-override: WorkloadFederationServiceTestTokenResponse + c1.api.workload_federation.v1.WorkloadFederationServiceUpdateProviderRequestInput: + description: The WorkloadFederationServiceUpdateProviderRequest message. + properties: + provider: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationProvider' + - type: "null" + updateMask: + type: + - string + - "null" + title: Workload Federation Service Update Provider Request + type: object + x-speakeasy-name-override: WorkloadFederationServiceUpdateProviderRequest + c1.api.workload_federation.v1.WorkloadFederationServiceUpdateProviderResponse: + description: The WorkloadFederationServiceUpdateProviderResponse message. + properties: + provider: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationProvider' + - type: "null" + title: Workload Federation Service Update Provider Response + type: object + x-speakeasy-name-override: WorkloadFederationServiceUpdateProviderResponse + c1.api.workload_federation.v1.WorkloadFederationServiceUpdateTrustRequestInput: + description: The WorkloadFederationServiceUpdateTrustRequest message. + properties: + trust: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationTrust' + - type: "null" + updateMask: + type: + - string + - "null" + title: Workload Federation Service Update Trust Request + type: object + x-speakeasy-name-override: WorkloadFederationServiceUpdateTrustRequest + c1.api.workload_federation.v1.WorkloadFederationServiceUpdateTrustResponse: + description: The WorkloadFederationServiceUpdateTrustResponse message. + properties: + trust: + oneOf: + - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationTrust' + - type: "null" + title: Workload Federation Service Update Trust Response + type: object + x-speakeasy-name-override: WorkloadFederationServiceUpdateTrustResponse + c1.api.workload_federation.v1.WorkloadFederationTrust: + description: |- + WorkloadFederationTrust represents a per-SP trust policy that references + a tenant-level provider and defines a CEL condition for claim matching. + properties: + allowSourceCidrs: + description: IP allowlist for token exchange requests matching this trust. + items: + type: string + type: + - array + - "null" + clientId: + description: |- + The full client ID of the trust (e.g., "clever-fox-42195@acme.conductorone.com/wfe"). + Used as the client_id parameter in RFC 8693 token exchange requests. + readOnly: true + type: string + conditionExpression: + description: |- + CEL expression evaluated against JWT claims. Must return bool. + Example: claims.sub.startsWith("repo:acme/infra:") && claims.environment == "production" + type: string + createdAt: + format: date-time + readOnly: true + type: + - string + - "null" + description: + description: A description of what this trust policy matches. + type: string + disabled: + description: Whether the trust is disabled. + type: boolean + displayName: + description: The display name of the trust. + type: string + passthroughClaims: + description: |- + JWT claim names from the subject token to copy into the issued C1 token. + Values are placed in the "c1wfc" claim as a map[string]string. + Only string-valued claims are copied; non-string claims are silently skipped. + Example: ["repository", "repository_owner", "job_workflow_ref"] + items: + type: string + type: + - array + - "null" + providerId: + description: The provider ID this trust references. Immutable after creation. + readOnly: true + type: string + scopedRoleIds: + description: Scoped role IDs. Effective permissions = min(SP roles, trust.scoped_role_ids). + items: + type: string + type: + - array + - "null" + servicePrincipalId: + description: The service principal user ID this trust belongs to. + readOnly: true + type: string + updatedAt: + format: date-time + readOnly: true + type: + - string + - "null" + title: Workload Federation Trust + type: object + x-speakeasy-name-override: WorkloadFederationTrust + c1.mcp.role_mining.v1.AccessProfileMatch: + description: The AccessProfileMatch message. + properties: + catalogDisplayName: + description: The catalogDisplayName field. + type: string + catalogId: + description: The catalogId field. + type: string + matchType: + description: The matchType field. + enum: + - ACCESS_PROFILE_MATCH_TYPE_UNSPECIFIED + - ACCESS_PROFILE_MATCH_TYPE_EXACT + - ACCESS_PROFILE_MATCH_TYPE_SUPERSET + - ACCESS_PROFILE_MATCH_TYPE_PARTIAL + type: string + x-speakeasy-unknown-values: allow + missingEntitlements: + description: The missingEntitlements field. + items: + $ref: '#/components/schemas/c1.mcp.role_mining.v1.CohortEntitlement' + type: + - array + - "null" + overlapRatio: + description: The overlapRatio field. + type: number + title: Access Profile Match + type: object + x-speakeasy-name-override: AccessProfileMatch + c1.mcp.role_mining.v1.AttributeFacet: + description: AttributeFacet represents a filterable user profile attribute with its available values. + properties: + attribute: + description: The attribute field. + type: string + displayName: + description: The displayName field. + type: string + values: + description: The values field. + items: + $ref: '#/components/schemas/c1.mcp.role_mining.v1.AttributeValue' + type: + - array + - "null" + title: Attribute Facet + type: object + x-speakeasy-name-override: AttributeFacet + c1.mcp.role_mining.v1.AttributeValue: + description: AttributeValue represents a single value within a facet. + properties: + displayName: + description: The displayName field. + type: string + userCount: + description: The userCount field. + format: int32 + type: integer + value: + description: The value field. + type: string + title: Attribute Value + type: object + x-speakeasy-name-override: RoleMiningAttributeValue + c1.mcp.role_mining.v1.CohortEntitlement: + description: The CohortEntitlement message. + properties: + appDisplayName: + description: The appDisplayName field. + type: string + appId: + description: The appId field. + type: string + appResourceDisplayName: + description: The appResourceDisplayName field. + type: string + appResourceTypeDisplayName: + description: The appResourceTypeDisplayName field. + type: string + coverage: + description: The coverage field. + type: number + entitlementDisplayName: + description: The entitlementDisplayName field. + type: string + entitlementId: + description: The entitlementId field. + type: string + grantedCount: + description: The grantedCount field. + format: int32 + type: integer + riskLevelValueId: + description: The riskLevelValueId field. + type: string + title: Cohort Entitlement + type: object + x-speakeasy-name-override: CohortEntitlement + c1.mcp.role_mining.v1.EntitlementCluster: + description: The EntitlementCluster message. + properties: + avgCoverage: + description: The avgCoverage field. + type: number + avgSimilarity: + description: The avgSimilarity field. + type: number + entitlements: + description: The entitlements field. + items: + $ref: '#/components/schemas/c1.mcp.role_mining.v1.CohortEntitlement' + type: + - array + - "null" + userCount: + description: The userCount field. + format: int32 + type: integer + title: Entitlement Cluster + type: object + x-speakeasy-name-override: EntitlementCluster + c1.mcp.role_mining.v1.EntitlementCutoffImpactPoint: + description: |- + EntitlementCutoffImpactPoint reports the exact effect of an inclusive + entitlement coverage cutoff on the analyzed cohort. + properties: + entitlementCount: + description: Number of analyzed entitlements included at this cutoff. + format: int32 + type: integer + minimumCoverageBasisPoints: + description: Inclusive minimum entitlement coverage in basis points, where 8000 is 80%. + format: int32 + type: integer + usersWithAllEntitlements: + description: Exact number of cohort users who hold every included entitlement. + format: int32 + type: integer + title: Entitlement Cutoff Impact Point + type: object + x-speakeasy-name-override: EntitlementCutoffImpactPoint + c1.mcp.role_mining.v1.ProfileFilter: + description: |- + ProfileFilter defines a filter on a user profile attribute. + Use GetOrgOverview to discover available attribute keys and their values. + properties: + attribute: + description: The attribute field. + type: string + values: + description: The values field. + items: + type: string + type: + - array + - "null" + title: Profile Filter + type: object + x-speakeasy-name-override: ProfileFilter + c1.webhooks.v1.Body: + description: The Body message. + properties: + callbackUrl: + description: |- + If your receiver returns HTTP Status Code 202 Accepted, it MUST send its resposne to this URL as a POST + message body. + + If your receiver returns any other status code, it is expected to not use the callback url. + + This value will match the "Webhook-Callback-Url" header. + type: string + event: + description: |- + The type of event that triggered this Webhook. + + This value will match the "Webhook-Event" header. + + The value will be one of: + - "c1.webhooks.v1.PayloadTest" + - "c1.webhooks.v1.PayloadPolicyApprovalStep" + - "c1.webhooks.v1.PayloadPolicyPostAction" + - "c1.webhooks.v1.PayloadProvisionStep" + type: string + payload: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: + - object + - "null" + version: + description: |- + version contains the constant value "v1". Future versions of the Webhook body will use a different string. + + This value will match the "Webhook-Version" header. + type: string + webhookId: + description: |- + Unique ID for this Webhook. Your receiver should only process this ID once. + + This value will match the "Webhook-Id" header. + type: string + title: Body + type: object + x-speakeasy-include: true + x-speakeasy-name-override: Body + c1.webhooks.v1.PayloadFindingDispatch: + description: The PayloadFindingDispatch message. + properties: + dispatchId: + description: The FindingDispatch row recording this execution. + type: string + finding: + oneOf: + - $ref: '#/components/schemas/c1.api.finding.v1.Finding' + - type: "null" + findingId: + description: The finding that matched the routing rule. + type: string + payloadTemplate: + description: |- + The dispatcher's rendered payload template. Empty when the dispatcher used + the default finding payload. + type: string + ruleId: + description: The routing rule whose match caused this dispatch. + type: string + title: Payload Finding Dispatch + type: object + x-speakeasy-include: true + x-speakeasy-name-override: PayloadFindingDispatch + c1.webhooks.v1.PayloadPolicyApprovalStep: + description: The PayloadPolicyApprovalStep message. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + title: Payload Policy Approval Step + type: object + x-speakeasy-include: true + x-speakeasy-name-override: PayloadPolicyApprovalStep + c1.webhooks.v1.PayloadPolicyPostAction: + description: The PayloadPolicyPostAction message. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + title: Payload Policy Post Action + type: object + x-speakeasy-include: true + x-speakeasy-name-override: PayloadPolicyPostAction + c1.webhooks.v1.PayloadProvisionStep: + description: The PayloadProvisionStep message. + properties: + expanded: + description: List of serialized related objects. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + taskView: + oneOf: + - $ref: '#/components/schemas/c1.api.task.v1.TaskView' + - type: "null" + title: Payload Provision Step + type: object + x-speakeasy-include: true + x-speakeasy-name-override: PayloadProvisionStep + c1.webhooks.v1.PayloadTest: + description: The PayloadTest message. + title: Payload Test + type: object + x-speakeasy-include: true + x-speakeasy-name-override: PayloadTest + c1.webhooks.v1.PayloadWorkflowStep: + description: The PayloadWorkflowStep message. + properties: + context: + additionalProperties: true + type: + - object + - "null" + workflowExecutionId: + description: The workflow execution ID + format: int64 + type: string + workflowExecutionStepId: + description: The workflow execution step ID + type: string + workflowId: + description: The workflow template ID + type: string + title: Payload Workflow Step + type: object + x-speakeasy-include: true + x-speakeasy-name-override: PayloadWorkflowStep + c1.webhooks.v1.ResponsePolicyApprovalStep: + description: | + The ResponsePolicyApprovalStep message. + + This message contains a oneof named action. Only a single field of the following list may be set at a time: + - approve + - deny + - reassign + - replacePolicy + properties: + approve: + oneOf: + - $ref: '#/components/schemas/c1.webhooks.v1.ResponsePolicyApprovalStep.ResponsePolicyApprovalStepApprove' + - type: "null" + deny: + oneOf: + - $ref: '#/components/schemas/c1.webhooks.v1.ResponsePolicyApprovalStep.ResponsePolicyApprovalStepDeny' + - type: "null" + reassign: + oneOf: + - $ref: '#/components/schemas/c1.webhooks.v1.ResponsePolicyApprovalStep.ResponsePolicyApprovalStepReassign' + - type: "null" + replacePolicy: + oneOf: + - $ref: '#/components/schemas/c1.webhooks.v1.ResponsePolicyApprovalStep.ResponsePolicyApprovalReplacePolicy' + - type: "null" + version: + description: |- + version contains the constant value "v1". Future versions of the Webhook Response + will use a different string. + type: string + title: Response Policy Approval Step + type: object + x-speakeasy-include: true + x-speakeasy-name-override: ResponsePolicyApprovalStep + c1.webhooks.v1.ResponsePolicyApprovalStep.ResponsePolicyApprovalReplacePolicy: + description: The ResponsePolicyApprovalReplacePolicy message. + properties: + comment: + description: The comment field. + type: string + policySteps: + description: The policySteps field. + items: + $ref: '#/components/schemas/c1.api.policy.v1.PolicyStep' + type: + - array + - "null" + title: Response Policy Approval Replace Policy + type: object + x-speakeasy-name-override: ResponsePolicyApprovalReplacePolicy + c1.webhooks.v1.ResponsePolicyApprovalStep.ResponsePolicyApprovalStepApprove: + description: The ResponsePolicyApprovalStepApprove message. + properties: + comment: + description: optional comment + type: string + title: Response Policy Approval Step Approve + type: object + x-speakeasy-name-override: ResponsePolicyApprovalStepApprove + c1.webhooks.v1.ResponsePolicyApprovalStep.ResponsePolicyApprovalStepDeny: + description: The ResponsePolicyApprovalStepDeny message. + properties: + comment: + description: optional comment + type: string + title: Response Policy Approval Step Deny + type: object + x-speakeasy-name-override: ResponsePolicyApprovalStepDeny + c1.webhooks.v1.ResponsePolicyApprovalStep.ResponsePolicyApprovalStepReassign: + description: The ResponsePolicyApprovalStepReassign message. + properties: + comment: + description: optional comment + type: string + newStepUserIds: + description: The newStepUserIds field. + items: + type: string + type: + - array + - "null" + title: Response Policy Approval Step Reassign + type: object + x-speakeasy-name-override: ResponsePolicyApprovalStepReassign + c1.webhooks.v1.ResponsePolicyPostAction: + description: The ResponsePolicyPostAction message. + properties: + version: + description: |- + version contains the constant value "v1". Future versions of the Webhook Response + will use a different string. + type: string + title: Response Policy Post Action + type: object + x-speakeasy-include: true + x-speakeasy-name-override: ResponsePolicyPostAction + c1.webhooks.v1.ResponseProvisionStep: + description: | + The ResponseProvisionStep message. + + This message contains a oneof named outcome. Only a single field of the following list may be set at a time: + - complete + - errored + properties: + complete: + oneOf: + - $ref: '#/components/schemas/c1.webhooks.v1.ResponseProvisionStep.ResponseProvisionStepComplete' + - type: "null" + errored: + oneOf: + - $ref: '#/components/schemas/c1.webhooks.v1.ResponseProvisionStep.ResponseProvisionStepErrored' + - type: "null" + version: + description: |- + version contains the constant value "v1". Future versions of the Webhook Response + will use a different string. + type: string + title: Response Provision Step + type: object + x-speakeasy-include: true + x-speakeasy-name-override: ResponseProvisionStep + c1.webhooks.v1.ResponseProvisionStep.ResponseProvisionStepComplete: + description: The ResponseProvisionStepComplete message. + properties: + comment: + description: optional comment + type: string + title: Response Provision Step Complete + type: object + x-speakeasy-name-override: ResponseProvisionStepComplete + c1.webhooks.v1.ResponseProvisionStep.ResponseProvisionStepErrored: + description: The ResponseProvisionStepErrored message. + properties: + comment: + description: optional comment + type: string + title: Response Provision Step Errored + type: object + x-speakeasy-name-override: ResponseProvisionStepErrored + c1.webhooks.v1.ResponseTest: + description: The ResponseTest message. + properties: + version: + description: |- + version contains the constant value "v1". Future versions of the Webhook Response + will use a different string. + type: string + title: Response Test + type: object + x-speakeasy-include: true + x-speakeasy-name-override: ResponseTest + c1.webhooks.v1.ResponseWorkflowStep: + description: The ResponseWorkflowStep message. + properties: + context: + additionalProperties: true + type: + - object + - "null" + version: + description: |- + version contains the constant value "v1". Future versions of the Webhook Response + will use a different string. + type: string + title: Response Workflow Step + type: object + x-speakeasy-include: true + x-speakeasy-name-override: ResponseWorkflowStep + google.rpc.Status: + description: |- + The `Status` type defines a logical error model that is suitable for + different programming environments, including REST APIs and RPC APIs. It is + used by [gRPC](https://github.com/grpc). Each `Status` message contains + three pieces of data: error code, error message, and error details. + + You can find out more about this error model and how to work with it in the + [API Design Guide](https://cloud.google.com/apis/design/errors). + properties: + code: + description: The status code, which should be an enum value of [google.rpc.Code][google.rpc.Code]. + format: int32 + type: integer + details: + description: |- + A list of messages that carry the error details. There is a common set of + message types for APIs to use. + items: + additionalProperties: true + description: Contains an arbitrary serialized message along with a @type that describes the type of the serialized message. + properties: + '@type': + description: The type of the serialized message. + type: string + type: object + type: + - array + - "null" + message: + description: |- + A developer-facing error message, which should be in English. Any + user-facing error message should be localized and sent in the + [google.rpc.Status.details][google.rpc.Status.details] field, or localized by the client. + type: string + title: Status + type: object + x-speakeasy-name-override: Status + validate.AnyRules: + description: |- + AnyRules describe constraints applied exclusively to the + `google.protobuf.Any` well-known type + properties: + in: + description: |- + In specifies that this field's `type_url` must be equal to one of the + specified values. + items: + type: string + type: + - array + - "null" + notIn: + description: |- + NotIn specifies that this field's `type_url` must not be equal to any of + the specified values. + items: + type: string + type: + - array + - "null" + required: + description: Required specifies that this field must be set + type: boolean + title: Any Rules + type: object + x-speakeasy-name-override: AnyRules + validate.BoolRules: + description: BoolRules describes the constraints applied to `bool` values + properties: + const: + description: Const specifies that this field must be exactly the specified value + type: boolean + title: Bool Rules + type: object + x-speakeasy-name-override: BoolRules + validate.BytesRules: + description: | + BytesRules describe the constraints applied to `bytes` values + + This message contains a oneof named well_known. Only a single field of the following list may be set at a time: + - ip + - ipv4 + - ipv6 + properties: + const: + description: Const specifies that this field must be exactly the specified value + format: base64 + type: string + contains: + description: |- + Contains specifies that this field must have the specified bytes + anywhere in the string. + format: base64 + type: string + ignoreEmpty: + description: |- + IgnoreEmpty specifies that the validation rules of this field should be + evaluated only if the field is not empty + type: boolean + in: + description: |- + In specifies that this field must be equal to one of the specified + values + items: + format: base64 + type: string + type: + - array + - "null" + ip: + description: |- + Ip specifies that the field must be a valid IP (v4 or v6) address in + byte format + This field is part of the `well_known` oneof. + See the documentation for `validate.BytesRules` for more details. + type: + - boolean + - "null" + ipv4: + description: |- + Ipv4 specifies that the field must be a valid IPv4 address in byte + format + This field is part of the `well_known` oneof. + See the documentation for `validate.BytesRules` for more details. + type: + - boolean + - "null" + ipv6: + description: |- + Ipv6 specifies that the field must be a valid IPv6 address in byte + format + This field is part of the `well_known` oneof. + See the documentation for `validate.BytesRules` for more details. + type: + - boolean + - "null" + len: + description: Len specifies that this field must be the specified number of bytes + format: uint64 + type: string + maxLen: + description: |- + MaxLen specifies that this field must be the specified number of bytes + at a maximum + format: uint64 + type: string + minLen: + description: |- + MinLen specifies that this field must be the specified number of bytes + at a minimum + format: uint64 + type: string + notIn: + description: |- + NotIn specifies that this field cannot be equal to one of the specified + values + items: + format: base64 + type: string + type: + - array + - "null" + pattern: + description: |- + Pattern specifes that this field must match against the specified + regular expression (RE2 syntax). The included expression should elide + any delimiters. + type: string + prefix: + description: |- + Prefix specifies that this field must have the specified bytes at the + beginning of the string. + format: base64 + type: string + suffix: + description: |- + Suffix specifies that this field must have the specified bytes at the + end of the string. + format: base64 + type: string + title: Bytes Rules + type: object + x-speakeasy-name-override: BytesRules + validate.DoubleRules: + description: DoubleRules describes the constraints applied to `double` values + properties: + const: + description: Const specifies that this field must be exactly the specified value + type: number + gt: + description: |- + Gt specifies that this field must be greater than the specified value, + exclusive. If the value of Gt is larger than a specified Lt or Lte, the + range is reversed. + type: number + gte: + description: |- + Gte specifies that this field must be greater than or equal to the + specified value, inclusive. If the value of Gte is larger than a + specified Lt or Lte, the range is reversed. + type: number + ignoreEmpty: + description: |- + IgnoreEmpty specifies that the validation rules of this field should be + evaluated only if the field is not empty + type: boolean + in: + description: |- + In specifies that this field must be equal to one of the specified + values + items: + type: number + type: + - array + - "null" + lt: + description: |- + Lt specifies that this field must be less than the specified value, + exclusive + type: number + lte: + description: |- + Lte specifies that this field must be less than or equal to the + specified value, inclusive + type: number + notIn: + description: |- + NotIn specifies that this field cannot be equal to one of the specified + values + items: + type: number + type: + - array + - "null" + title: Double Rules + type: object + x-speakeasy-name-override: DoubleRules + validate.DurationRules: + description: |- + DurationRules describe the constraints applied exclusively to the + `google.protobuf.Duration` well-known type + properties: + const: + format: duration + type: + - string + - "null" + gt: + format: duration + type: + - string + - "null" + gte: + format: duration + type: + - string + - "null" + in: + description: |- + In specifies that this field must be equal to one of the specified + values + items: + format: duration + type: string + type: + - array + - "null" + lt: + format: duration + type: + - string + - "null" + lte: + format: duration + type: + - string + - "null" + notIn: + description: |- + NotIn specifies that this field cannot be equal to one of the specified + values + items: + format: duration + type: string + type: + - array + - "null" + required: + description: Required specifies that this field must be set + type: boolean + title: Duration Rules + type: object + x-speakeasy-name-override: DurationRules + validate.EnumRules: + description: EnumRules describe the constraints applied to enum values + properties: + const: + description: Const specifies that this field must be exactly the specified value + format: int32 + type: integer + definedOnly: + description: |- + DefinedOnly specifies that this field must be only one of the defined + values for this enum, failing on any undefined value. + type: boolean + in: + description: |- + In specifies that this field must be equal to one of the specified + values + items: + format: int32 + type: integer + type: + - array + - "null" + notIn: + description: |- + NotIn specifies that this field cannot be equal to one of the specified + values + items: + format: int32 + type: integer + type: + - array + - "null" + title: Enum Rules + type: object + x-speakeasy-name-override: EnumRules + validate.FieldRules: + description: | + FieldRules encapsulates the rules for each type of field. Depending on the + field, the correct set should be used to ensure proper validations. + + This message contains a oneof named type. Only a single field of the following list may be set at a time: + - float + - double + - int32 + - int64 + - uint32 + - uint64 + - sint32 + - sint64 + - fixed32 + - fixed64 + - sfixed32 + - sfixed64 + - bool + - string + - bytes + - enum + - repeated + - map + - any + - duration + - timestamp + properties: + any: + oneOf: + - $ref: '#/components/schemas/validate.AnyRules' + - type: "null" + bool: + oneOf: + - $ref: '#/components/schemas/validate.BoolRules' + - type: "null" + bytes: + oneOf: + - $ref: '#/components/schemas/validate.BytesRules' + - type: "null" + double: + oneOf: + - $ref: '#/components/schemas/validate.DoubleRules' + - type: "null" + duration: + oneOf: + - $ref: '#/components/schemas/validate.DurationRules' + - type: "null" + enum: + oneOf: + - $ref: '#/components/schemas/validate.EnumRules' + - type: "null" + fixed32: + oneOf: + - $ref: '#/components/schemas/validate.Fixed32Rules' + - type: "null" + fixed64: + oneOf: + - $ref: '#/components/schemas/validate.Fixed64Rules' + - type: "null" + float: + oneOf: + - $ref: '#/components/schemas/validate.FloatRules' + - type: "null" + int32: + oneOf: + - $ref: '#/components/schemas/validate.Int32Rules' + - type: "null" + int64: + oneOf: + - $ref: '#/components/schemas/validate.Int64Rules' + - type: "null" + map: + oneOf: + - $ref: '#/components/schemas/validate.MapRules' + - type: "null" + message: + oneOf: + - $ref: '#/components/schemas/validate.MessageRules' + - type: "null" + repeated: + oneOf: + - $ref: '#/components/schemas/validate.RepeatedRules' + - type: "null" + sfixed32: + oneOf: + - $ref: '#/components/schemas/validate.SFixed32Rules' + - type: "null" + sfixed64: + oneOf: + - $ref: '#/components/schemas/validate.SFixed64Rules' + - type: "null" + sint32: + oneOf: + - $ref: '#/components/schemas/validate.SInt32Rules' + - type: "null" + sint64: + oneOf: + - $ref: '#/components/schemas/validate.SInt64Rules' + - type: "null" + string: + oneOf: + - $ref: '#/components/schemas/validate.StringRules' + - type: "null" + timestamp: + oneOf: + - $ref: '#/components/schemas/validate.TimestampRules' + - type: "null" + uint32: + oneOf: + - $ref: '#/components/schemas/validate.UInt32Rules' + - type: "null" + uint64: + oneOf: + - $ref: '#/components/schemas/validate.UInt64Rules' + - type: "null" + title: Field Rules + type: object + x-speakeasy-name-override: FieldRules + validate.Fixed32Rules: + description: Fixed32Rules describes the constraints applied to `fixed32` values + properties: + const: + description: Const specifies that this field must be exactly the specified value + format: uint32 + type: integer + gt: + description: |- + Gt specifies that this field must be greater than the specified value, + exclusive. If the value of Gt is larger than a specified Lt or Lte, the + range is reversed. + format: uint32 + type: integer + gte: + description: |- + Gte specifies that this field must be greater than or equal to the + specified value, inclusive. If the value of Gte is larger than a + specified Lt or Lte, the range is reversed. + format: uint32 + type: integer + ignoreEmpty: + description: |- + IgnoreEmpty specifies that the validation rules of this field should be + evaluated only if the field is not empty + type: boolean + in: + description: |- + In specifies that this field must be equal to one of the specified + values + items: + format: uint32 + type: integer + type: + - array + - "null" + lt: + description: |- + Lt specifies that this field must be less than the specified value, + exclusive + format: uint32 + type: integer + lte: + description: |- + Lte specifies that this field must be less than or equal to the + specified value, inclusive + format: uint32 + type: integer + notIn: + description: |- + NotIn specifies that this field cannot be equal to one of the specified + values + items: + format: uint32 + type: integer + type: + - array + - "null" + title: Fixed 32 Rules + type: object + x-speakeasy-name-override: Fixed32Rules + validate.Fixed64Rules: + description: Fixed64Rules describes the constraints applied to `fixed64` values + properties: + const: + description: Const specifies that this field must be exactly the specified value + format: uint64 + type: string + gt: + description: |- + Gt specifies that this field must be greater than the specified value, + exclusive. If the value of Gt is larger than a specified Lt or Lte, the + range is reversed. + format: uint64 + type: string + gte: + description: |- + Gte specifies that this field must be greater than or equal to the + specified value, inclusive. If the value of Gte is larger than a + specified Lt or Lte, the range is reversed. + format: uint64 + type: string + ignoreEmpty: + description: |- + IgnoreEmpty specifies that the validation rules of this field should be + evaluated only if the field is not empty + type: boolean + in: + description: |- + In specifies that this field must be equal to one of the specified + values + items: + format: uint64 + type: string + type: + - array + - "null" + lt: + description: |- + Lt specifies that this field must be less than the specified value, + exclusive + format: uint64 + type: string + lte: + description: |- + Lte specifies that this field must be less than or equal to the + specified value, inclusive + format: uint64 + type: string + notIn: + description: |- + NotIn specifies that this field cannot be equal to one of the specified + values + items: + format: uint64 + type: string + type: + - array + - "null" + title: Fixed 64 Rules + type: object + x-speakeasy-name-override: Fixed64Rules + validate.FloatRules: + description: FloatRules describes the constraints applied to `float` values + properties: + const: + description: Const specifies that this field must be exactly the specified value + type: number + gt: + description: |- + Gt specifies that this field must be greater than the specified value, + exclusive. If the value of Gt is larger than a specified Lt or Lte, the + range is reversed. + type: number + gte: + description: |- + Gte specifies that this field must be greater than or equal to the + specified value, inclusive. If the value of Gte is larger than a + specified Lt or Lte, the range is reversed. + type: number + ignoreEmpty: + description: |- + IgnoreEmpty specifies that the validation rules of this field should be + evaluated only if the field is not empty + type: boolean + in: + description: |- + In specifies that this field must be equal to one of the specified + values + items: + type: number + type: + - array + - "null" + lt: + description: |- + Lt specifies that this field must be less than the specified value, + exclusive + type: number + lte: + description: |- + Lte specifies that this field must be less than or equal to the + specified value, inclusive + type: number + notIn: + description: |- + NotIn specifies that this field cannot be equal to one of the specified + values + items: + type: number + type: + - array + - "null" + title: Float Rules + type: object + x-speakeasy-name-override: FloatRules + validate.Int32Rules: + description: Int32Rules describes the constraints applied to `int32` values + properties: + const: + description: Const specifies that this field must be exactly the specified value + format: int32 + type: integer + gt: + description: |- + Gt specifies that this field must be greater than the specified value, + exclusive. If the value of Gt is larger than a specified Lt or Lte, the + range is reversed. + format: int32 + type: integer + gte: + description: |- + Gte specifies that this field must be greater than or equal to the + specified value, inclusive. If the value of Gte is larger than a + specified Lt or Lte, the range is reversed. + format: int32 + type: integer + ignoreEmpty: + description: |- + IgnoreEmpty specifies that the validation rules of this field should be + evaluated only if the field is not empty + type: boolean + in: + description: |- + In specifies that this field must be equal to one of the specified + values + items: + format: int32 + type: integer + type: + - array + - "null" + lt: + description: |- + Lt specifies that this field must be less than the specified value, + exclusive + format: int32 + type: integer + lte: + description: |- + Lte specifies that this field must be less than or equal to the + specified value, inclusive + format: int32 + type: integer + notIn: + description: |- + NotIn specifies that this field cannot be equal to one of the specified + values + items: + format: int32 + type: integer + type: + - array + - "null" + title: Int 32 Rules + type: object + x-speakeasy-name-override: Int32Rules + validate.Int64Rules: + description: Int64Rules describes the constraints applied to `int64` values + properties: + const: + description: Const specifies that this field must be exactly the specified value + format: int64 + type: string + gt: + description: |- + Gt specifies that this field must be greater than the specified value, + exclusive. If the value of Gt is larger than a specified Lt or Lte, the + range is reversed. + format: int64 + type: string + gte: + description: |- + Gte specifies that this field must be greater than or equal to the + specified value, inclusive. If the value of Gte is larger than a + specified Lt or Lte, the range is reversed. + format: int64 + type: string + ignoreEmpty: + description: |- + IgnoreEmpty specifies that the validation rules of this field should be + evaluated only if the field is not empty + type: boolean + in: + description: |- + In specifies that this field must be equal to one of the specified + values + items: + format: int64 + type: string + type: + - array + - "null" + lt: + description: |- + Lt specifies that this field must be less than the specified value, + exclusive + format: int64 + type: string + lte: + description: |- + Lte specifies that this field must be less than or equal to the + specified value, inclusive + format: int64 + type: string + notIn: + description: |- + NotIn specifies that this field cannot be equal to one of the specified + values + items: + format: int64 + type: string + type: + - array + - "null" + title: Int 64 Rules + type: object + x-speakeasy-name-override: Int64Rules + validate.MapRules: + description: MapRules describe the constraints applied to `map` values + properties: + ignoreEmpty: + description: |- + IgnoreEmpty specifies that the validation rules of this field should be + evaluated only if the field is not empty + type: boolean + keys: + oneOf: + - $ref: '#/components/schemas/validate.FieldRules' + - type: "null" + maxPairs: + description: |- + MaxPairs specifies that this field must have the specified number of + KVs at a maximum + format: uint64 + type: string + minPairs: + description: |- + MinPairs specifies that this field must have the specified number of + KVs at a minimum + format: uint64 + type: string + noSparse: + description: |- + NoSparse specifies values in this field cannot be unset. This only + applies to map's with message value types. + type: boolean + values: + oneOf: + - $ref: '#/components/schemas/validate.FieldRules' + - type: "null" + title: Map Rules + type: object + x-speakeasy-name-override: MapRules + validate.MessageRules: + description: |- + MessageRules describe the constraints applied to embedded message values. + For message-type fields, validation is performed recursively. + properties: + required: + description: Required specifies that this field must be set + type: boolean + skip: + description: |- + Skip specifies that the validation rules of this field should not be + evaluated + type: boolean + title: Message Rules + type: object + x-speakeasy-name-override: MessageRules + validate.RepeatedRules: + description: RepeatedRules describe the constraints applied to `repeated` values + properties: + ignoreEmpty: + description: |- + IgnoreEmpty specifies that the validation rules of this field should be + evaluated only if the field is not empty + type: boolean + items: + oneOf: + - $ref: '#/components/schemas/validate.FieldRules' + - type: "null" + maxItems: + description: |- + MaxItems specifies that this field must have the specified number of + items at a maximum + format: uint64 + type: string + minItems: + description: |- + MinItems specifies that this field must have the specified number of + items at a minimum + format: uint64 + type: string + unique: + description: |- + Unique specifies that all elements in this field must be unique. This + contraint is only applicable to scalar and enum types (messages are not + supported). + type: boolean + title: Repeated Rules + type: object + x-speakeasy-name-override: RepeatedRules + validate.SFixed32Rules: + description: SFixed32Rules describes the constraints applied to `sfixed32` values + properties: + const: + description: Const specifies that this field must be exactly the specified value + format: int32 + type: integer + gt: + description: |- + Gt specifies that this field must be greater than the specified value, + exclusive. If the value of Gt is larger than a specified Lt or Lte, the + range is reversed. + format: int32 + type: integer + gte: + description: |- + Gte specifies that this field must be greater than or equal to the + specified value, inclusive. If the value of Gte is larger than a + specified Lt or Lte, the range is reversed. + format: int32 + type: integer + ignoreEmpty: + description: |- + IgnoreEmpty specifies that the validation rules of this field should be + evaluated only if the field is not empty + type: boolean + in: + description: |- + In specifies that this field must be equal to one of the specified + values + items: + format: int32 + type: integer + type: + - array + - "null" + lt: + description: |- + Lt specifies that this field must be less than the specified value, + exclusive + format: int32 + type: integer + lte: + description: |- + Lte specifies that this field must be less than or equal to the + specified value, inclusive + format: int32 + type: integer + notIn: + description: |- + NotIn specifies that this field cannot be equal to one of the specified + values + items: + format: int32 + type: integer + type: + - array + - "null" + title: S Fixed 32 Rules + type: object + x-speakeasy-name-override: SFixed32Rules + validate.SFixed64Rules: + description: SFixed64Rules describes the constraints applied to `sfixed64` values + properties: + const: + description: Const specifies that this field must be exactly the specified value + format: int64 + type: string + gt: + description: |- + Gt specifies that this field must be greater than the specified value, + exclusive. If the value of Gt is larger than a specified Lt or Lte, the + range is reversed. + format: int64 + type: string + gte: + description: |- + Gte specifies that this field must be greater than or equal to the + specified value, inclusive. If the value of Gte is larger than a + specified Lt or Lte, the range is reversed. + format: int64 + type: string + ignoreEmpty: + description: |- + IgnoreEmpty specifies that the validation rules of this field should be + evaluated only if the field is not empty + type: boolean + in: + description: |- + In specifies that this field must be equal to one of the specified + values + items: + format: int64 + type: string + type: + - array + - "null" + lt: + description: |- + Lt specifies that this field must be less than the specified value, + exclusive + format: int64 + type: string + lte: + description: |- + Lte specifies that this field must be less than or equal to the + specified value, inclusive + format: int64 + type: string + notIn: + description: |- + NotIn specifies that this field cannot be equal to one of the specified + values + items: + format: int64 + type: string + type: + - array + - "null" + title: S Fixed 64 Rules + type: object + x-speakeasy-name-override: SFixed64Rules + validate.SInt32Rules: + description: SInt32Rules describes the constraints applied to `sint32` values + properties: + const: + description: Const specifies that this field must be exactly the specified value + format: int32 + type: integer + gt: + description: |- + Gt specifies that this field must be greater than the specified value, + exclusive. If the value of Gt is larger than a specified Lt or Lte, the + range is reversed. + format: int32 + type: integer + gte: + description: |- + Gte specifies that this field must be greater than or equal to the + specified value, inclusive. If the value of Gte is larger than a + specified Lt or Lte, the range is reversed. + format: int32 + type: integer + ignoreEmpty: + description: |- + IgnoreEmpty specifies that the validation rules of this field should be + evaluated only if the field is not empty + type: boolean + in: + description: |- + In specifies that this field must be equal to one of the specified + values + items: + format: int32 + type: integer + type: + - array + - "null" + lt: + description: |- + Lt specifies that this field must be less than the specified value, + exclusive + format: int32 + type: integer + lte: + description: |- + Lte specifies that this field must be less than or equal to the + specified value, inclusive + format: int32 + type: integer + notIn: + description: |- + NotIn specifies that this field cannot be equal to one of the specified + values + items: + format: int32 + type: integer + type: + - array + - "null" + title: S Int 32 Rules + type: object + x-speakeasy-name-override: SInt32Rules + validate.SInt64Rules: + description: SInt64Rules describes the constraints applied to `sint64` values + properties: + const: + description: Const specifies that this field must be exactly the specified value + format: int64 + type: string + gt: + description: |- + Gt specifies that this field must be greater than the specified value, + exclusive. If the value of Gt is larger than a specified Lt or Lte, the + range is reversed. + format: int64 + type: string + gte: + description: |- + Gte specifies that this field must be greater than or equal to the + specified value, inclusive. If the value of Gte is larger than a + specified Lt or Lte, the range is reversed. + format: int64 + type: string + ignoreEmpty: + description: |- + IgnoreEmpty specifies that the validation rules of this field should be + evaluated only if the field is not empty + type: boolean + in: + description: |- + In specifies that this field must be equal to one of the specified + values + items: + format: int64 + type: string + type: + - array + - "null" + lt: + description: |- + Lt specifies that this field must be less than the specified value, + exclusive + format: int64 + type: string + lte: + description: |- + Lte specifies that this field must be less than or equal to the + specified value, inclusive + format: int64 + type: string + notIn: + description: |- + NotIn specifies that this field cannot be equal to one of the specified + values + items: + format: int64 + type: string + type: + - array + - "null" + title: S Int 64 Rules + type: object + x-speakeasy-name-override: SInt64Rules + validate.StringRules: + description: | + StringRules describe the constraints applied to `string` values + + This message contains a oneof named well_known. Only a single field of the following list may be set at a time: + - email + - hostname + - ip + - ipv4 + - ipv6 + - uri + - uriRef + - address + - uuid + - wellKnownRegex + properties: + address: + description: |- + Address specifies that the field must be either a valid hostname as + defined by RFC 1034 (which does not support internationalized domain + names or IDNs), or it can be a valid IP (v4 or v6). + This field is part of the `well_known` oneof. + See the documentation for `validate.StringRules` for more details. + type: + - boolean + - "null" + const: + description: Const specifies that this field must be exactly the specified value + type: string + contains: + description: |- + Contains specifies that this field must have the specified substring + anywhere in the string. + type: string + email: + description: |- + Email specifies that the field must be a valid email address as + defined by RFC 5322 + This field is part of the `well_known` oneof. + See the documentation for `validate.StringRules` for more details. + type: + - boolean + - "null" + hostname: + description: |- + Hostname specifies that the field must be a valid hostname as + defined by RFC 1034. This constraint does not support + internationalized domain names (IDNs). + This field is part of the `well_known` oneof. + See the documentation for `validate.StringRules` for more details. + type: + - boolean + - "null" + ignoreEmpty: + description: |- + IgnoreEmpty specifies that the validation rules of this field should be + evaluated only if the field is not empty + type: boolean + in: + description: |- + In specifies that this field must be equal to one of the specified + values + items: + type: string + type: + - array + - "null" + ip: + description: |- + Ip specifies that the field must be a valid IP (v4 or v6) address. + Valid IPv6 addresses should not include surrounding square brackets. + This field is part of the `well_known` oneof. + See the documentation for `validate.StringRules` for more details. + type: + - boolean + - "null" + ipv4: + description: |- + Ipv4 specifies that the field must be a valid IPv4 address. + This field is part of the `well_known` oneof. + See the documentation for `validate.StringRules` for more details. + type: + - boolean + - "null" + ipv6: + description: |- + Ipv6 specifies that the field must be a valid IPv6 address. Valid + IPv6 addresses should not include surrounding square brackets. + This field is part of the `well_known` oneof. + See the documentation for `validate.StringRules` for more details. + type: + - boolean + - "null" + len: + description: |- + Len specifies that this field must be the specified number of + characters (Unicode code points). Note that the number of + characters may differ from the number of bytes in the string. + format: uint64 + type: string + lenBytes: + description: |- + LenBytes specifies that this field must be the specified number of bytes + at a minimum + format: uint64 + type: string + maxBytes: + description: |- + MaxBytes specifies that this field must be the specified number of bytes + at a maximum + format: uint64 + type: string + maxLen: + description: |- + MaxLen specifies that this field must be the specified number of + characters (Unicode code points) at a maximum. Note that the number of + characters may differ from the number of bytes in the string. + format: uint64 + type: string + minBytes: + description: |- + MinBytes specifies that this field must be the specified number of bytes + at a minimum + format: uint64 + type: string + minLen: + description: |- + MinLen specifies that this field must be the specified number of + characters (Unicode code points) at a minimum. Note that the number of + characters may differ from the number of bytes in the string. + format: uint64 + type: string + notContains: + description: |- + NotContains specifies that this field cannot have the specified substring + anywhere in the string. + type: string + notIn: + description: |- + NotIn specifies that this field cannot be equal to one of the specified + values + items: + type: string + type: + - array + - "null" + pattern: + description: |- + Pattern specifes that this field must match against the specified + regular expression (RE2 syntax). The included expression should elide + any delimiters. + type: string + prefix: + description: |- + Prefix specifies that this field must have the specified substring at + the beginning of the string. + type: string + strict: + description: |- + This applies to regexes HTTP_HEADER_NAME and HTTP_HEADER_VALUE to enable + strict header validation. + By default, this is true, and HTTP header validations are RFC-compliant. + Setting to false will enable a looser validations that only disallows + \r\n\0 characters, which can be used to bypass header matching rules. + type: boolean + suffix: + description: |- + Suffix specifies that this field must have the specified substring at + the end of the string. + type: string + uri: + description: |- + Uri specifies that the field must be a valid, absolute URI as defined + by RFC 3986 + This field is part of the `well_known` oneof. + See the documentation for `validate.StringRules` for more details. + type: + - boolean + - "null" + uriRef: + description: |- + UriRef specifies that the field must be a valid URI as defined by RFC + 3986 and may be relative or absolute. + This field is part of the `well_known` oneof. + See the documentation for `validate.StringRules` for more details. + type: + - boolean + - "null" + uuid: + description: |- + Uuid specifies that the field must be a valid UUID as defined by + RFC 4122 + This field is part of the `well_known` oneof. + See the documentation for `validate.StringRules` for more details. + type: + - boolean + - "null" + wellKnownRegex: + description: |- + WellKnownRegex specifies a common well known pattern defined as a regex. + This field is part of the `well_known` oneof. + See the documentation for `validate.StringRules` for more details. + enum: + - UNKNOWN + - HTTP_HEADER_NAME + - HTTP_HEADER_VALUE + type: + - string + - "null" + x-speakeasy-unknown-values: allow + title: String Rules + type: object + x-speakeasy-name-override: StringRules + validate.TimestampRules: + description: |- + TimestampRules describe the constraints applied exclusively to the + `google.protobuf.Timestamp` well-known type + properties: + const: + format: date-time + type: + - string + - "null" + gt: + format: date-time + type: + - string + - "null" + gtNow: + description: |- + GtNow specifies that this must be greater than the current time. GtNow + can only be used with the Within rule. + type: boolean + gte: + format: date-time + type: + - string + - "null" + lt: + format: date-time + type: + - string + - "null" + ltNow: + description: |- + LtNow specifies that this must be less than the current time. LtNow + can only be used with the Within rule. + type: boolean + lte: + format: date-time + type: + - string + - "null" + required: + description: Required specifies that this field must be set + type: boolean + within: + format: duration + type: + - string + - "null" + title: Timestamp Rules + type: object + x-speakeasy-name-override: TimestampRules + validate.UInt32Rules: + description: UInt32Rules describes the constraints applied to `uint32` values + properties: + const: + description: Const specifies that this field must be exactly the specified value + format: uint32 + type: integer + gt: + description: |- + Gt specifies that this field must be greater than the specified value, + exclusive. If the value of Gt is larger than a specified Lt or Lte, the + range is reversed. + format: uint32 + type: integer + gte: + description: |- + Gte specifies that this field must be greater than or equal to the + specified value, inclusive. If the value of Gte is larger than a + specified Lt or Lte, the range is reversed. + format: uint32 + type: integer + ignoreEmpty: + description: |- + IgnoreEmpty specifies that the validation rules of this field should be + evaluated only if the field is not empty + type: boolean + in: + description: |- + In specifies that this field must be equal to one of the specified + values + items: + format: uint32 + type: integer + type: + - array + - "null" + lt: + description: |- + Lt specifies that this field must be less than the specified value, + exclusive + format: uint32 + type: integer + lte: + description: |- + Lte specifies that this field must be less than or equal to the + specified value, inclusive + format: uint32 + type: integer + notIn: + description: |- + NotIn specifies that this field cannot be equal to one of the specified + values + items: + format: uint32 + type: integer + type: + - array + - "null" + title: U Int 32 Rules + type: object + x-speakeasy-name-override: UInt32Rules + validate.UInt64Rules: + description: UInt64Rules describes the constraints applied to `uint64` values + properties: + const: + description: Const specifies that this field must be exactly the specified value + format: uint64 + type: string + gt: + description: |- + Gt specifies that this field must be greater than the specified value, + exclusive. If the value of Gt is larger than a specified Lt or Lte, the + range is reversed. + format: uint64 + type: string + gte: + description: |- + Gte specifies that this field must be greater than or equal to the + specified value, inclusive. If the value of Gte is larger than a + specified Lt or Lte, the range is reversed. + format: uint64 + type: string + ignoreEmpty: + description: |- + IgnoreEmpty specifies that the validation rules of this field should be + evaluated only if the field is not empty + type: boolean + in: + description: |- + In specifies that this field must be equal to one of the specified + values + items: + format: uint64 + type: string + type: + - array + - "null" + lt: + description: |- + Lt specifies that this field must be less than the specified value, + exclusive + format: uint64 + type: string + lte: + description: |- + Lte specifies that this field must be less than or equal to the + specified value, inclusive + format: uint64 + type: string + notIn: + description: |- + NotIn specifies that this field cannot be equal to one of the specified + values + items: + format: uint64 + type: string + type: + - array + - "null" + title: U Int 64 Rules + type: object + x-speakeasy-name-override: UInt64Rules + securitySchemes: + bearerAuth: + scheme: bearer type: http oauth: description: |- - This API uses OAuth2 with the Client Credential flow. - Client Credentials must be sent in the BODY, not the headers. - For an example of how to implement this, refer to the [c1TokenSource.Token()](https://github.com/ConductorOne/conductorone-sdk-go/blob/3375fe7c0126d17e7ec4e711693dee7b791023aa/token_source.go#L101-L187) function. - flows: - clientCredentials: - scopes: {} - tokenUrl: /auth/v1/token - type: oauth2 -info: - description: The C1 API is a HTTP API for managing C1 resources. - title: C1 API - version: 0.1.0-alpha -openapi: 3.1.0 -paths: - /api/v1/a2ui/conversations/{conversation_id}/surfaces: + This API uses OAuth2 with the Client Credential flow. + Client Credentials must be sent in the BODY, not the headers. + For an example of how to implement this, refer to the [c1TokenSource.Token()](https://github.com/ConductorOne/conductorone-sdk-go/blob/3375fe7c0126d17e7ec4e711693dee7b791023aa/token_source.go#L101-L187) function. + flows: + clientCredentials: + scopes: {} + tokenUrl: /auth/v1/token + type: oauth2 +info: + description: The C1 API is a HTTP API for managing C1 resources. + title: C1 API + version: 0.1.0-alpha +openapi: 3.1.0 +paths: + /api/v1/a2ui/conversations/{conversation_id}/surfaces: + get: + description: ListSurfaces returns active surfaces for a conversation. + operationId: c1.api.a2ui.v1.A2UIService.ListSurfaces + parameters: + - in: path + name: conversation_id + required: true + schema: + description: The conversationId field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIServiceListSurfacesResponse' + description: A2UIServiceListSurfacesResponse returns active surfaces. + summary: List Surfaces + tags: + - A 2 UI + x-speakeasy-group: A2UI + x-speakeasy-name-override: ListSurfaces + /api/v1/a2ui/conversations/{conversation_id}/surfaces/{surface_id}/provenance: + get: + description: |- + GetSurfaceProvenance returns, in plain terms, what the surface's report + was built from: every record its program touched, in the order it touched + them. + operationId: c1.api.a2ui.v1.A2UIService.GetSurfaceProvenance + parameters: + - in: path + name: conversation_id + required: true + schema: + description: The conversationId field. + type: string + - in: path + name: surface_id + required: true + schema: + description: The surfaceId field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIServiceGetSurfaceProvenanceResponse' + description: |- + A2UIServiceGetSurfaceProvenanceResponse returns what a surface was built + from: the steps its program ran, and the sources its components report. + summary: Get Surface Provenance + tags: + - A 2 UI + x-speakeasy-group: A2UI + x-speakeasy-name-override: GetSurfaceProvenance + /api/v1/a2ui/surfaces/{surface_id}/actions: + post: + description: SubmitAction handles user actions on A2UI surfaces. + operationId: c1.api.a2ui.v1.A2UIService.SubmitAction + parameters: + - in: path + name: surface_id + required: true + schema: + description: The surfaceId field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIServiceSubmitActionRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIServiceSubmitActionResponse' + description: A2UIServiceSubmitActionResponse returns the result of an action. + summary: Submit Action + tags: + - A 2 UI + x-speakeasy-group: A2UI + x-speakeasy-name-override: SubmitAction + /api/v1/a2ui/surfaces/{surface_id}/feedback: + get: + description: ListSurfaceFeedback lists feedback for a surface. + operationId: c1.api.a2ui.v1.A2UIService.ListSurfaceFeedback + parameters: + - in: path + name: surface_id + required: true + schema: + description: The surfaceId field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIServiceListSurfaceFeedbackResponse' + description: A2UIServiceListSurfaceFeedbackResponse returns feedback for a surface. + summary: List Surface Feedback + tags: + - A 2 UI + x-speakeasy-group: A2UI + x-speakeasy-name-override: ListSurfaceFeedback + post: + description: CreateSurfaceFeedback submits feedback for a surface with a snapshot. + operationId: c1.api.a2ui.v1.A2UIService.CreateSurfaceFeedback + parameters: + - in: path + name: surface_id + required: true + schema: + description: The surfaceId field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIServiceCreateSurfaceFeedbackRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIServiceCreateSurfaceFeedbackResponse' + description: A2UIServiceCreateSurfaceFeedbackResponse returns the created feedback. + summary: Create Surface Feedback + tags: + - A 2 UI + x-speakeasy-group: A2UI + x-speakeasy-name-override: CreateSurfaceFeedback + /api/v1/access_review: + post: + description: Create creates a new access review campaign with the specified name, policy, and owners. + operationId: c1.api.accessreview.v1.AccessReviewService.Create + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewServiceCreateRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewServiceCreateResponse' + description: Successful response + summary: Create + tags: + - Access Review + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Access Review#create + x-speakeasy-group: AccessReview + x-speakeasy-name-override: Create + x-stability-level: draft + /api/v1/access_review/{access_review_id}/report: + get: + description: |- + List the generated reports for an access review campaign, each with a + time-limited download_url and its output format. + operationId: c1.api.accessreview.v1.AccessReviewReportService.List + parameters: + - in: path + name: access_review_id + required: true + schema: + description: The accessReviewId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewReportServiceListResponse' + description: Successful response + summary: List + tags: + - Access Review + x-speakeasy-group: AccessReviewReport + x-speakeasy-name-override: List + x-stability-level: draft + post: + description: |- + Generate a report of the campaign's reviews and decisions. The format + defaults to JSON (also available: CSV, XLSX). Works on in-flight (OPEN) + and closed campaigns. Asynchronous — the report record is created + immediately; the file is materialized in the background. + operationId: c1.api.accessreview.v1.AccessReviewActionsService.GenerateReport + parameters: + - in: path + name: access_review_id + required: true + schema: + description: The accessReviewId field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewActionsServiceGenerateReportRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewActionsServiceGenerateReportResponse' + description: Successful response + summary: Generate Report + tags: + - Access Review + x-speakeasy-group: AccessReviewActions + x-speakeasy-name-override: GenerateReport + x-stability-level: draft + /api/v1/access_review/{access_review_id}/scope_and_entitlements: + get: + description: GetCampaignScopeAndEntitlements retrieves the current scope configuration and selected entitlements for an access review campaign. + operationId: c1.api.accessreview.v1.AccessReviewSetupEntitlementService.GetCampaignScopeAndEntitlements + parameters: + - in: path + name: access_review_id + required: true + schema: + description: The ID of the access review campaign to retrieve scope and entitlements for. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewSetupEntitlementAndScopeServiceSetResponse' + description: Successful response + summary: Get Campaign Scope And Entitlements + tags: + - Access Review + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: Access Review Setup#read + terraform-resource: Access Review Setup#read + x-speakeasy-group: AccessReviewSetupEntitlement + x-speakeasy-name-override: GetCampaignScopeAndEntitlements + x-stability-level: stable + post: + description: SetCampaignScopeAndEntitlements replaces the scope configuration and selected entitlements for an access review campaign. + operationId: c1.api.accessreview.v1.AccessReviewSetupEntitlementService.SetCampaignScopeAndEntitlements + parameters: + - in: path + name: access_review_id + required: true + schema: + description: The ID of the access review campaign to configure. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewSetupEntitlementAndScopeServiceSetRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewSetupEntitlementAndScopeServiceSetResponse' + description: Successful response + summary: Set Campaign Scope And Entitlements + tags: + - Access Review + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: + - Access Review Setup#create + - Access Review Setup#update + x-speakeasy-group: AccessReviewSetupEntitlement + x-speakeasy-name-override: SetCampaignScopeAndEntitlements + x-stability-level: stable + /api/v1/access_review/{access_review_id}/scope_by_resource_type: + post: + description: SetCampaignScopeByResourceType sets the campaign scope by selecting specific resource types to include in the review. + operationId: c1.api.accessreview.v1.AccessReviewSetupEntitlementService.SetCampaignScopeByResourceType + parameters: + - in: path + name: access_review_id + required: true + schema: + description: The ID of the access review campaign to configure. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewSetScopeByResourceTypeRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewSetScopeByResourceTypeResponse' + description: Successful response + summary: Set Campaign Scope By Resource Type + tags: + - Access Review + x-speakeasy-group: AccessReviewSetupEntitlement + x-speakeasy-name-override: SetCampaignScopeByResourceType + x-stability-level: draft + /api/v1/access_review/{id}: + delete: + description: Delete transitions an access review campaign to the deleted state, along with its dependent objects. + operationId: c1.api.accessreview.v1.AccessReviewService.Delete + parameters: + - in: path + name: id + required: true + schema: + description: The ID of the access review campaign to delete. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewServiceDeleteRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewServiceDeleteResponse' + description: Successful response + summary: Delete + tags: + - Access Review + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Access Review#delete + x-speakeasy-group: AccessReview + x-speakeasy-name-override: Delete + x-stability-level: draft + get: + description: Get retrieves a single access review campaign by ID. + operationId: c1.api.accessreview.v1.AccessReviewService.Get + parameters: + - in: path + name: id + required: true + schema: + description: The ID of the access review campaign to retrieve. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewServiceGetResponse' + description: Successful response + summary: Get + tags: + - Access Review + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: Access Review#read + terraform-resource: Access Review#read + x-speakeasy-group: AccessReview + x-speakeasy-name-override: Get + x-stability-level: draft + post: + description: Update modifies an existing access review campaign. Use the update_mask to specify which fields to change. + operationId: c1.api.accessreview.v1.AccessReviewService.Update + parameters: + - in: path + name: id + required: true + schema: + description: The unique identifier of this access review campaign. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewServiceUpdateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewServiceUpdateResponse' + description: Successful response + summary: Update + tags: + - Access Review + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Access Review#update + x-speakeasy-group: AccessReview + x-speakeasy-name-override: Update + x-stability-level: draft + /api/v1/access_review_template: + post: + description: Create creates a new access review template that defines a reusable configuration for launching campaigns. + operationId: c1.api.accessreview.v1.AccessReviewTemplateService.Create + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateServiceCreateRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateServiceCreateResponse' + description: Successful response + summary: Create + tags: + - Access Review Template + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Access Review Template#create + x-speakeasy-group: AccessReviewTemplate + x-speakeasy-name-override: Create + x-stability-level: draft + /api/v1/access_review_template/{access_review_template_id}/scope_and_entitlements: + get: + description: GetScopeAndEntitlements retrieves the current scope configuration and selected entitlements for an access review template. + operationId: c1.api.accessreview.v1.AccessReviewTemplateSetupEntitlementService.GetScopeAndEntitlements + parameters: + - in: path + name: access_review_template_id + required: true + schema: + description: The ID of the access review template to retrieve scope and entitlements for. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateSetupEntitlementServiceSetResponse' + description: Successful response + summary: Get Scope And Entitlements + tags: + - Access Review Templates + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: Access Review Template Setup#read + terraform-resource: Access Review Template Setup#read + x-speakeasy-group: AccessReviewTemplateSetupEntitlement + x-speakeasy-name-override: GetScopeAndEntitlements + x-stability-level: stable + post: + description: SetScopeAndEntitlements replaces the scope configuration and selected entitlements for an access review template. + operationId: c1.api.accessreview.v1.AccessReviewTemplateSetupEntitlementService.SetScopeAndEntitlements + parameters: + - in: path + name: access_review_template_id + required: true + schema: + description: The ID of the access review template to configure. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateSetupEntitlementServiceSetRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateSetupEntitlementServiceSetResponse' + description: Successful response + summary: Set Scope And Entitlements + tags: + - Access Review Templates + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: + - Access Review Template Setup#create + - Access Review Template Setup#update + x-speakeasy-group: AccessReviewTemplateSetupEntitlement + x-speakeasy-name-override: SetScopeAndEntitlements + x-stability-level: stable + /api/v1/access_review_template/{access_review_template_id}/scope_by_resource_type: + post: + description: SetScopeByResourceType sets the template scope by selecting specific resource types to include in campaigns created from this template. + operationId: c1.api.accessreview.v1.AccessReviewTemplateSetupEntitlementService.SetScopeByResourceType + parameters: + - in: path + name: access_review_template_id + required: true + schema: + description: The ID of the access review template to configure. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateSetScopeByResourceTypeRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateSetScopeByResourceTypeResponse' + description: Successful response + summary: Set Scope By Resource Type + tags: + - Access Review Templates + x-speakeasy-group: AccessReviewTemplateSetupEntitlement + x-speakeasy-name-override: SetScopeByResourceType + x-stability-level: draft + /api/v1/access_review_template/{id}: + delete: + description: Delete an access review template. The template can no longer be used to create campaigns. + operationId: c1.api.accessreview.v1.AccessReviewTemplateService.Delete + parameters: + - in: path + name: id + required: true + schema: + description: The ID of the access review template to delete. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateServiceDeleteRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateServiceDeleteResponse' + description: Successful response + summary: Delete + tags: + - Access Review Template + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Access Review Template#delete + x-speakeasy-group: AccessReviewTemplate + x-speakeasy-name-override: Delete + x-stability-level: draft + get: + description: Get retrieves a single access review template by ID. + operationId: c1.api.accessreview.v1.AccessReviewTemplateService.Get + parameters: + - in: path + name: id + required: true + schema: + description: The ID of the access review template to retrieve. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateServiceGetResponse' + description: Successful response + summary: Get + tags: + - Access Review Template + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: Access Review Template#read + terraform-resource: Access Review Template#read + x-speakeasy-group: AccessReviewTemplate + x-speakeasy-name-override: Get + x-stability-level: draft + post: + description: Update modifies an existing access review template. Use the update_mask to specify which fields to change. + operationId: c1.api.accessreview.v1.AccessReviewTemplateService.Update + parameters: + - in: path + name: id + required: true + schema: + description: The unique identifier of this template. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateServiceUpdateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateServiceUpdateResponse' + description: Successful response + summary: Update + tags: + - Access Review Template + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Access Review Template#update + x-speakeasy-group: AccessReviewTemplate + x-speakeasy-name-override: Update + x-stability-level: draft + /api/v1/access_reviews: + get: + description: List returns a paginated list of access review campaigns. + operationId: c1.api.accessreview.v1.AccessReviewService.List + parameters: + - in: query + name: page_size + schema: + description: The maximum number of results to return per page. Maximum 100. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Pagination token from a previous List response to fetch the next page. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewServiceListResponse' + description: Successful response + summary: List + tags: + - Access Review + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: Access Reviews#read + terraform-resource: Access Reviews#read + x-speakeasy-group: AccessReview + x-speakeasy-name-override: List + x-stability-level: draft + /api/v1/accessconflict: + post: + description: Create a new conflict monitor for defining a Separation of Duty rule. Entitlement sets are bound separately via AppEntitlementMonitorBindingService. + operationId: c1.api.accessconflict.v1.AccessConflictService.CreateMonitor + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessconflict.v1.ConflictMonitorCreateRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessconflict.v1.ConflictMonitor' + description: |- + A conflict monitor defines a Separation of Duty rule between two entitlement sets. + It detects when any user holds entitlements from both set A and set B simultaneously. + summary: Create Monitor + tags: + - Access Conflict + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Access_Conflict#create + x-speakeasy-group: AccessConflict + x-speakeasy-name-override: CreateMonitor + /api/v1/accessconflict/{id}: + delete: + description: Delete a conflict monitor and its associated entitlement set bindings. + operationId: c1.api.accessconflict.v1.AccessConflictService.DeleteMonitor + parameters: + - in: path + name: id + required: true + schema: + description: The unique identifier of the conflict monitor to delete. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessconflict.v1.ConflictMonitorDeleteRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessconflict.v1.ConflictMonitorDeleteResponse' + description: The response message for deleting a conflict monitor. + summary: Delete Monitor + tags: + - Access Conflict + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Access_Conflict#delete + x-speakeasy-group: AccessConflict + x-speakeasy-name-override: DeleteMonitor + get: + description: Retrieve a single conflict monitor by ID. + operationId: c1.api.accessconflict.v1.AccessConflictService.GetMonitor + parameters: + - in: path + name: id + required: true + schema: + description: The unique identifier of the conflict monitor to retrieve. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessconflict.v1.ConflictMonitor' + description: |- + A conflict monitor defines a Separation of Duty rule between two entitlement sets. + It detects when any user holds entitlements from both set A and set B simultaneously. + summary: Get Monitor + tags: + - Access Conflict + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: null + terraform-resource: Access_Conflict#read + x-speakeasy-group: AccessConflict + x-speakeasy-name-override: GetMonitor + post: + description: Update the display name, description, or notification settings of a conflict monitor. + operationId: c1.api.accessconflict.v1.AccessConflictService.UpdateMonitor + parameters: + - in: path + name: id + required: true + schema: + description: The unique identifier of the conflict monitor to update. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessconflict.v1.ConflictMonitorUpdateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessconflict.v1.ConflictMonitor' + description: |- + A conflict monitor defines a Separation of Duty rule between two entitlement sets. + It detects when any user holds entitlements from both set A and set B simultaneously. + summary: Update Monitor + tags: + - Access Conflict + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Access_Conflict#update + x-speakeasy-group: AccessConflict + x-speakeasy-name-override: UpdateMonitor + /api/v1/app_users/owned_service_accounts: + post: + description: |- + ListOwnedServiceAccounts returns the service accounts owned by the calling + user. The owner is the authenticated caller; it is not accepted as an input. + operationId: c1.api.app.v1.AppUserService.ListOwnedServiceAccounts + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ListOwnedServiceAccountsRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ListOwnedServiceAccountsResponse' + description: Successful response + summary: List Owned Service Accounts + tags: + - AppUsers + x-speakeasy-group: AppUser + x-speakeasy-name-override: ListOwnedServiceAccounts + x-stability-level: draft + /api/v1/appentitlementmonitorbinding: + delete: + description: Remove an app entitlement from a conflict monitor's entitlement set. + operationId: c1.api.accessconflict.v1.AppEntitlementMonitorBindingService.DeleteAppEntitlementMonitorBinding + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessconflict.v1.DeleteAppEntitlementMonitorBindingRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessconflict.v1.DeleteAppEntitlementMonitorBindingResponse' + description: The response message for deleting an app entitlement monitor binding. + summary: Delete App Entitlement Monitor Binding + tags: + - App Entitlement Monitor Binding + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App_Entitlement_Monitor_Binding#delete + x-speakeasy-group: AppEntitlementMonitorBinding + x-speakeasy-name-override: DeleteAppEntitlementMonitorBinding + post: + description: Bind an app entitlement to one side (A or B) of a conflict monitor. + operationId: c1.api.accessconflict.v1.AppEntitlementMonitorBindingService.CreateAppEntitlementMonitorBinding + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessconflict.v1.CreateAppEntitlementMonitorBindingRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessconflict.v1.AppEntitlementMonitorBinding' + description: Represents the association of an app entitlement with one side (A or B) of a conflict monitor. + summary: Create App Entitlement Monitor Binding + tags: + - App Entitlement Monitor Binding + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App_Entitlement_Monitor_Binding#create + x-speakeasy-group: AppEntitlementMonitorBinding + x-speakeasy-name-override: CreateAppEntitlementMonitorBinding + /api/v1/appentitlementmonitorbinding/get: + post: + description: Retrieve a single binding that associates an app entitlement with one side of a conflict monitor. + operationId: c1.api.accessconflict.v1.AppEntitlementMonitorBindingService.GetAppEntitlementMonitorBinding + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessconflict.v1.GetAppEntitlementMonitorBindingRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.accessconflict.v1.AppEntitlementMonitorBinding' + description: Represents the association of an app entitlement with one side (A or B) of a conflict monitor. + summary: Get App Entitlement Monitor Binding + tags: + - App Entitlement Monitor Binding + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: App_Entitlement_Monitor_Binding#read + terraform-resource: App_Entitlement_Monitor_Binding#read + x-speakeasy-group: AppEntitlementMonitorBinding + x-speakeasy-name-override: GetAppEntitlementMonitorBinding + /api/v1/apps: + get: + description: List all apps. + operationId: c1.api.app.v1.Apps.List + parameters: + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ListAppsResponse' + description: The ListAppsResponse message contains a list of results and a nextPageToken if applicable. + summary: List + tags: + - App + x-speakeasy-group: Apps + x-speakeasy-name-override: List + post: + description: Create a new manual app without a connector. + operationId: c1.api.app.v1.Apps.Create + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.CreateAppRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.CreateAppResponse' + description: CreateAppResponse contains the newly created application. + summary: Create + tags: + - App + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App#create + x-speakeasy-group: Apps + x-speakeasy-name-override: Create + /api/v1/apps/{app_id}/access_request_defaults: + get: + description: Retrieve the current access request default settings for an app. + operationId: c1.api.app.v1.AppAccessRequestsDefaultsService.GetAppAccessRequestsDefaults + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app to retrieve access request defaults for. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppAccessRequestDefaults' + description: Successful response + summary: Get App Access Requests Defaults + tags: + - AppAccessRequestDefaults + x-speakeasy-group: AppAccessRequestsDefaults + x-speakeasy-name-override: GetAppAccessRequestsDefaults + post: + description: Create or replace the access request default settings for an app. + operationId: c1.api.app.v1.AppAccessRequestsDefaultsService.CreateAppAccessRequestsDefaults + parameters: + - in: path + name: app_id + required: true + schema: + description: The app id for the app access request rule + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppAccessRequestDefaultsInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppAccessRequestDefaults' + description: Successful response + summary: Create App Access Requests Defaults + tags: + - AppAccessRequestDefaults + x-speakeasy-group: AppAccessRequestsDefaults + x-speakeasy-name-override: CreateAppAccessRequestsDefaults + /api/v1/apps/{app_id}/access_request_defaults/cancel: + post: + description: Cancel an in-progress apply operation for the app's access request defaults. + operationId: c1.api.app.v1.AppAccessRequestsDefaultsService.CancelAppAccessRequestsDefaults + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app whose access request defaults apply operation should be cancelled. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.CancelAccessRequestDefaultsRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppAccessRequestDefaults' + description: Successful response + summary: Cancel App Access Requests Defaults + tags: + - AppAccessRequestDefaults + x-speakeasy-group: AppAccessRequestsDefaults + x-speakeasy-name-override: CancelAppAccessRequestsDefaults + /api/v1/apps/{app_id}/app_users: + get: + description: List app user accounts within a specific app, with pagination support. + operationId: c1.api.app.v1.AppUserService.List + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app to list users for. + type: string + - in: query + name: page_size + schema: + description: The maximum number of results to return per page. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The token for fetching the next page of results. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppUserServiceListResponse' + description: The response message for listing app users. + summary: List + tags: + - AppUsers + x-speakeasy-group: AppUser + x-speakeasy-name-override: List + /api/v1/apps/{app_id}/app_users/{app_user_id}/credentials: + get: + description: List credentials associated with a specific app user account. + operationId: c1.api.app.v1.AppUserService.ListAppUserCredentials + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that the user belongs to. + type: string + - in: path + name: app_user_id + required: true + schema: + description: The ID of the app user whose credentials to list. + type: string + - in: query + name: page_size + schema: + description: The maximum number of results to return per page. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The token for fetching the next page of results. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppUserServiceListCredentialsResponse' + description: The response message for listing credentials of an app user. + summary: List App User Credentials + tags: + - AppUsers + x-speakeasy-group: AppUser + x-speakeasy-name-override: ListAppUserCredentials + /api/v1/apps/{app_id}/connectors: + get: + description: List connectors for an app. + operationId: c1.api.app.v1.ConnectorService.List + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceListResponse' + description: The ConnectorServiceListResponse message contains a list of results and a nextPageToken if applicable + summary: List + tags: + - Connector + x-speakeasy-group: Connector + x-speakeasy-name-override: List + post: + description: Create a connector that is pending a connector config. + operationId: c1.api.app.v1.ConnectorService.CreateDelegated + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId of the app the connector is attached to. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceCreateDelegatedRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceCreateResponse' + description: The ConnectorServiceCreateResponse is the response returned from creating a connector. + summary: Create Delegated + tags: + - Connector + x-speakeasy-group: Connector + x-speakeasy-name-override: CreateDelegated + /api/v1/apps/{app_id}/connectors/{connector_id}/confirm_sync_valid/{sync_lifecycle_id}: + post: + description: Confirm that a sync which errored due to a data drop is valid, overriding the error and triggering a new sync. Only applicable when the sync status is ERRORED_NO_DATA. + operationId: c1.api.app.v1.ConnectorService.ConfirmSyncValid + parameters: + - in: path + name: app_id + required: true + schema: + description: The AppID of the app the connector is attached to. + type: string + - in: path + name: connector_id + required: true + schema: + description: The ConnectorID of the connector that we are confirming the sync for. + type: string + - in: path + name: sync_lifecycle_id + required: true + schema: + description: The completed lifecycle id of the most recent sync we want to validate + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConfirmSyncValidRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConfirmSyncValidResponse' + description: Empty response body. Status code indicates success. + summary: Confirm Sync Valid + tags: + - Connector + x-speakeasy-group: Connector + x-speakeasy-name-override: ConfirmSyncValid + /api/v1/apps/{app_id}/connectors/{connector_id}/credentials/{id}: + get: + description: Get credentials for a connector. + operationId: c1.api.app.v1.ConnectorService.GetCredentials + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId of the app the connector is attached to. + type: string + - in: path + name: connector_id + required: true + schema: + description: The connectorId of the connector that we are getting the credentials for. + type: string + - in: path + name: id + required: true + schema: + description: The id of the ConnectorCredential. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceGetCredentialsResponse' + description: ConnectorServiceGetCredentialsResponse is the response returned by the get method. + summary: Get Credentials + tags: + - Connector + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: ConnectorCredential#read + terraform-resource: ConnectorCredential#read + x-speakeasy-group: Connector + x-speakeasy-name-override: GetCredentials + post: + description: Revoke credentials for a connector. + operationId: c1.api.app.v1.ConnectorService.RevokeCredential + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId of the app the connector is attached to. + type: string + - in: path + name: connector_id + required: true + schema: + description: The connectorId of the connector that we are revoking the credentials for. + type: string + - in: path + name: id + required: true + schema: + description: The id of the ConnectorCredential. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceRevokeCredentialRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceRevokeCredentialResponse' + description: Empty response body. Status code indicates success. + summary: Revoke Credential + tags: + - Connector + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: ConnectorCredential#delete + x-speakeasy-group: Connector + x-speakeasy-name-override: RevokeCredential + /api/v1/apps/{app_id}/connectors/{connector_id}/force_sync: + post: + description: |- + Trigger an immediate sync for a connector. The sync is queued and may not start + instantly. Poll the connector's sync_status (or GetConnector) for progress; an empty + success response means the sync was accepted onto the queue, not that it has finished. + operationId: c1.api.app.v1.ConnectorService.ForceSync + parameters: + - in: path + name: app_id + required: true + schema: + description: The AppID of the app the connector is attached to. + type: string + - in: path + name: connector_id + required: true + schema: + description: The ConnectorID of the connector that we are forcing to sync. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ForceSyncRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ForceSyncResponse' + description: |- + Empty response body. Status code indicates success. Poll the connector sync status + for progress after ForceSync accepts the request. + summary: Force Sync + tags: + - Connector + x-speakeasy-group: Connector + x-speakeasy-name-override: ForceSync + /api/v1/apps/{app_id}/connectors/{connector_id}/mcp_resources: + get: + description: |- + List returns the MCP resources discovered for a single (app_id, + connector_id), paginated. To filter by kind or state, use Search. + operationId: c1.api.ai_governance.v1.MCPResourceService.List + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier (required). + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector ID (required). + type: string + - in: query + name: page_size + schema: + description: Page size (max 100). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPResourceServiceListResponse' + description: MCPResourceServiceListResponse returns a list of MCP resources. + summary: List + tags: + - MCP Resources + x-speakeasy-group: MCPResource + x-speakeasy-name-override: List + /api/v1/apps/{app_id}/connectors/{connector_id}/mcp_resources/{id}: + get: + description: |- + Get retrieves a single discovered MCP resource by app_id + connector_id + + id, including its approval state, kind, URI or URI template, and bound + app_entitlement_id. + operationId: c1.api.ai_governance.v1.MCPResourceService.Get + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector identifier. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the MCP resource. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPResourceServiceGetResponse' + description: MCPResourceServiceGetResponse returns a single MCP resource. + summary: Get + tags: + - MCP Resources + x-speakeasy-group: MCPResource + x-speakeasy-name-override: Get + post: + description: |- + Update modifies a resource's lifecycle state via update_mask. Set + resource.state = MCP_RESOURCE_STATE_APPROVED with update_mask "state" to + move it out of PENDING_REVIEW (or DISABLED to block it). Resource metadata + is discovery-owned and read-only. resource must include id, app_id, and + connector_id. + operationId: c1.api.ai_governance.v1.MCPResourceService.Update + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier (app that owns the connector). + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector identifier. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for this MCP resource record. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPResourceServiceUpdateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPResourceServiceUpdateResponse' + description: MCPResourceServiceUpdateResponse returns the updated MCP resource. + summary: Update + tags: + - MCP Resources + x-speakeasy-group: MCPResource + x-speakeasy-name-override: Update + /api/v1/apps/{app_id}/connectors/{connector_id}/mcp_resources/{id}/history: + get: + description: |- + ListHistory returns the change history (newest first) for a single MCP + resource — each entry is a snapshot plus who/when metadata. + operationId: c1.api.ai_governance.v1.MCPResourceService.ListHistory + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector identifier. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the MCP resource. + type: string + - in: query + name: page_size + schema: + description: Page size (max 200). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPResourceServiceListHistoryResponse' + description: MCPResourceServiceListHistoryResponse returns MCP resource history entries. + summary: List History + tags: + - MCP Resources + x-speakeasy-group: MCPResource + x-speakeasy-name-override: ListHistory + /api/v1/apps/{app_id}/connectors/{connector_id}/mcp_resources/search: + post: + description: |- + Search returns a connector's MCP resources filtered by kind, state, or + text query. Filter on MCP_RESOURCE_STATE_PENDING_REVIEW to find resources + awaiting approval, then approve them with Update. + operationId: c1.api.ai_governance.v1.MCPResourceService.Search + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier (required). + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector ID (required). + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPResourceServiceSearchRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPResourceServiceSearchResponse' + description: MCPResourceServiceSearchResponse returns matching MCP resources. + summary: Search + tags: + - MCP Resources + x-speakeasy-group: MCPResource + x-speakeasy-name-override: Search + /api/v1/apps/{app_id}/connectors/{connector_id}/mcp_tools: + get: + description: |- + List returns the MCP tools discovered for a single (app_id, connector_id), + paginated. To filter by state, classification, or visibility, use Search. + operationId: c1.api.ai_governance.v1.MCPToolService.List + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier (required). + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector ID (required). + type: string + - in: query + name: page_size + schema: + description: Page size (max 100). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPToolServiceListResponse' + description: MCPToolServiceListResponse returns a list of MCP tools. + summary: List + tags: + - MCP Tools + x-speakeasy-group: MCPTool + x-speakeasy-name-override: List + /api/v1/apps/{app_id}/connectors/{connector_id}/mcp_tools/{id}: + delete: + description: |- + Delete soft-deletes an MCP tool. It reappears as PENDING_REVIEW if the + connector rediscovers it on the next sync. + operationId: c1.api.ai_governance.v1.MCPToolService.Delete + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector identifier. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the MCP tool. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPToolServiceDeleteRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPToolServiceDeleteResponse' + description: MCPToolServiceDeleteResponse confirms deletion. + summary: Delete + tags: + - MCP Tools + x-speakeasy-group: MCPTool + x-speakeasy-name-override: Delete + get: + description: |- + Get retrieves a single discovered MCP tool by app_id + connector_id + id, + including its approval state, classification, visibility, input schema, and + bound app_entitlement_id. + operationId: c1.api.ai_governance.v1.MCPToolService.Get + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector identifier. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the MCP tool. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPToolServiceGetResponse' + description: MCPToolServiceGetResponse returns a single MCP tool. + summary: Get + tags: + - MCP Tools + x-speakeasy-group: MCPTool + x-speakeasy-name-override: Get + post: + description: |- + Update modifies an MCP tool's admin-editable fields via update_mask. This + is how a tool is approved: set tool.state = MCP_TOOL_STATE_APPROVED with + update_mask "state" to move it out of PENDING_REVIEW (or DISABLED to block + it). Editable paths: display_name, description, classification, state, + allowed_client_types, visibility. tool must include id, app_id, connector_id. + operationId: c1.api.ai_governance.v1.MCPToolService.Update + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier (app that owns the connector). + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector identifier. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for this MCP tool record. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPToolServiceUpdateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPToolServiceUpdateResponse' + description: MCPToolServiceUpdateResponse returns the updated MCP tool. + summary: Update + tags: + - MCP Tools + x-speakeasy-group: MCPTool + x-speakeasy-name-override: Update + /api/v1/apps/{app_id}/connectors/{connector_id}/mcp_tools/{id}/history: + get: + description: |- + ListHistory returns the change history (newest first) for a single MCP + tool — each entry is a snapshot plus who/when metadata. + operationId: c1.api.ai_governance.v1.MCPToolService.ListHistory + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector identifier. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the MCP tool. + type: string + - in: query + name: page_size + schema: + description: Page size (max 200). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPToolServiceListHistoryResponse' + description: MCPToolServiceListHistoryResponse returns MCP tool history entries. + summary: List History + tags: + - MCP Tools + x-speakeasy-group: MCPTool + x-speakeasy-name-override: ListHistory + /api/v1/apps/{app_id}/connectors/{connector_id}/mcp_tools/search: + post: + description: |- + Search returns a connector's MCP tools filtered by state, classification, + visibility, access-profile binding, or text query. Filter on + MCP_TOOL_STATE_PENDING_REVIEW to find tools awaiting approval, then approve + them with Update. + operationId: c1.api.ai_governance.v1.MCPToolService.Search + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier (required). + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector ID (required). + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPToolServiceSearchRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPToolServiceSearchResponse' + description: MCPToolServiceSearchResponse returns matching MCP tools. + summary: Search + tags: + - MCP Tools + x-speakeasy-group: MCPTool + x-speakeasy-name-override: Search + /api/v1/apps/{app_id}/connectors/{connector_id}/mcp_toolsets: + get: + description: |- + List returns the MCP toolsets (access profiles) defined for a single + (app_id, connector_id), paginated. + operationId: c1.api.ai_governance.v1.MCPAccessProfileService.List + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier (required). + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector ID (required). + type: string + - in: query + name: page_size + schema: + description: Page size (max 100). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileServiceListResponse' + description: MCPAccessProfileServiceListResponse returns a list of MCP access profiles. + summary: List + tags: + - MCP Toolsets + x-speakeasy-group: MCPAccessProfile + x-speakeasy-name-override: List + post: + description: |- + Create creates a new MCP toolset (access profile) under a connector. The + backend also provisions a backing AppEntitlement that users request in + order to be granted the toolset's tools. + operationId: c1.api.ai_governance.v1.MCPAccessProfileService.Create + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector identifier. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileServiceCreateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileServiceCreateResponse' + description: MCPAccessProfileServiceCreateResponse returns the created MCP access profile. + summary: Create + tags: + - MCP Toolsets + x-speakeasy-group: MCPAccessProfile + x-speakeasy-name-override: Create + /api/v1/apps/{app_id}/connectors/{connector_id}/mcp_toolsets/{access_profile_id}/tool_bindings: + get: + description: |- + List returns the tool bindings for a single toolset (access profile) — + i.e. which MCP tools belong to the toolset — paginated. + operationId: c1.api.ai_governance.v1.MCPAccessProfileToolBindingService.List + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector identifier. + type: string + - in: path + name: access_profile_id + required: true + schema: + description: Access profile identifier. + type: string + - in: query + name: page_size + schema: + description: Page size (max 100). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileToolBindingServiceListResponse' + description: MCPAccessProfileToolBindingServiceListResponse returns tool bindings. + summary: List + tags: + - MCP Toolsets + x-speakeasy-group: MCPAccessProfileToolBinding + x-speakeasy-name-override: List + post: + description: CreateBindings adds one or more MCP tools (mcp_tool_ids) to a toolset. + operationId: c1.api.ai_governance.v1.MCPAccessProfileToolBindingService.CreateBindings + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector identifier. + type: string + - in: path + name: access_profile_id + required: true + schema: + description: Access profile identifier. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileToolBindingServiceCreateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileToolBindingServiceCreateResponse' + description: MCPAccessProfileToolBindingServiceCreateResponse returns created bindings. + summary: Create Bindings + tags: + - MCP Toolsets + x-speakeasy-group: MCPAccessProfileToolBinding + x-speakeasy-name-override: CreateBindings + /api/v1/apps/{app_id}/connectors/{connector_id}/mcp_toolsets/{access_profile_id}/tool_bindings/delete: + post: + description: |- + DeleteBindings removes one or more MCP tools (mcp_tool_ids) from a toolset. + Uses a POST .../delete action route because the tool IDs travel in the + request body, which HTTP DELETE does not reliably support. + operationId: c1.api.ai_governance.v1.MCPAccessProfileToolBindingService.DeleteBindings + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector identifier. + type: string + - in: path + name: access_profile_id + required: true + schema: + description: Access profile identifier. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileToolBindingServiceDeleteRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileToolBindingServiceDeleteResponse' + description: MCPAccessProfileToolBindingServiceDeleteResponse confirms deletion. + summary: Delete Bindings + tags: + - MCP Toolsets + x-speakeasy-group: MCPAccessProfileToolBinding + x-speakeasy-name-override: DeleteBindings + /api/v1/apps/{app_id}/connectors/{connector_id}/mcp_toolsets/{access_profile_id}/tool_bindings/history: + get: + description: |- + ListToolsByProfileHistory returns the transactional history of + tools bound to (app, connector, access_profile). Newest first. + operationId: c1.api.ai_governance.v1.MCPAccessProfileToolBindingService.ListToolsByProfileHistory + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector identifier. + type: string + - in: path + name: access_profile_id + required: true + schema: + description: Toolset (access profile) identifier. + type: string + - in: query + name: page_size + schema: + description: Page size (max 200). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileToolBindingServiceListToolsByProfileHistoryResponse' + description: |- + Contains a page of change-history entries for the tools bound to one toolset + sorted newest first. + summary: List Tools By Profile History + tags: + - MCP Toolsets + x-speakeasy-group: MCPAccessProfileToolBinding + x-speakeasy-name-override: ListToolsByProfileHistory + /api/v1/apps/{app_id}/connectors/{connector_id}/mcp_toolsets/{id}: + delete: + description: |- + Delete soft-deletes a toolset (access profile) and cascades to its tool + bindings and backing entitlement. + operationId: c1.api.ai_governance.v1.MCPAccessProfileService.Delete + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector identifier. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the MCP access profile. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileServiceDeleteRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileServiceDeleteResponse' + description: MCPAccessProfileServiceDeleteResponse confirms deletion. + summary: Delete + tags: + - MCP Toolsets + x-speakeasy-group: MCPAccessProfile + x-speakeasy-name-override: Delete + get: + description: |- + Get retrieves a single MCP toolset (access profile) by app_id + + connector_id + id, including its display name, description, linked + app_entitlement_id, and bound tool count. + operationId: c1.api.ai_governance.v1.MCPAccessProfileService.Get + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector identifier. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the MCP access profile. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileServiceGetResponse' + description: MCPAccessProfileServiceGetResponse returns a single MCP access profile. + summary: Get + tags: + - MCP Toolsets + x-speakeasy-group: MCPAccessProfile + x-speakeasy-name-override: Get + post: + description: |- + Update modifies a toolset's admin-editable fields via update_mask. + Editable paths: display_name, description. profile must include id, + app_id, and connector_id. + operationId: c1.api.ai_governance.v1.MCPAccessProfileService.Update + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier (app that owns the connector). + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector identifier. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for this access profile. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileServiceUpdateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileServiceUpdateResponse' + description: MCPAccessProfileServiceUpdateResponse returns the updated MCP access profile. + summary: Update + tags: + - MCP Toolsets + x-speakeasy-group: MCPAccessProfile + x-speakeasy-name-override: Update + /api/v1/apps/{app_id}/connectors/{connector_id}/pause: + post: + description: Pause syncing and provisioning for a connector. No new syncs or grant/revoke operations will run until the connector is resumed. + operationId: c1.api.app.v1.ConnectorService.PauseSync + parameters: + - in: path + name: app_id + required: true + schema: + description: The AppID of the app the connector is attached to. + type: string + - in: path + name: connector_id + required: true + schema: + description: The ConnectorID of the connector that we are pausing the sync for. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.PauseSyncRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.PauseSyncResponse' + description: Empty response body. Status code indicates success. + summary: Pause Sync + tags: + - Connector + x-speakeasy-group: Connector + x-speakeasy-name-override: PauseSync + /api/v1/apps/{app_id}/connectors/{connector_id}/resume: + post: + description: Resume syncing and provisioning for a connector that was previously paused. Clears the paused state and triggers a new sync. + operationId: c1.api.app.v1.ConnectorService.ResumeSync + parameters: + - in: path + name: app_id + required: true + schema: + description: The AppID of the app the connector is attached to. + type: string + - in: path + name: connector_id + required: true + schema: + description: The ConnectorID of the connector that we are resuming the sync for. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ResumeSyncRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ResumeSyncResponse' + description: Empty response body. Status code indicates success. + summary: Resume Sync + tags: + - Connector + x-speakeasy-group: Connector + x-speakeasy-name-override: ResumeSync + /api/v1/apps/{app_id}/connectors/{connector_id}/schedule: + post: + description: Update the sync schedule for a connector. + operationId: c1.api.app.v1.ConnectorService.UpdateConnectorSchedule + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId of the app the connector is attached to. + type: string + - in: path + name: connector_id + required: true + schema: + description: The connectorId of the connector whose schedule is being updated. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.UpdateConnectorScheduleRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.UpdateConnectorScheduleResponse' + description: Empty response body. Status code indicates success. + summary: Update Connector Schedule + tags: + - Connector + x-speakeasy-group: Connector + x-speakeasy-name-override: UpdateConnectorSchedule + x-stability-level: alpha + /api/v1/apps/{app_id}/connectors/{connector_id}/syncs/{sync_id}/download_url: + get: + description: GetConnectorSyncDownloadURL generates a short-lived download URL for a completed connector sync artifact. + operationId: c1.api.app.v1.ConnectorService.GetConnectorSyncDownloadURL + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: connector_id + required: true + schema: + description: The connectorId field. + type: string + - in: path + name: sync_id + required: true + schema: + description: The syncId field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.GetConnectorSyncDownloadURLResponse' + description: Successful response + summary: Get Connector Sync Download Url + tags: + - Connector + x-speakeasy-group: Connector + x-speakeasy-name-override: GetConnectorSyncDownloadURL + /api/v1/apps/{app_id}/connectors/{connector_id}/tool_bindings/by_tool/{mcp_tool_id}/history: + get: + description: |- + ListProfilesByToolHistory returns the transactional history of + profiles bound to (app, connector, mcp_tool). Newest first. + operationId: c1.api.ai_governance.v1.MCPAccessProfileToolBindingService.ListProfilesByToolHistory + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector identifier. + type: string + - in: path + name: mcp_tool_id + required: true + schema: + description: MCP tool identifier. + type: string + - in: query + name: page_size + schema: + description: Page size (max 200). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileToolBindingServiceListProfilesByToolHistoryResponse' + description: |- + Contains a page of change-history entries for the toolsets one tool has belonged to, + sorted newest first. + summary: List Profiles By Tool History + tags: + - MCP Toolsets + x-speakeasy-group: MCPAccessProfileToolBinding + x-speakeasy-name-override: ListProfilesByToolHistory + /api/v1/apps/{app_id}/connectors/{connector_id}/tool_bindings/by_tools: + post: + description: |- + GetAccessProfilesForTools returns the access profiles bound to each + of the given MCP tools, hydrated with display_name. Used by the tools + list to render the "toolset" column for visible rows. + operationId: c1.api.ai_governance.v1.MCPAccessProfileToolBindingService.GetAccessProfilesForTools + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: Connector identifier. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileToolBindingServiceGetAccessProfilesForToolsRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileToolBindingServiceGetAccessProfilesForToolsResponse' + description: |- + MCPAccessProfileToolBindingServiceGetAccessProfilesForToolsResponse returns + access profiles grouped by MCP tool. + summary: Get Access Profiles For Tools + tags: + - MCP Toolsets + x-speakeasy-group: MCPAccessProfileToolBinding + x-speakeasy-name-override: GetAccessProfilesForTools + /api/v1/apps/{app_id}/connectors/{id}: + delete: + description: Delete a connector. + operationId: c1.api.app.v1.ConnectorService.Delete + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId of the app the connector is attached to. + type: string + - in: path + name: id + required: true + schema: + description: The id of the connector. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceDeleteRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceDeleteResponse' + description: Empty response body. Status code indicates success. + summary: Delete + tags: + - Connector + x-speakeasy-group: Connector + x-speakeasy-name-override: Delete + get: + description: Get a connector. + operationId: c1.api.app.v1.ConnectorService.Get + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId of the app the connector is attached to. + type: string + - in: path + name: id + required: true + schema: + description: The id of the connector. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceGetResponse' + description: The ConnectorServiceGetResponse message contains the connectorView, and an expand mask. + summary: Get + tags: + - Connector + x-speakeasy-group: Connector + x-speakeasy-name-override: Get + post: + description: Update a connector. + operationId: c1.api.app.v1.ConnectorService.Update + parameters: + - in: path + name: app_id + required: true + schema: + description: The id of the app the connector is associated with. + type: string + - in: path + name: id + required: true + schema: + description: The id of the connector. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceUpdateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceUpdateResponse' + description: ConnectorServiceUpdateResponse is the response returned by the update method. + summary: Update + tags: + - Connector + x-speakeasy-group: Connector + x-speakeasy-name-override: Update + /api/v1/apps/{app_id}/connectors/create: + post: + description: Create a configured connector. + operationId: c1.api.app.v1.ConnectorService.Create + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceCreateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceCreateResponse' + description: The ConnectorServiceCreateResponse is the response returned from creating a connector. + summary: Create + tags: + - Connector + x-speakeasy-group: Connector + x-speakeasy-name-override: Create + /api/v1/apps/{app_id}/entitlement_configuration_rules: + get: + description: Invokes the c1.api.app.v1.AppEntitlementRoutingRuleService.ListAppEntitlementRoutingRules method. + operationId: c1.api.app.v1.AppEntitlementRoutingRuleService.ListAppEntitlementRoutingRules + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ListAppEntitlementRoutingRulesResponse' + description: Successful response + summary: List App Entitlement Routing Rules + tags: + - App Entitlement Configuration Rule + x-speakeasy-group: AppEntitlementRoutingRule + x-speakeasy-name-override: ListAppEntitlementRoutingRules + post: + description: Invokes the c1.api.app.v1.AppEntitlementRoutingRuleService.CreateAppEntitlementRoutingRule method. + operationId: c1.api.app.v1.AppEntitlementRoutingRuleService.CreateAppEntitlementRoutingRule + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.CreateAppEntitlementRoutingRuleRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.CreateAppEntitlementRoutingRuleResponse' + description: Successful response + summary: Create App Entitlement Routing Rule + tags: + - App Entitlement Configuration Rule + x-speakeasy-group: AppEntitlementRoutingRule + x-speakeasy-name-override: CreateAppEntitlementRoutingRule + /api/v1/apps/{app_id}/entitlement_configuration_rules/{id}: + delete: + description: Invokes the c1.api.app.v1.AppEntitlementRoutingRuleService.DeleteAppEntitlementRoutingRule method. + operationId: c1.api.app.v1.AppEntitlementRoutingRuleService.DeleteAppEntitlementRoutingRule + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: id + required: true + schema: + description: The id field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteAppEntitlementRoutingRuleRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteAppEntitlementRoutingRuleResponse' + description: Successful response + summary: Delete App Entitlement Routing Rule + tags: + - App Entitlement Configuration Rule + x-speakeasy-group: AppEntitlementRoutingRule + x-speakeasy-name-override: DeleteAppEntitlementRoutingRule + get: + description: Invokes the c1.api.app.v1.AppEntitlementRoutingRuleService.GetAppEntitlementRoutingRule method. + operationId: c1.api.app.v1.AppEntitlementRoutingRuleService.GetAppEntitlementRoutingRule + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: id + required: true + schema: + description: The id field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.GetAppEntitlementRoutingRuleResponse' + description: Successful response + summary: Get App Entitlement Routing Rule + tags: + - App Entitlement Configuration Rule + x-speakeasy-group: AppEntitlementRoutingRule + x-speakeasy-name-override: GetAppEntitlementRoutingRule + post: + description: |- + Update an existing app entitlement configuration rule. The app_id field is + immutable; moving a rule between apps is modeled as delete + create. + operationId: c1.api.app.v1.AppEntitlementRoutingRuleService.UpdateAppEntitlementRoutingRule + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: id + required: true + schema: + description: The id field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.UpdateAppEntitlementRoutingRuleRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.UpdateAppEntitlementRoutingRuleResponse' + description: Successful response + summary: Update App Entitlement Routing Rule + tags: + - App Entitlement Configuration Rule + x-speakeasy-group: AppEntitlementRoutingRule + x-speakeasy-name-override: UpdateAppEntitlementRoutingRule + /api/v1/apps/{app_id}/entitlement_configuration_rules/reorder: + post: + description: |- + Reorder all configuration rules for an app in a single call. The caller + supplies the full ordered list of rule IDs; the server assigns dense + priorities (1..N) in that order. The request must be a permutation of every + active rule in the app — missing or extra IDs are rejected. + operationId: c1.api.app.v1.AppEntitlementRoutingRuleService.ReorderAppEntitlementRoutingRules + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app whose rules should be reordered. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ReorderAppEntitlementRoutingRulesRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ReorderAppEntitlementRoutingRulesResponse' + description: Successful response + summary: Reorder App Entitlement Routing Rules + tags: + - App Entitlement Configuration Rule + x-speakeasy-group: AppEntitlementRoutingRule + x-speakeasy-name-override: ReorderAppEntitlementRoutingRules + /api/v1/apps/{app_id}/entitlements: + get: + description: |- + List app entitlements associated with an app. Query parameters are + accepted in snake_case (page_size, page_token, app_user_id) and, as a + compatibility shim, their camelCase equivalents (pageSize, pageToken, + appUserId). + operationId: c1.api.app.v1.AppEntitlements.List + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: query + name: app_user_id + schema: + description: Filter to entitlements granted to the given app user. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + - in: query + name: q + schema: + description: Fuzzy search on display name and description. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ListAppEntitlementsResponse' + description: The ListAppEntitlementsResponse message contains a list of results and a nextPageToken if applicable. + summary: List + tags: + - App Entitlement + x-speakeasy-group: AppEntitlements + x-speakeasy-name-override: List + post: + description: Create a new app entitlement for an app. This is used to define a custom permission, group, or role within the app. + operationId: c1.api.app.v1.AppEntitlements.Create + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app to create the entitlement in. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.CreateAppEntitlementRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.CreateAppEntitlementResponse' + description: Successful response + summary: Create + tags: + - App Entitlement + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Custom App Entitlement#create + x-speakeasy-group: AppEntitlements + x-speakeasy-name-override: Create + /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/add-manual-user: + post: + description: |- + Add users as manually managed members of an app entitlement. These memberships are tracked directly by ConductorOne rather than synced from the app. + Adding members to an access profile's enrollment entitlement requires the JML feature; without it the request fails with a failed-precondition error. + operationId: c1.api.app.v1.AppEntitlements.AddManuallyManagedMembers + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that contains the entitlement. + type: string + - in: path + name: app_entitlement_id + required: true + schema: + description: The ID of the app entitlement to add manually managed members to. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AddManuallyManagedUsersRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ManuallyManagedUsersResponse' + description: Successful response + summary: Add Manually Managed Members + tags: + - App Entitlement + x-speakeasy-group: AppEntitlements + x-speakeasy-name-override: AddManuallyManagedMembers + /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/automation: + delete: + description: Delete the automation rule for an app entitlement. + operationId: c1.api.app.v1.AppEntitlements.DeleteAutomation + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that contains the entitlement. + type: string + - in: path + name: app_entitlement_id + required: true + schema: + description: The ID of the app entitlement whose automation to delete. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteAutomationRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteAutomationResponse' + description: Successful response + summary: Delete Automation + tags: + - App Entitlement Automation + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App Entitlement Automation#delete + x-speakeasy-group: AppEntitlements + x-speakeasy-name-override: DeleteAutomation + get: + description: Get the automation rule for an app entitlement. + operationId: c1.api.app.v1.AppEntitlements.GetAutomation + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that is associated with the app entitlement. + readOnly: true + type: string + - in: path + name: app_entitlement_id + required: true + schema: + description: The unique ID for the App Entitlement. + readOnly: true + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementServiceGetAutomationResponse' + description: Successful response + summary: Get Automation + tags: + - App Entitlement Automation + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: App Entitlement Automation#read + terraform-resource: App Entitlement Automation#read + x-speakeasy-group: AppEntitlements + x-speakeasy-name-override: GetAutomation + /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/automation/create: + post: + description: Create an automation rule for an app entitlement. Automations automatically provision or revoke access based on defined conditions. + operationId: c1.api.app.v1.AppEntitlements.CreateAutomation + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that contains the entitlement. + type: string + - in: path + name: app_entitlement_id + required: true + schema: + description: The ID of the app entitlement to create an automation for. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.CreateAutomationRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.CreateAutomationResponse' + description: Successful response + summary: Create Automation + tags: + - App Entitlement Automation + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App Entitlement Automation#create + x-speakeasy-group: AppEntitlements + x-speakeasy-name-override: CreateAutomation + /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/automation/exclusions: + delete: + description: Remove users from the automation exclusion list for an app entitlement. + operationId: c1.api.app.v1.AppEntitlements.RemoveAutomationExclusion + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that contains the entitlement. + type: string + - in: path + name: app_entitlement_id + required: true + schema: + description: The ID of the app entitlement whose automation exclusion list to update. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.RemoveAutomationExclusionRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.RemoveAutomationExclusionResponse' + description: Empty response with a status code indicating success. + summary: Remove Automation Exclusion + tags: + - App Entitlement Automation Exclusion + x-speakeasy-group: AppEntitlements + x-speakeasy-name-override: RemoveAutomationExclusion + get: + description: List users who are excluded from the automation rule for an app entitlement. + operationId: c1.api.app.v1.AppEntitlements.ListAutomationExclusions + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that contains the entitlement. + type: string + - in: path + name: app_entitlement_id + required: true + schema: + description: The ID of the app entitlement to list exclusions for. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ListAutomationExclusionsResponse' + description: Successful response + summary: List Automation Exclusions + tags: + - App Entitlement Automation Exclusion + x-speakeasy-group: AppEntitlements + x-speakeasy-name-override: ListAutomationExclusions + post: + description: Add users to the automation exclusion list for an app entitlement. Excluded users are not affected by the automation rule. + operationId: c1.api.app.v1.AppEntitlements.AddAutomationExclusion + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that contains the entitlement. + type: string + - in: path + name: app_entitlement_id + required: true + schema: + description: The ID of the app entitlement whose automation exclusion list to update. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AddAutomationExclusionRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AddAutomationExclusionResponse' + description: Empty response with a status code indicating success. + summary: Add Automation Exclusion + tags: + - App Entitlement Automation Exclusion + x-speakeasy-group: AppEntitlements + x-speakeasy-name-override: AddAutomationExclusion + /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/automation/update: + post: + description: Update the automation rule for an app entitlement, including its display name, description, and conditions. + operationId: c1.api.app.v1.AppEntitlements.UpdateAutomation + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that is associated with the app entitlement. + readOnly: true + type: string + - in: path + name: app_entitlement_id + required: true + schema: + description: The unique ID for the App Entitlement. + readOnly: true + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementServiceUpdateAutomationRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementServiceUpdateAutomationResponse' + description: Successful response + summary: Update Automation + tags: + - App Entitlement Automation + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App Entitlement Automation#update + x-speakeasy-group: AppEntitlements + x-speakeasy-name-override: UpdateAutomation + /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/grants: + get: + description: |- + Search app entitlements, include app users, users, expires, discovered. + Response rows are large — request a small page_size (≤10) to keep responses small. + operationId: c1.api.app.v1.AppEntitlementSearchService.SearchAppEntitlementsWithExpired + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: app_entitlement_id + required: true + schema: + description: The appEntitlementId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.SearchAppEntitlementsWithExpiredResponse' + description: The SearchAppEntitlementsWithExpiredResponse message contains a list of results and a nextPageToken if applicable. + summary: Search App Entitlements With Expired + tags: + - App Entitlement + x-speakeasy-group: AppEntitlementSearch + x-speakeasy-name-override: SearchAppEntitlementsWithExpired + /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/remove-membership: + delete: + description: |- + Remove a user from a manually managed entitlement. For ConductorOne + catalogs, groups, and profile types, the existing resource-specific + removal behavior applies. When the SSO provider feature is enabled, an SSO + application's sign-in entitlement removes only direct manual access and + preserves independent requested, connector, and group-derived access. + Removing a member from an access profile requires the JML feature; without + it the request fails with a failed-precondition error. + operationId: c1.api.app.v1.AppEntitlements.RemoveEntitlementMembership + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that contains the entitlement. + type: string + - in: path + name: app_entitlement_id + required: true + schema: + description: The ID of the app entitlement to remove the membership from. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.RemoveEntitlementMembershipRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.RemoveEntitlementMembershipResponse' + description: Successful response + summary: Remove Entitlement Membership + tags: + - App Entitlement + x-speakeasy-group: AppEntitlements + x-speakeasy-name-override: RemoveEntitlementMembership + /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/users: + get: + deprecated: true + description: List the users, as AppEntitlementUsers objects, of an app entitlement. + operationId: c1.api.app.v1.AppEntitlements.ListUsers + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: app_entitlement_id + required: true + schema: + description: The appEntitlementId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ListAppEntitlementUsersResponse' + description: The ListAppEntitlementUsersResponse message contains a list of results and a nextPageToken if applicable. + summary: List Users + tags: + - App Entitlement + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: AppEntitlementUsers#read + terraform-resource: null + x-speakeasy-group: AppEntitlements + x-speakeasy-name-override: ListUsers + /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/users/{app_user_id}/remove-grant-duration: + post: + description: Remove the expiration time from a grant, converting it to an indefinite (standing) grant. + operationId: c1.api.app.v1.AppEntitlementUserBindingService.RemoveGrantDuration + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that owns the entitlement. + type: string + - in: path + name: app_entitlement_id + required: true + schema: + description: The ID of the entitlement whose grant duration is being removed. + type: string + - in: path + name: app_user_id + required: true + schema: + description: The ID of the app user whose grant expiration is being removed. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.RemoveGrantDurationRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.RemoveGrantDurationResponse' + description: The response message for removing the expiration time from a grant. + summary: Remove Grant Duration + tags: + - App Entitlement User Binding + x-speakeasy-group: AppEntitlementUserBinding + x-speakeasy-name-override: RemoveGrantDuration + /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/users/{app_user_id}/update-grant-duration: + post: + description: Update the expiration time of an existing grant, changing when automatic revocation will occur. + operationId: c1.api.app.v1.AppEntitlementUserBindingService.UpdateGrantDuration + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that owns the entitlement. + type: string + - in: path + name: app_entitlement_id + required: true + schema: + description: The ID of the entitlement whose grant duration is being updated. + type: string + - in: path + name: app_user_id + required: true + schema: + description: The ID of the app user whose grant is being updated. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.UpdateGrantDurationRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.UpdateGrantDurationResponse' + description: The response message for updating the duration of a grant. + summary: Update Grant Duration + tags: + - App Entitlement User Binding + x-speakeasy-group: AppEntitlementUserBinding + x-speakeasy-name-override: UpdateGrantDuration + /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/users/{identity_user_id}/grants: + get: + description: Returns a list of app users for the identity in the app. If that app user also has a grant to the entitlement from the request, data about the grant is also returned. It will always return ALL app users for this identity, but only SOME may have grant data. + operationId: c1.api.app.v1.AppEntitlementUserBindingService.ListAppUsersForIdentityWithGrant + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: app_entitlement_id + required: true + schema: + description: The appEntitlementId field. + type: string + - in: path + name: identity_user_id + required: true + schema: + description: The identityUserId field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ListAppUsersForIdentityWithGrantResponse' + description: Successful response + summary: List App Users For Identity With Grant + tags: + - App Entitlement User Binding + x-speakeasy-group: AppEntitlementUserBinding + x-speakeasy-name-override: ListAppUsersForIdentityWithGrant + /api/v1/apps/{app_id}/entitlements/{entitlement_id}/ownerids: + get: + description: ListUserIDs lists owner IDs for a given app entitlement. + operationId: c1.api.app.v1.AppEntitlementOwners.ListOwnerIDs + parameters: + - in: path + name: app_id + required: true + schema: + description: The app_id field for the app entitlement to list owners of. + type: string + - in: path + name: entitlement_id + required: true + schema: + description: The entitlement_id field for the app entitlement to list owners of. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ListAppEntitlementOwnerIDsResponse' + description: The response message for listing app entitlement owners IDs. + summary: List Owner I Ds + tags: + - App Entitlement Owner + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: null + terraform-resource: App_Entitlement_Owner#read + x-speakeasy-group: AppEntitlementOwners + x-speakeasy-name-override: ListOwnerIDs + /api/v1/apps/{app_id}/entitlements/{entitlement_id}/owners: + delete: + description: Delete deletes the owners from a given app entitlement. + operationId: c1.api.app.v1.AppEntitlementOwners.Delete + parameters: + - in: path + name: app_id + required: true + schema: + description: The app_id field for the app entitlement to remove the owner of. + type: string + - in: path + name: entitlement_id + required: true + schema: + description: The entitlement_id field for the app entitlement to remove the owner of. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteAppEntitlementOwnersRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteAppEntitlementOwnersResponse' + description: the empty response message for deleting app entitlement owners. + summary: Delete + tags: + - App Entitlement Owner + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App_Entitlement_Owner#delete + x-speakeasy-group: AppEntitlementOwners + x-speakeasy-name-override: Delete + get: + description: List owners for a given app entitlement. + operationId: c1.api.app.v1.AppEntitlementOwners.List + parameters: + - in: path + name: app_id + required: true + schema: + description: The app_id field for the app entitlement to list owners of. + type: string + - in: path + name: entitlement_id + required: true + schema: + description: The entitlement_id field for the app entitlement to list owners of. + type: string + - in: query + name: page_size + schema: + description: The page_size field for pagination. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The page_token field for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ListAppEntitlementOwnersResponse' + description: The response message for listing app entitlement owners. + summary: List + tags: + - App Entitlement Owner + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: AppEntitlementOwners#read + terraform-resource: null + x-speakeasy-group: AppEntitlementOwners + x-speakeasy-name-override: List + post: + description: Add an owner to a given app entitlement. + operationId: c1.api.app.v1.AppEntitlementOwners.Add + parameters: + - in: path + name: app_id + required: true + schema: + description: The app_id field for the app entitlement to add the owner to. + type: string + - in: path + name: entitlement_id + required: true + schema: + description: The entitlement_id field for the app entitlement to add the owner to. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AddAppEntitlementOwnerRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AddAppEntitlementOwnerResponse' + description: The empty response message for adding an app entitlement owner. + summary: Add + tags: + - App Entitlement Owner + x-speakeasy-group: AppEntitlementOwners + x-speakeasy-name-override: Add + put: + description: Sets the owners for a given app entitlement to the specified list of users. + operationId: c1.api.app.v1.AppEntitlementOwners.Set + parameters: + - in: path + name: app_id + required: true + schema: + description: The app_id field for the app entitlement to set the owners of. + type: string + - in: path + name: entitlement_id + required: true + schema: + description: The entitlement_id field for the app entitlement to set the owners of. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.SetAppEntitlementOwnersRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.SetAppEntitlementOwnersResponse' + description: The empty response message for setting the app entitlement owners. + summary: Set + tags: + - App Entitlement Owner + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App_Entitlement_Owner#create + x-speakeasy-group: AppEntitlementOwners + x-speakeasy-name-override: Set + /api/v1/apps/{app_id}/entitlements/{entitlement_id}/owners/{user_id}: + delete: + description: Remove an owner from a given app entitlement. + operationId: c1.api.app.v1.AppEntitlementOwners.Remove + parameters: + - in: path + name: app_id + required: true + schema: + description: The app_id field for the app entitlement to remove the owner of. + type: string + - in: path + name: entitlement_id + required: true + schema: + description: The entitlement_id field for the app entitlement to remove the owner of. + type: string + - in: path + name: user_id + required: true + schema: + description: The user_id field for the user to remove as an owner of the app entitlement. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.RemoveAppEntitlementOwnerRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.RemoveAppEntitlementOwnerResponse' + description: The empty response message for removing an app entitlement owner. + summary: Remove + tags: + - App Entitlement Owner + x-speakeasy-group: AppEntitlementOwners + x-speakeasy-name-override: Remove + /api/v1/apps/{app_id}/entitlements/{id}: + delete: + description: Delete an app entitlement by ID. + operationId: c1.api.app.v1.AppEntitlements.Delete + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that contains the entitlement. + type: string + - in: path + name: id + required: true + schema: + description: The ID of the app entitlement to delete. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteAppEntitlementRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteAppEntitlementResponse' + description: Successful response + summary: Delete + tags: + - App Entitlement + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Custom App Entitlement#delete + x-speakeasy-group: AppEntitlements + x-speakeasy-name-override: Delete + get: + description: Get an app entitlement by ID. + operationId: c1.api.app.v1.AppEntitlements.Get + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: id + required: true + schema: + description: The id field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.GetAppEntitlementResponse' + description: The get app entitlement response returns an entitlement view containing paths in the expanded array for the objects expanded as indicated by the expand mask in the request. + summary: Get + tags: + - App Entitlement + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: null + terraform-resource: Custom App Entitlement#read + x-speakeasy-group: AppEntitlements + x-speakeasy-name-override: Get + post: + description: Update an app entitlement by ID. + operationId: c1.api.app.v1.AppEntitlements.Update + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that is associated with the app entitlement. + type: string + - in: path + name: id + required: true + schema: + description: The unique ID for the App Entitlement. + readOnly: true + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.UpdateAppEntitlementRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.UpdateAppEntitlementResponse' + description: Successful response + summary: Update + tags: + - App Entitlement + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Custom App Entitlement#update + x-speakeasy-group: AppEntitlements + x-speakeasy-name-override: Update + /api/v1/apps/{app_id}/entitlements/resource_types/{app_resource_type_id}/resources/{app_resource_id}: + get: + description: List app entitlements associated with an app resource. + operationId: c1.api.app.v1.AppEntitlements.ListForAppResource + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: app_resource_type_id + required: true + schema: + description: The appResourceTypeId field. + type: string + - in: path + name: app_resource_id + required: true + schema: + description: The appResourceId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ListAppEntitlementsResponse' + description: The ListAppEntitlementsResponse message contains a list of results and a nextPageToken if applicable. + summary: List For App Resource + tags: + - App Entitlement + x-speakeasy-group: AppEntitlements + x-speakeasy-name-override: ListForAppResource + /api/v1/apps/{app_id}/entitlements/users/{app_user_id}: + get: + description: List app entitlements associated with an app user. + operationId: c1.api.app.v1.AppEntitlements.ListForAppUser + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: app_user_id + required: true + schema: + description: The appUserId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ListAppEntitlementsResponse' + description: The ListAppEntitlementsResponse message contains a list of results and a nextPageToken if applicable. + summary: List For App User + tags: + - App Entitlement + x-speakeasy-group: AppEntitlements + x-speakeasy-name-override: ListForAppUser + /api/v1/apps/{app_id}/mcp_servers: + get: + description: List retrieves MCP servers for an app. + operationId: c1.api.ai_governance.v1.MCPServerService.List + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier (required). + type: string + - in: query + name: page_size + schema: + description: Page size (max 100). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceListResponse' + description: MCPServerServiceListResponse returns a paginated list of MCP servers. + summary: List + tags: + - MCP Servers + x-speakeasy-group: MCPServer + x-speakeasy-name-override: List + post: + description: |- + Register a new MCP server under an application. Set server_type to HOSTED + (C1 runs a catalog integration) or EXTERNAL (a third-party MCP server you + point C1 at by URL). Auth credentials are validated and stored securely. + operationId: c1.api.ai_governance.v1.MCPServerService.Register + parameters: + - in: path + name: app_id + required: true + schema: + description: |- + App to register the MCP server under. When empty and app_managed_state_binding_ref + is not set, a new managed app is created automatically. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceRegisterRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceRegisterResponse' + description: MCPServerServiceRegisterResponse returns the newly created MCP server. + summary: Register + tags: + - MCP Servers + x-speakeasy-group: MCPServer + x-speakeasy-name-override: Register + /api/v1/apps/{app_id}/mcp_servers/{connector_id}: + delete: + description: |- + Delete an MCP server. Its connector stops and it is soft-deleted from this + tenant's MCP catalog, and any per-user credentials issued against it are + revoked. + operationId: c1.api.ai_governance.v1.MCPServerService.Delete + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: MCP server identifier (connector ID). + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceDeleteRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceDeleteResponse' + description: MCPServerServiceDeleteResponse confirms deletion. + summary: Delete + tags: + - MCP Servers + x-speakeasy-group: MCPServer + x-speakeasy-name-override: Delete + get: + description: Get retrieves a single MCP server. + operationId: c1.api.ai_governance.v1.MCPServerService.Get + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: MCP server identifier (connector ID). + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceGetResponse' + description: MCPServerServiceGetResponse returns a single MCP server. + summary: Get + tags: + - MCP Servers + x-speakeasy-group: MCPServer + x-speakeasy-name-override: Get + post: + description: Update modifies an existing MCP server's editable fields. + operationId: c1.api.ai_governance.v1.MCPServerService.Update + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: MCP server identifier (connector ID). + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceUpdateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceUpdateResponse' + description: MCPServerServiceUpdateResponse returns the updated MCP server. + summary: Update + tags: + - MCP Servers + x-speakeasy-group: MCPServer + x-speakeasy-name-override: Update + /api/v1/apps/{app_id}/mcp_servers/{connector_id}/credentials: + post: + description: UpdateCredentials replaces the auth config and/or config fields for an MCP server. + operationId: c1.api.ai_governance.v1.MCPServerService.UpdateCredentials + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: MCP server identifier (connector ID). + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceUpdateCredentialsRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceUpdateCredentialsResponse' + description: MCPServerServiceUpdateCredentialsResponse returns the updated MCP server. + summary: Update Credentials + tags: + - MCP Servers + x-speakeasy-group: MCPServer + x-speakeasy-name-override: UpdateCredentials + /api/v1/apps/{app_id}/mcp_servers/{connector_id}/resync_tools: + post: + description: |- + ResyncTools re-runs per-identity tool discovery for the calling user's + own credential on a per-user MCP server, so a session opened before the + user connected (or after their visible tools changed) doesn't have to + wait for the next unrelated MCPTool/AppEntitlementUserBinding change to + pick it up. + operationId: c1.api.ai_governance.v1.MCPServerService.ResyncTools + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: connector_id + required: true + schema: + description: MCP server identifier (connector ID). + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceResyncToolsRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceResyncToolsResponse' + description: MCPServerServiceResyncToolsResponse is empty on success. + summary: Resync Tools + tags: + - MCP Servers + x-speakeasy-group: MCPServer + x-speakeasy-name-override: ResyncTools + /api/v1/apps/{app_id}/mcp_servers/search: + post: + description: SearchWithToolCount searches MCP servers with filtering and returns per-server tool state counts. + operationId: c1.api.ai_governance.v1.MCPServerService.SearchWithToolCount + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier (required). + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceSearchWithToolCountRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceSearchWithToolCountResponse' + description: MCPServerServiceSearchWithToolCountResponse returns matching MCP servers with tool counts. + summary: Search With Tool Count + tags: + - MCP Servers + x-speakeasy-group: MCPServer + x-speakeasy-name-override: SearchWithToolCount + /api/v1/apps/{app_id}/mcp_toolsets/by_app_entitlement_id/{app_entitlement_id}: + get: + description: |- + GetByAppEntitlementId looks up the toolset (access profile) linked to a + synced role entitlement, by app_id + app_entitlement_id. + operationId: c1.api.ai_governance.v1.MCPAccessProfileService.GetByAppEntitlementId + parameters: + - in: path + name: app_id + required: true + schema: + description: App identifier. + type: string + - in: path + name: app_entitlement_id + required: true + schema: + description: AppEntitlement ID to look up. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileServiceGetByAppEntitlementIdResponse' + description: MCPAccessProfileServiceGetByAppEntitlementIdResponse returns the matched profile. + summary: Get By App Entitlement Id + tags: + - MCP Toolsets + x-speakeasy-group: MCPAccessProfile + x-speakeasy-name-override: GetByAppEntitlementId + /api/v1/apps/{app_id}/ownerids: + get: + description: ListOwnerIDs lists owner IDs for a given app. + operationId: c1.api.app.v1.AppOwners.ListOwnerIDs + parameters: + - in: path + name: app_id + required: true + schema: + description: The app_id field for the app to list owners of. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ListAppOwnerIDsResponse' + description: The response message for listing app owners IDs. + summary: List Owner I Ds + tags: + - App Owner + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: null + terraform-resource: App_Owner#read + x-speakeasy-group: AppOwners + x-speakeasy-name-override: ListOwnerIDs + /api/v1/apps/{app_id}/owners: + delete: + description: Delete deletes the owners from a given app. + operationId: c1.api.app.v1.AppOwners.Delete + parameters: + - in: path + name: app_id + required: true + schema: + description: The app_id field for the app to remove the owner of. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteAppOwnersRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteAppOwnersResponse' + description: the empty response message for deleting app owners. + summary: Delete + tags: + - App Owner + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App_Owner#delete + x-speakeasy-group: AppOwners + x-speakeasy-name-override: Delete + get: + description: List owners of an app. + operationId: c1.api.app.v1.AppOwners.List + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ListAppOwnersResponse' + description: Successful response + summary: List + tags: + - App Owner + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: AppOwners#read + terraform-resource: null + x-speakeasy-group: AppOwners + x-speakeasy-name-override: List + put: + description: Sets the owners for a given app to the specified list of users. + operationId: c1.api.app.v1.AppOwners.Set + parameters: + - in: path + name: app_id + required: true + schema: + description: The app_id field for the app to set the owners of. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.SetAppOwnersRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.SetAppOwnersResponse' + description: The empty response message for setting the app owners. + summary: Set + tags: + - App Owner + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App_Owner#create + x-speakeasy-group: AppOwners + x-speakeasy-name-override: Set + /api/v1/apps/{app_id}/owners/{user_id}: + delete: + description: Removes an owner from an app. + operationId: c1.api.app.v1.AppOwners.Remove + parameters: + - in: path + name: app_id + required: true + schema: + description: App ID of the app to remove the owner from. + type: string + - in: path + name: user_id + required: true + schema: + description: User ID of the user to remove as an owner. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.RemoveAppOwnerRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.RemoveAppOwnerResponse' + description: Empty response with a status code indicating success. + summary: Remove + tags: + - App Owner + x-speakeasy-group: AppOwners + x-speakeasy-name-override: Remove + post: + description: Adds an owner to an app. + operationId: c1.api.app.v1.AppOwners.Add + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: user_id + required: true + schema: + description: The userId field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AddAppOwnerRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AddAppOwnerResponse' + description: Empty response with a status code indicating success + summary: Add + tags: + - App Owner + x-speakeasy-group: AppOwners + x-speakeasy-name-override: Add + /api/v1/apps/{app_id}/report: + get: + description: Get a list of reports for the given app. + operationId: c1.api.app.v1.AppReportService.List + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppReportServiceListResponse' + description: The AppReportServiceListResponse message contains a list of results and a nextPageToken if applicable. + summary: List + tags: + - App Reports + x-speakeasy-group: AppReport + x-speakeasy-name-override: List + post: + description: Generate a report for the given app. + operationId: c1.api.app.v1.AppReportActionService.GenerateReport + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppActionsServiceGenerateReportRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppActionsServiceGenerateReportResponse' + description: Empty response body. Status code indicates success. + summary: Generate Report + tags: + - App Reports + x-speakeasy-group: AppReportAction + x-speakeasy-name-override: GenerateReport + /api/v1/apps/{app_id}/resource_types: + get: + description: List app resource types. + operationId: c1.api.app.v1.AppResourceTypeService.List + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppResourceTypeServiceListResponse' + description: The AppResourceTypeServiceListResponse message contains a list of results and a nextPageToken if applicable. + summary: List + tags: + - App Resource Type + x-speakeasy-group: AppResourceType + x-speakeasy-name-override: List + post: + description: Create a manually managed resource type that classifies resources within an app. + operationId: c1.api.app.v1.AppResourceTypeService.CreateManuallyManagedResourceType + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app to create the resource type under. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.CreateManuallyManagedResourceTypeRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.CreateManuallyManagedResourceTypeResponse' + description: The response message for creating a manually managed resource type. + summary: Create Manually Managed Resource Type + tags: + - App Resource Type + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App Resource Type#create + x-speakeasy-group: AppResourceType + x-speakeasy-name-override: CreateManuallyManagedResourceType + /api/v1/apps/{app_id}/resource_types/{app_resource_type_id}/resources: + get: + description: List app resources for a given app and optionally filter by resource type. + operationId: c1.api.app.v1.AppResourceService.List + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app to list resources for. + type: string + - in: path + name: app_resource_type_id + required: true + schema: + description: Optional resource type ID to filter results by. If empty, resources of all types are returned. + type: string + - in: query + name: page_size + schema: + description: The maximum number of results to return per page. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The token for fetching the next page of results. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppResourceServiceListResponse' + description: The AppResourceServiceListResponse message contains a list of results and a nextPageToken if applicable. + summary: List + tags: + - App Resource + x-speakeasy-group: AppResource + x-speakeasy-name-override: List + post: + description: Create a manually managed app resource tracked directly by ConductorOne under an existing resource type. + operationId: c1.api.app.v1.AppResourceService.CreateManuallyManagedAppResource + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app to create the resource under. + type: string + - in: path + name: app_resource_type_id + required: true + schema: + description: The resource type ID that classifies this resource. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.CreateManuallyManagedAppResourceRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.CreateManuallyManagedAppResourceResponse' + description: The response message for creating a manually managed app resource. + summary: Create Manually Managed App Resource + tags: + - App Resource + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App Resource#create + x-speakeasy-group: AppResource + x-speakeasy-name-override: CreateManuallyManagedAppResource + /api/v1/apps/{app_id}/resource_types/{app_resource_type_id}/resources/{id}: + delete: + description: Delete a manually managed app resource and its associated entitlements from an app. + operationId: c1.api.app.v1.AppResourceService.DeleteManuallyManagedAppResource + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that owns the resource. + type: string + - in: path + name: app_resource_type_id + required: true + schema: + description: The ID of the resource type that classifies the resource. + type: string + - in: path + name: id + required: true + schema: + description: The ID of the app resource to delete. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteManuallyManagedAppResourceRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteManuallyManagedAppResourceResponse' + description: The empty response message for deleting a manually managed app resource. + summary: Delete Manually Managed App Resource + tags: + - App Resource + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App Resource#delete + x-speakeasy-group: AppResource + x-speakeasy-name-override: DeleteManuallyManagedAppResource + get: + description: Retrieve a single app resource by its app, resource type, and resource ID. + operationId: c1.api.app.v1.AppResourceService.Get + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that owns the resource. + type: string + - in: path + name: app_resource_type_id + required: true + schema: + description: The ID of the resource type that classifies this resource. + type: string + - in: path + name: id + required: true + schema: + description: The unique ID of the app resource to retrieve. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppResourceServiceGetResponse' + description: The app resource service get response contains the app resource view and array of expanded items indicated by the request's expand mask. + summary: Get + tags: + - App Resource + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: App Resource#read + terraform-resource: App Resource#read + x-speakeasy-group: AppResource + x-speakeasy-name-override: Get + post: + description: Update an app resource's fields. Only the fields specified in the update mask are modified. + operationId: c1.api.app.v1.AppResourceService.Update + parameters: + - in: path + name: app_id + required: true + schema: + description: The app that this resource belongs to. + type: string + - in: path + name: app_resource_type_id + required: true + schema: + description: The resource type that this resource is. + type: string + - in: path + name: id + required: true + schema: + description: The id of the resource. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppResourceServiceUpdateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppResourceServiceUpdateResponse' + description: The response message for updating an app resource. + summary: Update + tags: + - App Resource + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App Resource#update + x-speakeasy-group: AppResource + x-speakeasy-name-override: Update + /api/v1/apps/{app_id}/resource_types/{id}: + delete: + description: Delete a manually managed resource type and all its associated resources from an app. + operationId: c1.api.app.v1.AppResourceTypeService.DeleteManuallyManagedResourceType + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that owns the resource type. + type: string + - in: path + name: id + required: true + schema: + description: The ID of the resource type to delete. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteManuallyManagedResourceTypeRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteManuallyManagedResourceTypeResponse' + description: The empty response message for deleting a manually managed resource type. + summary: Delete Manually Managed Resource Type + tags: + - App Resource Type + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App Resource Type#delete + x-speakeasy-group: AppResourceType + x-speakeasy-name-override: DeleteManuallyManagedResourceType + get: + description: Get an app resource type. + operationId: c1.api.app.v1.AppResourceTypeService.Get + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: id + required: true + schema: + description: The id field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppResourceTypeServiceGetResponse' + description: |- + The AppResourceTypeServiceGetResponse contains an expanded array containing the expanded values indicated by the expand mask + in the request and an app resource type view containing the resource type and JSONPATHs indicating which objects are where in the expand mask. + summary: Get + tags: + - App Resource Type + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: null + terraform-resource: App Resource Type#read + x-speakeasy-group: AppResourceType + x-speakeasy-name-override: Get + post: + description: Update a manually managed resource type's fields. Only the fields specified in the update mask are modified. + operationId: c1.api.app.v1.AppResourceTypeService.UpdateManuallyManagedResourceType + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that is associated with the app resource type + readOnly: true + type: string + - in: path + name: id + required: true + schema: + description: The unique ID for the app resource type. + readOnly: true + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.UpdateManuallyManagedResourceTypeRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.UpdateManuallyManagedResourceTypeResponse' + description: The response message for updating a manually managed resource type. + summary: Update Manually Managed Resource Type + tags: + - App Resource Type + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App Resource Type#update + x-speakeasy-group: AppResourceType + x-speakeasy-name-override: UpdateManuallyManagedResourceType + /api/v1/apps/{app_id}/resource_types/{resource_type_id}/managed_state_bindings: + get: + description: List the managed states of applications discovered by a connector. + operationId: c1.api.app.v1.AppManagedStateService.List + parameters: + - in: path + name: app_id + required: true + schema: + description: ID of the application that owns the connector. + type: string + - in: path + name: resource_type_id + required: true + schema: + description: ID of the resource type used for discovered applications. + type: string + - in: query + name: page_size + schema: + description: Maximum number of results to return. The maximum is 100. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Pagination token from a previous response. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ListAppManagedStateBindingsResponse' + description: ListAppManagedStateBindingsResponse contains one page of discovered application managed states. + summary: List + tags: + - Application Managed State + x-speakeasy-group: AppManagedState + x-speakeasy-name-override: List + /api/v1/apps/{app_id}/resource_types/{resource_type_id}/managed_state_bindings/{resource_id}: + get: + description: Get the managed state of a discovered application. + operationId: c1.api.app.v1.AppManagedStateService.Get + parameters: + - in: path + name: app_id + required: true + schema: + description: ID of the application that owns the connector. + type: string + - in: path + name: resource_type_id + required: true + schema: + description: ID of the resource type used for discovered applications. + type: string + - in: path + name: resource_id + required: true + schema: + description: Resource ID of the discovered application. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.GetAppManagedStateBindingResponse' + description: GetAppManagedStateBindingResponse contains the managed state of a discovered application. + summary: Get + tags: + - Application Managed State + x-speakeasy-group: AppManagedState + x-speakeasy-name-override: Get + /api/v1/apps/{app_id}/resource_types/{resource_type_id}/managed_state_bindings/{resource_id}/promote: + post: + description: |- + Promote an unmanaged application into a managed application. + Returns AlreadyExists when the application is already managed. The new application inherits source owners when user_ids is omitted. + Concurrent promotion requests are not supported. + operationId: c1.api.app.v1.AppManagedStateService.Promote + parameters: + - in: path + name: app_id + required: true + schema: + description: ID of the application that owns the connector. + type: string + - in: path + name: resource_type_id + required: true + schema: + description: ID of the resource type used for discovered applications. + type: string + - in: path + name: resource_id + required: true + schema: + description: Resource ID of the unmanaged application. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.PromoteAppManagedStateBindingRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.GetAppManagedStateBindingResponse' + description: GetAppManagedStateBindingResponse contains the managed state of a discovered application. + summary: Promote + tags: + - Application Managed State + x-speakeasy-group: AppManagedState + x-speakeasy-name-override: Promote + /api/v1/apps/{app_id}/resource_types/{resource_type_id}/resource/{resource_id}/ownerids: + delete: + description: Delete deletes the owners from a given app resource. + operationId: c1.api.app.v1.AppResourceOwners.Delete + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: resource_type_id + required: true + schema: + description: The resourceTypeId field. + type: string + - in: path + name: resource_id + required: true + schema: + description: The resourceId field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteAppResourceOwnersRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteAppResourceOwnersResponse' + description: the empty response message for deleting app resource owners. + summary: Delete + tags: + - App Resource Owner + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App_Resource_Owner#delete + x-speakeasy-group: AppResourceOwners + x-speakeasy-name-override: Delete + get: + description: ListOwnerIDs lists owner IDs for a given app resource. + operationId: c1.api.app.v1.AppResourceOwners.ListOwnerIDs + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: resource_type_id + required: true + schema: + description: The resourceTypeId field. + type: string + - in: path + name: resource_id + required: true + schema: + description: The resourceId field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ListAppResourceOwnerIDsResponse' + description: The response message for listing app resource owners IDs. + summary: List Owner I Ds + tags: + - App Resource Owner + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: null + terraform-resource: App_Resource_Owner#read + x-speakeasy-group: AppResourceOwners + x-speakeasy-name-override: ListOwnerIDs + /api/v1/apps/{app_id}/resource_types/{resource_type_id}/resource/{resource_id}/owners: + delete: + description: Remove a user from the owners of an app resource. + operationId: c1.api.app.v1.AppResourceOwners.Remove + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that owns the resource. + type: string + - in: path + name: resource_type_id + required: true + schema: + description: The ID of the resource type that classifies the resource. + type: string + - in: path + name: resource_id + required: true + schema: + description: The ID of the app resource to remove an owner from. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.RemoveAppResourceOwnerRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.RemoveAppResourceOwnerResponse' + description: The empty response message for removing an owner from an app resource. + summary: Remove + tags: + - App Resource Owner + x-speakeasy-group: AppResourceOwners + x-speakeasy-name-override: Remove + get: + description: List all owners of an app resource. + operationId: c1.api.app.v1.AppResourceOwners.List + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: resource_type_id + required: true + schema: + description: The resourceTypeId field. + type: string + - in: path + name: resource_id + required: true + schema: + description: The resourceId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ListAppResourceOwnersResponse' + description: The ListAppResourceOwnersResponse message contains a list of results and a nextPageToken if applicable + summary: List + tags: + - App Resource Owner + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: AppResourceOwners#read + terraform-resource: null + x-speakeasy-group: AppResourceOwners + x-speakeasy-name-override: List + post: + description: Add a user as an owner of an app resource. + operationId: c1.api.app.v1.AppResourceOwners.Add + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app that owns the resource. + type: string + - in: path + name: resource_type_id + required: true + schema: + description: The ID of the resource type that classifies the resource. + type: string + - in: path + name: resource_id + required: true + schema: + description: The ID of the app resource to add an owner to. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AddAppResourceOwnerRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AddAppResourceOwnerResponse' + description: The empty response message for adding an owner to an app resource. + summary: Add + tags: + - App Resource Owner + x-speakeasy-group: AppResourceOwners + x-speakeasy-name-override: Add + put: + description: Sets the owners for a given app resource to the specified list of users. + operationId: c1.api.app.v1.AppResourceOwners.Set + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: resource_type_id + required: true + schema: + description: The resourceTypeId field. + type: string + - in: path + name: resource_id + required: true + schema: + description: The resourceId field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.SetAppResourceOwnersRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.SetAppResourceOwnersResponse' + description: The empty response message for setting the app resource owners. + summary: Set + tags: + - App Resource Owner + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App_Resource_Owner#create + x-speakeasy-group: AppResourceOwners + x-speakeasy-name-override: Set + /api/v1/apps/{app_id}/sso/applications: + get: + description: |- + List returns the SSO applications configured for an application, one page + at a time. + operationId: c1.api.sso.v1.SSOApplicationService.List + parameters: + - in: path + name: app_id + required: true + schema: + description: The application in your catalog to list SSO applications for. + type: string + - in: query + name: page_size + schema: + description: Maximum number of results to return per page. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Pagination token from a previous response. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceListResponse' + description: SSOApplicationServiceListResponse returns a page of SSO applications. + summary: List + tags: + - SSO + x-speakeasy-group: SSOApplication + x-speakeasy-name-override: List + post: + description: |- + Create an SSO application for an application in your catalog. The + entitlement that governs sign-in is created alongside it. OIDC creation + also server-mints the required initial client and returns its secret once + when the client is confidential. SAML creation has no OAuth-client step. + operationId: c1.api.sso.v1.SSOApplicationService.Create + parameters: + - in: path + name: app_id + required: true + schema: + description: The application in your catalog to attach this sign-in configuration to. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceCreateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceCreateResponse' + description: SSOApplicationServiceCreateResponse returns the created SSO application. + summary: Create + tags: + - SSO + x-speakeasy-group: SSOApplication + x-speakeasy-name-override: Create + /api/v1/apps/{app_id}/sso/applications/{id}: + delete: + description: |- + Delete retires an SSO application and its sign-in entitlement, stopping + OIDC and SAML sign-in through it. OAuth clients and locator bindings remain + so administrators can list and delete retained clients; the bindings are + inert while their parent application is deleted. + operationId: c1.api.sso.v1.SSOApplicationService.Delete + parameters: + - in: path + name: app_id + required: true + schema: + description: The application in your catalog that owns the SSO application. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the SSO application. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceDeleteRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceDeleteResponse' + description: SSOApplicationServiceDeleteResponse confirms deletion. + summary: Delete + tags: + - SSO + x-speakeasy-group: SSOApplication + x-speakeasy-name-override: Delete + get: + description: Get returns a single SSO application by app_id + id. + operationId: c1.api.sso.v1.SSOApplicationService.Get + parameters: + - in: path + name: app_id + required: true + schema: + description: The application in your catalog that owns the SSO application. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the SSO application. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceGetResponse' + description: SSOApplicationServiceGetResponse returns a single SSO application. + summary: Get + tags: + - SSO + x-speakeasy-group: SSOApplication + x-speakeasy-name-override: Get + post: + description: |- + Update changes an SSO application's mutable display, lifetime, enablement, + OIDC claim/signing settings, or SAML endpoint/signing/encryption settings. + Protocol, subject type, sector, SAML entity ID, and NameID format remain + immutable; requests that would change them are rejected. + operationId: c1.api.sso.v1.SSOApplicationService.Update + parameters: + - in: path + name: app_id + required: true + schema: + description: |- + The application in your catalog that owns this sign-in configuration. Its + owners, entitlements, and access reviews govern who may sign in. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for this SSO application. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceUpdateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceUpdateResponse' + description: SSOApplicationServiceUpdateResponse returns the updated SSO application. + summary: Update + tags: + - SSO + x-speakeasy-group: SSOApplication + x-speakeasy-name-override: Update + /api/v1/apps/{app_id}/sso/applications/{id}/clients: + get: + description: |- + ListClients returns the App-owned OAuth clients minted for an OIDC + application, one page at a time. Results hydrate from the PostgreSQL + projection, so a newly created client may appear after a brief delay. + operationId: c1.api.sso.v1.SSOApplicationService.ListClients + parameters: + - in: path + name: app_id + required: true + schema: + description: Application that owns the SSO application. + type: string + - in: path + name: id + required: true + schema: + description: SSO application whose clients to list. + type: string + - in: query + name: page_size + schema: + description: Maximum number of clients to return. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Pagination token from a previous response. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceListClientsResponse' + description: |- + SSOApplicationServiceListClientsResponse contains a page of App-owned OAuth + clients. + summary: List Clients + tags: + - SSO + x-speakeasy-group: SSOApplication + x-speakeasy-name-override: ListClients + post: + description: |- + CreateClient mints an additional App-owned OAuth client for an OIDC + application. C1 generates the client ID and any confidential-client secret. + operationId: c1.api.sso.v1.SSOApplicationService.CreateClient + parameters: + - in: path + name: app_id + required: true + schema: + description: Application that owns the SSO application. + type: string + - in: path + name: id + required: true + schema: + description: SSO application that will govern this client. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceCreateClientRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceCreateClientResponse' + description: |- + SSOApplicationServiceCreateClientResponse contains the generated client and + its one-time secret, when applicable. + summary: Create Client + tags: + - SSO + x-speakeasy-group: SSOApplication + x-speakeasy-name-override: CreateClient + /api/v1/apps/{app_id}/sso/applications/{id}/clients/delete: + post: + description: DeleteClient deletes one App-owned OAuth client and its sign-in binding. + operationId: c1.api.sso.v1.SSOApplicationService.DeleteClient + parameters: + - in: path + name: app_id + required: true + schema: + description: Application that owns the client. + type: string + - in: path + name: id + required: true + schema: + description: SSO application that governs the client. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceDeleteClientRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceDeleteClientResponse' + description: SSOApplicationServiceDeleteClientResponse confirms deletion. + summary: Delete Client + tags: + - SSO + x-speakeasy-group: SSOApplication + x-speakeasy-name-override: DeleteClient + /api/v1/apps/{app_id}/sso/applications/{id}/clients/rotate-secret: + post: + description: |- + RotateClientSecret replaces a confidential App-owned client's secret and + returns the new value once. The old secret stops working immediately; for + an overlap window, create a second client, migrate, then delete the first. + Public clients have no secret to rotate. + operationId: c1.api.sso.v1.SSOApplicationService.RotateClientSecret + parameters: + - in: path + name: app_id + required: true + schema: + description: Application that owns the client. + type: string + - in: path + name: id + required: true + schema: + description: SSO application that governs the client. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceRotateClientSecretRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceRotateClientSecretResponse' + description: |- + SSOApplicationServiceRotateClientSecretResponse contains the replacement + secret. The value cannot be retrieved again. + summary: Rotate Client Secret + tags: + - SSO + x-speakeasy-group: SSOApplication + x-speakeasy-name-override: RotateClientSecret + /api/v1/apps/{app_id}/sso/applications/{id}/clients/update: + post: + description: |- + UpdateClient replaces mutable client configuration. The authentication + method and generated ID are immutable; private-key JWKS may rotate and a + legacy PKCE policy may tighten to required. + operationId: c1.api.sso.v1.SSOApplicationService.UpdateClient + parameters: + - in: path + name: app_id + required: true + schema: + description: Application that owns the client. + type: string + - in: path + name: id + required: true + schema: + description: SSO application that governs the client. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceUpdateClientRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceUpdateClientResponse' + description: SSOApplicationServiceUpdateClientResponse contains the updated client. + summary: Update Client + tags: + - SSO + x-speakeasy-group: SSOApplication + x-speakeasy-name-override: UpdateClient + /api/v1/apps/{app_id}/sso/applications/{id}/history: + get: + description: |- + ListHistory returns the change history (newest first) for a single SSO + application — each entry is a snapshot plus who/when metadata. + operationId: c1.api.sso.v1.SSOApplicationService.ListHistory + parameters: + - in: path + name: app_id + required: true + schema: + description: The application in your catalog that owns the SSO application. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the SSO application. + type: string + - in: query + name: page_size + schema: + description: Page size (max 200). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceListHistoryResponse' + description: |- + SSOApplicationServiceListHistoryResponse returns SSO application history + entries. + summary: List History + tags: + - SSO + x-speakeasy-group: SSOApplication + x-speakeasy-name-override: ListHistory + /api/v1/apps/{app_id}/sso/applications/{id}/subjects/delete: + post: + description: |- + Deletes one bounded batch of compatibility bindings. Imported and + user-attribute-derived bindings are recoverable so corrected source data + can be applied on the next import or sign-in. Correct attribute source data + before deleting its binding so a concurrent sign-in cannot recreate the + stale value. + operationId: c1.api.sso.v1.SSOApplicationService.BatchDeleteSubjectCompatibility + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: id + required: true + schema: + description: The id field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceBatchDeleteSubjectCompatibilityRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceBatchDeleteSubjectCompatibilityResponse' + description: |- + SSOApplicationServiceBatchDeleteSubjectCompatibilityResponse reports bounded + recovery progress. + summary: Batch Delete Subject Compatibility + tags: + - SSO + x-speakeasy-group: SSOApplication + x-speakeasy-name-override: BatchDeleteSubjectCompatibility + /api/v1/apps/{app_id}/sso/applications/{id}/subjects/import: + post: + description: |- + Validates or imports one bounded batch of compatibility-subject bindings. + Clients parse source files and submit at most 50 rows per request so they + can expose progress and retry from a known boundary. + operationId: c1.api.sso.v1.SSOApplicationService.BatchImportSubjectCompatibility + parameters: + - in: path + name: app_id + required: true + schema: + description: The application in your catalog that owns the SSO application. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the SSO application. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceBatchImportSubjectCompatibilityRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceBatchImportSubjectCompatibilityResponse' + description: |- + SSOApplicationServiceBatchImportSubjectCompatibilityResponse summarizes one + bounded validation or apply batch. + summary: Batch Import Subject Compatibility + tags: + - SSO + x-speakeasy-group: SSOApplication + x-speakeasy-name-override: BatchImportSubjectCompatibility + /api/v1/apps/{app_id}/usage_controls: + get: + description: Get usage controls, as an AppUsageControls object which describes some peripheral configuration, for an app. + operationId: c1.api.app.v1.AppUsageControlsService.Get + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.GetAppUsageControlsResponse' + description: The GetAppUsageControlsResponse message contains the retrieved AppUsageControls object. + summary: Get + tags: + - App Usage Controls + x-speakeasy-group: AppUsageControls + x-speakeasy-name-override: Get + post: + description: Update usage controls for an app. + operationId: c1.api.app.v1.AppUsageControlsService.Update + parameters: + - in: path + name: app_id + required: true + schema: + description: The app that this object belongs to. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.UpdateAppUsageControlsRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.UpdateAppUsageControlsResponse' + description: The UpdateAppUsageControlsResponse message contains the updated AppUsageControls object. + summary: Update + tags: + - App Usage Controls + x-speakeasy-group: AppUsageControls + x-speakeasy-name-override: Update + /api/v1/apps/{app_id}/users/{user_id}/app_users: + get: + description: List app user accounts within a specific app that are correlated to a given C1 user. + operationId: c1.api.app.v1.AppUserService.ListAppUsersForUser + parameters: + - in: path + name: app_id + required: true + schema: + description: The ID of the app to list users for. + type: string + - in: path + name: user_id + required: true + schema: + description: The C1 user ID to filter app users by identity correlation. + type: string + - in: query + name: page_size + schema: + description: The maximum number of results to return per page. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The token for fetching the next page of results. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppUsersForUserServiceListResponse' + description: The response message for listing app users correlated to a specific C1 user. + summary: List App Users For User + tags: + - AppUsers + x-speakeasy-group: AppUser + x-speakeasy-name-override: ListAppUsersForUser + /api/v1/apps/{app_id}/xaa/access_profiles: + get: + description: List the access profiles defined for an application, one page at a time. + operationId: c1.api.cross_app_access.v1.XAAAccessProfileService.List + parameters: + - in: path + name: app_id + required: true + schema: + description: The application to list access profiles for. + type: string + - in: query + name: page_size + schema: + description: Page size (max 100). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileServiceListResponse' + description: XAAAccessProfileServiceListResponse returns a page of access profiles. + summary: List + tags: + - Cross-App Access + x-speakeasy-group: XAAAccessProfile + x-speakeasy-name-override: List + post: + description: |- + Create an access profile under a resource server. The backend also + provisions a backing AppEntitlement that users request to be granted the + profile's scopes. + operationId: c1.api.cross_app_access.v1.XAAAccessProfileService.Create + parameters: + - in: path + name: app_id + required: true + schema: + description: The application that owns the resource server. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileServiceCreateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileServiceCreateResponse' + description: XAAAccessProfileServiceCreateResponse returns the created access profile. + summary: Create + tags: + - Cross-App Access + x-speakeasy-group: XAAAccessProfile + x-speakeasy-name-override: Create + /api/v1/apps/{app_id}/xaa/access_profiles/{access_profile_id}/scope_bindings: + get: + description: List the scopes bound to an access profile, one page at a time. + operationId: c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingService.List + parameters: + - in: path + name: app_id + required: true + schema: + description: The application that owns the resource server. + type: string + - in: path + name: access_profile_id + required: true + schema: + description: The access profile to list bindings for. + type: string + - in: query + name: page_size + schema: + description: Page size (max 100). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingServiceListResponse' + description: XAAAccessProfileScopeBindingServiceListResponse returns scope bindings. + summary: List + tags: + - Cross-App Access + x-speakeasy-group: XAAAccessProfileScopeBinding + x-speakeasy-name-override: List + post: + description: |- + CreateBindings binds one or more scopes (xaa_scope_ids) to an access + profile. Every scope must belong to the profile's resource server. + operationId: c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingService.CreateBindings + parameters: + - in: path + name: app_id + required: true + schema: + description: The application that owns the resource server. + type: string + - in: path + name: access_profile_id + required: true + schema: + description: The access profile to bind scopes to. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingServiceCreateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingServiceCreateResponse' + description: XAAAccessProfileScopeBindingServiceCreateResponse returns created bindings. + summary: Create Bindings + tags: + - Cross-App Access + x-speakeasy-group: XAAAccessProfileScopeBinding + x-speakeasy-name-override: CreateBindings + /api/v1/apps/{app_id}/xaa/access_profiles/{access_profile_id}/scope_bindings/delete: + post: + description: |- + DeleteBindings unbinds one or more scopes (xaa_scope_ids) from an access + profile. Uses a POST .../delete action route because the scope IDs travel + in the request body, which HTTP DELETE does not reliably support. + operationId: c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingService.DeleteBindings + parameters: + - in: path + name: app_id + required: true + schema: + description: The application that owns the resource server. + type: string + - in: path + name: access_profile_id + required: true + schema: + description: The access profile to unbind scopes from. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingServiceDeleteRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingServiceDeleteResponse' + description: XAAAccessProfileScopeBindingServiceDeleteResponse confirms deletion. + summary: Delete Bindings + tags: + - Cross-App Access + x-speakeasy-group: XAAAccessProfileScopeBinding + x-speakeasy-name-override: DeleteBindings + /api/v1/apps/{app_id}/xaa/access_profiles/{id}: + delete: + description: |- + Delete an access profile (soft delete). Cascades to its scope bindings and + backing entitlement; outstanding grants end with the entitlement. + operationId: c1.api.cross_app_access.v1.XAAAccessProfileService.Delete + parameters: + - in: path + name: app_id + required: true + schema: + description: The application that owns the resource server. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the access profile. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileServiceDeleteRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileServiceDeleteResponse' + description: XAAAccessProfileServiceDeleteResponse confirms deletion. + summary: Delete + tags: + - Cross-App Access + x-speakeasy-group: XAAAccessProfile + x-speakeasy-name-override: Delete + get: + description: Get an access profile by app_id + id. + operationId: c1.api.cross_app_access.v1.XAAAccessProfileService.Get + parameters: + - in: path + name: app_id + required: true + schema: + description: The application that owns the resource server. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the access profile. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileServiceGetResponse' + description: XAAAccessProfileServiceGetResponse returns a single access profile. + summary: Get + tags: + - Cross-App Access + x-speakeasy-group: XAAAccessProfile + x-speakeasy-name-override: Get + post: + description: |- + Update an access profile's editable fields via update_mask. Editable + paths: display_name, description. The profile must include id and app_id. + operationId: c1.api.cross_app_access.v1.XAAAccessProfileService.Update + parameters: + - in: path + name: app_id + required: true + schema: + description: The application that owns the resource server. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for this access profile. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileServiceUpdateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileServiceUpdateResponse' + description: XAAAccessProfileServiceUpdateResponse returns the updated access profile. + summary: Update + tags: + - Cross-App Access + x-speakeasy-group: XAAAccessProfile + x-speakeasy-name-override: Update + /api/v1/apps/{app_id}/xaa/access_profiles/{id}/history: + get: + description: |- + ListHistory returns the change history (newest first) for a single access + profile — each entry is a snapshot plus who/when metadata. + operationId: c1.api.cross_app_access.v1.XAAAccessProfileService.ListHistory + parameters: + - in: path + name: app_id + required: true + schema: + description: The application that owns the resource server. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the access profile. + type: string + - in: query + name: page_size + schema: + description: Page size (max 200). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileServiceListHistoryResponse' + description: |- + XAAAccessProfileServiceListHistoryResponse returns access profile history + entries. + summary: List History + tags: + - Cross-App Access + x-speakeasy-group: XAAAccessProfile + x-speakeasy-name-override: ListHistory + /api/v1/apps/{app_id}/xaa/access_profiles/by_app_entitlement_id/{app_entitlement_id}: + get: + description: |- + GetByAppEntitlementId looks up the access profile linked to an + entitlement, by app_id + app_entitlement_id. Used by the request catalog. + operationId: c1.api.cross_app_access.v1.XAAAccessProfileService.GetByAppEntitlementId + parameters: + - in: path + name: app_id + required: true + schema: + description: The application that owns the resource server. + type: string + - in: path + name: app_entitlement_id + required: true + schema: + description: AppEntitlement ID to look up. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileServiceGetByAppEntitlementIdResponse' + description: |- + XAAAccessProfileServiceGetByAppEntitlementIdResponse returns the matched + profile. + summary: Get By App Entitlement Id + tags: + - Cross-App Access + x-speakeasy-group: XAAAccessProfile + x-speakeasy-name-override: GetByAppEntitlementId + /api/v1/apps/{app_id}/xaa/resource_servers: + get: + description: List the resource servers registered for an application, one page at a time. + operationId: c1.api.cross_app_access.v1.XAAResourceServerService.List + parameters: + - in: path + name: app_id + required: true + schema: + description: The application to list resource servers for. + type: string + - in: query + name: page_size + schema: + description: Page size (max 100). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServerServiceListResponse' + description: XAAResourceServerServiceListResponse returns a page of resource servers. + summary: List + tags: + - Cross-App Access + x-speakeasy-group: XAAResourceServer + x-speakeasy-name-override: List + post: + description: |- + Register a resource server (a third-party authorization server) as a + permitted cross-app-access audience for an application. The audience must + be unique within the application and must not equal your own tenant's + issuer — C1 cannot be both the granting IdP and the resource server in the + same flow. + operationId: c1.api.cross_app_access.v1.XAAResourceServerService.Create + parameters: + - in: path + name: app_id + required: true + schema: + description: The application this resource server fronts. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServerServiceCreateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServerServiceCreateResponse' + description: XAAResourceServerServiceCreateResponse returns the registered resource server. + summary: Create + tags: + - Cross-App Access + x-speakeasy-group: XAAResourceServer + x-speakeasy-name-override: Create + /api/v1/apps/{app_id}/xaa/resource_servers/{id}: + delete: + description: |- + Delete a resource server (soft delete). Cascades to its scopes, access + profiles, and client audience mappings. + operationId: c1.api.cross_app_access.v1.XAAResourceServerService.Delete + parameters: + - in: path + name: app_id + required: true + schema: + description: The application this resource server fronts. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the resource server. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServerServiceDeleteRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServerServiceDeleteResponse' + description: XAAResourceServerServiceDeleteResponse confirms deletion. + summary: Delete + tags: + - Cross-App Access + x-speakeasy-group: XAAResourceServer + x-speakeasy-name-override: Delete + get: + description: Get a registered resource server by app_id + id. + operationId: c1.api.cross_app_access.v1.XAAResourceServerService.Get + parameters: + - in: path + name: app_id + required: true + schema: + description: The application this resource server fronts. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the resource server. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServerServiceGetResponse' + description: XAAResourceServerServiceGetResponse returns a single resource server. + summary: Get + tags: + - Cross-App Access + x-speakeasy-group: XAAResourceServer + x-speakeasy-name-override: Get + post: + description: |- + Update a resource server's editable fields via update_mask. The audience + is immutable (delete and recreate to change it); supplying a different + audience is rejected. Editable paths: display_name, description, + resource_uris, max_grant_lifetime, signing_algorithm, + require_proof_of_possession, modify_claims_hook, disabled. sector_id is + immutable once set (delete and recreate to change it). + operationId: c1.api.cross_app_access.v1.XAAResourceServerService.Update + parameters: + - in: path + name: app_id + required: true + schema: + description: The application this resource server fronts. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for this resource server. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServerServiceUpdateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServerServiceUpdateResponse' + description: XAAResourceServerServiceUpdateResponse returns the updated resource server. + summary: Update + tags: + - Cross-App Access + x-speakeasy-group: XAAResourceServer + x-speakeasy-name-override: Update + /api/v1/apps/{app_id}/xaa/resource_servers/{id}/history: + get: + description: |- + ListHistory returns the change history (newest first) for a single + resource server — each entry is a snapshot plus who/when metadata. + operationId: c1.api.cross_app_access.v1.XAAResourceServerService.ListHistory + parameters: + - in: path + name: app_id + required: true + schema: + description: The application this resource server fronts. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the resource server. + type: string + - in: query + name: page_size + schema: + description: Page size (max 200). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServerServiceListHistoryResponse' + description: |- + XAAResourceServerServiceListHistoryResponse returns resource server history + entries. + summary: List History + tags: + - Cross-App Access + x-speakeasy-group: XAAResourceServer + x-speakeasy-name-override: ListHistory + /api/v1/apps/{app_id}/xaa/scopes: + get: + description: |- + List the scopes defined for an application, one page at a time. To filter + by resource server, state, or classification, use Search. + operationId: c1.api.cross_app_access.v1.XAAScopeService.List + parameters: + - in: path + name: app_id + required: true + schema: + description: The application to list scopes for. + type: string + - in: query + name: page_size + schema: + description: Page size (max 100). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScopeServiceListResponse' + description: XAAScopeServiceListResponse returns a page of scopes. + summary: List + tags: + - Cross-App Access + x-speakeasy-group: XAAScope + x-speakeasy-name-override: List + post: + description: |- + Declare a scope under a resource server. The scope value is the literal + OAuth scope string and is immutable after creation. + operationId: c1.api.cross_app_access.v1.XAAScopeService.Create + parameters: + - in: path + name: app_id + required: true + schema: + description: The application that owns the resource server. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScopeServiceCreateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScopeServiceCreateResponse' + description: XAAScopeServiceCreateResponse returns the created scope. + summary: Create + tags: + - Cross-App Access + x-speakeasy-group: XAAScope + x-speakeasy-name-override: Create + /api/v1/apps/{app_id}/xaa/scopes/{id}: + delete: + description: |- + Delete a scope (soft delete). Cascades to its backing entitlement and to + any access-profile bindings that reference it. + operationId: c1.api.cross_app_access.v1.XAAScopeService.Delete + parameters: + - in: path + name: app_id + required: true + schema: + description: The application that owns the resource server. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the scope. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScopeServiceDeleteRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScopeServiceDeleteResponse' + description: XAAScopeServiceDeleteResponse confirms deletion. + summary: Delete + tags: + - Cross-App Access + x-speakeasy-group: XAAScope + x-speakeasy-name-override: Delete + get: + description: Get a scope by app_id + id. + operationId: c1.api.cross_app_access.v1.XAAScopeService.Get + parameters: + - in: path + name: app_id + required: true + schema: + description: The application that owns the resource server. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the scope. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScopeServiceGetResponse' + description: XAAScopeServiceGetResponse returns a single scope. + summary: Get + tags: + - Cross-App Access + x-speakeasy-group: XAAScope + x-speakeasy-name-override: Get + post: + description: |- + Update a scope's editable fields via update_mask. This is how a scope is + approved: set state to ENABLED to make it mintable, or DISABLED to block + it. The scope value is immutable. Editable paths: display_name, + description, state, classification. + operationId: c1.api.cross_app_access.v1.XAAScopeService.Update + parameters: + - in: path + name: app_id + required: true + schema: + description: The application that owns the resource server. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for this scope. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScopeServiceUpdateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScopeServiceUpdateResponse' + description: XAAScopeServiceUpdateResponse returns the updated scope. + summary: Update + tags: + - Cross-App Access + x-speakeasy-group: XAAScope + x-speakeasy-name-override: Update + /api/v1/apps/{app_id}/xaa/scopes/{id}/history: + get: + description: |- + ListHistory returns the change history (newest first) for a single scope — + each entry is a snapshot plus who/when metadata. + operationId: c1.api.cross_app_access.v1.XAAScopeService.ListHistory + parameters: + - in: path + name: app_id + required: true + schema: + description: The application this scope belongs to. + type: string + - in: path + name: id + required: true + schema: + description: Unique identifier for the scope. + type: string + - in: query + name: page_size + schema: + description: Page size (max 200). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScopeServiceListHistoryResponse' + description: XAAScopeServiceListHistoryResponse returns scope history entries. + summary: List History + tags: + - Cross-App Access + x-speakeasy-group: XAAScope + x-speakeasy-name-override: ListHistory + /api/v1/apps/{app_user_app_id}/app_users/{app_user_id}: + post: + description: |- + Update an app user by ID. Only the fields specified in the update mask are updated. + Currently, only the appUserType, and identityUserId fields can be updated. + operationId: c1.api.app.v1.AppUserService.Update + parameters: + - in: path + name: app_user_app_id + required: true + schema: + description: The ID of the application. + readOnly: true + type: string + - in: path + name: app_user_id + required: true + schema: + description: A unique idenditfier of the application user. + readOnly: true + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppUserServiceUpdateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppUserServiceUpdateResponse' + description: Successful response + summary: Update + tags: + - AppUsers + x-speakeasy-group: AppUser + x-speakeasy-name-override: Update + /api/v1/apps/{connector_app_id}/connectors/{connector_id}/delegated: + post: + description: Update a delegated connector. + operationId: c1.api.app.v1.ConnectorService.UpdateDelegated + parameters: + - in: path + name: connector_app_id + required: true + schema: + description: The id of the app the connector is associated with. + type: string + - in: path + name: connector_id + required: true + schema: + description: The id of the connector. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceUpdateDelegatedRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceUpdateResponse' + description: ConnectorServiceUpdateResponse is the response returned by the update method. + summary: Update Delegated + tags: + - Connector + x-speakeasy-group: Connector + x-speakeasy-name-override: UpdateDelegated + /api/v1/apps/{id}: + delete: + description: Delete an app. + operationId: c1.api.app.v1.Apps.Delete + parameters: + - in: path + name: id + required: true + schema: + description: The id field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteAppRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteAppResponse' + description: Empty response body. Status code indicates success. + summary: Delete + tags: + - App + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App#delete + x-speakeasy-group: Apps + x-speakeasy-name-override: Delete + get: + description: Get an app by ID. + operationId: c1.api.app.v1.Apps.Get + parameters: + - in: path + name: id + required: true + schema: + description: The id field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.GetAppResponse' + description: The GetAppResponse message contains the details of the requested app in the app field. + summary: Get + tags: + - App + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: null + terraform-resource: App#read + x-speakeasy-group: Apps + x-speakeasy-name-override: Get + post: + description: Update an existing app. + operationId: c1.api.app.v1.Apps.Update + parameters: + - in: path + name: id + required: true + schema: + description: The ID of the app. + readOnly: true + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.UpdateAppRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.UpdateAppResponse' + description: Returns the updated app's new values. + summary: Update + tags: + - App + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App#update + x-speakeasy-group: Apps + x-speakeasy-name-override: Update + /api/v1/apps/{src_app_id}/{src_app_entitlement_id}/bindings/{dst_app_id}/{dst_app_entitlement_id}: + delete: + description: Delete a proxy binding between a source and destination entitlement. + operationId: c1.api.app.v1.AppEntitlementsProxy.Delete + parameters: + - in: path + name: src_app_id + required: true + schema: + description: The ID of the app that owns the source entitlement. + type: string + - in: path + name: src_app_entitlement_id + required: true + schema: + description: The ID of the source (parent) entitlement. + type: string + - in: path + name: dst_app_id + required: true + schema: + description: The ID of the app that owns the destination entitlement. + type: string + - in: path + name: dst_app_entitlement_id + required: true + schema: + description: The ID of the destination (child) entitlement. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteAppEntitlementProxyRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.DeleteAppEntitlementProxyResponse' + description: The empty response message for deleting an entitlement proxy binding. + summary: Delete + tags: + - App Entitlement Proxy Binding + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App Entitlement Proxy Binding#delete + x-speakeasy-group: AppEntitlementsProxy + x-speakeasy-name-override: Delete + get: + description: Retrieve a specific proxy binding between a source and destination entitlement. + operationId: c1.api.app.v1.AppEntitlementsProxy.Get + parameters: + - in: path + name: src_app_id + required: true + schema: + description: The ID of the app that owns the source entitlement. + type: string + - in: path + name: src_app_entitlement_id + required: true + schema: + description: The ID of the source (parent) entitlement. + type: string + - in: path + name: dst_app_id + required: true + schema: + description: The ID of the app that owns the destination entitlement. + type: string + - in: path + name: dst_app_entitlement_id + required: true + schema: + description: The ID of the destination (child) entitlement. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.GetAppEntitlementProxyResponse' + description: The response message for getting a specific entitlement proxy binding. + summary: Get + tags: + - App Entitlement Proxy Binding + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: App Entitlement Proxy Binding#read + terraform-resource: App Entitlement Proxy Binding#read + x-speakeasy-group: AppEntitlementsProxy + x-speakeasy-name-override: Get + post: + description: Create a proxy binding between a source and destination entitlement, establishing a hierarchical relationship. + operationId: c1.api.app.v1.AppEntitlementsProxy.Create + parameters: + - in: path + name: src_app_id + required: true + schema: + description: The ID of the app that owns the source entitlement. + type: string + - in: path + name: src_app_entitlement_id + required: true + schema: + description: The ID of the source (parent) entitlement. + type: string + - in: path + name: dst_app_id + required: true + schema: + description: The ID of the app that owns the destination entitlement. + type: string + - in: path + name: dst_app_entitlement_id + required: true + schema: + description: The ID of the destination (child) entitlement. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.CreateAppEntitlementProxyRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.CreateAppEntitlementProxyResponse' + description: The response message for creating an entitlement proxy binding. + summary: Create + tags: + - App Entitlement Proxy Binding + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App Entitlement Proxy Binding#create + x-speakeasy-group: AppEntitlementsProxy + x-speakeasy-name-override: Create + /api/v1/apps/connectors/credentials: + post: + description: Rotate credentials for a connector. + operationId: c1.api.app.v1.ConnectorService.RotateCredential + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceRotateCredentialRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceRotateCredentialResponse' + description: ConnectorServiceRotateCredentialResponse is the response returned by the rotate method. + summary: Rotate Credential + tags: + - Connector + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: ConnectorCredential#create + x-speakeasy-group: Connector + x-speakeasy-name-override: RotateCredential + /api/v1/apps/connectors/validate_config/http: + post: + description: Validate an HTTP connector configuration and return any diagnostics or errors found. + operationId: c1.api.app.v1.ConnectorService.ValidateHTTPConnectorConfig + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.EditorValidateRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.EditorValidateResponse' + description: The EditorValidateResponse message contains validation results. + summary: Validate Http Connector Config + tags: + - Connector + x-speakeasy-group: Connector + x-speakeasy-name-override: ValidateHTTPConnectorConfig + /api/v1/attribute/{id}: + delete: + description: Delete an attribute value by id. + operationId: c1.api.attribute.v1.Attributes.DeleteAttributeValue + parameters: + - in: path + name: id + required: true + schema: + description: The id field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.DeleteAttributeValueRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.DeleteAttributeValueResponse' + description: DeleteAttributeValueResponse is the empty response for deleting an attribute value. + summary: Delete Attribute Value + tags: + - Attribute + x-speakeasy-group: Attributes + x-speakeasy-name-override: DeleteAttributeValue + /api/v1/attributes: + post: + description: Create a new attribute value. + operationId: c1.api.attribute.v1.Attributes.CreateAttributeValue + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.CreateAttributeValueRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.CreateAttributeValueResponse' + description: CreateAttributeValueResponse is the response for creating an attribute value. + summary: Create Attribute Value + tags: + - Attribute + x-speakeasy-group: Attributes + x-speakeasy-name-override: CreateAttributeValue + /api/v1/attributes/{id}: + get: + description: Get an attribute value by id. + operationId: c1.api.attribute.v1.Attributes.GetAttributeValue + parameters: + - in: path + name: id + required: true + schema: + description: The id field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.GetAttributeValueResponse' + description: GetAttributeValueResponse is the response for getting an attribute value by id. + summary: Get Attribute Value + tags: + - Attribute + x-speakeasy-group: Attributes + x-speakeasy-name-override: GetAttributeValue + /api/v1/attributes/compliance_frameworks: + get: + description: List all compliance framework attribute values (e.g., SOC 2, HIPAA) with pagination. + operationId: c1.api.attribute.v1.Attributes.ListComplianceFrameworks + parameters: + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.ListComplianceFrameworksResponse' + description: ListComplianceFrameworksResponse is the response for listing compliance framework attribute values. + summary: List Compliance Frameworks + tags: + - Compliance Framework + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: Compliance Frameworks#read + terraform-resource: null + x-speakeasy-group: Attributes + x-speakeasy-name-override: ListComplianceFrameworks + post: + description: Create a compliance framework value. + operationId: c1.api.attribute.v1.Attributes.CreateComplianceFrameworkAttributeValue + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.CreateComplianceFrameworkAttributeValueRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.CreateComplianceFrameworkAttributeValueResponse' + description: Successful response + summary: Create Compliance Framework Attribute Value + tags: + - Compliance Framework + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Compliance Framework#create + x-speakeasy-group: Attributes + x-speakeasy-name-override: CreateComplianceFrameworkAttributeValue + /api/v1/attributes/compliance_frameworks/{id}: + delete: + description: Delete an attribute value by id. + operationId: c1.api.attribute.v1.Attributes.DeleteComplianceFrameworkAttributeValue + parameters: + - in: path + name: id + required: true + schema: + description: The id field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.DeleteComplianceFrameworkAttributeValueRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.DeleteComplianceFrameworkAttributeValueResponse' + description: Successful response + summary: Delete Compliance Framework Attribute Value + tags: + - Compliance Framework + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Compliance Framework#delete + x-speakeasy-group: Attributes + x-speakeasy-name-override: DeleteComplianceFrameworkAttributeValue + get: + description: Get an attribute value by id. + operationId: c1.api.attribute.v1.Attributes.GetComplianceFrameworkAttributeValue + parameters: + - in: path + name: id + required: true + schema: + description: The id field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.GetComplianceFrameworkAttributeValueResponse' + description: Successful response + summary: Get Compliance Framework Attribute Value + tags: + - Compliance Framework + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: Compliance Framework#read + terraform-resource: Compliance Framework#read + x-speakeasy-group: Attributes + x-speakeasy-name-override: GetComplianceFrameworkAttributeValue + /api/v1/attributes/risk_levels: + get: + description: List all risk level attribute values with pagination. + operationId: c1.api.attribute.v1.Attributes.ListRiskLevels + parameters: + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.ListRiskLevelsResponse' + description: ListRiskLevelsResponse is the response for listing risk level attribute values. + summary: List Risk Levels + tags: + - Risk Level + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: Risk Levels#read + terraform-resource: null + x-speakeasy-group: Attributes + x-speakeasy-name-override: ListRiskLevels + post: + description: Create a risk level attribute. + operationId: c1.api.attribute.v1.Attributes.CreateRiskLevelAttributeValue + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.CreateRiskLevelAttributeValueRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.CreateRiskLevelAttributeValueResponse' + description: Successful response + summary: Create Risk Level Attribute Value + tags: + - Risk Level + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Risk Level#create + x-speakeasy-group: Attributes + x-speakeasy-name-override: CreateRiskLevelAttributeValue + /api/v1/attributes/risk_levels/{id}: + delete: + description: Delete a risk level attribute value by id. + operationId: c1.api.attribute.v1.Attributes.DeleteRiskLevelAttributeValue + parameters: + - in: path + name: id + required: true + schema: + description: The id field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.DeleteRiskLevelAttributeValueRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.DeleteRiskLevelAttributeValueResponse' + description: Successful response + summary: Delete Risk Level Attribute Value + tags: + - Risk Level + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Risk Level#delete + x-speakeasy-group: Attributes + x-speakeasy-name-override: DeleteRiskLevelAttributeValue + get: + description: Get a risk level attribute value by id. + operationId: c1.api.attribute.v1.Attributes.GetRiskLevelAttributeValue + parameters: + - in: path + name: id + required: true + schema: + description: The id field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.GetRiskLevelAttributeValueResponse' + description: Successful response + summary: Get Risk Level Attribute Value + tags: + - Risk Level + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: Risk Level#read + terraform-resource: Risk Level#read + x-speakeasy-group: Attributes + x-speakeasy-name-override: GetRiskLevelAttributeValue + /api/v1/attributes/types: + get: + description: List all attribute types. + operationId: c1.api.attribute.v1.Attributes.ListAttributeTypes + parameters: + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.ListAttributeTypesResponse' + description: ListAttributeTypesResponse is the response for listing attribute types. + summary: List Attribute Types + tags: + - Attribute + x-speakeasy-group: Attributes + x-speakeasy-name-override: ListAttributeTypes + /api/v1/attributes/types/{attribute_type_id}/values: + get: + description: List all attribute values for a given attribute type. + operationId: c1.api.attribute.v1.Attributes.ListAttributeValues + parameters: + - in: path + name: attribute_type_id + required: true + schema: + description: The attributeTypeId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.ListAttributeValuesResponse' + description: ListAttributeValuesResponse is the response for listing attribute values for a given AttributeType. + summary: List Attribute Values + tags: + - Attribute + x-speakeasy-group: Attributes + x-speakeasy-name-override: ListAttributeValues + /api/v1/auth-configs: + get: + description: List returns all authentication provider configurations for the tenant. + operationId: c1.api.auth_config.v1.TenantAuthConfigService.List + parameters: + - in: query + name: page_size + schema: + description: The maximum number of results to return per page. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: A pagination token returned from a previous List call. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfigServiceListResponse' + description: Successful response + summary: List + tags: + - Auth Config + x-speakeasy-group: TenantAuthConfig + x-speakeasy-name-override: List + post: + description: Create registers a new authentication provider configuration for the tenant. + operationId: c1.api.auth_config.v1.TenantAuthConfigService.Create + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfigServiceCreateRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfigServiceCreateResponse' + description: Successful response + summary: Create + tags: + - Auth Config + x-speakeasy-group: TenantAuthConfig + x-speakeasy-name-override: Create + /api/v1/auth-configs/{id}: + delete: + description: Delete removes an authentication provider configuration from the tenant. + operationId: c1.api.auth_config.v1.TenantAuthConfigService.Delete + parameters: + - in: path + name: id + required: true + schema: + description: The unique identifier of the authentication provider configuration to delete. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfigServiceDeleteRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfigServiceDeleteResponse' + description: Successful response + summary: Delete + tags: + - Auth Config + x-speakeasy-group: TenantAuthConfig + x-speakeasy-name-override: Delete + get: + description: Get retrieves a single authentication provider configuration by its ID. + operationId: c1.api.auth_config.v1.TenantAuthConfigService.Get + parameters: + - in: path + name: id + required: true + schema: + description: The unique identifier of the authentication provider configuration to retrieve. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfigServiceGetResponse' + description: Successful response + summary: Get + tags: + - Auth Config + x-speakeasy-group: TenantAuthConfig + x-speakeasy-name-override: Get + post: + description: Update modifies an existing authentication provider configuration. Use the update mask to specify which fields to change. + operationId: c1.api.auth_config.v1.TenantAuthConfigService.Update + parameters: + - in: path + name: id + required: true + schema: + description: The id field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfigServiceUpdateRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfigServiceUpdateResponse' + description: Successful response + summary: Update + tags: + - Auth Config + x-speakeasy-group: TenantAuthConfig + x-speakeasy-name-override: Update + /api/v1/auth/introspect: + get: + description: Introspect returns the current user's principle_id, user_id and a list of roles, permissions, and enabled features. + operationId: c1.api.auth.v1.Auth.Introspect + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.auth.v1.IntrospectResponse' + description: IntrospectResponse contains information about the current user who is authenticated. + summary: Introspect + tags: + - Auth + x-speakeasy-group: Auth + x-speakeasy-name-override: Introspect + /api/v1/automation_executions: + get: + description: List all automation executions in the tenant with pagination support. + operationId: c1.api.automations.v1.AutomationExecutionService.ListAutomationExecutions + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.automations.v1.ListAutomationExecutionsResponse' + description: Successful response + summary: List Automation Executions + tags: + - Automations + x-speakeasy-group: AutomationExecution + x-speakeasy-name-override: ListAutomationExecutions + /api/v1/automation_executions/{id}: + get: + description: Retrieve a single automation execution by its unique identifier, with optional expanded related objects. + operationId: c1.api.automations.v1.AutomationExecutionService.GetAutomationExecution + parameters: + - in: path + name: id + required: true + schema: + description: The unique identifier of the automation execution to retrieve. + format: int64 + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.automations.v1.GetAutomationExecutionResponse' + description: Successful response + summary: Get Automation Execution + tags: + - Automations + x-speakeasy-group: AutomationExecution + x-speakeasy-name-override: GetAutomationExecution + /api/v1/automation_executions/{id}/actions/terminate: + post: + description: Terminate a running automation execution asynchronously, stopping it and marking it as terminated. + operationId: c1.api.automations.v1.AutomationExecutionActionsService.TerminateAutomation + parameters: + - in: path + name: id + required: true + schema: + description: The unique identifier of the automation execution to terminate. + format: int64 + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.automations.v1.TerminateAutomationRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.automations.v1.TerminateAutomationResponse' + description: Successful response + summary: Terminate Automation + tags: + - Automations + x-speakeasy-group: AutomationExecutionActions + x-speakeasy-name-override: TerminateAutomation + /api/v1/automations: + get: + description: List all automations in the tenant with pagination support. + operationId: c1.api.automations.v1.AutomationService.ListAutomations + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.automations.v1.ListAutomationsResponse' + description: Successful response + summary: List Automations + tags: + - Automations + x-speakeasy-group: Automation + x-speakeasy-name-override: ListAutomations + post: + description: |- + Create a new automation with the specified steps, triggers, and + configuration. See get_authoring_guide for the AutomationStep contract + (step kinds and their required fields, CEL identifier scope). + + At create time, draft_automation_steps and draft_triggers default to + their published counterparts when omitted — callers writing a single + working version don't need to populate both. The draft/publish + distinction matters only on subsequent edits. + operationId: c1.api.automations.v1.AutomationService.CreateAutomation + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.automations.v1.CreateAutomationRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.automations.v1.CreateAutomationResponse' + description: Successful response + summary: Create Automation + tags: + - Automations + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Automation#create + x-speakeasy-group: Automation + x-speakeasy-name-override: CreateAutomation + /api/v1/automations/{id}: + delete: + description: Delete an automation by its unique identifier, removing it and its associated triggers. + operationId: c1.api.automations.v1.AutomationService.DeleteAutomation + parameters: + - in: path + name: id + required: true + schema: + description: The unique identifier of the automation to delete. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.automations.v1.DeleteAutomationRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.automations.v1.DeleteAutomationResponse' + description: Successful response + summary: Delete Automation + tags: + - Automations + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Automation#delete + x-speakeasy-group: Automation + x-speakeasy-name-override: DeleteAutomation get: - description: ListSurfaces returns active surfaces for a conversation. - operationId: c1.api.a2ui.v1.A2UIService.ListSurfaces + description: Retrieve a single automation by its unique identifier. + operationId: c1.api.automations.v1.AutomationService.GetAutomation parameters: - in: path - name: conversation_id + name: id required: true schema: - description: The conversationId field. - readOnly: false + description: The unique identifier of the automation to retrieve. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIServiceListSurfacesResponse' - description: A2UIServiceListSurfacesResponse returns active surfaces. - summary: List Surfaces + $ref: '#/components/schemas/c1.api.automations.v1.GetAutomationResponse' + description: Successful response + summary: Get Automation tags: - - A 2 UI - x-speakeasy-group: A2UI - x-speakeasy-name-override: ListSurfaces - /api/v1/a2ui/surfaces/{surface_id}/actions: + - Automations + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: null + terraform-resource: Automation#read + x-speakeasy-group: Automation + x-speakeasy-name-override: GetAutomation post: - description: SubmitAction handles user actions on A2UI surfaces. - operationId: c1.api.a2ui.v1.A2UIService.SubmitAction + description: Update an existing automation's properties, steps, or triggers using a field mask. + operationId: c1.api.automations.v1.AutomationService.UpdateAutomation parameters: - in: path - name: surface_id + name: id required: true schema: - description: The surfaceId field. - readOnly: false + description: The id field. + readOnly: true type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIServiceSubmitActionRequestInput' + $ref: '#/components/schemas/c1.api.automations.v1.UpdateAutomationRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIServiceSubmitActionResponse' - description: A2UIServiceSubmitActionResponse returns the result of an action. - summary: Submit Action + $ref: '#/components/schemas/c1.api.automations.v1.UpdateAutomationResponse' + description: Successful response + summary: Update Automation tags: - - A 2 UI - x-speakeasy-group: A2UI - x-speakeasy-name-override: SubmitAction - /api/v1/a2ui/surfaces/{surface_id}/feedback: - get: - description: ListSurfaceFeedback lists feedback for a surface. - operationId: c1.api.a2ui.v1.A2UIService.ListSurfaceFeedback + - Automations + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Automation#update + x-speakeasy-group: Automation + x-speakeasy-name-override: UpdateAutomation + /api/v1/automations/{id}/circuit_breaker/clear: + post: + description: |- + Clear the circuit breaker on an automation that was auto-disabled by the + rate cap. Future events flow normally; existing paused executions are not + affected (use ResolvePausedAutomationExecutions to run or cancel them). + operationId: c1.api.automations.v1.AutomationService.ClearAutomationCircuitBreaker parameters: - in: path - name: surface_id + name: id required: true schema: - description: The surfaceId field. - readOnly: false + description: |- + The unique identifier of the automation whose circuit breaker should + be cleared. type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.automations.v1.ClearAutomationCircuitBreakerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIServiceListSurfaceFeedbackResponse' - description: A2UIServiceListSurfaceFeedbackResponse returns feedback for a surface. - summary: List Surface Feedback + $ref: '#/components/schemas/c1.api.automations.v1.ClearAutomationCircuitBreakerResponse' + description: Successful response + summary: Clear Automation Circuit Breaker tags: - - A 2 UI - x-speakeasy-group: A2UI - x-speakeasy-name-override: ListSurfaceFeedback + - Automations + x-speakeasy-group: Automation + x-speakeasy-name-override: ClearAutomationCircuitBreaker + /api/v1/automations/{id}/circuit_breaker/resolve_paused: post: - description: CreateSurfaceFeedback submits feedback for a surface with a snapshot. - operationId: c1.api.a2ui.v1.A2UIService.CreateSurfaceFeedback + description: |- + Decide what to do with the executions that were paused while the + automation's circuit breaker was tripped. Idempotent. + operationId: c1.api.automations.v1.AutomationService.ResolvePausedAutomationExecutions parameters: - in: path - name: surface_id + name: id required: true schema: - description: The surfaceId field. - readOnly: false + description: |- + The unique identifier of the automation whose paused executions should + be resolved. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIServiceCreateSurfaceFeedbackRequestInput' + $ref: '#/components/schemas/c1.api.automations.v1.ResolvePausedAutomationExecutionsRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.a2ui.v1.A2UIServiceCreateSurfaceFeedbackResponse' - description: A2UIServiceCreateSurfaceFeedbackResponse returns the created feedback. - summary: Create Surface Feedback + $ref: '#/components/schemas/c1.api.automations.v1.ResolvePausedAutomationExecutionsResponse' + description: Successful response + summary: Resolve Paused Automation Executions tags: - - A 2 UI - x-speakeasy-group: A2UI - x-speakeasy-name-override: CreateSurfaceFeedback - /api/v1/access_review: + - Automations + x-speakeasy-group: Automation + x-speakeasy-name-override: ResolvePausedAutomationExecutions + /api/v1/automations/{id}/execute: post: - description: Create creates a new access review campaign with the specified name, policy, and owners. - operationId: c1.api.accessreview.v1.AccessReviewService.Create + description: Trigger an on-demand execution of an automation, returning the new execution's identifier. + operationId: c1.api.automations.v1.AutomationService.ExecuteAutomation + parameters: + - in: path + name: id + required: true + schema: + description: The unique identifier of the automation to execute. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewServiceCreateRequest' + $ref: '#/components/schemas/c1.api.automations.v1.ExecuteAutomationRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewServiceCreateResponse' + $ref: '#/components/schemas/c1.api.automations.v1.ExecuteAutomationResponse' + description: Successful response + summary: Execute Automation + tags: + - Automations + x-speakeasy-group: Automation + x-speakeasy-name-override: ExecuteAutomation + /api/v1/catalogs: + get: + description: Get a list of request catalogs. + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.List + parameters: + - in: query + name: page_size + schema: + description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The page_token field for pagination. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceListResponse' description: Successful response + summary: List + tags: + - Request Catalog + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: Request Catalogs#read + terraform-resource: null + x-speakeasy-group: RequestCatalogManagement + x-speakeasy-name-override: List + post: + description: Creates a new request catalog. + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.Create + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceCreateRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceGetResponse' + description: The request catalog management service get response returns a request catalog view with the expanded items in the expanded array indicated by the expand mask in the request. summary: Create tags: - - Access Review + - Request Catalog x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Access Review#create - x-speakeasy-group: AccessReview + terraform-resource: Access_Profile#create + x-speakeasy-group: RequestCatalogManagement x-speakeasy-name-override: Create - x-stability-level: draft - /api/v1/access_review/{access_review_id}/scope_and_entitlements: + /api/v1/catalogs/{catalog_id}/requestable_entitlementIDs: get: - description: GetCampaignScopeAndEntitlements retrieves the current scope configuration and selected entitlements for an access review campaign. - operationId: c1.api.accessreview.v1.AccessReviewSetupEntitlementService.GetCampaignScopeAndEntitlements + description: List all requestable entitlement IDs in a catalog without pagination. + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.ListAllEntitlementIdsPerApp parameters: - in: path - name: access_review_id + name: catalog_id required: true schema: - description: The ID of the access review campaign to retrieve scope and entitlements for. - readOnly: false + description: The unique identifier of the access profile. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewSetupEntitlementAndScopeServiceSetResponse' - description: Successful response - summary: Get Campaign Scope And Entitlements + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceListAllEntitlementIdsPerCatalogResponse' + description: The response message containing all requestable entitlement references in the catalog. + summary: List All Entitlement Ids Per App tags: - - Access Review + - Request Catalog x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-datasource: Access Review Setup#read - terraform-resource: Access Review Setup#read - x-speakeasy-group: AccessReviewSetupEntitlement - x-speakeasy-name-override: GetCampaignScopeAndEntitlements - x-stability-level: stable + terraform-datasource: null + terraform-resource: Access_Profile_Requestable_Entries#read + x-speakeasy-group: RequestCatalogManagement + x-speakeasy-name-override: ListAllEntitlementIdsPerApp + /api/v1/catalogs/{catalog_id}/requestable_entitlements: + get: + description: List entitlements in a catalog that are requestable. + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.ListEntitlementsPerCatalog + parameters: + - in: path + name: catalog_id + required: true + schema: + description: The catalogId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceListEntitlementsPerCatalogResponse' + description: The RequestCatalogManagementServiceListEntitlementsPerCatalogResponse message contains a list of results and a nextPageToken if applicable. + summary: List Entitlements Per Catalog + tags: + - Request Catalog + x-speakeasy-group: RequestCatalogManagement + x-speakeasy-name-override: ListEntitlementsPerCatalog + /api/v1/catalogs/{catalog_id}/requestable_entitlements/update: post: - description: SetCampaignScopeAndEntitlements replaces the scope configuration and selected entitlements for an access review campaign. - operationId: c1.api.accessreview.v1.AccessReviewSetupEntitlementService.SetCampaignScopeAndEntitlements + description: Replace the full set of requestable entitlements in a catalog with the provided list. + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.UpdateAppEntitlements parameters: - in: path - name: access_review_id + name: catalog_id required: true schema: - description: The ID of the access review campaign to configure. - readOnly: false + description: The Id of the request catalog to get app entitlement to. This is a URL value. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewSetupEntitlementAndScopeServiceSetRequestInput' + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceUpdateAppEntitlementsRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewSetupEntitlementAndScopeServiceSetResponse' - description: Successful response - summary: Set Campaign Scope And Entitlements + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceUpdateAppEntitlementsResponse' + description: The RequestCatalogManagementServiceUpdateAppEntitlementsResponse object is is the response from UpdateAppEntitlements endpoint. + summary: Update App Entitlements tags: - - Access Review + - Request Catalog x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: - - Access Review Setup#create - - Access Review Setup#update - x-speakeasy-group: AccessReviewSetupEntitlement - x-speakeasy-name-override: SetCampaignScopeAndEntitlements - x-stability-level: stable - /api/v1/access_review/{access_review_id}/scope_by_resource_type: - post: - description: SetCampaignScopeByResourceType sets the campaign scope by selecting specific resource types to include in the review. - operationId: c1.api.accessreview.v1.AccessReviewSetupEntitlementService.SetCampaignScopeByResourceType + terraform-resource: Access_Profile_Requestable_Entries#update + x-speakeasy-group: RequestCatalogManagement + x-speakeasy-name-override: UpdateAppEntitlements + /api/v1/catalogs/{catalog_id}/requestable_entries: + delete: + description: Remove requestable entitlements from a catalog. + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.RemoveAppEntitlements parameters: - in: path - name: access_review_id + name: catalog_id required: true schema: - description: The ID of the access review campaign to configure. - readOnly: false + description: The catalogId for the catalog to remove entitlements from. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewSetScopeByResourceTypeRequestInput' + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceRemoveAppEntitlementsRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewSetScopeByResourceTypeResponse' - description: Successful response - summary: Set Campaign Scope By Resource Type + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceRemoveAppEntitlementsResponse' + description: Empty response with a status code indicating success + summary: Remove App Entitlements tags: - - Access Review - x-speakeasy-group: AccessReviewSetupEntitlement - x-speakeasy-name-override: SetCampaignScopeByResourceType - x-stability-level: draft - /api/v1/access_review/{id}: - delete: - description: Delete transitions an access review campaign to the deleted state, along with its dependent objects. - operationId: c1.api.accessreview.v1.AccessReviewService.Delete + - Request Catalog + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Access_Profile_Requestable_Entries#delete + x-speakeasy-group: RequestCatalogManagement + x-speakeasy-name-override: RemoveAppEntitlements + post: + description: Add requestable entitlements to a catalog. + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.AddAppEntitlements parameters: - in: path - name: id + name: catalog_id required: true schema: - description: The ID of the access review campaign to delete. - readOnly: false + description: The Id of the request catalog to add app entitlements to. This is a URL value. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewServiceDeleteRequestInput' + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceAddAppEntitlementsRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewServiceDeleteResponse' - description: Successful response - summary: Delete + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceAddAppEntitlementsResponse' + description: Empty response with a status code indicating success. + summary: Add App Entitlements tags: - - Access Review + - Request Catalog x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Access Review#delete - x-speakeasy-group: AccessReview - x-speakeasy-name-override: Delete - x-stability-level: draft - get: - description: Get retrieves a single access review campaign by ID. - operationId: c1.api.accessreview.v1.AccessReviewService.Get + terraform-resource: Access_Profile_Requestable_Entries#create + x-speakeasy-group: RequestCatalogManagement + x-speakeasy-name-override: AddAppEntitlements + /api/v1/catalogs/{catalog_id}/requestable_entries/{app_id}/{entitlement_id}: + delete: + description: Delete a single requestable entry + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.DeleteRequestableEntry parameters: - in: path - name: id + name: catalog_id required: true schema: - description: The ID of the access review campaign to retrieve. - readOnly: false + description: The ID of the access profile (catalog) + type: string + - in: path + name: app_id + required: true + schema: + description: The ID of the app that contains the entitlement + type: string + - in: path + name: entitlement_id + required: true + schema: + description: The ID of the entitlement type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceDeleteRequestableEntryRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewServiceGetResponse' - description: Successful response - summary: Get + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceDeleteRequestableEntryResponse' + description: Empty response for delete operation + summary: Delete Requestable Entry tags: - - Access Review + - Request Catalog x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-datasource: Access Review#read - terraform-resource: Access Review#read - x-speakeasy-group: AccessReview - x-speakeasy-name-override: Get - x-stability-level: draft - post: - description: Update modifies an existing access review campaign. Use the update_mask to specify which fields to change. - operationId: c1.api.accessreview.v1.AccessReviewService.Update + terraform-resource: Access_Profile_Requestable_Entry#delete + x-speakeasy-group: RequestCatalogManagement + x-speakeasy-name-override: DeleteRequestableEntry + get: + description: Get a single requestable entry + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.GetRequestableEntry parameters: - in: path - name: id + name: catalog_id required: true schema: - description: The unique identifier of this access review campaign. - readOnly: false + description: The ID of the access profile (catalog) + type: string + - in: path + name: app_id + required: true + schema: + description: The ID of the app that contains the entitlement + type: string + - in: path + name: entitlement_id + required: true + schema: + description: The ID of the entitlement type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewServiceUpdateResponse' - description: Successful response - summary: Update + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceGetRequestableEntryResponse' + description: Response containing the requested entry + summary: Get Requestable Entry tags: - - Access Review + - Request Catalog x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Access Review#update - x-speakeasy-group: AccessReview - x-speakeasy-name-override: Update - x-stability-level: draft - /api/v1/access_review_template: - post: - description: Create creates a new access review template that defines a reusable configuration for launching campaigns. - operationId: c1.api.accessreview.v1.AccessReviewTemplateService.Create + terraform-datasource: Access_Profile_Requestable_Entry#read + terraform-resource: null + x-speakeasy-group: RequestCatalogManagement + x-speakeasy-name-override: GetRequestableEntry + put: + description: Create a single requestable entry + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.CreateRequestableEntry + parameters: + - in: path + name: catalog_id + required: true + schema: + description: The ID of the access profile (catalog) to add the entitlement to + type: string + - in: path + name: app_id + required: true + schema: + description: The ID of the app that contains the entitlement + type: string + - in: path + name: entitlement_id + required: true + schema: + description: The ID of the entitlement to add to the request catalog + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateServiceCreateRequest' + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceCreateRequestableEntryRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateServiceCreateResponse' - description: Successful response - summary: Create + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceCreateRequestableEntryResponse' + description: Response containing the created requestable entry + summary: Create Requestable Entry tags: - - Access Review Template + - Request Catalog x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Access Review Template#create - x-speakeasy-group: AccessReviewTemplate - x-speakeasy-name-override: Create - x-stability-level: draft - /api/v1/access_review_template/{access_review_template_id}/scope_and_entitlements: - get: - description: GetScopeAndEntitlements retrieves the current scope configuration and selected entitlements for an access review template. - operationId: c1.api.accessreview.v1.AccessReviewTemplateSetupEntitlementService.GetScopeAndEntitlements + terraform-resource: Access_Profile_Requestable_Entry#create + x-speakeasy-group: RequestCatalogManagement + x-speakeasy-name-override: CreateRequestableEntry + /api/v1/catalogs/{catalog_id}/visibility_bindings: + delete: + description: Remove visibility bindings (access entitlements) from a catalog. + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.RemoveAccessEntitlements parameters: - in: path - name: access_review_template_id + name: catalog_id required: true schema: - description: The ID of the access review template to retrieve scope and entitlements for. - readOnly: false + description: The catalogId for the catalog to remove access entitlements from. type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceRemoveAccessEntitlementsRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateSetupEntitlementServiceSetResponse' - description: Successful response - summary: Get Scope And Entitlements + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceRemoveAccessEntitlementsResponse' + description: Empty response with a status code indicating success. + summary: Remove Access Entitlements tags: - - Access Review Templates + - Request Catalog x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-datasource: Access Review Template Setup#read - terraform-resource: Access Review Template Setup#read - x-speakeasy-group: AccessReviewTemplateSetupEntitlement - x-speakeasy-name-override: GetScopeAndEntitlements - x-stability-level: stable + terraform-resource: Access_Profile_Visibility_Bindings#delete + x-speakeasy-group: RequestCatalogManagement + x-speakeasy-name-override: RemoveAccessEntitlements post: - description: SetScopeAndEntitlements replaces the scope configuration and selected entitlements for an access review template. - operationId: c1.api.accessreview.v1.AccessReviewTemplateSetupEntitlementService.SetScopeAndEntitlements + description: Add visibility bindings (access entitlements) to a catalog. + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.AddAccessEntitlements parameters: - in: path - name: access_review_template_id + name: catalog_id required: true schema: - description: The ID of the access review template to configure. - readOnly: false + description: The Id of the request catalog to add access entitlements to. This is a URL value. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateSetupEntitlementServiceSetRequestInput' + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceAddAccessEntitlementsRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateSetupEntitlementServiceSetResponse' - description: Successful response - summary: Set Scope And Entitlements + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceAddAccessEntitlementsResponse' + description: Empty response with a status code indicating success. + summary: Add Access Entitlements tags: - - Access Review Templates + - Request Catalog x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: - - Access Review Template Setup#create - - Access Review Template Setup#update - x-speakeasy-group: AccessReviewTemplateSetupEntitlement - x-speakeasy-name-override: SetScopeAndEntitlements - x-stability-level: stable - /api/v1/access_review_template/{access_review_template_id}/scope_by_resource_type: - post: - description: SetScopeByResourceType sets the template scope by selecting specific resource types to include in campaigns created from this template. - operationId: c1.api.accessreview.v1.AccessReviewTemplateSetupEntitlementService.SetScopeByResourceType + terraform-resource: Access_Profile_Visibility_Bindings#create + x-speakeasy-group: RequestCatalogManagement + x-speakeasy-name-override: AddAccessEntitlements + /api/v1/catalogs/{catalog_id}/visibility_entitlements: + get: + description: List visibility bindings (access entitlements) for a catalog. + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.ListEntitlementsForAccess parameters: - in: path - name: access_review_template_id + name: catalog_id required: true schema: - description: The ID of the access review template to configure. - readOnly: false + description: The catalogId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateSetScopeByResourceTypeRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateSetScopeByResourceTypeResponse' - description: Successful response - summary: Set Scope By Resource Type + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceListEntitlementsForAccessResponse' + description: The RequestCatalogManagementServiceListEntitlementsForAccessResponse message contains a list of results and a nextPageToken if applicable. + summary: List Entitlements For Access tags: - - Access Review Templates - x-speakeasy-group: AccessReviewTemplateSetupEntitlement - x-speakeasy-name-override: SetScopeByResourceType - x-stability-level: draft - /api/v1/access_review_template/{id}: + - Request Catalog + x-speakeasy-group: RequestCatalogManagement + x-speakeasy-name-override: ListEntitlementsForAccess + /api/v1/catalogs/{id}: delete: - description: Delete an access review template. The template can no longer be used to create campaigns. - operationId: c1.api.accessreview.v1.AccessReviewTemplateService.Delete + description: Delete a catalog. + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.Delete parameters: - in: path name: id required: true schema: - description: The ID of the access review template to delete. - readOnly: false + description: The Id of the RequestCatalog to delete. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateServiceDeleteRequestInput' + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceDeleteRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateServiceDeleteResponse' - description: Successful response + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceDeleteResponse' + description: Empty response with a status code indicating success. summary: Delete tags: - - Access Review Template + - Request Catalog x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Access Review Template#delete - x-speakeasy-group: AccessReviewTemplate + terraform-resource: Access_Profile#delete + x-speakeasy-group: RequestCatalogManagement x-speakeasy-name-override: Delete - x-stability-level: draft get: - description: Get retrieves a single access review template by ID. - operationId: c1.api.accessreview.v1.AccessReviewTemplateService.Get + description: Get a catalog. + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.Get parameters: - in: path name: id required: true schema: - description: The ID of the access review template to retrieve. - readOnly: false + description: The id field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateServiceGetResponse' - description: Successful response + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceGetResponse' + description: The request catalog management service get response returns a request catalog view with the expanded items in the expanded array indicated by the expand mask in the request. summary: Get tags: - - Access Review Template + - Request Catalog x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-datasource: Access Review Template#read - terraform-resource: Access Review Template#read - x-speakeasy-group: AccessReviewTemplate + terraform-datasource: Access_Profile#read + terraform-resource: Access_Profile#read + x-speakeasy-group: RequestCatalogManagement x-speakeasy-name-override: Get - x-stability-level: draft post: - description: Update modifies an existing access review template. Use the update_mask to specify which fields to change. - operationId: c1.api.accessreview.v1.AccessReviewTemplateService.Update + description: Update a catalog. + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.Update parameters: - in: path name: id required: true schema: - description: The unique identifier of this template. - readOnly: false + description: The id of the request catalog. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateServiceUpdateRequestInput' + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewTemplateServiceUpdateResponse' - description: Successful response + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceGetResponse' + description: The request catalog management service get response returns a request catalog view with the expanded items in the expanded array indicated by the expand mask in the request. summary: Update tags: - - Access Review Template + - Request Catalog x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Access Review Template#update - x-speakeasy-group: AccessReviewTemplate + terraform-resource: Access_Profile#update + x-speakeasy-group: RequestCatalogManagement x-speakeasy-name-override: Update - x-stability-level: draft - /api/v1/access_reviews: - get: - description: List returns a paginated list of access review campaigns. - operationId: c1.api.accessreview.v1.AccessReviewService.List + /api/v1/catalogs/{request_catalog_id}/bundle_automation: + delete: + description: Delete the bundle automation rule for a catalog, stopping automatic membership syncing. + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.DeleteBundleAutomation parameters: - - in: query - name: page_size - schema: - description: The maximum number of results to return per page. Maximum 100. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token + - in: path + name: request_catalog_id + required: true schema: - description: Pagination token from a previous List response to fetch the next page. - readOnly: false + description: The unique identifier of the access profile whose automation should be deleted. type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.requestcatalog.v1.DeleteBundleAutomationRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessreview.v1.AccessReviewServiceListResponse' - description: Successful response - summary: List + $ref: '#/components/schemas/c1.api.requestcatalog.v1.DeleteBundleAutomationResponse' + description: The response message for deleting a bundle automation. + summary: Delete Bundle Automation tags: - - Access Review + - Request Catalog x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-datasource: Access Reviews#read - terraform-resource: Access Reviews#read - x-speakeasy-group: AccessReview - x-speakeasy-name-override: List - x-stability-level: draft - /api/v1/accessconflict: - post: - description: Create a new conflict monitor for defining a Separation of Duty rule. Entitlement sets are bound separately via AppEntitlementMonitorBindingService. - operationId: c1.api.accessconflict.v1.AccessConflictService.CreateMonitor - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.accessconflict.v1.ConflictMonitorCreateRequest' + terraform-resource: BundleAutomation#delete + x-speakeasy-group: RequestCatalogManagement + x-speakeasy-name-override: DeleteBundleAutomation + get: + description: Get bundle automation + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.GetBundleAutomation + parameters: + - in: path + name: request_catalog_id + required: true + schema: + description: The requestCatalogId field. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessconflict.v1.ConflictMonitor' - description: |- - A conflict monitor defines a Separation of Duty rule between two entitlement sets. - It detects when any user holds entitlements from both set A and set B simultaneously. - summary: Create Monitor + $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomation' + description: Successful response + summary: Get Bundle Automation tags: - - Access Conflict + - Request Catalog x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Access_Conflict#create - x-speakeasy-group: AccessConflict - x-speakeasy-name-override: CreateMonitor - /api/v1/accessconflict/{id}: - delete: - description: Delete a conflict monitor and its associated entitlement set bindings. - operationId: c1.api.accessconflict.v1.AccessConflictService.DeleteMonitor + terraform-datasource: BundleAutomation#read + terraform-resource: BundleAutomation#read + x-speakeasy-group: RequestCatalogManagement + x-speakeasy-name-override: GetBundleAutomation + post: + description: Create or update the bundle automation rule for a catalog that automatically syncs catalog membership. + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.SetBundleAutomation parameters: - in: path - name: id + name: request_catalog_id required: true schema: - description: The unique identifier of the conflict monitor to delete. - readOnly: false + description: The unique identifier of the access profile to set the automation on. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessconflict.v1.ConflictMonitorDeleteRequestInput' + $ref: '#/components/schemas/c1.api.requestcatalog.v1.SetBundleAutomationRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessconflict.v1.ConflictMonitorDeleteResponse' - description: The response message for deleting a conflict monitor. - summary: Delete Monitor + $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomation' + description: Successful response + summary: Set Bundle Automation tags: - - Access Conflict + - Request Catalog x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Access_Conflict#delete - x-speakeasy-group: AccessConflict - x-speakeasy-name-override: DeleteMonitor - get: - description: Retrieve a single conflict monitor by ID. - operationId: c1.api.accessconflict.v1.AccessConflictService.GetMonitor + terraform-resource: BundleAutomation#update + x-speakeasy-group: RequestCatalogManagement + x-speakeasy-name-override: SetBundleAutomation + /api/v1/catalogs/{request_catalog_id}/bundle_automation/create: + post: + description: Create a new bundle automation rule for a catalog that automatically syncs catalog membership from a query. + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.CreateBundleAutomation parameters: - in: path - name: id + name: request_catalog_id required: true schema: - description: The unique identifier of the conflict monitor to retrieve. - readOnly: false + description: The unique identifier of the access profile to create the automation for. type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.requestcatalog.v1.CreateBundleAutomationRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessconflict.v1.ConflictMonitor' - description: |- - A conflict monitor defines a Separation of Duty rule between two entitlement sets. - It detects when any user holds entitlements from both set A and set B simultaneously. - summary: Get Monitor + $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomation' + description: Successful response + summary: Create Bundle Automation tags: - - Access Conflict + - Request Catalog x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-datasource: null - terraform-resource: Access_Conflict#read - x-speakeasy-group: AccessConflict - x-speakeasy-name-override: GetMonitor + terraform-resource: BundleAutomation#create + x-speakeasy-group: RequestCatalogManagement + x-speakeasy-name-override: CreateBundleAutomation + /api/v1/catalogs/{request_catalog_id}/bundle_automation/resume: post: - description: Update the display name, description, or notification settings of a conflict monitor. - operationId: c1.api.accessconflict.v1.AccessConflictService.UpdateMonitor + description: Resume a bundle automation that was paused by the circuit breaker after detecting excessive membership changes. + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.ResumePausedBundleAutomation parameters: - in: path - name: id + name: request_catalog_id required: true schema: - description: The unique identifier of the conflict monitor to update. - readOnly: false + description: The unique identifier of the access profile whose automation should be resumed. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessconflict.v1.ConflictMonitorUpdateRequestInput' + $ref: '#/components/schemas/c1.api.requestcatalog.v1.ResumePausedBundleAutomationRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessconflict.v1.ConflictMonitor' - description: |- - A conflict monitor defines a Separation of Duty rule between two entitlement sets. - It detects when any user holds entitlements from both set A and set B simultaneously. - summary: Update Monitor + $ref: '#/components/schemas/c1.api.requestcatalog.v1.ResumePausedBundleAutomationResponse' + description: The response message for resuming a paused bundle automation. + summary: Resume Paused Bundle Automation tags: - - Access Conflict - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Access_Conflict#update - x-speakeasy-group: AccessConflict - x-speakeasy-name-override: UpdateMonitor - /api/v1/appentitlementmonitorbinding: - delete: - description: Remove an app entitlement from a conflict monitor's entitlement set. - operationId: c1.api.accessconflict.v1.AppEntitlementMonitorBindingService.DeleteAppEntitlementMonitorBinding + - Request Catalog + x-speakeasy-group: RequestCatalogManagement + x-speakeasy-name-override: ResumePausedBundleAutomation + /api/v1/catalogs/{request_catalog_id}/bundle_automation/run: + post: + description: Trigger an immediate execution of a catalog's bundle automation, bypassing the normal schedule. + operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.ForceRunBundleAutomation + parameters: + - in: path + name: request_catalog_id + required: true + schema: + description: The unique identifier of the access profile whose automation should be run. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessconflict.v1.DeleteAppEntitlementMonitorBindingRequest' + $ref: '#/components/schemas/c1.api.requestcatalog.v1.ForceRunBundleAutomationRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessconflict.v1.DeleteAppEntitlementMonitorBindingResponse' - description: The response message for deleting an app entitlement monitor binding. - summary: Delete App Entitlement Monitor Binding + $ref: '#/components/schemas/c1.api.requestcatalog.v1.ForceRunBundleAutomationResponse' + description: The response message for triggering a bundle automation run. + summary: Force Run Bundle Automation tags: - - App Entitlement Monitor Binding - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App_Entitlement_Monitor_Binding#delete - x-speakeasy-group: AppEntitlementMonitorBinding - x-speakeasy-name-override: DeleteAppEntitlementMonitorBinding + - Request Catalog + x-speakeasy-group: RequestCatalogManagement + x-speakeasy-name-override: ForceRunBundleAutomation + /api/v1/connector-authoring/activations: post: - description: Bind an app entitlement to one side (A or B) of a conflict monitor. - operationId: c1.api.accessconflict.v1.AppEntitlementMonitorBindingService.CreateAppEntitlementMonitorBinding + description: |- + ActivateRevision redeems a one-time approval token to activate a built + connector revision onto its instance connector. It is OWNER-only. + Double-activate protection is the single-use approval token itself: redeeming + it is a compare-and-swap that rejects a second redemption of the same token. + idempotency_key is optional and reserved for a future replay-result cache. + operationId: c1.api.connector_authoring.v1.ConnectorAuthoringActivationService.ActivateRevision requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessconflict.v1.CreateAppEntitlementMonitorBindingRequest' + $ref: '#/components/schemas/c1.api.connector_authoring.v1.ConnectorAuthoringServiceActivateRevisionRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessconflict.v1.AppEntitlementMonitorBinding' - description: Represents the association of an app entitlement with one side (A or B) of a conflict monitor. - summary: Create App Entitlement Monitor Binding + $ref: '#/components/schemas/c1.api.connector_authoring.v1.ConnectorAuthoringServiceActivateRevisionResponse' + description: Successful response + summary: Activate Revision tags: - - App Entitlement Monitor Binding - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App_Entitlement_Monitor_Binding#create - x-speakeasy-group: AppEntitlementMonitorBinding - x-speakeasy-name-override: CreateAppEntitlementMonitorBinding - /api/v1/appentitlementmonitorbinding/get: + - Connector Authoring Activation + x-speakeasy-group: ConnectorAuthoringActivation + x-speakeasy-name-override: ActivateRevision + /api/v1/connector-authoring/rollbacks: post: - description: Retrieve a single binding that associates an app entitlement with one side of a conflict monitor. - operationId: c1.api.accessconflict.v1.AppEntitlementMonitorBindingService.GetAppEntitlementMonitorBinding + description: |- + RollbackRevision redeems a one-time approval token (bound to the rollback + target's integrity root) to re-point the published + instance pointers at a + previously activated, still-servable revision under a strictly greater + activation epoch. It is OWNER-only. The rolled-back-FROM revision's serve + state is untouched — the pointer move alone stops it serving; permanently + ending a revision's serve eligibility is a platform kill-switch operation, + not a tenant API verb. + operationId: c1.api.connector_authoring.v1.ConnectorAuthoringActivationService.RollbackRevision requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessconflict.v1.GetAppEntitlementMonitorBindingRequest' + $ref: '#/components/schemas/c1.api.connector_authoring.v1.ConnectorAuthoringServiceRollbackRevisionRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.accessconflict.v1.AppEntitlementMonitorBinding' - description: Represents the association of an app entitlement with one side (A or B) of a conflict monitor. - summary: Get App Entitlement Monitor Binding + $ref: '#/components/schemas/c1.api.connector_authoring.v1.ConnectorAuthoringServiceRollbackRevisionResponse' + description: Successful response + summary: Rollback Revision tags: - - App Entitlement Monitor Binding - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: App_Entitlement_Monitor_Binding#read - terraform-resource: App_Entitlement_Monitor_Binding#read - x-speakeasy-group: AppEntitlementMonitorBinding - x-speakeasy-name-override: GetAppEntitlementMonitorBinding - /api/v1/apps: - get: - description: List all apps. - operationId: c1.api.app.v1.Apps.List - parameters: - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false - type: string + - Connector Authoring Activation + x-speakeasy-group: ConnectorAuthoringActivation + x-speakeasy-name-override: RollbackRevision + /api/v1/connectorcatalog: + post: + description: Return the configuration schema describing the fields required to set up a connector of the specified type. + operationId: c1.api.integration.connector.v1.ConnectorCatalogService.ConfigurationSchema + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.integration.connector.v1.ConnectorCatalogServiceConfigurationSchemaRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ListAppsResponse' - description: The ListAppsResponse message contains a list of results and a nextPageToken if applicable. - summary: List + $ref: '#/components/schemas/c1.api.integration.connector.v1.ConnectorCatalogServiceConfigurationSchemaResponse' + description: ConnectorCatalogServiceConfigurationSchemaResponse is the response containing the connector's configuration schema. + summary: Configuration Schema tags: - - App - x-speakeasy-group: Apps - x-speakeasy-name-override: List + - Connector Catalog + x-speakeasy-group: ConnectorCatalog + x-speakeasy-name-override: ConfigurationSchema + /api/v1/conversations/onboarding:ensure: post: - description: Create a new manual app without a connector. - operationId: c1.api.app.v1.Apps.Create + description: |- + EnsureOnboardingSession returns the tenant's active onboarding conversation, + or creates and starts it once. Retries converge on the stored conversation. + operationId: c1.api.conversations.v1.UIConversationsService.EnsureOnboardingSession requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.CreateAppRequest' + $ref: '#/components/schemas/c1.api.conversations.v1.EnsureOnboardingSessionRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.CreateAppResponse' - description: Returns the new app's values. - summary: Create + $ref: '#/components/schemas/c1.api.conversations.v1.EnsureOnboardingSessionResponse' + description: Returns the active onboarding conversation and whether this call created it. + summary: Ensure Onboarding Session tags: - - App - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App#create - x-speakeasy-group: Apps - x-speakeasy-name-override: Create - /api/v1/apps/{app_id}/access_request_defaults: + - Conversations + x-speakeasy-group: UIConversations + x-speakeasy-name-override: EnsureOnboardingSession + /api/v1/credential-inventory-policies: get: - description: Retrieve the current access request default settings for an app. - operationId: c1.api.app.v1.AppAccessRequestsDefaultsService.GetAppAccessRequestsDefaults - parameters: - - in: path - name: app_id - required: true + description: List all credential inventory policies in your tenant, one page at a time. + operationId: c1.api.credential_inventory.v1.CredentialInventoryPolicyService.List + parameters: + - in: query + name: page_size schema: - description: The ID of the app to retrieve access request defaults for. - readOnly: false + description: The maximum number of results to return per page. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: A pagination token from a previous List response. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppAccessRequestDefaults' + $ref: '#/components/schemas/c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceListResponse' description: Successful response - summary: Get App Access Requests Defaults + summary: List tags: - - AppAccessRequestDefaults - x-speakeasy-group: AppAccessRequestsDefaults - x-speakeasy-name-override: GetAppAccessRequestsDefaults + - Credential Inventory + x-speakeasy-group: CredentialInventoryPolicy + x-speakeasy-name-override: List post: - description: Create or replace the access request default settings for an app. - operationId: c1.api.app.v1.AppAccessRequestsDefaultsService.CreateAppAccessRequestsDefaults - parameters: - - in: path - name: app_id - required: true - schema: - description: The app id for the app access request rule - readOnly: false - type: string + description: Create a credential inventory policy. + operationId: c1.api.credential_inventory.v1.CredentialInventoryPolicyService.Create requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppAccessRequestDefaultsInput' + $ref: '#/components/schemas/c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceCreateRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppAccessRequestDefaults' + $ref: '#/components/schemas/c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceCreateResponse' description: Successful response - summary: Create App Access Requests Defaults + summary: Create tags: - - AppAccessRequestDefaults - x-speakeasy-group: AppAccessRequestsDefaults - x-speakeasy-name-override: CreateAppAccessRequestsDefaults - /api/v1/apps/{app_id}/access_request_defaults/cancel: - post: - description: Cancel an in-progress apply operation for the app's access request defaults. - operationId: c1.api.app.v1.AppAccessRequestsDefaultsService.CancelAppAccessRequestsDefaults + - Credential Inventory + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: CredentialInventoryPolicy#create + x-speakeasy-group: CredentialInventoryPolicy + x-speakeasy-name-override: Create + /api/v1/credential-inventory-policies/{id}: + delete: + description: Delete a credential inventory policy by ID. + operationId: c1.api.credential_inventory.v1.CredentialInventoryPolicyService.Delete parameters: - in: path - name: app_id + name: id required: true schema: - description: The ID of the app whose access request defaults apply operation should be cancelled. - readOnly: false + description: The ID of the policy to delete. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.CancelAccessRequestDefaultsRequestInput' + $ref: '#/components/schemas/c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceDeleteRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppAccessRequestDefaults' + $ref: '#/components/schemas/c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceDeleteResponse' description: Successful response - summary: Cancel App Access Requests Defaults + summary: Delete tags: - - AppAccessRequestDefaults - x-speakeasy-group: AppAccessRequestsDefaults - x-speakeasy-name-override: CancelAppAccessRequestsDefaults - /api/v1/apps/{app_id}/app_users: + - Credential Inventory + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: CredentialInventoryPolicy#delete + x-speakeasy-group: CredentialInventoryPolicy + x-speakeasy-name-override: Delete get: - description: List app user accounts within a specific app, with pagination support. - operationId: c1.api.app.v1.AppUserService.List + description: Get a credential inventory policy by ID. + operationId: c1.api.credential_inventory.v1.CredentialInventoryPolicyService.Get parameters: - in: path - name: app_id + name: id required: true schema: - description: The ID of the app to list users for. - readOnly: false - type: string - - in: query - name: page_size - schema: - description: The maximum number of results to return per page. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The token for fetching the next page of results. - readOnly: false + description: The ID of the policy to retrieve. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppUserServiceListResponse' - description: The response message for listing app users. - summary: List + $ref: '#/components/schemas/c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceGetResponse' + description: Successful response + summary: Get tags: - - AppUsers - x-speakeasy-group: AppUser - x-speakeasy-name-override: List - /api/v1/apps/{app_id}/app_users/{app_user_id}/credentials: - get: - description: List credentials associated with a specific app user account. - operationId: c1.api.app.v1.AppUserService.ListAppUserCredentials + - Credential Inventory + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: null + terraform-resource: CredentialInventoryPolicy#read + x-speakeasy-group: CredentialInventoryPolicy + x-speakeasy-name-override: Get + post: + description: |- + Update a credential inventory policy. Supply the policy object and an + update mask listing the fields to change; omitted fields are left as-is. + operationId: c1.api.credential_inventory.v1.CredentialInventoryPolicyService.Update parameters: - in: path - name: app_id - required: true - schema: - description: The ID of the app that the user belongs to. - readOnly: false - type: string - - in: path - name: app_user_id + name: id required: true schema: - description: The ID of the app user whose credentials to list. - readOnly: false - type: string - - in: query - name: page_size - schema: - description: The maximum number of results to return per page. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The token for fetching the next page of results. - readOnly: false + description: Unique identifier for the policy. + readOnly: true type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppUserServiceListCredentialsResponse' - description: The response message for listing credentials of an app user. - summary: List App User Credentials + $ref: '#/components/schemas/c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceUpdateResponse' + description: Successful response + summary: Update tags: - - AppUsers - x-speakeasy-group: AppUser - x-speakeasy-name-override: ListAppUserCredentials - /api/v1/apps/{app_id}/connectors: + - Credential Inventory + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: CredentialInventoryPolicy#update + x-speakeasy-group: CredentialInventoryPolicy + x-speakeasy-name-override: Update + /api/v1/decoys: get: - description: List connectors for an app. - operationId: c1.api.app.v1.ConnectorService.List - parameters: - - in: path - name: app_id - required: true - schema: - description: The appId field. - readOnly: false - type: string - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false - type: string + description: List returns decoys for the tenant, paginated. + operationId: c1.api.decoy.v1.DecoyService.List responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceListResponse' - description: The ConnectorServiceListResponse message contains a list of results and a nextPageToken if applicable + $ref: '#/components/schemas/c1.api.decoy.v1.DecoyServiceListResponse' + description: Successful response summary: List tags: - - Connector - x-speakeasy-group: Connector + - Decoy + x-speakeasy-group: Decoy x-speakeasy-name-override: List post: - description: Create a connector that is pending a connector config. - operationId: c1.api.app.v1.ConnectorService.CreateDelegated - parameters: - - in: path - name: app_id - required: true - schema: - description: The appId of the app the connector is attached to. - readOnly: false - type: string + description: |- + Create mints a decoy credential and returns the one-time vending + material exactly once. The Decoy id is server-set; the credential's + secret cannot be retrieved again after this response. + operationId: c1.api.decoy.v1.DecoyService.Create requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceCreateDelegatedRequestInput' + $ref: '#/components/schemas/c1.api.decoy.v1.DecoyServiceCreateRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceCreateResponse' - description: The ConnectorServiceCreateResponse is the response returned from creating a connector. - summary: Create Delegated + $ref: '#/components/schemas/c1.api.decoy.v1.DecoyServiceCreateResponse' + description: Successful response + summary: Create tags: - - Connector - x-speakeasy-group: Connector - x-speakeasy-name-override: CreateDelegated - /api/v1/apps/{app_id}/connectors/{connector_id}/confirm_sync_valid/{sync_lifecycle_id}: - post: - description: Confirm that a sync which errored due to a data drop is valid, overriding the error and triggering a new sync. Only applicable when the sync status is ERRORED_NO_DATA. - operationId: c1.api.app.v1.ConnectorService.ConfirmSyncValid + - Decoy + x-speakeasy-group: Decoy + x-speakeasy-name-override: Create + /api/v1/decoys/{id}: + delete: + description: Delete soft-deletes a decoy and disables the paired credential row. + operationId: c1.api.decoy.v1.DecoyService.Delete parameters: - in: path - name: app_id - required: true - schema: - description: The AppID of the app the connector is attached to. - readOnly: false - type: string - - in: path - name: connector_id - required: true - schema: - description: The ConnectorID of the connector that we are confirming the sync for. - readOnly: false - type: string - - in: path - name: sync_lifecycle_id + name: id required: true schema: - description: The completed lifecycle id of the most recent sync we want to validate - readOnly: false + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ConfirmSyncValidRequestInput' + $ref: '#/components/schemas/c1.api.decoy.v1.DecoyServiceDeleteRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ConfirmSyncValidResponse' - description: Empty response body. Status code indicates success. - summary: Confirm Sync Valid + $ref: '#/components/schemas/c1.api.decoy.v1.DecoyServiceDeleteResponse' + description: Successful response + summary: Delete tags: - - Connector - x-speakeasy-group: Connector - x-speakeasy-name-override: ConfirmSyncValid - /api/v1/apps/{app_id}/connectors/{connector_id}/credentials/{id}: + - Decoy + x-speakeasy-group: Decoy + x-speakeasy-name-override: Delete get: - description: Get credentials for a connector. - operationId: c1.api.app.v1.ConnectorService.GetCredentials + description: Get returns a decoy by id. + operationId: c1.api.decoy.v1.DecoyService.Get parameters: - - in: path - name: app_id - required: true - schema: - description: The appId of the app the connector is attached to. - readOnly: false - type: string - - in: path - name: connector_id - required: true - schema: - description: The connectorId of the connector that we are getting the credentials for. - readOnly: false - type: string - in: path name: id required: true schema: - description: The id of the ConnectorCredential. - readOnly: false + description: The id field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceGetCredentialsResponse' - description: ConnectorServiceGetCredentialsResponse is the response returned by the get method. - summary: Get Credentials + $ref: '#/components/schemas/c1.api.decoy.v1.DecoyServiceGetResponse' + description: Successful response + summary: Get tags: - - Connector - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: ConnectorCredential#read - terraform-resource: ConnectorCredential#read - x-speakeasy-group: Connector - x-speakeasy-name-override: GetCredentials - post: - description: Revoke credentials for a connector. - operationId: c1.api.app.v1.ConnectorService.RevokeCredential + - Decoy + x-speakeasy-group: Decoy + x-speakeasy-name-override: Get + patch: + description: |- + Update modifies mutable metadata on a decoy. The decoy variant is + fixed at Create -- rotate the secret with Rotate instead. + operationId: c1.api.decoy.v1.DecoyService.Update parameters: - - in: path - name: app_id - required: true - schema: - description: The appId of the app the connector is attached to. - readOnly: false - type: string - - in: path - name: connector_id - required: true - schema: - description: The connectorId of the connector that we are revoking the credentials for. - readOnly: false - type: string - in: path name: id required: true schema: - description: The id of the ConnectorCredential. - readOnly: false + description: The id field. + readOnly: true type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceRevokeCredentialRequestInput' + $ref: '#/components/schemas/c1.api.decoy.v1.DecoyServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceRevokeCredentialResponse' - description: Empty response body. Status code indicates success. - summary: Revoke Credential + $ref: '#/components/schemas/c1.api.decoy.v1.DecoyServiceUpdateResponse' + description: Successful response + summary: Update tags: - - Connector - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: ConnectorCredential#delete - x-speakeasy-group: Connector - x-speakeasy-name-override: RevokeCredential - /api/v1/apps/{app_id}/connectors/{connector_id}/force_sync: + - Decoy + x-speakeasy-group: Decoy + x-speakeasy-name-override: Update + /api/v1/decoys/{id}/rotate: post: - description: Trigger an immediate sync for a connector. The sync is queued and may not start instantly. - operationId: c1.api.app.v1.ConnectorService.ForceSync + description: |- + Rotate re-mints the paired credential's secret material, preserves + the decoy_id binding, and returns the new one-time vending material. + operationId: c1.api.decoy.v1.DecoyService.Rotate parameters: - in: path - name: app_id - required: true - schema: - description: The AppID of the app the connector is attached to. - readOnly: false - type: string - - in: path - name: connector_id + name: id required: true schema: - description: The ConnectorID of the connector that we are forcing to sync. - readOnly: false + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ForceSyncRequestInput' + $ref: '#/components/schemas/c1.api.decoy.v1.DecoyServiceRotateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ForceSyncResponse' - description: Empty response body. Status code indicates success. - summary: Force Sync + $ref: '#/components/schemas/c1.api.decoy.v1.DecoyServiceRotateResponse' + description: Successful response + summary: Rotate tags: - - Connector - x-speakeasy-group: Connector - x-speakeasy-name-override: ForceSync - /api/v1/apps/{app_id}/connectors/{connector_id}/pause: + - Decoy + x-speakeasy-group: Decoy + x-speakeasy-name-override: Rotate + /api/v1/decoys/search: post: - description: Pause syncing and provisioning for a connector. No new syncs or grant/revoke operations will run until the connector is resumed. - operationId: c1.api.app.v1.ConnectorService.PauseSync - parameters: - - in: path - name: app_id - required: true - schema: - description: The AppID of the app the connector is attached to. - readOnly: false - type: string - - in: path - name: connector_id - required: true - schema: - description: The ConnectorID of the connector that we are pausing the sync for. - readOnly: false - type: string + description: |- + Search decoys with free-text query and filters for kind, status, + and annotation key. + operationId: c1.api.decoy.v1.DecoySearchService.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.PauseSyncRequestInput' + $ref: '#/components/schemas/c1.api.decoy.v1.DecoySearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.PauseSyncResponse' - description: Empty response body. Status code indicates success. - summary: Pause Sync + $ref: '#/components/schemas/c1.api.decoy.v1.DecoySearchResponse' + description: Successful response + summary: Search tags: - - Connector - x-speakeasy-group: Connector - x-speakeasy-name-override: PauseSync - /api/v1/apps/{app_id}/connectors/{connector_id}/resume: - post: - description: Resume syncing and provisioning for a connector that was previously paused. Clears the paused state and triggers a new sync. - operationId: c1.api.app.v1.ConnectorService.ResumeSync + - Decoy + x-speakeasy-group: DecoySearch + x-speakeasy-name-override: Search + /api/v1/directories: + get: + description: List directories. + operationId: c1.api.directory.v1.DirectoryService.List parameters: - - in: path - name: app_id - required: true + - in: query + name: page_size schema: - description: The AppID of the app the connector is attached to. - readOnly: false - type: string - - in: path - name: connector_id - required: true + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token schema: - description: The ConnectorID of the connector that we are resuming the sync for. - readOnly: false + description: The pageToken field. type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.directory.v1.DirectoryServiceListResponse' + description: The DirectoryServiceListResponse message contains a list of results and a nextPageToken if applicable. + summary: List + tags: + - Directory + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: + - Directory#read + - Directories#read + terraform-resource: null + x-speakeasy-group: Directory + x-speakeasy-name-override: List + post: + description: Create a directory. + operationId: c1.api.directory.v1.DirectoryService.Create requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ResumeSyncRequestInput' + $ref: '#/components/schemas/c1.api.directory.v1.DirectoryServiceCreateRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ResumeSyncResponse' - description: Empty response body. Status code indicates success. - summary: Resume Sync + $ref: '#/components/schemas/c1.api.directory.v1.DirectoryServiceCreateResponse' + description: The DirectoryServiceCreateResponse message. + summary: Create tags: - - Connector - x-speakeasy-group: Connector - x-speakeasy-name-override: ResumeSync - /api/v1/apps/{app_id}/connectors/{connector_id}/schedule: - post: - description: Update the sync schedule for a connector. - operationId: c1.api.app.v1.ConnectorService.UpdateConnectorSchedule + - Directory + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Directory#create + x-speakeasy-group: Directory + x-speakeasy-name-override: Create + /api/v1/directories/{app_id}: + delete: + description: Delete a directory by app_id. + operationId: c1.api.directory.v1.DirectoryService.Delete parameters: - in: path name: app_id required: true schema: - description: The appId of the app the connector is attached to. - readOnly: false - type: string - - in: path - name: connector_id - required: true - schema: - description: The connectorId of the connector whose schedule is being updated. - readOnly: false + description: The app_id of the directory to delete. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.UpdateConnectorScheduleRequestInput' + $ref: '#/components/schemas/c1.api.directory.v1.DirectoryServiceDeleteRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.UpdateConnectorScheduleResponse' - description: Empty response body. Status code indicates success. - summary: Update Connector Schedule + $ref: '#/components/schemas/c1.api.directory.v1.DirectoryServiceDeleteResponse' + description: Empty response with a status code indicating success. + summary: Delete tags: - - Connector - x-speakeasy-group: Connector - x-speakeasy-name-override: UpdateConnectorSchedule - x-stability-level: alpha - /api/v1/apps/{app_id}/connectors/{connector_id}/syncs/{sync_id}/download_url: + - Directory + x-speakeasy-group: Directory + x-speakeasy-name-override: Delete get: - description: GetConnectorSyncDownloadURL generates a short-lived download URL for a completed connector sync artifact. - operationId: c1.api.app.v1.ConnectorService.GetConnectorSyncDownloadURL + description: Get a directory by app_id. + operationId: c1.api.directory.v1.DirectoryService.Get parameters: - in: path name: app_id required: true schema: description: The appId field. - readOnly: false - type: string - - in: path - name: connector_id - required: true - schema: - description: The connectorId field. - readOnly: false - type: string - - in: path - name: sync_id - required: true - schema: - description: The syncId field. - readOnly: false type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.GetConnectorSyncDownloadURLResponse' - description: Successful response - summary: Get Connector Sync Download Url + $ref: '#/components/schemas/c1.api.directory.v1.DirectoryServiceGetResponse' + description: |- + The Directory Service Get Response returns a directory view with a directory and JSONPATHs indicating the + location in the expanded array that items are expanded as indicated by the expand mask in the request. + summary: Get tags: - - Connector - x-speakeasy-group: Connector - x-speakeasy-name-override: GetConnectorSyncDownloadURL - /api/v1/apps/{app_id}/connectors/{id}: - delete: - description: Delete a connector. - operationId: c1.api.app.v1.ConnectorService.Delete + - Directory + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: null + terraform-resource: Directory#read + x-speakeasy-group: Directory + x-speakeasy-name-override: Get + put: + description: Update a directory by app_id. + operationId: c1.api.directory.v1.DirectoryService.Update parameters: - in: path name: app_id required: true schema: - description: The appId of the app the connector is attached to. - readOnly: false - type: string - - in: path - name: id - required: true - schema: - description: The id of the connector. - readOnly: false + description: The appId field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceDeleteRequestInput' + $ref: '#/components/schemas/c1.api.directory.v1.DirectoryServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceDeleteResponse' - description: Empty response body. Status code indicates success. - summary: Delete + $ref: '#/components/schemas/c1.api.directory.v1.DirectoryServiceUpdateResponse' + description: Successful response + summary: Update tags: - - Connector - x-speakeasy-group: Connector - x-speakeasy-name-override: Delete - get: - description: Get a connector. - operationId: c1.api.app.v1.ConnectorService.Get - parameters: - - in: path - name: app_id - required: true - schema: - description: The appId of the app the connector is attached to. - readOnly: false - type: string - - in: path - name: id - required: true - schema: - description: The id of the connector. - readOnly: false - type: string + - Directory + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Directory#update + x-speakeasy-group: Directory + x-speakeasy-name-override: Update + /api/v1/findings: + post: + description: Create a user-authored custom finding. + operationId: c1.api.finding.v1.FindingService.CreateFinding + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.finding.v1.CreateFindingRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceGetResponse' - description: The ConnectorServiceGetResponse message contains the connectorView, and an expand mask. - summary: Get - tags: - - Connector - x-speakeasy-group: Connector - x-speakeasy-name-override: Get + $ref: '#/components/schemas/c1.api.finding.v1.CreateFindingResponse' + description: Successful response + summary: Create Finding + tags: + - Findings + x-speakeasy-group: Finding + x-speakeasy-name-override: CreateFinding + /api/v1/findings/{finding_id}/state: post: - description: Update a connector. - operationId: c1.api.app.v1.ConnectorService.Update + description: Update finding workflow state (snooze, accept risk, suppress, reopen, resolve). + operationId: c1.api.finding.v1.FindingService.UpdateFindingState parameters: - in: path - name: app_id - required: true - schema: - description: The id of the app the connector is associated with. - readOnly: false - type: string - - in: path - name: id + name: finding_id required: true schema: - description: The id of the connector. - readOnly: false + description: The ID of the finding whose state to update. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceUpdateRequestInput' + $ref: '#/components/schemas/c1.api.finding.v1.UpdateFindingStateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceUpdateResponse' - description: ConnectorServiceUpdateResponse is the response returned by the update method. - summary: Update + $ref: '#/components/schemas/c1.api.finding.v1.UpdateFindingStateResponse' + description: Successful response + summary: Update Finding State tags: - - Connector - x-speakeasy-group: Connector - x-speakeasy-name-override: Update - /api/v1/apps/{app_id}/connectors/create: + - Findings + x-speakeasy-group: Finding + x-speakeasy-name-override: UpdateFindingState + /api/v1/findings/{finding_id}/task: post: - description: Create a configured connector. - operationId: c1.api.app.v1.ConnectorService.Create + description: Create a task for a finding. + operationId: c1.api.finding.v1.FindingService.CreateFindingTask parameters: - in: path - name: app_id + name: finding_id required: true schema: - description: The appId field. - readOnly: false + description: The ID of the finding to create a remediation task for. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceCreateRequestInput' + $ref: '#/components/schemas/c1.api.finding.v1.CreateFindingTaskRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceCreateResponse' - description: The ConnectorServiceCreateResponse is the response returned from creating a connector. - summary: Create + $ref: '#/components/schemas/c1.api.finding.v1.CreateFindingTaskResponse' + description: Successful response + summary: Create Finding Task tags: - - Connector - x-speakeasy-group: Connector - x-speakeasy-name-override: Create - /api/v1/apps/{app_id}/entitlements: + - Findings + x-speakeasy-group: Finding + x-speakeasy-name-override: CreateFindingTask + /api/v1/findings/{id}: get: - description: List app entitlements associated with an app. - operationId: c1.api.app.v1.AppEntitlements.List + description: Get a single finding by ID. + operationId: c1.api.finding.v1.FindingService.GetFinding parameters: - in: path - name: app_id + name: id required: true schema: - description: The appId field. - readOnly: false - type: string - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false + description: The ID of the finding to retrieve. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ListAppEntitlementsResponse' - description: The ListAppEntitlementsResponse message contains a list of results and a nextPageToken if applicable. - summary: List + $ref: '#/components/schemas/c1.api.finding.v1.GetFindingResponse' + description: Successful response + summary: Get Finding tags: - - App Entitlement - x-speakeasy-group: AppEntitlements - x-speakeasy-name-override: List + - Findings + x-speakeasy-group: Finding + x-speakeasy-name-override: GetFinding + /api/v1/findings/bulk/state: post: - description: Create a new app entitlement for an app. This is used to define a custom permission, group, or role within the app. - operationId: c1.api.app.v1.AppEntitlements.Create - parameters: - - in: path - name: app_id - required: true - schema: - description: The ID of the app to create the entitlement in. - readOnly: false - type: string + description: Bulk update finding states. + operationId: c1.api.finding.v1.FindingService.BulkUpdateFindingState requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.CreateAppEntitlementRequestInput' + $ref: '#/components/schemas/c1.api.finding.v1.BulkUpdateFindingStateRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.CreateAppEntitlementResponse' + $ref: '#/components/schemas/c1.api.finding.v1.BulkUpdateFindingStateResponse' description: Successful response - summary: Create + summary: Bulk Update Finding State tags: - - App Entitlement - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Custom App Entitlement#create - x-speakeasy-group: AppEntitlements - x-speakeasy-name-override: Create - /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/add-manual-user: + - Findings + x-speakeasy-group: Finding + x-speakeasy-name-override: BulkUpdateFindingState + /api/v1/findings/bulk/tasks: post: - description: Add users as manually managed members of an app entitlement. These memberships are tracked directly by ConductorOne rather than synced from the app. - operationId: c1.api.app.v1.AppEntitlements.AddManuallyManagedMembers - parameters: - - in: path - name: app_id - required: true - schema: - description: The ID of the app that contains the entitlement. - readOnly: false - type: string - - in: path - name: app_entitlement_id - required: true - schema: - description: The ID of the app entitlement to add manually managed members to. - readOnly: false - type: string + description: Bulk create tasks for findings. + operationId: c1.api.finding.v1.FindingService.BulkCreateFindingTasks requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AddManuallyManagedUsersRequestInput' + $ref: '#/components/schemas/c1.api.finding.v1.BulkCreateFindingTasksRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ManuallyManagedUsersResponse' + $ref: '#/components/schemas/c1.api.finding.v1.BulkCreateFindingTasksResponse' description: Successful response - summary: Add Manually Managed Members + summary: Bulk Create Finding Tasks tags: - - App Entitlement - x-speakeasy-group: AppEntitlements - x-speakeasy-name-override: AddManuallyManagedMembers - /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/automation: + - Findings + x-speakeasy-group: Finding + x-speakeasy-name-override: BulkCreateFindingTasks + /api/v1/findings/routing-rules: + get: + description: List finding routing rules, optionally filtered to a specific app. + operationId: c1.api.finding.v1.FindingRoutingRuleService.ListFindingRoutingRules + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.finding.v1.ListFindingRoutingRulesResponse' + description: Successful response + summary: List Finding Routing Rules + tags: + - Finding Routing Rules + x-speakeasy-group: FindingRoutingRule + x-speakeasy-name-override: ListFindingRoutingRules + post: + description: Create a new finding routing rule that defines which policy to use for auto-routing matching findings. + operationId: c1.api.finding.v1.FindingRoutingRuleService.CreateFindingRoutingRule + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.finding.v1.CreateFindingRoutingRuleRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.finding.v1.CreateFindingRoutingRuleResponse' + description: Successful response + summary: Create Finding Routing Rule + tags: + - Finding Routing Rules + x-speakeasy-group: FindingRoutingRule + x-speakeasy-name-override: CreateFindingRoutingRule + /api/v1/findings/routing-rules/{id}: delete: - description: Delete the automation rule for an app entitlement. - operationId: c1.api.app.v1.AppEntitlements.DeleteAutomation + description: Delete a finding routing rule. Findings already routed by this rule are not affected. + operationId: c1.api.finding.v1.FindingRoutingRuleService.DeleteFindingRoutingRule parameters: - in: path - name: app_id - required: true - schema: - description: The ID of the app that contains the entitlement. - readOnly: false - type: string - - in: path - name: app_entitlement_id + name: id required: true schema: - description: The ID of the app entitlement whose automation to delete. - readOnly: false + description: The ID of the finding routing rule to delete. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.DeleteAutomationRequestInput' + $ref: '#/components/schemas/c1.api.finding.v1.DeleteFindingRoutingRuleRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.DeleteAutomationResponse' + $ref: '#/components/schemas/c1.api.finding.v1.DeleteFindingRoutingRuleResponse' description: Successful response - summary: Delete Automation + summary: Delete Finding Routing Rule tags: - - App Entitlement Automation - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App Entitlement Automation#delete - x-speakeasy-group: AppEntitlements - x-speakeasy-name-override: DeleteAutomation + - Finding Routing Rules + x-speakeasy-group: FindingRoutingRule + x-speakeasy-name-override: DeleteFindingRoutingRule get: - description: Get the automation rule for an app entitlement. - operationId: c1.api.app.v1.AppEntitlements.GetAutomation + description: Retrieve a single finding routing rule by ID. + operationId: c1.api.finding.v1.FindingRoutingRuleService.GetFindingRoutingRule parameters: - in: path - name: app_id - required: true - schema: - description: The ID of the app that is associated with the app entitlement. - readOnly: true - type: string - - in: path - name: app_entitlement_id + name: id required: true schema: - description: The unique ID for the App Entitlement. - readOnly: true + description: The ID of the finding routing rule to retrieve. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementServiceGetAutomationResponse' + $ref: '#/components/schemas/c1.api.finding.v1.GetFindingRoutingRuleResponse' description: Successful response - summary: Get Automation + summary: Get Finding Routing Rule tags: - - App Entitlement Automation - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: App Entitlement Automation#read - terraform-resource: App Entitlement Automation#read - x-speakeasy-group: AppEntitlements - x-speakeasy-name-override: GetAutomation - /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/automation/create: + - Finding Routing Rules + x-speakeasy-group: FindingRoutingRule + x-speakeasy-name-override: GetFindingRoutingRule + /api/v1/findings/routing-rules/{routing_rule_id}/update: post: - description: Create an automation rule for an app entitlement. Automations automatically provision or revoke access based on defined conditions. - operationId: c1.api.app.v1.AppEntitlements.CreateAutomation + description: Update an existing finding routing rule's match criteria or target policy. + operationId: c1.api.finding.v1.FindingRoutingRuleService.UpdateFindingRoutingRule parameters: - in: path - name: app_id - required: true - schema: - description: The ID of the app that contains the entitlement. - readOnly: false - type: string - - in: path - name: app_entitlement_id + name: routing_rule_id required: true schema: - description: The ID of the app entitlement to create an automation for. - readOnly: false + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.CreateAutomationRequestInput' + $ref: '#/components/schemas/c1.api.finding.v1.UpdateFindingRoutingRuleRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.CreateAutomationResponse' + $ref: '#/components/schemas/c1.api.finding.v1.UpdateFindingRoutingRuleResponse' description: Successful response - summary: Create Automation + summary: Update Finding Routing Rule tags: - - App Entitlement Automation - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App Entitlement Automation#create - x-speakeasy-group: AppEntitlements - x-speakeasy-name-override: CreateAutomation - /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/automation/exclusions: - delete: - description: Remove users from the automation exclusion list for an app entitlement. - operationId: c1.api.app.v1.AppEntitlements.RemoveAutomationExclusion - parameters: - - in: path - name: app_id - required: true - schema: - description: The ID of the app that contains the entitlement. - readOnly: false - type: string - - in: path - name: app_entitlement_id - required: true - schema: - description: The ID of the app entitlement whose automation exclusion list to update. - readOnly: false - type: string + - Finding Routing Rules + x-speakeasy-group: FindingRoutingRule + x-speakeasy-name-override: UpdateFindingRoutingRule + /api/v1/findings/search: + post: + description: |- + Search findings using full-text query and filters for severity, state, type, and app. + Each Finding row is large (risk factors, evidence, target, tags) — request a small page_size (≤10) to keep responses small. + operationId: c1.api.finding.v1.FindingSearchService.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.RemoveAutomationExclusionRequestInput' + $ref: '#/components/schemas/c1.api.finding.v1.FindingSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.RemoveAutomationExclusionResponse' - description: Empty response with a status code indicating success. - summary: Remove Automation Exclusion + $ref: '#/components/schemas/c1.api.finding.v1.FindingSearchResponse' + description: Successful response + summary: Search tags: - - App Entitlement Automation Exclusion - x-speakeasy-group: AppEntitlements - x-speakeasy-name-override: RemoveAutomationExclusion + - Findings + x-speakeasy-group: FindingSearch + x-speakeasy-name-override: Search + /api/v1/findings/settings: get: - description: List users who are excluded from the automation rule for an app entitlement. - operationId: c1.api.app.v1.AppEntitlements.ListAutomationExclusions - parameters: - - in: path - name: app_id - required: true - schema: - description: The ID of the app that contains the entitlement. - readOnly: false - type: string - - in: path - name: app_entitlement_id - required: true - schema: - description: The ID of the app entitlement to list exclusions for. - readOnly: false - type: string + description: List every configurable finding type and whether detection is enabled. + operationId: c1.api.finding.v1.FindingSettingsService.ListFindingSettings responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ListAutomationExclusionsResponse' + $ref: '#/components/schemas/c1.api.finding.v1.ListFindingSettingsResponse' description: Successful response - summary: List Automation Exclusions + summary: List Finding Settings tags: - - App Entitlement Automation Exclusion - x-speakeasy-group: AppEntitlements - x-speakeasy-name-override: ListAutomationExclusions + - Finding Settings + x-speakeasy-group: FindingSettings + x-speakeasy-name-override: ListFindingSettings + /api/v1/findings/settings/update: post: - description: Add users to the automation exclusion list for an app entitlement. Excluded users are not affected by the automation rule. - operationId: c1.api.app.v1.AppEntitlements.AddAutomationExclusion - parameters: - - in: path - name: app_id - required: true - schema: - description: The ID of the app that contains the entitlement. - readOnly: false - type: string - - in: path - name: app_entitlement_id - required: true - schema: - description: The ID of the app entitlement whose automation exclusion list to update. - readOnly: false - type: string + description: |- + Enable or disable detection for one or more finding types in a single + write. Enabling a type whose detector is a scheduled job also queues an + immediate run. + operationId: c1.api.finding.v1.FindingSettingsService.UpdateFindingSettings requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AddAutomationExclusionRequestInput' + $ref: '#/components/schemas/c1.api.finding.v1.UpdateFindingSettingsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AddAutomationExclusionResponse' - description: Empty response with a status code indicating success. - summary: Add Automation Exclusion + $ref: '#/components/schemas/c1.api.finding.v1.UpdateFindingSettingsResponse' + description: Successful response + summary: Update Finding Settings tags: - - App Entitlement Automation Exclusion - x-speakeasy-group: AppEntitlements - x-speakeasy-name-override: AddAutomationExclusion - /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/automation/update: - post: - description: Update the automation rule for an app entitlement, including its display name, description, and conditions. - operationId: c1.api.app.v1.AppEntitlements.UpdateAutomation - parameters: - - in: path - name: app_id - required: true - schema: - description: The ID of the app that is associated with the app entitlement. - readOnly: true - type: string - - in: path - name: app_entitlement_id - required: true - schema: - description: The unique ID for the App Entitlement. - readOnly: true - type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementServiceUpdateAutomationRequestInput' + - Finding Settings + x-speakeasy-group: FindingSettings + x-speakeasy-name-override: UpdateFindingSettings + /api/v1/findings/transformation-rules: + get: + description: List finding transformation rules, optionally filtered to a specific app. + operationId: c1.api.finding.v1.FindingTransformationRuleService.ListFindingTransformationRules responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementServiceUpdateAutomationResponse' + $ref: '#/components/schemas/c1.api.finding.v1.ListFindingTransformationRulesResponse' description: Successful response - summary: Update Automation + summary: List Finding Transformation Rules tags: - - App Entitlement Automation - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App Entitlement Automation#update - x-speakeasy-group: AppEntitlements - x-speakeasy-name-override: UpdateAutomation - /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/grants: - get: - description: Search app entitlements, include app users, users, expires, discovered. - operationId: c1.api.app.v1.AppEntitlementSearchService.SearchAppEntitlementsWithExpired - parameters: - - in: path - name: app_id - required: true - schema: - description: The appId field. - readOnly: false - type: string - - in: path - name: app_entitlement_id - required: true - schema: - description: The appEntitlementId field. - readOnly: false - type: string - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false - type: string + - Finding Transformation Rules + x-speakeasy-group: FindingTransformationRule + x-speakeasy-name-override: ListFindingTransformationRules + post: + description: Create a new finding transformation rule. + operationId: c1.api.finding.v1.FindingTransformationRuleService.CreateFindingTransformationRule + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.finding.v1.CreateFindingTransformationRuleRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.SearchAppEntitlementsWithExpiredResponse' - description: The SearchAppEntitlementsWithExpiredResponse message contains a list of results and a nextPageToken if applicable. - summary: Search App Entitlements With Expired + $ref: '#/components/schemas/c1.api.finding.v1.CreateFindingTransformationRuleResponse' + description: Successful response + summary: Create Finding Transformation Rule tags: - - App Entitlement - x-speakeasy-group: AppEntitlementSearch - x-speakeasy-name-override: SearchAppEntitlementsWithExpired - /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/remove-membership: + - Finding Transformation Rules + x-speakeasy-group: FindingTransformationRule + x-speakeasy-name-override: CreateFindingTransformationRule + /api/v1/findings/transformation-rules/{id}: delete: - description: Remove a user from a ConductorOne-managed entitlement (catalog, group, or profile type). For access profiles, this creates a revoke task to deprovision access. - operationId: c1.api.app.v1.AppEntitlements.RemoveEntitlementMembership + description: Delete a finding transformation rule. Findings already transformed by this rule are not affected. + operationId: c1.api.finding.v1.FindingTransformationRuleService.DeleteFindingTransformationRule parameters: - in: path - name: app_id - required: true - schema: - description: The ID of the app that contains the entitlement. - readOnly: false - type: string - - in: path - name: app_entitlement_id + name: id required: true schema: - description: The ID of the app entitlement to remove the membership from. - readOnly: false + description: The ID of the finding transformation rule to delete. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.RemoveEntitlementMembershipRequestInput' + $ref: '#/components/schemas/c1.api.finding.v1.DeleteFindingTransformationRuleRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.RemoveEntitlementMembershipResponse' + $ref: '#/components/schemas/c1.api.finding.v1.DeleteFindingTransformationRuleResponse' description: Successful response - summary: Remove Entitlement Membership + summary: Delete Finding Transformation Rule tags: - - App Entitlement - x-speakeasy-group: AppEntitlements - x-speakeasy-name-override: RemoveEntitlementMembership - /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/users: + - Finding Transformation Rules + x-speakeasy-group: FindingTransformationRule + x-speakeasy-name-override: DeleteFindingTransformationRule get: - deprecated: true - description: List the users, as AppEntitlementUsers objects, of an app entitlement. - operationId: c1.api.app.v1.AppEntitlements.ListUsers + description: Retrieve a single finding transformation rule by ID. + operationId: c1.api.finding.v1.FindingTransformationRuleService.GetFindingTransformationRule parameters: - in: path - name: app_id - required: true - schema: - description: The appId field. - readOnly: false - type: string - - in: path - name: app_entitlement_id + name: id required: true schema: - description: The appEntitlementId field. - readOnly: false - type: string - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false + description: The ID of the finding transformation rule to retrieve. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ListAppEntitlementUsersResponse' - description: The ListAppEntitlementUsersResponse message contains a list of results and a nextPageToken if applicable. - summary: List Users + $ref: '#/components/schemas/c1.api.finding.v1.GetFindingTransformationRuleResponse' + description: Successful response + summary: Get Finding Transformation Rule tags: - - App Entitlement - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: AppEntitlementUsers#read - terraform-resource: null - x-speakeasy-group: AppEntitlements - x-speakeasy-name-override: ListUsers - /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/users/{app_user_id}/remove-grant-duration: + - Finding Transformation Rules + x-speakeasy-group: FindingTransformationRule + x-speakeasy-name-override: GetFindingTransformationRule + /api/v1/findings/transformation-rules/{transformation_rule_id}/update: post: - description: Remove the expiration time from a grant, converting it to an indefinite (standing) grant. - operationId: c1.api.app.v1.AppEntitlementUserBindingService.RemoveGrantDuration + description: Update an existing finding transformation rule's match criteria or transforms. + operationId: c1.api.finding.v1.FindingTransformationRuleService.UpdateFindingTransformationRule parameters: - in: path - name: app_id - required: true - schema: - description: The ID of the app that owns the entitlement. - readOnly: false - type: string - - in: path - name: app_entitlement_id - required: true - schema: - description: The ID of the entitlement whose grant duration is being removed. - readOnly: false - type: string - - in: path - name: app_user_id + name: transformation_rule_id required: true schema: - description: The ID of the app user whose grant expiration is being removed. - readOnly: false + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.RemoveGrantDurationRequestInput' + $ref: '#/components/schemas/c1.api.finding.v1.UpdateFindingTransformationRuleRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.finding.v1.UpdateFindingTransformationRuleResponse' + description: Successful response + summary: Update Finding Transformation Rule + tags: + - Finding Transformation Rules + x-speakeasy-group: FindingTransformationRule + x-speakeasy-name-override: UpdateFindingTransformationRule + /api/v1/functions: + get: + description: List retrieves all functions with pagination + operationId: c1.api.functions.v1.FunctionsService.ListFunctions responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.RemoveGrantDurationResponse' - description: The response message for removing the expiration time from a grant. - summary: Remove Grant Duration + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceListFunctionsResponse' + description: Successful response + summary: List Functions tags: - - App Entitlement User Binding - x-speakeasy-group: AppEntitlementUserBinding - x-speakeasy-name-override: RemoveGrantDuration - /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/users/{app_user_id}/update-grant-duration: + - Function + x-speakeasy-group: Functions + x-speakeasy-name-override: ListFunctions + x-stability-level: draft post: - description: Update the expiration time of an existing grant, changing when automatic revocation will occur. - operationId: c1.api.app.v1.AppEntitlementUserBindingService.UpdateGrantDuration - parameters: - - in: path - name: app_id - required: true - schema: - description: The ID of the app that owns the entitlement. - readOnly: false - type: string - - in: path - name: app_entitlement_id - required: true - schema: - description: The ID of the entitlement whose grant duration is being updated. - readOnly: false - type: string - - in: path - name: app_user_id - required: true - schema: - description: The ID of the app user whose grant is being updated. - readOnly: false - type: string + description: |- + CreateFunction registers a new serverless function and creates its + initial code commit. Functions run as TypeScript modules in a sandboxed + runtime; see initial_content for the entry-file signature and SDK import. + + The new function is unpublished. To make the commit the default + runnable version (and have the function appear as runnable in the + Functions UI), call UpdateFunction with function.published_commit_id + set and update_mask=["published_commit_id"]. + operationId: c1.api.functions.v1.FunctionsService.CreateFunction requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.UpdateGrantDurationRequestInput' + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceCreateFunctionRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.UpdateGrantDurationResponse' - description: The response message for updating the duration of a grant. - summary: Update Grant Duration + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceCreateFunctionResponse' + description: Successful response + summary: Create Function tags: - - App Entitlement User Binding - x-speakeasy-group: AppEntitlementUserBinding - x-speakeasy-name-override: UpdateGrantDuration - /api/v1/apps/{app_id}/entitlements/{app_entitlement_id}/users/{identity_user_id}/grants: + - Function + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Function#create + x-speakeasy-group: Functions + x-speakeasy-name-override: CreateFunction + /api/v1/functions/{function_id}/commits: get: - description: Returns a list of app users for the identity in the app. If that app user also has a grant to the entitlement from the request, data about the grant is also returned. It will always return ALL app users for this identity, but only SOME may have grant data. - operationId: c1.api.app.v1.AppEntitlementUserBindingService.ListAppUsersForIdentityWithGrant + description: ListCommits retrieves the commit history + operationId: c1.api.functions.v1.FunctionsService.ListCommits parameters: - in: path - name: app_id - required: true - schema: - description: The appId field. - readOnly: false - type: string - - in: path - name: app_entitlement_id - required: true - schema: - description: The appEntitlementId field. - readOnly: false - type: string - - in: path - name: identity_user_id + name: function_id required: true schema: - description: The identityUserId field. - readOnly: false + description: The functionId field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ListAppUsersForIdentityWithGrantResponse' + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceListCommitsResponse' description: Successful response - summary: List App Users For Identity With Grant + summary: List Commits tags: - - App Entitlement User Binding - x-speakeasy-group: AppEntitlementUserBinding - x-speakeasy-name-override: ListAppUsersForIdentityWithGrant - /api/v1/apps/{app_id}/entitlements/{entitlement_id}/ownerids: - get: - description: ListUserIDs lists owner IDs for a given app entitlement. - operationId: c1.api.app.v1.AppEntitlementOwners.ListOwnerIDs + - Function Commit + x-speakeasy-group: Functions + x-speakeasy-name-override: ListCommits + x-stability-level: draft + post: + description: CreateInitialCommit starts a new commit and returns upload URLs for files + operationId: c1.api.functions.v1.FunctionsService.CreateInitialCommit parameters: - in: path - name: app_id - required: true - schema: - description: The app_id field for the app entitlement to list owners of. - readOnly: false - type: string - - in: path - name: entitlement_id + name: function_id required: true schema: - description: The entitlement_id field for the app entitlement to list owners of. - readOnly: false + description: The functionId field. type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceCreateInitialCommitRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ListAppEntitlementOwnerIDsResponse' - description: The response message for listing app entitlement owners IDs. - summary: List Owner I Ds + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceCreateInitialCommitResponse' + description: Successful response + summary: Create Initial Commit tags: - - App Entitlement Owner - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: null - terraform-resource: App_Entitlement_Owner#read - x-speakeasy-group: AppEntitlementOwners - x-speakeasy-name-override: ListOwnerIDs - /api/v1/apps/{app_id}/entitlements/{entitlement_id}/owners: - delete: - description: Delete deletes the owners from a given app entitlement. - operationId: c1.api.app.v1.AppEntitlementOwners.Delete + - Function Commit + x-speakeasy-group: Functions + x-speakeasy-name-override: CreateInitialCommit + x-stability-level: draft + /api/v1/functions/{function_id}/commits/{commit_id}/finalize: + post: + description: CreateFinalCommit completes a commit after files are uploaded + operationId: c1.api.functions.v1.FunctionsService.CreateFinalCommit parameters: - in: path - name: app_id + name: function_id required: true schema: - description: The app_id field for the app entitlement to remove the owner of. - readOnly: false + description: The functionId field. type: string - in: path - name: entitlement_id + name: commit_id required: true schema: - description: The entitlement_id field for the app entitlement to remove the owner of. - readOnly: false + description: The commitId field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.DeleteAppEntitlementOwnersRequestInput' + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceCreateFinalCommitRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.DeleteAppEntitlementOwnersResponse' - description: the empty response message for deleting app entitlement owners. - summary: Delete + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceCreateFinalCommitResponse' + description: Successful response + summary: Create Final Commit tags: - - App Entitlement Owner - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App_Entitlement_Owner#delete - x-speakeasy-group: AppEntitlementOwners - x-speakeasy-name-override: Delete + - Function Commit + x-speakeasy-group: Functions + x-speakeasy-name-override: CreateFinalCommit + x-stability-level: draft + /api/v1/functions/{function_id}/commits/{commit_id}/lockfile: get: - description: List owners for a given app entitlement. - operationId: c1.api.app.v1.AppEntitlementOwners.List + description: GetLockFile retrieves the deno lock file for a specific commit, if it exists. + operationId: c1.api.functions.v1.FunctionsService.GetLockFile parameters: - in: path - name: app_id + name: function_id required: true schema: - description: The app_id field for the app entitlement to list owners of. - readOnly: false + description: The functionId field. type: string - in: path - name: entitlement_id + name: commit_id required: true schema: - description: The entitlement_id field for the app entitlement to list owners of. - readOnly: false - type: string - - in: query - name: page_size - schema: - description: The page_size field for pagination. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The page_token field for pagination. - readOnly: false + description: The commitId field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ListAppEntitlementOwnersResponse' - description: The response message for listing app entitlement owners. - summary: List + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceGetLockFileResponse' + description: FunctionsServiceGetLockFileResponse returns the deno lock file content for a commit. + summary: Get Lock File tags: - - App Entitlement Owner - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: AppEntitlementOwners#read - terraform-resource: null - x-speakeasy-group: AppEntitlementOwners - x-speakeasy-name-override: List - post: - description: Add an owner to a given app entitlement. - operationId: c1.api.app.v1.AppEntitlementOwners.Add + - Function Commit + x-speakeasy-group: Functions + x-speakeasy-name-override: GetLockFile + x-stability-level: draft + /api/v1/functions/{function_id}/commits/{id}: + get: + description: |- + GetCommitContent retrieves a commit and all its file contents in a single unary response. + This is a non-streaming alternative to GetCommit for REST API consumers. + operationId: c1.api.functions.v1.FunctionsService.GetCommitContent parameters: - in: path - name: app_id + name: function_id required: true schema: - description: The app_id field for the app entitlement to add the owner to. - readOnly: false + description: The function ID (KSUID). type: string - in: path - name: entitlement_id + name: id required: true schema: - description: The entitlement_id field for the app entitlement to add the owner to. - readOnly: false + description: The commit reference to retrieve. Accepts a KSUID, "HEAD", or a tag reference like "refs/tags/v1.0". type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.app.v1.AddAppEntitlementOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AddAppEntitlementOwnerResponse' - description: The empty response message for adding an app entitlement owner. - summary: Add + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceGetCommitContentResponse' + description: FunctionsServiceGetCommitContentResponse contains a commit and all its file contents. + summary: Get Commit Content tags: - - App Entitlement Owner - x-speakeasy-group: AppEntitlementOwners - x-speakeasy-name-override: Add - put: - description: Sets the owners for a given app entitlement to the specified list of users. - operationId: c1.api.app.v1.AppEntitlementOwners.Set + - Function Commit + x-speakeasy-group: Functions + x-speakeasy-name-override: GetCommitContent + x-stability-level: draft + /api/v1/functions/{function_id}/invocations: + get: + description: List retrieves the invocation history for a function + operationId: c1.api.functions.v1.FunctionsInvocationService.List parameters: - in: path - name: app_id - required: true - schema: - description: The app_id field for the app entitlement to set the owners of. - readOnly: false - type: string - - in: path - name: entitlement_id + name: function_id required: true schema: - description: The entitlement_id field for the app entitlement to set the owners of. - readOnly: false + description: The functionId field. type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.app.v1.SetAppEntitlementOwnersRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.SetAppEntitlementOwnersResponse' - description: The empty response message for setting the app entitlement owners. - summary: Set + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsInvocationServiceListResponse' + description: Successful response + summary: List tags: - - App Entitlement Owner - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App_Entitlement_Owner#create - x-speakeasy-group: AppEntitlementOwners - x-speakeasy-name-override: Set - /api/v1/apps/{app_id}/entitlements/{entitlement_id}/owners/{user_id}: - delete: - description: Remove an owner from a given app entitlement. - operationId: c1.api.app.v1.AppEntitlementOwners.Remove + - Function Invocation + x-speakeasy-group: FunctionsInvocation + x-speakeasy-name-override: List + x-stability-level: draft + /api/v1/functions/{function_id}/invocations/{id}: + get: + description: Get retrieves a specific invocation by ID + operationId: c1.api.functions.v1.FunctionsInvocationService.Get parameters: - in: path - name: app_id + name: function_id required: true schema: - description: The app_id field for the app entitlement to remove the owner of. - readOnly: false + description: The functionId field. type: string - in: path - name: entitlement_id + name: id required: true schema: - description: The entitlement_id field for the app entitlement to remove the owner of. - readOnly: false + description: The id field. type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsInvocationServiceGetResponse' + description: Successful response + summary: Get + tags: + - Function Invocation + x-speakeasy-group: FunctionsInvocation + x-speakeasy-name-override: Get + x-stability-level: draft + /api/v1/functions/{function_id}/invocations/search: + post: + description: |- + Search searches for function invocations with filtering and ordering support + Each invocation carries its input/output payloads, which can be large — request a small page_size (≤10) to keep responses small. + operationId: c1.api.functions.v1.FunctionsInvocationSearchService.Search + parameters: - in: path - name: user_id + name: function_id required: true schema: - description: The user_id field for the user to remove as an owner of the app entitlement. - readOnly: false + description: The function ID to search invocations for. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.RemoveAppEntitlementOwnerRequestInput' + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsInvocationSearchRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.RemoveAppEntitlementOwnerResponse' - description: The empty response message for removing an app entitlement owner. - summary: Remove + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsInvocationSearchResponse' + description: FunctionsInvocationSearchResponse is the response for searching function invocations. + summary: Search tags: - - App Entitlement Owner - x-speakeasy-group: AppEntitlementOwners - x-speakeasy-name-override: Remove - /api/v1/apps/{app_id}/entitlements/{id}: - delete: - description: Delete an app entitlement by ID. - operationId: c1.api.app.v1.AppEntitlements.Delete + - Function Invocation + x-speakeasy-group: FunctionsInvocationSearch + x-speakeasy-name-override: Search + x-stability-level: draft + /api/v1/functions/{function_id}/invoke: + post: + description: Invoke executes a function at a specific commit with the provided input data. + operationId: c1.api.functions.v1.FunctionsService.Invoke parameters: - in: path - name: app_id - required: true - schema: - description: The ID of the app that contains the entitlement. - readOnly: false - type: string - - in: path - name: id + name: function_id required: true schema: - description: The ID of the app entitlement to delete. - readOnly: false + description: The ID of the function to invoke. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.DeleteAppEntitlementRequestInput' + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceInvokeRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.DeleteAppEntitlementResponse' + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceInvokeResponse' description: Successful response - summary: Delete + summary: Invoke tags: - - App Entitlement - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Custom App Entitlement#delete - x-speakeasy-group: AppEntitlements - x-speakeasy-name-override: Delete + - Function + x-speakeasy-group: Functions + x-speakeasy-name-override: Invoke + x-stability-level: draft + /api/v1/functions/{function_id}/tags: get: - description: Get an app entitlement by ID. - operationId: c1.api.app.v1.AppEntitlements.Get + description: ListTags lists all tags for a function + operationId: c1.api.functions.v1.FunctionsService.ListTags parameters: - in: path - name: app_id - required: true - schema: - description: The appId field. - readOnly: false - type: string - - in: path - name: id + name: function_id required: true schema: - description: The id field. - readOnly: false + description: The functionId field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.GetAppEntitlementResponse' - description: The get app entitlement response returns an entitlement view containing paths in the expanded array for the objects expanded as indicated by the expand mask in the request. - summary: Get + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceListTagsResponse' + description: Successful response + summary: List Tags tags: - - App Entitlement + - Function Tag x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-datasource: null - terraform-resource: Custom App Entitlement#read - x-speakeasy-group: AppEntitlements - x-speakeasy-name-override: Get + terraform-datasource: Function_Tag#read + terraform-resource: Function_Tag#read + x-speakeasy-group: Functions + x-speakeasy-name-override: ListTags + x-stability-level: draft post: - description: Update an app entitlement by ID. - operationId: c1.api.app.v1.AppEntitlements.Update + description: CreateTag creates a named reference to a specific commit + operationId: c1.api.functions.v1.FunctionsService.CreateTag parameters: - in: path - name: app_id - required: true - schema: - description: The ID of the app that is associated with the app entitlement. - readOnly: false - type: string - - in: path - name: id + name: function_id required: true schema: - description: The unique ID for the App Entitlement. - readOnly: true + description: The functionId field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.UpdateAppEntitlementRequestInput' + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceCreateTagRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.UpdateAppEntitlementResponse' + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceCreateTagResponse' description: Successful response - summary: Update + summary: Create Tag tags: - - App Entitlement + - Function Tag x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Custom App Entitlement#update - x-speakeasy-group: AppEntitlements - x-speakeasy-name-override: Update - /api/v1/apps/{app_id}/entitlements/resource_types/{app_resource_type_id}/resources/{app_resource_id}: - get: - description: List app entitlements associated with an app resource. - operationId: c1.api.app.v1.AppEntitlements.ListForAppResource + terraform-resource: Function_Tag#create + x-speakeasy-group: Functions + x-speakeasy-name-override: CreateTag + x-stability-level: draft + /api/v1/functions/{function_id}/test: + post: + description: Test runs a function's test suite in a sandboxed environment and returns the results. + operationId: c1.api.functions.v1.FunctionsService.Test parameters: - in: path - name: app_id - required: true - schema: - description: The appId field. - readOnly: false - type: string - - in: path - name: app_resource_type_id - required: true - schema: - description: The appResourceTypeId field. - readOnly: false - type: string - - in: path - name: app_resource_id + name: function_id required: true schema: - description: The appResourceId field. - readOnly: false - type: string - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false + description: The function ID to test. type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceTestRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ListAppEntitlementsResponse' - description: The ListAppEntitlementsResponse message contains a list of results and a nextPageToken if applicable. - summary: List For App Resource + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceTestResponse' + description: FunctionsServiceTestResponse contains test execution results. + summary: Test tags: - - App Entitlement - x-speakeasy-group: AppEntitlements - x-speakeasy-name-override: ListForAppResource - /api/v1/apps/{app_id}/entitlements/users/{app_user_id}: - get: - description: List app entitlements associated with an app user. - operationId: c1.api.app.v1.AppEntitlements.ListForAppUser - parameters: - - in: path - name: app_id - required: true - schema: - description: The appId field. - readOnly: false - type: string - - in: path - name: app_user_id - required: true - schema: - description: The appUserId field. - readOnly: false - type: string - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token + - Function + x-speakeasy-group: Functions + x-speakeasy-name-override: Test + x-stability-level: draft + /api/v1/functions/{id}: + delete: + description: Delete removes a function + operationId: c1.api.functions.v1.FunctionsService.DeleteFunction + parameters: + - in: path + name: id + required: true schema: - description: The pageToken field. - readOnly: false + description: The id field. type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceDeleteFunctionRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ListAppEntitlementsResponse' - description: The ListAppEntitlementsResponse message contains a list of results and a nextPageToken if applicable. - summary: List For App User + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceDeleteFunctionResponse' + description: Successful response + summary: Delete Function tags: - - App Entitlement - x-speakeasy-group: AppEntitlements - x-speakeasy-name-override: ListForAppUser - /api/v1/apps/{app_id}/ownerids: + - Function + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Function#delete + x-speakeasy-group: Functions + x-speakeasy-name-override: DeleteFunction + x-stability-level: draft get: - description: ListOwnerIDs lists owner IDs for a given app. - operationId: c1.api.app.v1.AppOwners.ListOwnerIDs + description: Get retrieves a specific function by ID + operationId: c1.api.functions.v1.FunctionsService.GetFunction parameters: - in: path - name: app_id + name: id required: true schema: - description: The app_id field for the app to list owners of. - readOnly: false + description: The id field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ListAppOwnerIDsResponse' - description: The response message for listing app owners IDs. - summary: List Owner I Ds + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceGetFunctionResponse' + description: Successful response + summary: Get Function tags: - - App Owner + - Function x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: terraform-datasource: null - terraform-resource: App_Owner#read - x-speakeasy-group: AppOwners - x-speakeasy-name-override: ListOwnerIDs - /api/v1/apps/{app_id}/owners: - delete: - description: Delete deletes the owners from a given app. - operationId: c1.api.app.v1.AppOwners.Delete - parameters: - - in: path - name: app_id - required: true - schema: - description: The app_id field for the app to remove the owner of. - readOnly: false - type: string + terraform-resource: Function#read + x-speakeasy-group: Functions + x-speakeasy-name-override: GetFunction + x-stability-level: draft + /api/v1/functions/update: + post: + description: |- + Update an existing function's metadata, code, or both. Also the publish + path: set function.published_commit_id and include "published_commit_id" + in update_mask to make a commit the default runnable version. To push a + new code commit, set content (and optionally commit_message); this is + independent of update_mask, since commits are versioned separately from + function metadata. A single request cannot publish the commit it just + created, since published_commit_id is validated against existing commits + before content is committed: publishing new code takes two calls, push + then publish with the returned commit.id. + operationId: c1.api.functions.v1.FunctionsService.UpdateFunction requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.DeleteAppOwnersRequestInput' + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceUpdateFunctionRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.DeleteAppOwnersResponse' - description: the empty response message for deleting app owners. - summary: Delete + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceUpdateFunctionResponse' + description: Successful response + summary: Update Function tags: - - App Owner + - Function x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: App_Owner#delete - x-speakeasy-group: AppOwners - x-speakeasy-name-override: Delete + terraform-resource: Function#update + x-speakeasy-group: Functions + x-speakeasy-name-override: UpdateFunction + x-stability-level: draft + /api/v1/grants/feed: + post: + description: Search a chronological feed of grant and revoke events, filtered by app user, entitlement, or time range. + operationId: c1.api.app.v1.AppEntitlementUserBindingService.SearchGrantFeed + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.SearchGrantFeedRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.SearchGrantFeedResponse' + description: The SearchGrantFeedResponse message contains a list of grant event results and a nextPageToken if applicable. + summary: Search Grant Feed + tags: + - App Entitlement User Binding Feed + x-speakeasy-group: AppEntitlementUserBinding + x-speakeasy-name-override: SearchGrantFeed + /api/v1/hooks: get: - description: List owners of an app. - operationId: c1.api.app.v1.AppOwners.List + description: Invokes the c1.api.hooks.v1.HooksService.List method. + operationId: c1.api.hooks.v1.HooksService.List parameters: - - in: path - name: app_id - required: true - schema: - description: The appId field. - readOnly: false - type: string - in: query name: page_size schema: - description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) + description: The pageSize field. format: int32 - readOnly: false type: integer - in: query name: page_token schema: description: The pageToken field. - readOnly: false type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ListAppOwnersResponse' + $ref: '#/components/schemas/c1.api.hooks.v1.HooksServiceListResponse' description: Successful response summary: List tags: - - App Owner - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: AppOwners#read - terraform-resource: null - x-speakeasy-group: AppOwners + - Hook + x-speakeasy-group: Hooks x-speakeasy-name-override: List - put: - description: Sets the owners for a given app to the specified list of users. - operationId: c1.api.app.v1.AppOwners.Set - parameters: - - in: path - name: app_id - required: true - schema: - description: The app_id field for the app to set the owners of. - readOnly: false - type: string + post: + description: Invokes the c1.api.hooks.v1.HooksService.Create method. + operationId: c1.api.hooks.v1.HooksService.Create requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.SetAppOwnersRequestInput' + $ref: '#/components/schemas/c1.api.hooks.v1.HooksServiceCreateRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.SetAppOwnersResponse' - description: The empty response message for setting the app owners. - summary: Set + $ref: '#/components/schemas/c1.api.hooks.v1.HooksServiceCreateResponse' + description: Successful response + summary: Create tags: - - App Owner - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App_Owner#create - x-speakeasy-group: AppOwners - x-speakeasy-name-override: Set - /api/v1/apps/{app_id}/owners/{user_id}: + - Hook + x-speakeasy-group: Hooks + x-speakeasy-name-override: Create + /api/v1/hooks/{id}: delete: - description: Removes an owner from an app. - operationId: c1.api.app.v1.AppOwners.Remove + description: Invokes the c1.api.hooks.v1.HooksService.Delete method. + operationId: c1.api.hooks.v1.HooksService.Delete parameters: - in: path - name: app_id - required: true - schema: - description: App ID of the app to remove the owner from. - readOnly: false - type: string - - in: path - name: user_id + name: id required: true schema: - description: User ID of the user to remove as an owner. - readOnly: false + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.RemoveAppOwnerRequestInput' + $ref: '#/components/schemas/c1.api.hooks.v1.HooksServiceDeleteRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.RemoveAppOwnerResponse' - description: Empty response with a status code indicating success. - summary: Remove + $ref: '#/components/schemas/c1.api.hooks.v1.HooksServiceDeleteResponse' + description: Successful response + summary: Delete tags: - - App Owner - x-speakeasy-group: AppOwners - x-speakeasy-name-override: Remove - post: - description: Adds an owner to an app. - operationId: c1.api.app.v1.AppOwners.Add + - Hook + x-speakeasy-group: Hooks + x-speakeasy-name-override: Delete + get: + description: Invokes the c1.api.hooks.v1.HooksService.Get method. + operationId: c1.api.hooks.v1.HooksService.Get parameters: - in: path - name: app_id + name: id required: true schema: - description: The appId field. - readOnly: false + description: The id field. type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.hooks.v1.HooksServiceGetResponse' + description: Successful response + summary: Get + tags: + - Hook + x-speakeasy-group: Hooks + x-speakeasy-name-override: Get + post: + description: Invokes the c1.api.hooks.v1.HooksService.Update method. + operationId: c1.api.hooks.v1.HooksService.Update + parameters: - in: path - name: user_id + name: id required: true schema: - description: The userId field. - readOnly: false + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AddAppOwnerRequestInput' + $ref: '#/components/schemas/c1.api.hooks.v1.HooksServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AddAppOwnerResponse' - description: Empty response with a status code indicating success - summary: Add + $ref: '#/components/schemas/c1.api.hooks.v1.HooksServiceUpdateResponse' + description: Successful response + summary: Update tags: - - App Owner - x-speakeasy-group: AppOwners - x-speakeasy-name-override: Add - /api/v1/apps/{app_id}/report: + - Hook + x-speakeasy-group: Hooks + x-speakeasy-name-override: Update + /api/v1/iam/personal_clients: get: - description: Get a list of reports for the given app. - operationId: c1.api.app.v1.AppReportService.List - parameters: - - in: path - name: app_id - required: true - schema: - description: The appId field. - readOnly: false - type: string - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false - type: string + description: List returns all personal client credentials owned by the calling user. + operationId: c1.api.iam.v1.PersonalClientService.List responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppReportServiceListResponse' - description: The AppReportServiceListResponse message contains a list of results and a nextPageToken if applicable. - summary: List + $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientServiceListResponse' + description: Successful response + summary: 'NOTE: Only shows personal clients for the current user.' tags: - - App Reports - x-speakeasy-group: AppReport + - Personal Client + x-speakeasy-group: PersonalClient x-speakeasy-name-override: List post: - description: Generate a report for the given app. - operationId: c1.api.app.v1.AppReportActionService.GenerateReport + description: Create creates a new PersonalClient object for the current User. + operationId: c1.api.iam.v1.PersonalClientService.Create + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientServiceCreateRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientServiceCreateResponse' + description: The PersonalClientServiceCreateResponse message contains the created personal client and client secret. + summary: Create + tags: + - Personal Client + x-speakeasy-group: PersonalClient + x-speakeasy-name-override: Create + /api/v1/iam/personal_clients/{id}: + delete: + description: Delete a personal client credential, revoking it and preventing further API access. + operationId: c1.api.iam.v1.PersonalClientService.Delete parameters: - in: path - name: app_id + name: id required: true schema: - description: The appId field. - readOnly: false + description: The human-readable name of the personal client credential to delete (e.g., blue-whale-12345). type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppActionsServiceGenerateReportRequestInput' + $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientServiceDeleteRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppActionsServiceGenerateReportResponse' - description: Empty response body. Status code indicates success. - summary: Generate Report + $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientServiceDeleteResponse' + description: Successful response + summary: Delete tags: - - App Reports - x-speakeasy-group: AppReportAction - x-speakeasy-name-override: GenerateReport - /api/v1/apps/{app_id}/resource_types: + - Personal Client + x-speakeasy-group: PersonalClient + x-speakeasy-name-override: Delete get: - description: List app resource types. - operationId: c1.api.app.v1.AppResourceTypeService.List + description: Get retrieves a single personal client credential by its ID. + operationId: c1.api.iam.v1.PersonalClientService.Get parameters: - in: path - name: app_id + name: id required: true schema: - description: The appId field. - readOnly: false - type: string - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false + description: The human-readable name of the personal client credential to retrieve (e.g., blue-whale-12345). type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceTypeServiceListResponse' - description: The AppResourceTypeServiceListResponse message contains a list of results and a nextPageToken if applicable. - summary: List + $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientServiceGetResponse' + description: Successful response + summary: Get tags: - - App Resource Type - x-speakeasy-group: AppResourceType - x-speakeasy-name-override: List + - Personal Client + x-speakeasy-group: PersonalClient + x-speakeasy-name-override: Get post: - description: Create a manually managed resource type that classifies resources within an app. - operationId: c1.api.app.v1.AppResourceTypeService.CreateManuallyManagedResourceType + description: Update modifies an existing personal client credential. Use the update mask to specify which fields to change. + operationId: c1.api.iam.v1.PersonalClientService.Update parameters: - in: path - name: app_id + name: id required: true schema: - description: The ID of the app to create the resource type under. - readOnly: false + description: The unique ID of the personal client credential. + readOnly: true type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.CreateManuallyManagedResourceTypeRequestInput' + $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.CreateManuallyManagedResourceTypeResponse' - description: The response message for creating a manually managed resource type. - summary: Create Manually Managed Resource Type + $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientServiceUpdateResponse' + description: Successful response + summary: Update tags: - - App Resource Type - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App Resource Type#create - x-speakeasy-group: AppResourceType - x-speakeasy-name-override: CreateManuallyManagedResourceType - /api/v1/apps/{app_id}/resource_types/{app_resource_type_id}/resources: - get: - description: List app resources for a given app and optionally filter by resource type. - operationId: c1.api.app.v1.AppResourceService.List + - Personal Client + x-speakeasy-group: PersonalClient + x-speakeasy-name-override: Update + /api/v1/iam/personal_devices/{device_id}: + delete: + description: |- + RevokeDevice revokes a whole device: it revokes the device and removes every + app client on it, so no app on that machine can mint further tokens. + operationId: c1.api.iam.v1.PersonalDeviceService.RevokeDevice parameters: - in: path - name: app_id - required: true - schema: - description: The ID of the app to list resources for. - readOnly: false - type: string - - in: path - name: app_resource_type_id + name: device_id required: true schema: - description: Optional resource type ID to filter results by. If empty, resources of all types are returned. - readOnly: false - type: string - - in: query - name: page_size - schema: - description: The maximum number of results to return per page. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The token for fetching the next page of results. - readOnly: false + description: The device identity of the device to revoke (whole-device). type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.iam.v1.PersonalDeviceServiceRevokeDeviceRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceServiceListResponse' - description: The AppResourceServiceListResponse message contains a list of results and a nextPageToken if applicable. - summary: List + $ref: '#/components/schemas/c1.api.iam.v1.PersonalDeviceServiceRevokeDeviceResponse' + description: Successful response + summary: Revoke Device tags: - - App Resource - x-speakeasy-group: AppResource - x-speakeasy-name-override: List - post: - description: Create a manually managed app resource tracked directly by ConductorOne under an existing resource type. - operationId: c1.api.app.v1.AppResourceService.CreateManuallyManagedAppResource + - Personal Device + x-speakeasy-group: PersonalDevice + x-speakeasy-name-override: RevokeDevice + get: + description: GetDevice retrieves a single device (by device_id) with its child clients. + operationId: c1.api.iam.v1.PersonalDeviceService.GetDevice parameters: - in: path - name: app_id - required: true - schema: - description: The ID of the app to create the resource under. - readOnly: false - type: string - - in: path - name: app_resource_type_id + name: device_id required: true schema: - description: The resource type ID that classifies this resource. - readOnly: false + description: |- + The device identity (a base64url-encoded SHA-256 thumbprint of the device + root key). type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.app.v1.CreateManuallyManagedAppResourceRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.CreateManuallyManagedAppResourceResponse' - description: The response message for creating a manually managed app resource. - summary: Create Manually Managed App Resource + $ref: '#/components/schemas/c1.api.iam.v1.PersonalDeviceServiceGetDeviceResponse' + description: Successful response + summary: Get Device tags: - - App Resource - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App Resource#create - x-speakeasy-group: AppResource - x-speakeasy-name-override: CreateManuallyManagedAppResource - /api/v1/apps/{app_id}/resource_types/{app_resource_type_id}/resources/{id}: - delete: - description: Delete a manually managed app resource and its associated entitlements from an app. - operationId: c1.api.app.v1.AppResourceService.DeleteManuallyManagedAppResource + - Personal Device + x-speakeasy-group: PersonalDevice + x-speakeasy-name-override: GetDevice + put: + description: |- + UpdateDevice renames one of the calling user's devices. Use the update mask + to specify which fields to change; only the display name is mutable, so + device identity and keys never change. + operationId: c1.api.iam.v1.PersonalDeviceService.UpdateDevice parameters: - in: path - name: app_id - required: true - schema: - description: The ID of the app that owns the resource. - readOnly: false - type: string - - in: path - name: app_resource_type_id - required: true - schema: - description: The ID of the resource type that classifies the resource. - readOnly: false - type: string - - in: path - name: id + name: device_id required: true schema: - description: The ID of the app resource to delete. - readOnly: false + description: |- + The stable device identity: a base64url-encoded SHA-256 thumbprint of the + device's root public signing key. + readOnly: true type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.DeleteManuallyManagedAppResourceRequestInput' + $ref: '#/components/schemas/c1.api.iam.v1.PersonalDeviceServiceUpdateDeviceRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.DeleteManuallyManagedAppResourceResponse' - description: The empty response message for deleting a manually managed app resource. - summary: Delete Manually Managed App Resource + $ref: '#/components/schemas/c1.api.iam.v1.PersonalDeviceServiceUpdateDeviceResponse' + description: Successful response + summary: 'NOTE: Only updates devices owned by the current user.' tags: - - App Resource - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App Resource#delete - x-speakeasy-group: AppResource - x-speakeasy-name-override: DeleteManuallyManagedAppResource + - Personal Device + x-speakeasy-group: PersonalDevice + x-speakeasy-name-override: UpdateDevice + /api/v1/iam/personal_devices/{device_id}/clients: get: - description: Retrieve a single app resource by its app, resource type, and resource ID. - operationId: c1.api.app.v1.AppResourceService.Get + description: |- + ListDeviceClients returns the app clients registered on a device, one page at + a time. A device can accrue many app clients over time, so the clients are + served from this dedicated paginated endpoint rather than inlined on the + device. + operationId: c1.api.iam.v1.PersonalDeviceService.ListDeviceClients parameters: - in: path - name: app_id - required: true - schema: - description: The ID of the app that owns the resource. - readOnly: false - type: string - - in: path - name: app_resource_type_id - required: true - schema: - description: The ID of the resource type that classifies this resource. - readOnly: false - type: string - - in: path - name: id + name: device_id required: true schema: - description: The unique ID of the app resource to retrieve. - readOnly: false + description: |- + The device identity (a base64url-encoded SHA-256 thumbprint of the device + root key) whose clients to list. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceServiceGetResponse' - description: The app resource service get response contains the app resource view and array of expanded items indicated by the request's expand mask. - summary: Get + $ref: '#/components/schemas/c1.api.iam.v1.PersonalDeviceServiceListDeviceClientsResponse' + description: Successful response + summary: List Device Clients tags: - - App Resource - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: App Resource#read - terraform-resource: App Resource#read - x-speakeasy-group: AppResource - x-speakeasy-name-override: Get - post: - description: Update an app resource's fields. Only the fields specified in the update mask are modified. - operationId: c1.api.app.v1.AppResourceService.Update - parameters: - - in: path - name: app_id - required: true - schema: - description: The app that this resource belongs to. - readOnly: false - type: string + - Personal Device + x-speakeasy-group: PersonalDevice + x-speakeasy-name-override: ListDeviceClients + /api/v1/iam/personal_devices/{device_id}/clients/{id}: + delete: + description: |- + RevokeDeviceClient revokes a single app client on a device: it removes that + client, leaving the device and its other clients intact. + operationId: c1.api.iam.v1.PersonalDeviceService.RevokeDeviceClient + parameters: - in: path - name: app_resource_type_id + name: device_id required: true schema: - description: The resource type that this resource is. - readOnly: false + description: The device identity the client belongs to. type: string - in: path name: id required: true schema: - description: The id of the resource. - readOnly: false + description: The human-readable ID of the client to revoke (e.g., blue-whale-12345). type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceServiceUpdateRequestInput' + $ref: '#/components/schemas/c1.api.iam.v1.PersonalDeviceServiceRevokeDeviceClientRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceServiceUpdateResponse' - description: The response message for updating an app resource. - summary: Update + $ref: '#/components/schemas/c1.api.iam.v1.PersonalDeviceServiceRevokeDeviceClientResponse' + description: Successful response + summary: Revoke Device Client tags: - - App Resource - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App Resource#update - x-speakeasy-group: AppResource - x-speakeasy-name-override: Update - /api/v1/apps/{app_id}/resource_types/{id}: - delete: - description: Delete a manually managed resource type and all its associated resources from an app. - operationId: c1.api.app.v1.AppResourceTypeService.DeleteManuallyManagedResourceType + - Personal Device + x-speakeasy-group: PersonalDevice + x-speakeasy-name-override: RevokeDeviceClient + /api/v1/iam/roles: + get: + description: List all roles for the current user. + operationId: c1.api.iam.v1.Roles.List parameters: - - in: path - name: app_id - required: true + - in: query + name: page_size schema: - description: The ID of the app that owns the resource type. - readOnly: false - type: string - - in: path - name: id - required: true + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token schema: - description: The ID of the resource type to delete. - readOnly: false + description: The pageToken field. type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.app.v1.DeleteManuallyManagedResourceTypeRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.DeleteManuallyManagedResourceTypeResponse' - description: The empty response message for deleting a manually managed resource type. - summary: Delete Manually Managed Resource Type + $ref: '#/components/schemas/c1.api.iam.v1.ListRolesResponse' + description: The ListRolesResponse message contains a list of results and a nextPageToken if applicable. + summary: List tags: - - App Resource Type + - Role x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: App Resource Type#delete - x-speakeasy-group: AppResourceType - x-speakeasy-name-override: DeleteManuallyManagedResourceType + terraform-datasource: + - Role#read + - Roles#read + terraform-resource: null + x-speakeasy-group: Roles + x-speakeasy-name-override: List + /api/v1/iam/roles/{role_id}: get: - description: Get an app resource type. - operationId: c1.api.app.v1.AppResourceTypeService.Get + description: Get a role by id. + operationId: c1.api.iam.v1.Roles.Get parameters: - in: path - name: app_id - required: true - schema: - description: The appId field. - readOnly: false - type: string - - in: path - name: id + name: role_id required: true schema: - description: The id field. - readOnly: false + description: The roleId field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppResourceTypeServiceGetResponse' - description: |- - The AppResourceTypeServiceGetResponse contains an expanded array containing the expanded values indicated by the expand mask - in the request and an app resource type view containing the resource type and JSONPATHs indicating which objects are where in the expand mask. + $ref: '#/components/schemas/c1.api.iam.v1.GetRolesResponse' + description: The GetRolesResponse message contains the retrieved role. summary: Get tags: - - App Resource Type + - Role x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: terraform-datasource: null - terraform-resource: App Resource Type#read - x-speakeasy-group: AppResourceType + terraform-resource: Role#read + x-speakeasy-group: Roles x-speakeasy-name-override: Get post: - description: Update a manually managed resource type's fields. Only the fields specified in the update mask are modified. - operationId: c1.api.app.v1.AppResourceTypeService.UpdateManuallyManagedResourceType + description: Update a role by passing a Role object. + operationId: c1.api.iam.v1.Roles.Update parameters: - in: path - name: app_id - required: true - schema: - description: The ID of the app that is associated with the app resource type - readOnly: true - type: string - - in: path - name: id + name: role_id required: true schema: - description: The unique ID for the app resource type. + description: The id of the role. readOnly: true type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.UpdateManuallyManagedResourceTypeRequestInput' + $ref: '#/components/schemas/c1.api.iam.v1.UpdateRoleRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.UpdateManuallyManagedResourceTypeResponse' - description: The response message for updating a manually managed resource type. - summary: Update Manually Managed Resource Type + $ref: '#/components/schemas/c1.api.iam.v1.UpdateRolesResponse' + description: UpdateRolesResponse is the response message containing the updated role. + summary: Update tags: - - App Resource Type + - Role x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: App Resource Type#update - x-speakeasy-group: AppResourceType - x-speakeasy-name-override: UpdateManuallyManagedResourceType - /api/v1/apps/{app_id}/resource_types/{resource_type_id}/resource/{resource_id}/ownerids: - delete: - description: Delete deletes the owners from a given app resource. - operationId: c1.api.app.v1.AppResourceOwners.Delete - parameters: - - in: path - name: app_id - required: true - schema: - description: The appId field. - readOnly: false - type: string - - in: path - name: resource_type_id - required: true - schema: - description: The resourceTypeId field. - readOnly: false - type: string - - in: path - name: resource_id - required: true - schema: - description: The resourceId field. - readOnly: false - type: string + terraform-resource: Role#update + x-speakeasy-group: Roles + x-speakeasy-name-override: Update + /api/v1/iam/tunnel/bridges: + get: + description: |- + ListBridges returns the tenant's bridges, paginated, each with live + appliance status. + operationId: c1.api.iam.v1.TunnelCredentialsService.ListBridges + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.iam.v1.TunnelCredentialsServiceListBridgesResponse' + description: Successful response + summary: List Bridges + tags: + - Tunnel + x-speakeasy-group: TunnelCredentials + x-speakeasy-name-override: ListBridges + post: + description: |- + CreateBridge creates a bridge with no credentials. Use + CreateBridgeCredential to mint the first credential. + operationId: c1.api.iam.v1.TunnelCredentialsService.CreateBridge requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.DeleteAppResourceOwnersRequestInput' + $ref: '#/components/schemas/c1.api.iam.v1.TunnelCredentialsServiceCreateBridgeRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.DeleteAppResourceOwnersResponse' - description: the empty response message for deleting app resource owners. - summary: Delete + $ref: '#/components/schemas/c1.api.iam.v1.TunnelCredentialsServiceCreateBridgeResponse' + description: Successful response + summary: Create Bridge tags: - - App Resource Owner - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App_Resource_Owner#delete - x-speakeasy-group: AppResourceOwners - x-speakeasy-name-override: Delete + - Tunnel + x-speakeasy-group: TunnelCredentials + x-speakeasy-name-override: CreateBridge + /api/v1/iam/tunnel/bridges/{bridge_id}/announced_services: get: - description: ListOwnerIDs lists owner IDs for a given app resource. - operationId: c1.api.app.v1.AppResourceOwners.ListOwnerIDs + description: |- + ListBridgeAnnouncedServices returns the services the appliance is + currently announcing for this bridge. Read live from the tunnel store; + empty when no appliance is connected. + operationId: c1.api.iam.v1.TunnelCredentialsService.ListBridgeAnnouncedServices parameters: - in: path - name: app_id + name: bridge_id required: true schema: - description: The appId field. - readOnly: false + description: The bridgeId field. type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.iam.v1.TunnelCredentialsServiceListBridgeAnnouncedServicesResponse' + description: Successful response + summary: List Bridge Announced Services + tags: + - Tunnel + x-speakeasy-group: TunnelCredentials + x-speakeasy-name-override: ListBridgeAnnouncedServices + /api/v1/iam/tunnel/bridges/{bridge_id}/credentials: + get: + description: |- + ListBridgeCredentials returns every credential (active + revoked) for + one bridge. + operationId: c1.api.iam.v1.TunnelCredentialsService.ListBridgeCredentials + parameters: - in: path - name: resource_type_id + name: bridge_id required: true schema: - description: The resourceTypeId field. - readOnly: false + description: The bridge whose credentials to list. type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.iam.v1.TunnelCredentialsServiceListBridgeCredentialsResponse' + description: Successful response + summary: List Bridge Credentials + tags: + - Tunnel + x-speakeasy-group: TunnelCredentials + x-speakeasy-name-override: ListBridgeCredentials + post: + description: |- + CreateBridgeCredential mints a credential for a bridge. If the bridge + already has an active credential, it is revoked. The plaintext + client_secret is returned exactly once on the response. + operationId: c1.api.iam.v1.TunnelCredentialsService.CreateBridgeCredential + parameters: - in: path - name: resource_id + name: bridge_id required: true schema: - description: The resourceId field. - readOnly: false + description: The bridge to mint a credential for. type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.iam.v1.TunnelCredentialsServiceCreateBridgeCredentialRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ListAppResourceOwnerIDsResponse' - description: The response message for listing app resource owners IDs. - summary: List Owner I Ds + $ref: '#/components/schemas/c1.api.iam.v1.TunnelCredentialsServiceCreateBridgeCredentialResponse' + description: Successful response + summary: Create Bridge Credential tags: - - App Resource Owner - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: null - terraform-resource: App_Resource_Owner#read - x-speakeasy-group: AppResourceOwners - x-speakeasy-name-override: ListOwnerIDs - /api/v1/apps/{app_id}/resource_types/{resource_type_id}/resource/{resource_id}/owners: + - Tunnel + x-speakeasy-group: TunnelCredentials + x-speakeasy-name-override: CreateBridgeCredential + /api/v1/iam/tunnel/bridges/{id}: delete: - description: Remove a user from the owners of an app resource. - operationId: c1.api.app.v1.AppResourceOwners.Remove + description: DeleteBridge hard-deletes a bridge and every credential it owns. + operationId: c1.api.iam.v1.TunnelCredentialsService.DeleteBridge parameters: - in: path - name: app_id - required: true - schema: - description: The ID of the app that owns the resource. - readOnly: false - type: string - - in: path - name: resource_type_id - required: true - schema: - description: The ID of the resource type that classifies the resource. - readOnly: false - type: string - - in: path - name: resource_id + name: id required: true schema: - description: The ID of the app resource to remove an owner from. - readOnly: false + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.RemoveAppResourceOwnerRequestInput' + $ref: '#/components/schemas/c1.api.iam.v1.TunnelCredentialsServiceDeleteBridgeRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.RemoveAppResourceOwnerResponse' - description: The empty response message for removing an owner from an app resource. - summary: Remove + $ref: '#/components/schemas/c1.api.iam.v1.TunnelCredentialsServiceDeleteBridgeResponse' + description: Empty response body. Status code indicates success. + summary: Delete Bridge tags: - - App Resource Owner - x-speakeasy-group: AppResourceOwners - x-speakeasy-name-override: Remove + - Tunnel + x-speakeasy-group: TunnelCredentials + x-speakeasy-name-override: DeleteBridge get: - description: List all owners of an app resource. - operationId: c1.api.app.v1.AppResourceOwners.List + description: GetBridge returns a bridge by id with live appliance status. + operationId: c1.api.iam.v1.TunnelCredentialsService.GetBridge parameters: - in: path - name: app_id - required: true - schema: - description: The appId field. - readOnly: false - type: string - - in: path - name: resource_type_id - required: true - schema: - description: The resourceTypeId field. - readOnly: false - type: string - - in: path - name: resource_id + name: id required: true schema: - description: The resourceId field. - readOnly: false - type: string - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false + description: The id field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ListAppResourceOwnersResponse' - description: The ListAppResourceOwnersResponse message contains a list of results and a nextPageToken if applicable - summary: List + $ref: '#/components/schemas/c1.api.iam.v1.TunnelCredentialsServiceGetBridgeResponse' + description: Successful response + summary: Get Bridge tags: - - App Resource Owner - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: AppResourceOwners#read - terraform-resource: null - x-speakeasy-group: AppResourceOwners - x-speakeasy-name-override: List - post: - description: Add a user as an owner of an app resource. - operationId: c1.api.app.v1.AppResourceOwners.Add + - Tunnel + x-speakeasy-group: TunnelCredentials + x-speakeasy-name-override: GetBridge + patch: + description: |- + UpdateBridge patches a bridge's editable metadata (display_name, + description). Credentials are not affected. + operationId: c1.api.iam.v1.TunnelCredentialsService.UpdateBridge parameters: - in: path - name: app_id - required: true - schema: - description: The ID of the app that owns the resource. - readOnly: false - type: string - - in: path - name: resource_type_id - required: true - schema: - description: The ID of the resource type that classifies the resource. - readOnly: false - type: string - - in: path - name: resource_id + name: id required: true schema: - description: The ID of the app resource to add an owner to. - readOnly: false + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AddAppResourceOwnerRequestInput' + $ref: '#/components/schemas/c1.api.iam.v1.TunnelCredentialsServiceUpdateBridgeRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AddAppResourceOwnerResponse' - description: The empty response message for adding an owner to an app resource. - summary: Add + $ref: '#/components/schemas/c1.api.iam.v1.TunnelCredentialsServiceUpdateBridgeResponse' + description: Successful response + summary: Update Bridge tags: - - App Resource Owner - x-speakeasy-group: AppResourceOwners - x-speakeasy-name-override: Add - put: - description: Sets the owners for a given app resource to the specified list of users. - operationId: c1.api.app.v1.AppResourceOwners.Set + - Tunnel + x-speakeasy-group: TunnelCredentials + x-speakeasy-name-override: UpdateBridge + /api/v1/iam/tunnel/credentials/{id}: + delete: + description: |- + RevokeBridgeCredential soft-revokes one credential by id. The row is + retained for audit; token mints with this credential are rejected. + operationId: c1.api.iam.v1.TunnelCredentialsService.RevokeBridgeCredential parameters: - in: path - name: app_id - required: true - schema: - description: The appId field. - readOnly: false - type: string - - in: path - name: resource_type_id - required: true - schema: - description: The resourceTypeId field. - readOnly: false - type: string - - in: path - name: resource_id + name: id required: true schema: - description: The resourceId field. - readOnly: false + description: The id of the credential to revoke. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.SetAppResourceOwnersRequestInput' + $ref: '#/components/schemas/c1.api.iam.v1.TunnelCredentialsServiceRevokeBridgeCredentialRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.SetAppResourceOwnersResponse' - description: The empty response message for setting the app resource owners. - summary: Set + $ref: '#/components/schemas/c1.api.iam.v1.TunnelCredentialsServiceRevokeBridgeCredentialResponse' + description: Empty response body. Status code indicates success. + summary: Revoke Bridge Credential tags: - - App Resource Owner - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App_Resource_Owner#create - x-speakeasy-group: AppResourceOwners - x-speakeasy-name-override: Set - /api/v1/apps/{app_id}/usage_controls: + - Tunnel + x-speakeasy-group: TunnelCredentials + x-speakeasy-name-override: RevokeBridgeCredential + /api/v1/llm-gateway/keys: get: - description: Get usage controls, as an AppUsageControls object which describes some peripheral configuration, for an app. - operationId: c1.api.app.v1.AppUsageControlsService.Get + description: Invokes the c1.api.llm_gateway.v1.GatewayKeyService.List method. + operationId: c1.api.llm_gateway.v1.GatewayKeyService.List + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.llm_gateway.v1.ListGatewayKeysResponse' + description: Successful response + summary: List + tags: + - LLM Gateway Keys + x-speakeasy-group: GatewayKey + x-speakeasy-name-override: List + post: + description: Invokes the c1.api.llm_gateway.v1.GatewayKeyService.Mint method. + operationId: c1.api.llm_gateway.v1.GatewayKeyService.Mint + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.llm_gateway.v1.MintGatewayKeyRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.llm_gateway.v1.MintGatewayKeyResponse' + description: Successful response + summary: Mint + tags: + - LLM Gateway Keys + x-speakeasy-group: GatewayKey + x-speakeasy-name-override: Mint + /api/v1/llm-gateway/keys/{id}: + delete: + description: Invokes the c1.api.llm_gateway.v1.GatewayKeyService.Revoke method. + operationId: c1.api.llm_gateway.v1.GatewayKeyService.Revoke parameters: - in: path - name: app_id + name: id required: true schema: - description: The appId field. - readOnly: false + description: The id field. type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.llm_gateway.v1.RevokeGatewayKeyRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.GetAppUsageControlsResponse' - description: The GetAppUsageControlsResponse message contains the retrieved AppUsageControls object. - summary: Get + $ref: '#/components/schemas/c1.api.llm_gateway.v1.RevokeGatewayKeyResponse' + description: Successful response + summary: Revoke tags: - - App Usage Controls - x-speakeasy-group: AppUsageControls - x-speakeasy-name-override: Get - post: - description: Update usage controls for an app. - operationId: c1.api.app.v1.AppUsageControlsService.Update + - LLM Gateway Keys + x-speakeasy-group: GatewayKey + x-speakeasy-name-override: Revoke + /api/v1/llm-gateway/provider-credentials/{slot_id}: + delete: + description: Invokes the c1.api.llm_gateway.v1.ProviderCredentialService.Clear method. + operationId: c1.api.llm_gateway.v1.ProviderCredentialService.Clear parameters: - in: path - name: app_id + name: slot_id required: true schema: - description: The app that this object belongs to. - readOnly: false + description: The slotId field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.UpdateAppUsageControlsRequestInput' + $ref: '#/components/schemas/c1.api.llm_gateway.v1.ClearProviderCredentialRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.UpdateAppUsageControlsResponse' - description: The UpdateAppUsageControlsResponse message contains the updated AppUsageControls object. - summary: Update + $ref: '#/components/schemas/c1.api.llm_gateway.v1.ClearProviderCredentialResponse' + description: Successful response + summary: Clear tags: - - App Usage Controls - x-speakeasy-group: AppUsageControls - x-speakeasy-name-override: Update - /api/v1/apps/{app_id}/users/{user_id}/app_users: + - LLM Gateway Provider Credentials + x-speakeasy-group: ProviderCredential + x-speakeasy-name-override: Clear get: - description: List app user accounts within a specific app that are correlated to a given C1 user. - operationId: c1.api.app.v1.AppUserService.ListAppUsersForUser + description: Invokes the c1.api.llm_gateway.v1.ProviderCredentialService.Get method. + operationId: c1.api.llm_gateway.v1.ProviderCredentialService.Get parameters: - in: path - name: app_id - required: true - schema: - description: The ID of the app to list users for. - readOnly: false - type: string - - in: path - name: user_id + name: slot_id required: true schema: - description: The C1 user ID to filter app users by identity correlation. - readOnly: false - type: string - - in: query - name: page_size - schema: - description: The maximum number of results to return per page. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The token for fetching the next page of results. - readOnly: false + description: The slotId field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppUsersForUserServiceListResponse' - description: The response message for listing app users correlated to a specific C1 user. - summary: List App Users For User + $ref: '#/components/schemas/c1.api.llm_gateway.v1.GetProviderCredentialResponse' + description: Successful response + summary: Get tags: - - AppUsers - x-speakeasy-group: AppUser - x-speakeasy-name-override: ListAppUsersForUser - /api/v1/apps/{app_user_app_id}/app_users/{app_user_id}: - post: - description: |- - Update an app user by ID. Only the fields specified in the update mask are updated. - Currently, only the appUserType, and identityUserId fields can be updated. - operationId: c1.api.app.v1.AppUserService.Update + - LLM Gateway Provider Credentials + x-speakeasy-group: ProviderCredential + x-speakeasy-name-override: Get + put: + description: Invokes the c1.api.llm_gateway.v1.ProviderCredentialService.Set method. + operationId: c1.api.llm_gateway.v1.ProviderCredentialService.Set parameters: - in: path - name: app_user_app_id - required: true - schema: - description: The ID of the application. - readOnly: true - type: string - - in: path - name: app_user_id + name: slot_id required: true schema: - description: A unique idenditfier of the application user. - readOnly: true + description: The slotId field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppUserServiceUpdateRequestInput' + $ref: '#/components/schemas/c1.api.llm_gateway.v1.SetProviderCredentialRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppUserServiceUpdateResponse' + $ref: '#/components/schemas/c1.api.llm_gateway.v1.SetProviderCredentialResponse' description: Successful response - summary: Update + summary: Set tags: - - AppUsers - x-speakeasy-group: AppUser - x-speakeasy-name-override: Update - /api/v1/apps/{connector_app_id}/connectors/{connector_id}/delegated: - post: - description: Update a delegated connector. - operationId: c1.api.app.v1.ConnectorService.UpdateDelegated + - LLM Gateway Provider Credentials + x-speakeasy-group: ProviderCredential + x-speakeasy-name-override: Set + /api/v1/local-directory-configs: + get: + description: List local directory configs for the tenant. + operationId: c1.api.local_directory.v1.LocalDirectoryConfigService.List parameters: - - in: path - name: connector_app_id - required: true + - in: query + name: page_size schema: - description: The id of the app the connector is associated with. - readOnly: false - type: string - - in: path - name: connector_id - required: true + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token schema: - description: The id of the connector. - readOnly: false + description: The pageToken field. type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfigServiceListResponse' + description: Successful response + summary: List + tags: + - Local Directory + x-speakeasy-group: LocalDirectoryConfig + x-speakeasy-name-override: List + post: + description: Create a new local directory config backed by an existing App. + operationId: c1.api.local_directory.v1.LocalDirectoryConfigService.Create requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceUpdateDelegatedRequestInput' + $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfigServiceCreateRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceUpdateResponse' - description: ConnectorServiceUpdateResponse is the response returned by the update method. - summary: Update Delegated + $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfigServiceCreateResponse' + description: Successful response + summary: Create tags: - - Connector - x-speakeasy-group: Connector - x-speakeasy-name-override: UpdateDelegated - /api/v1/apps/{id}: - delete: - description: Delete an app. - operationId: c1.api.app.v1.Apps.Delete + - Local Directory + x-speakeasy-group: LocalDirectoryConfig + x-speakeasy-name-override: Create + /api/v1/local-directory-configs/{app_id}: + delete: + description: Delete a local directory config. Does not delete the underlying App. + operationId: c1.api.local_directory.v1.LocalDirectoryConfigService.Delete parameters: - in: path - name: id + name: app_id required: true schema: - description: The id field. - readOnly: false + description: The appId field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.DeleteAppRequestInput' + $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfigServiceDeleteRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.DeleteAppResponse' - description: Empty response body. Status code indicates success. + $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfigServiceDeleteResponse' + description: Successful response summary: Delete tags: - - App - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App#delete - x-speakeasy-group: Apps + - Local Directory + x-speakeasy-group: LocalDirectoryConfig x-speakeasy-name-override: Delete get: - description: Get an app by ID. - operationId: c1.api.app.v1.Apps.Get + description: Get a local directory config by app_id. + operationId: c1.api.local_directory.v1.LocalDirectoryConfigService.Get parameters: - in: path - name: id + name: app_id required: true schema: - description: The id field. - readOnly: false + description: The appId field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.GetAppResponse' - description: The GetAppResponse message contains the details of the requested app in the app field. + $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfigServiceGetResponse' + description: Successful response summary: Get tags: - - App - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: null - terraform-resource: App#read - x-speakeasy-group: Apps + - Local Directory + x-speakeasy-group: LocalDirectoryConfig x-speakeasy-name-override: Get post: - description: Update an existing app. - operationId: c1.api.app.v1.Apps.Update + description: Update a local directory config. + operationId: c1.api.local_directory.v1.LocalDirectoryConfigService.Update parameters: - in: path - name: id + name: app_id required: true schema: - description: The ID of the app. + description: app_id is the identifier for this config and its linked App. Read-only after creation. readOnly: true type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.UpdateAppRequestInput' + $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfigServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.UpdateAppResponse' - description: Returns the updated app's new values. + $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfigServiceUpdateResponse' + description: Successful response summary: Update tags: - - App - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App#update - x-speakeasy-group: Apps + - Local Directory + x-speakeasy-group: LocalDirectoryConfig x-speakeasy-name-override: Update - /api/v1/apps/{src_app_id}/{src_app_entitlement_id}/bindings/{dst_app_id}/{dst_app_entitlement_id}: - delete: - description: Delete a proxy binding between a source and destination entitlement. - operationId: c1.api.app.v1.AppEntitlementsProxy.Delete + /api/v1/local-directory-configs/{directory_app_id}/invitations: + post: + description: Create (send) a new invitation to a user. + operationId: c1.api.local_directory.v1.LocalUserInvitationService.Create parameters: - in: path - name: src_app_id - required: true - schema: - description: The ID of the app that owns the source entitlement. - readOnly: false - type: string - - in: path - name: src_app_entitlement_id - required: true - schema: - description: The ID of the source (parent) entitlement. - readOnly: false - type: string - - in: path - name: dst_app_id - required: true - schema: - description: The ID of the app that owns the destination entitlement. - readOnly: false - type: string - - in: path - name: dst_app_entitlement_id + name: directory_app_id required: true schema: - description: The ID of the destination (child) entitlement. - readOnly: false + description: FK to the LocalDirectoryConfig (app_id) this invitation belongs to. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.DeleteAppEntitlementProxyRequestInput' + $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitationServiceCreateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.DeleteAppEntitlementProxyResponse' - description: The empty response message for deleting an entitlement proxy binding. - summary: Delete + $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitationServiceCreateResponse' + description: Successful response + summary: Create tags: - - App Entitlement Proxy Binding - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App Entitlement Proxy Binding#delete - x-speakeasy-group: AppEntitlementsProxy - x-speakeasy-name-override: Delete + - Local Directory + x-speakeasy-group: LocalUserInvitation + x-speakeasy-name-override: Create + /api/v1/local-directory-configs/{directory_app_id}/invitations/{id}: get: - description: Retrieve a specific proxy binding between a source and destination entitlement. - operationId: c1.api.app.v1.AppEntitlementsProxy.Get + description: Get a specific invitation by id. + operationId: c1.api.local_directory.v1.LocalUserInvitationService.Get parameters: - in: path - name: src_app_id - required: true - schema: - description: The ID of the app that owns the source entitlement. - readOnly: false - type: string - - in: path - name: src_app_entitlement_id - required: true - schema: - description: The ID of the source (parent) entitlement. - readOnly: false - type: string - - in: path - name: dst_app_id + name: directory_app_id required: true schema: - description: The ID of the app that owns the destination entitlement. - readOnly: false + description: The directoryAppId field. type: string - in: path - name: dst_app_entitlement_id + name: id required: true schema: - description: The ID of the destination (child) entitlement. - readOnly: false + description: The id field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.GetAppEntitlementProxyResponse' - description: The response message for getting a specific entitlement proxy binding. + $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitationServiceGetResponse' + description: Successful response summary: Get tags: - - App Entitlement Proxy Binding - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: App Entitlement Proxy Binding#read - terraform-resource: App Entitlement Proxy Binding#read - x-speakeasy-group: AppEntitlementsProxy + - Local Directory + x-speakeasy-group: LocalUserInvitation x-speakeasy-name-override: Get + /api/v1/local-directory-configs/{directory_app_id}/invitations/{id}/revoke: post: - description: Create a proxy binding between a source and destination entitlement, establishing a hierarchical relationship. - operationId: c1.api.app.v1.AppEntitlementsProxy.Create + description: Revoke a pending invitation. + operationId: c1.api.local_directory.v1.LocalUserInvitationService.Revoke parameters: - in: path - name: src_app_id - required: true - schema: - description: The ID of the app that owns the source entitlement. - readOnly: false - type: string - - in: path - name: src_app_entitlement_id - required: true - schema: - description: The ID of the source (parent) entitlement. - readOnly: false - type: string - - in: path - name: dst_app_id + name: directory_app_id required: true schema: - description: The ID of the app that owns the destination entitlement. - readOnly: false + description: The directoryAppId field. type: string - in: path - name: dst_app_entitlement_id + name: id required: true schema: - description: The ID of the destination (child) entitlement. - readOnly: false + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.CreateAppEntitlementProxyRequestInput' + $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitationServiceRevokeRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.CreateAppEntitlementProxyResponse' - description: The response message for creating an entitlement proxy binding. - summary: Create + $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitationServiceRevokeResponse' + description: Successful response + summary: Revoke tags: - - App Entitlement Proxy Binding - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App Entitlement Proxy Binding#create - x-speakeasy-group: AppEntitlementsProxy - x-speakeasy-name-override: Create - /api/v1/apps/connectors/credentials: - post: - description: Rotate credentials for a connector. - operationId: c1.api.app.v1.ConnectorService.RotateCredential - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceRotateCredentialRequest' + - Local Directory + x-speakeasy-group: LocalUserInvitation + x-speakeasy-name-override: Revoke + /api/v1/mcp_server_catalog: + get: + description: ListCatalog returns all available MCP server catalog entries. + operationId: c1.api.ai_governance.v1.MCPServerService.ListCatalog + parameters: + - in: query + name: page_size + schema: + description: Page size (max 100). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + - in: query + name: query + schema: + description: Optional text query to filter catalog entries by display name. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ConnectorServiceRotateCredentialResponse' - description: ConnectorServiceRotateCredentialResponse is the response returned by the rotate method. - summary: Rotate Credential + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceListCatalogResponse' + description: MCPServerServiceListCatalogResponse returns a paginated list of catalog entries. + summary: List Catalog tags: - - Connector - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: ConnectorCredential#create - x-speakeasy-group: Connector - x-speakeasy-name-override: RotateCredential - /api/v1/apps/connectors/validate_config/http: - post: - description: Validate an HTTP connector configuration and return any diagnostics or errors found. - operationId: c1.api.app.v1.ConnectorService.ValidateHTTPConnectorConfig - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.app.v1.EditorValidateRequest' + - MCP Servers + x-speakeasy-group: MCPServer + x-speakeasy-name-override: ListCatalog + /api/v1/mcp_server_catalog/{catalog_id}: + get: + description: GetCatalog retrieves a single MCP server catalog entry by ID. + operationId: c1.api.ai_governance.v1.MCPServerService.GetCatalog + parameters: + - in: path + name: catalog_id + required: true + schema: + description: The catalogId field. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.EditorValidateResponse' - description: The EditorValidateResponse message contains validation results. - summary: Validate Http Connector Config + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceGetCatalogResponse' + description: MCPServerServiceGetCatalogResponse returns a single catalog entry. + summary: Get Catalog tags: - - Connector - x-speakeasy-group: Connector - x-speakeasy-name-override: ValidateHTTPConnectorConfig - /api/v1/attribute/{id}: - delete: - description: Delete an attribute value by id. - operationId: c1.api.attribute.v1.Attributes.DeleteAttributeValue + - MCP Servers + x-speakeasy-group: MCPServer + x-speakeasy-name-override: GetCatalog + /api/v1/mcp_server_connections: + get: + description: |- + ListConnections returns per-user MCP servers the calling user can + connect to, filtered to apps where the user has an account. Covers + OAuth2 authorization-code passthrough as well as bearer-token / + custom-header per-user methods. Includes per-user connection status. + operationId: c1.api.ai_governance.v1.MCPServerService.ListConnections parameters: - - in: path - name: id - required: true + - in: query + name: page_size schema: - description: The id field. - readOnly: false + description: Page size (max 100). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceListConnectionsResponse' + description: |- + MCPServerServiceListConnectionsResponse returns a list of passthrough-mode + MCP servers with per-user connection status. + summary: List Connections + tags: + - MCP Servers + x-speakeasy-group: MCPServer + x-speakeasy-name-override: ListConnections + /api/v1/mcp_servers/discover_oidc: + post: + description: |- + DiscoverOIDCEndpoints fetches the OpenID Connect discovery document for an issuer + and returns the authorization, token, and supported scopes. + operationId: c1.api.ai_governance.v1.MCPServerService.DiscoverOIDCEndpoints requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.DeleteAttributeValueRequestInput' + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceDiscoverOIDCEndpointsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.DeleteAttributeValueResponse' - description: DeleteAttributeValueResponse is the empty response for deleting an attribute value. - summary: Delete Attribute Value + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceDiscoverOIDCEndpointsResponse' + description: MCPServerServiceDiscoverOIDCEndpointsResponse returns the discovered OAuth2 endpoints. + summary: Discover Oidc Endpoints tags: - - Attribute - x-speakeasy-group: Attributes - x-speakeasy-name-override: DeleteAttributeValue - /api/v1/attributes: + - MCP Servers + x-speakeasy-group: MCPServer + x-speakeasy-name-override: DiscoverOIDCEndpoints + /api/v1/mcp_servers/test_connection: post: - description: Create a new attribute value. - operationId: c1.api.attribute.v1.Attributes.CreateAttributeValue + description: |- + TestConnection probes an MCP server with the + supplied URL + transport + plaintext credentials and reports + whether a real MCP initialize + tools/list succeeded. + operationId: c1.api.ai_governance.v1.MCPServerService.TestConnection requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.CreateAttributeValueRequest' + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceTestConnectionRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.CreateAttributeValueResponse' - description: CreateAttributeValueResponse is the response for creating an attribute value. - summary: Create Attribute Value + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPServerServiceTestConnectionResponse' + description: Successful response + summary: Test Connection tags: - - Attribute - x-speakeasy-group: Attributes - x-speakeasy-name-override: CreateAttributeValue - /api/v1/attributes/{id}: + - MCP Servers + x-speakeasy-group: MCPServer + x-speakeasy-name-override: TestConnection + /api/v1/mcp_toolsets/search: get: - description: Get an attribute value by id. - operationId: c1.api.attribute.v1.Attributes.GetAttributeValue + description: |- + SearchAccessProfiles returns the tenant's MCP toolsets (access profiles) + across every (app_id, connector_id), filtered by a case-insensitive search + over display_name and paginated. Backs the agent-config multi-select that + binds toolsets to a ClawAgent. + operationId: c1.api.ai_governance.v1.MCPAccessProfileService.SearchAccessProfiles parameters: - - in: path - name: id - required: true + - in: query + name: page_size schema: - description: The id field. - readOnly: false + description: Page size (max 100). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + - in: query + name: query + schema: + description: Case-insensitive search over the profile display name; empty returns all. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.GetAttributeValueResponse' - description: GetAttributeValueResponse is the response for getting an attribute value by id. - summary: Get Attribute Value + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileServiceSearchAccessProfilesResponse' + description: |- + MCPAccessProfileServiceSearchAccessProfilesResponse returns one page of + tenant-wide MCP access profiles. + summary: Search Access Profiles tags: - - Attribute - x-speakeasy-group: Attributes - x-speakeasy-name-override: GetAttributeValue - /api/v1/attributes/compliance_frameworks: + - MCP Toolsets + x-speakeasy-group: MCPAccessProfile + x-speakeasy-name-override: SearchAccessProfiles + /api/v1/policies: get: - description: List all compliance framework attribute values (e.g., SOC 2, HIPAA) with pagination. - operationId: c1.api.attribute.v1.Attributes.ListComplianceFrameworks + description: List policies. + operationId: c1.api.policy.v1.Policies.List parameters: - in: query name: page_size schema: description: The pageSize field. format: int32 - readOnly: false type: integer - in: query name: page_token schema: description: The pageToken field. - readOnly: false type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.ListComplianceFrameworksResponse' - description: ListComplianceFrameworksResponse is the response for listing compliance framework attribute values. - summary: List Compliance Frameworks + $ref: '#/components/schemas/c1.api.policy.v1.ListPolicyResponse' + description: Successful response + summary: List tags: - - Compliance Framework - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: Compliance Frameworks#read - terraform-resource: null - x-speakeasy-group: Attributes - x-speakeasy-name-override: ListComplianceFrameworks + - Policy + x-speakeasy-group: Policies + x-speakeasy-name-override: List post: - description: Create a compliance framework value. - operationId: c1.api.attribute.v1.Attributes.CreateComplianceFrameworkAttributeValue + description: Create a policy. + operationId: c1.api.policy.v1.Policies.Create requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.CreateComplianceFrameworkAttributeValueRequest' + $ref: '#/components/schemas/c1.api.policy.v1.CreatePolicyRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.CreateComplianceFrameworkAttributeValueResponse' - description: Successful response - summary: Create Compliance Framework Attribute Value + $ref: '#/components/schemas/c1.api.policy.v1.CreatePolicyResponse' + description: The CreatePolicyResponse message contains the created policy object. + summary: Create tags: - - Compliance Framework + - Policy x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Compliance Framework#create - x-speakeasy-group: Attributes - x-speakeasy-name-override: CreateComplianceFrameworkAttributeValue - /api/v1/attributes/compliance_frameworks/{id}: + terraform-resource: Policy#create + x-speakeasy-group: Policies + x-speakeasy-name-override: Create + /api/v1/policies/{id}: delete: - description: Delete an attribute value by id. - operationId: c1.api.attribute.v1.Attributes.DeleteComplianceFrameworkAttributeValue + description: Delete a policy by ID. + operationId: c1.api.policy.v1.Policies.Delete parameters: - in: path name: id required: true schema: - description: The id field. - readOnly: false + description: The Id of the policy to delete. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.DeleteComplianceFrameworkAttributeValueRequestInput' + $ref: '#/components/schemas/c1.api.policy.v1.DeletePolicyRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.DeleteComplianceFrameworkAttributeValueResponse' - description: Successful response - summary: Delete Compliance Framework Attribute Value + $ref: '#/components/schemas/c1.api.policy.v1.DeletePolicyResponse' + description: Empty response with a status code indicating success. + summary: Delete tags: - - Compliance Framework + - Policy x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Compliance Framework#delete - x-speakeasy-group: Attributes - x-speakeasy-name-override: DeleteComplianceFrameworkAttributeValue + terraform-resource: Policy#delete + x-speakeasy-group: Policies + x-speakeasy-name-override: Delete get: - description: Get an attribute value by id. - operationId: c1.api.attribute.v1.Attributes.GetComplianceFrameworkAttributeValue + description: Get a policy by ID. + operationId: c1.api.policy.v1.Policies.Get parameters: - in: path name: id required: true schema: description: The id field. - readOnly: false type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.GetComplianceFrameworkAttributeValueResponse' - description: Successful response - summary: Get Compliance Framework Attribute Value + $ref: '#/components/schemas/c1.api.policy.v1.GetPolicyResponse' + description: The GetPolicyResponse message contains the policy object. + summary: Get tags: - - Compliance Framework + - Policy x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-datasource: Compliance Framework#read - terraform-resource: Compliance Framework#read - x-speakeasy-group: Attributes - x-speakeasy-name-override: GetComplianceFrameworkAttributeValue - /api/v1/attributes/risk_levels: + terraform-datasource: null + terraform-resource: Policy#read + x-speakeasy-group: Policies + x-speakeasy-name-override: Get + post: + description: Update a policy by providing a policy object and an update mask. + operationId: c1.api.policy.v1.Policies.Update + parameters: + - in: path + name: id + required: true + schema: + description: The ID of the Policy. + readOnly: true + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.policy.v1.UpdatePolicyRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.policy.v1.UpdatePolicyResponse' + description: The UpdatePolicyResponse message contains the updated policy object. + summary: Update + tags: + - Policy + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Policy#update + x-speakeasy-group: Policies + x-speakeasy-name-override: Update + /api/v1/policies/test-account-provision-policy: + post: + description: Test an account provision policy by evaluating a CEL expression and returning the computed result. + operationId: c1.api.policy.v1.AccountProvisionPolicyTest.Test + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.policy.v1.TestAccountProvisionPolicyRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.policy.v1.TestAccountProvisionPolicyResponse' + description: TestAccountProvisionPolicyResponse is the response for testing an account provision policy. + summary: Test + tags: + - Policy + x-speakeasy-group: AccountProvisionPolicyTest + x-speakeasy-name-override: Test + /api/v1/policies/validate/cel: + post: + description: Validate policies + operationId: c1.api.policy.v1.PolicyValidate.ValidateCEL + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.policy.v1.EditorValidateRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.policy.v1.EditorValidateResponse' + description: Successful response + summary: Validate Cel + tags: + - Policy + x-speakeasy-group: PolicyValidate + x-speakeasy-name-override: ValidateCEL + /api/v1/recovery-policies: get: - description: List all risk level attribute values with pagination. - operationId: c1.api.attribute.v1.Attributes.ListRiskLevels + description: List all recovery policies in your tenant, one page at a time. + operationId: c1.api.credential_inventory.v1.RecoveryPolicyService.List parameters: - in: query name: page_size schema: - description: The pageSize field. + description: The maximum number of results to return per page. format: int32 - readOnly: false type: integer - in: query name: page_token schema: - description: The pageToken field. - readOnly: false + description: A pagination token from a previous List response. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.ListRiskLevelsResponse' - description: ListRiskLevelsResponse is the response for listing risk level attribute values. - summary: List Risk Levels + $ref: '#/components/schemas/c1.api.credential_inventory.v1.RecoveryPolicyServiceListResponse' + description: Successful response + summary: List tags: - - Risk Level - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: Risk Levels#read - terraform-resource: null - x-speakeasy-group: Attributes - x-speakeasy-name-override: ListRiskLevels + - Recovery Policy + x-speakeasy-group: RecoveryPolicy + x-speakeasy-name-override: List post: - description: Create a risk level attribute. - operationId: c1.api.attribute.v1.Attributes.CreateRiskLevelAttributeValue + description: Create a recovery policy. + operationId: c1.api.credential_inventory.v1.RecoveryPolicyService.Create requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.CreateRiskLevelAttributeValueRequest' + $ref: '#/components/schemas/c1.api.credential_inventory.v1.RecoveryPolicyServiceCreateRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.CreateRiskLevelAttributeValueResponse' + $ref: '#/components/schemas/c1.api.credential_inventory.v1.RecoveryPolicyServiceCreateResponse' description: Successful response - summary: Create Risk Level Attribute Value + summary: Create tags: - - Risk Level + - Recovery Policy x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Risk Level#create - x-speakeasy-group: Attributes - x-speakeasy-name-override: CreateRiskLevelAttributeValue - /api/v1/attributes/risk_levels/{id}: + terraform-resource: RecoveryPolicy#create + x-speakeasy-group: RecoveryPolicy + x-speakeasy-name-override: Create + /api/v1/recovery-policies/{id}: delete: - description: Delete a risk level attribute value by id. - operationId: c1.api.attribute.v1.Attributes.DeleteRiskLevelAttributeValue + description: Delete a recovery policy by ID. + operationId: c1.api.credential_inventory.v1.RecoveryPolicyService.Delete parameters: - in: path name: id required: true schema: - description: The id field. - readOnly: false + description: The ID of the policy to delete. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.DeleteRiskLevelAttributeValueRequestInput' + $ref: '#/components/schemas/c1.api.credential_inventory.v1.RecoveryPolicyServiceDeleteRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.DeleteRiskLevelAttributeValueResponse' + $ref: '#/components/schemas/c1.api.credential_inventory.v1.RecoveryPolicyServiceDeleteResponse' description: Successful response - summary: Delete Risk Level Attribute Value + summary: Delete tags: - - Risk Level + - Recovery Policy x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Risk Level#delete - x-speakeasy-group: Attributes - x-speakeasy-name-override: DeleteRiskLevelAttributeValue + terraform-resource: RecoveryPolicy#delete + x-speakeasy-group: RecoveryPolicy + x-speakeasy-name-override: Delete get: - description: Get a risk level attribute value by id. - operationId: c1.api.attribute.v1.Attributes.GetRiskLevelAttributeValue + description: Get a recovery policy by ID. + operationId: c1.api.credential_inventory.v1.RecoveryPolicyService.Get parameters: - in: path name: id required: true schema: - description: The id field. - readOnly: false + description: The ID of the policy to retrieve. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.GetRiskLevelAttributeValueResponse' + $ref: '#/components/schemas/c1.api.credential_inventory.v1.RecoveryPolicyServiceGetResponse' description: Successful response - summary: Get Risk Level Attribute Value + summary: Get tags: - - Risk Level + - Recovery Policy x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-datasource: Risk Level#read - terraform-resource: Risk Level#read - x-speakeasy-group: Attributes - x-speakeasy-name-override: GetRiskLevelAttributeValue - /api/v1/attributes/types: - get: - description: List all attribute types. - operationId: c1.api.attribute.v1.Attributes.ListAttributeTypes - parameters: - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false - type: string - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.attribute.v1.ListAttributeTypesResponse' - description: ListAttributeTypesResponse is the response for listing attribute types. - summary: List Attribute Types - tags: - - Attribute - x-speakeasy-group: Attributes - x-speakeasy-name-override: ListAttributeTypes - /api/v1/attributes/types/{attribute_type_id}/values: - get: - description: List all attribute values for a given attribute type. - operationId: c1.api.attribute.v1.Attributes.ListAttributeValues + terraform-datasource: null + terraform-resource: RecoveryPolicy#read + x-speakeasy-group: RecoveryPolicy + x-speakeasy-name-override: Get + post: + description: |- + Update a recovery policy. Supply the policy object and an update mask + listing the fields to change; omitted fields are left as-is. + operationId: c1.api.credential_inventory.v1.RecoveryPolicyService.Update parameters: - in: path - name: attribute_type_id + name: id required: true schema: - description: The attributeTypeId field. - readOnly: false - type: string - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false + description: Unique identifier for the policy. + readOnly: true type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.credential_inventory.v1.RecoveryPolicyServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.ListAttributeValuesResponse' - description: ListAttributeValuesResponse is the response for listing attribute values for a given AttributeType. - summary: List Attribute Values + $ref: '#/components/schemas/c1.api.credential_inventory.v1.RecoveryPolicyServiceUpdateResponse' + description: Successful response + summary: Update tags: - - Attribute - x-speakeasy-group: Attributes - x-speakeasy-name-override: ListAttributeValues - /api/v1/auth-configs: + - Recovery Policy + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: RecoveryPolicy#update + x-speakeasy-group: RecoveryPolicy + x-speakeasy-name-override: Update + /api/v1/reporting/reports: get: - description: List returns all authentication provider configurations for the tenant. - operationId: c1.api.auth_config.v1.TenantAuthConfigService.List + description: List returns reports created by the caller, newest first. + operationId: c1.api.reporting.v1.ReportingService.List parameters: - in: query name: page_size schema: - description: The maximum number of results to return per page. + description: The pageSize field. format: int32 - readOnly: false type: integer - in: query name: page_token schema: - description: A pagination token returned from a previous List call. - readOnly: false + description: The pageToken field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfigServiceListResponse' + $ref: '#/components/schemas/c1.api.reporting.v1.ReportingServiceListResponse' description: Successful response summary: List tags: - - Auth Config - x-speakeasy-group: TenantAuthConfig + - Report + x-speakeasy-group: Reporting x-speakeasy-name-override: List post: - description: Create registers a new authentication provider configuration for the tenant. - operationId: c1.api.auth_config.v1.TenantAuthConfigService.Create + description: |- + Save promotes the program behind an already-rendered reporting surface into + a report. The caller identifies the surface; the server resolves which + program produced it. There is no create-from-prompt: the prompt has already + been answered by the time a report is worth keeping. + operationId: c1.api.reporting.v1.ReportingService.Save requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfigServiceCreateRequest' + $ref: '#/components/schemas/c1.api.reporting.v1.ReportingServiceSaveRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfigServiceCreateResponse' + $ref: '#/components/schemas/c1.api.reporting.v1.ReportingServiceSaveResponse' description: Successful response - summary: Create + summary: Save tags: - - Auth Config - x-speakeasy-group: TenantAuthConfig - x-speakeasy-name-override: Create - /api/v1/auth-configs/{id}: + - Report + x-speakeasy-group: Reporting + x-speakeasy-name-override: Save + /api/v1/reporting/reports/{id}: delete: - description: Delete removes an authentication provider configuration from the tenant. - operationId: c1.api.auth_config.v1.TenantAuthConfigService.Delete + description: Invokes the c1.api.reporting.v1.ReportingService.Delete method. + operationId: c1.api.reporting.v1.ReportingService.Delete parameters: - in: path name: id required: true schema: - description: The unique identifier of the authentication provider configuration to delete. - readOnly: false + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfigServiceDeleteRequestInput' + $ref: '#/components/schemas/c1.api.reporting.v1.ReportingServiceDeleteRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfigServiceDeleteResponse' + $ref: '#/components/schemas/c1.api.reporting.v1.ReportingServiceDeleteResponse' description: Successful response summary: Delete tags: - - Auth Config - x-speakeasy-group: TenantAuthConfig + - Report + x-speakeasy-group: Reporting x-speakeasy-name-override: Delete get: - description: Get retrieves a single authentication provider configuration by its ID. - operationId: c1.api.auth_config.v1.TenantAuthConfigService.Get + description: Invokes the c1.api.reporting.v1.ReportingService.Get method. + operationId: c1.api.reporting.v1.ReportingService.Get parameters: - in: path name: id required: true schema: - description: The unique identifier of the authentication provider configuration to retrieve. - readOnly: false + description: The id field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfigServiceGetResponse' + $ref: '#/components/schemas/c1.api.reporting.v1.ReportingServiceGetResponse' description: Successful response summary: Get tags: - - Auth Config - x-speakeasy-group: TenantAuthConfig + - Report + x-speakeasy-group: Reporting x-speakeasy-name-override: Get post: - description: Update modifies an existing authentication provider configuration. Use the update mask to specify which fields to change. - operationId: c1.api.auth_config.v1.TenantAuthConfigService.Update + description: Invokes the c1.api.reporting.v1.ReportingService.Update method. + operationId: c1.api.reporting.v1.ReportingService.Update parameters: - in: path name: id required: true schema: description: The id field. - readOnly: false type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfigServiceUpdateRequestInput' + $ref: '#/components/schemas/c1.api.reporting.v1.ReportingServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.auth_config.v1.TenantAuthConfigServiceUpdateResponse' + $ref: '#/components/schemas/c1.api.reporting.v1.ReportingServiceUpdateResponse' description: Successful response summary: Update tags: - - Auth Config - x-speakeasy-group: TenantAuthConfig + - Report + x-speakeasy-group: Reporting x-speakeasy-name-override: Update - /api/v1/auth/introspect: - get: - description: Introspect returns the current user's principle_id, user_id and a list of roles, permissions, and enabled features. - operationId: c1.api.auth.v1.Auth.Introspect - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.auth.v1.IntrospectResponse' - description: IntrospectResponse contains information about the current user who is authenticated. - summary: Introspect - tags: - - Auth - x-speakeasy-group: Auth - x-speakeasy-name-override: Introspect - /api/v1/automation_executions: - get: - description: List all automation executions in the tenant with pagination support. - operationId: c1.api.automations.v1.AutomationExecutionService.ListAutomationExecutions + /api/v1/reporting/reports/{id}/run: + post: + description: |- + Run re-executes the report's pinned program against today's data. It never + re-plans: the commit is fixed, so a rerun can only change the numbers, not + the question. Returns as soon as the invocation starts — see the response. + operationId: c1.api.reporting.v1.ReportingService.Run + parameters: + - in: path + name: id + required: true + schema: + description: The id field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.reporting.v1.ReportingServiceRunRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.ListAutomationExecutionsResponse' + $ref: '#/components/schemas/c1.api.reporting.v1.ReportingServiceRunResponse' description: Successful response - summary: List Automation Executions + summary: Run tags: - - Automations - x-speakeasy-group: AutomationExecution - x-speakeasy-name-override: ListAutomationExecutions - /api/v1/automation_executions/{id}: + - Report + x-speakeasy-group: Reporting + x-speakeasy-name-override: Run + /api/v1/reporting/reports/{id}/runs/{run_id}/provenance: get: - description: Retrieve a single automation execution by its unique identifier, with optional expanded related objects. - operationId: c1.api.automations.v1.AutomationExecutionService.GetAutomationExecution + description: |- + GetRunProvenance explains a run: what it read, what its program looked at, + and the program itself. A2UIService.GetSurfaceProvenance answers the same + question for a surface, but needs a live one — and a rerun is headless, so + a report would become less explainable every time it refreshed. + operationId: c1.api.reporting.v1.ReportingService.GetRunProvenance parameters: - in: path name: id required: true schema: - description: The unique identifier of the automation execution to retrieve. - format: int64 - readOnly: false + description: The id field. + type: string + - in: path + name: run_id + required: true + schema: + description: The runId field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.GetAutomationExecutionResponse' + $ref: '#/components/schemas/c1.api.reporting.v1.ReportingServiceGetRunProvenanceResponse' description: Successful response - summary: Get Automation Execution + summary: Get Run Provenance tags: - - Automations - x-speakeasy-group: AutomationExecution - x-speakeasy-name-override: GetAutomationExecution - /api/v1/automation_executions/{id}/actions/terminate: + - Report + x-speakeasy-group: Reporting + x-speakeasy-name-override: GetRunProvenance + /api/v1/request_schema_entitlement_binding: + delete: + description: Remove the link between a request schema and a single app entitlement. + operationId: c1.api.request_schema.v1.RequestSchemaService.RemoveEntitlementBinding + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceRemoveEntitlementBindingRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceRemoveEntitlementBindingResponse' + description: The response message for removing a single entitlement binding. + summary: Remove Entitlement Binding + tags: + - Request Schema Entitlement Binding + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Request Schema Entitlement Binding#delete + x-speakeasy-group: RequestSchema + x-speakeasy-name-override: RemoveEntitlementBinding post: - description: Terminate a running automation execution asynchronously, stopping it and marking it as terminated. - operationId: c1.api.automations.v1.AutomationExecutionActionsService.TerminateAutomation - parameters: - - in: path - name: id - required: true - schema: - description: The unique identifier of the automation execution to terminate. - format: int64 - readOnly: false - type: string + description: Link a request schema to a single app entitlement so the form is shown when requesting that entitlement. + operationId: c1.api.request_schema.v1.RequestSchemaService.CreateEntitlementBinding requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.TerminateAutomationRequestInput' + $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceCreateEntitlementBindingRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.TerminateAutomationResponse' - description: Successful response - summary: Terminate Automation + $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceCreateEntitlementBindingResponse' + description: The response message for creating a single entitlement binding. + summary: Create Entitlement Binding tags: - - Automations - x-speakeasy-group: AutomationExecutionActions - x-speakeasy-name-override: TerminateAutomation - /api/v1/automations: - get: - description: List all automations in the tenant with pagination support. - operationId: c1.api.automations.v1.AutomationService.ListAutomations + - Request Schema Entitlement Binding + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Request Schema Entitlement Binding#create + x-speakeasy-group: RequestSchema + x-speakeasy-name-override: CreateEntitlementBinding + put: + description: Look up which request schema is bound to a given app entitlement. + operationId: c1.api.request_schema.v1.RequestSchemaService.FindBindingForAppEntitlement + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceFindBindingForAppEntitlementRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.ListAutomationsResponse' - description: Successful response - summary: List Automations + $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceFindBindingForAppEntitlementResponse' + description: The response message containing the binding for the specified app entitlement. + summary: Find Binding For App Entitlement tags: - - Automations - x-speakeasy-group: Automation - x-speakeasy-name-override: ListAutomations + - Request Schema Entitlement Binding + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: Request Schema Entitlement Binding#read + terraform-resource: Request Schema Entitlement Binding#read + x-speakeasy-group: RequestSchema + x-speakeasy-name-override: FindBindingForAppEntitlement + /api/v1/request_schemas: post: - description: Create a new automation with the specified steps, triggers, and configuration. - operationId: c1.api.automations.v1.AutomationService.CreateAutomation + description: Create a new request schema that defines a form template for access requests. + operationId: c1.api.request_schema.v1.RequestSchemaService.Create requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.CreateAutomationRequest' + $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceCreateRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.CreateAutomationResponse' - description: Successful response - summary: Create Automation + $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceCreateResponse' + description: The response message for creating a request schema. + summary: Create tags: - - Automations + - Request Schema x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Automation#create - x-speakeasy-group: Automation - x-speakeasy-name-override: CreateAutomation - /api/v1/automations/{id}: + terraform-resource: Request_Schema#create + x-speakeasy-group: RequestSchema + x-speakeasy-name-override: Create + /api/v1/request_schemas/{request_schema_id}: delete: - description: Delete an automation by its unique identifier, removing it and its associated triggers. - operationId: c1.api.automations.v1.AutomationService.DeleteAutomation + description: Delete a request schema by ID. Associated entitlement bindings are also deleted. + operationId: c1.api.request_schema.v1.RequestSchemaService.Delete parameters: - in: path - name: id + name: request_schema_id required: true schema: - description: The unique identifier of the automation to delete. - readOnly: false + description: The unique identifier of the request schema to delete. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.DeleteAutomationRequestInput' + $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceDeleteRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.DeleteAutomationResponse' - description: Successful response - summary: Delete Automation + $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceDeleteResponse' + description: The response message for deleting a request schema. + summary: Delete tags: - - Automations + - Request Schema x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Automation#delete - x-speakeasy-group: Automation - x-speakeasy-name-override: DeleteAutomation + terraform-resource: Request_Schema#delete + x-speakeasy-group: RequestSchema + x-speakeasy-name-override: Delete get: - description: Retrieve a single automation by its unique identifier. - operationId: c1.api.automations.v1.AutomationService.GetAutomation + description: Retrieve a single request schema by ID. + operationId: c1.api.request_schema.v1.RequestSchemaService.Get parameters: - in: path - name: id + name: request_schema_id required: true schema: - description: The unique identifier of the automation to retrieve. - readOnly: false + description: The unique identifier of the request schema to retrieve. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.GetAutomationResponse' - description: Successful response - summary: Get Automation + $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceGetResponse' + description: The response message for retrieving a request schema. + summary: Get tags: - - Automations + - Request Schema x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-datasource: null - terraform-resource: Automation#read - x-speakeasy-group: Automation - x-speakeasy-name-override: GetAutomation + terraform-datasource: Request_Schema#read + terraform-resource: Request_Schema#read + x-speakeasy-group: RequestSchema + x-speakeasy-name-override: Get post: - description: Update an existing automation's properties, steps, or triggers using a field mask. - operationId: c1.api.automations.v1.AutomationService.UpdateAutomation + description: Update an existing request schema's form definition or settings. + operationId: c1.api.request_schema.v1.RequestSchemaService.Update parameters: - in: path - name: id + name: request_schema_id required: true schema: - description: The id field. - readOnly: true + description: The unique identifier of this request schema. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.UpdateAutomationRequestInput' + $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.UpdateAutomationResponse' - description: Successful response - summary: Update Automation + $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceUpdateResponse' + description: The response message for updating a request schema. + summary: Update tags: - - Automations + - Request Schema x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Automation#update - x-speakeasy-group: Automation - x-speakeasy-name-override: UpdateAutomation - /api/v1/automations/{id}/circuit_breaker/clear: + terraform-resource: Request_Schema#update + x-speakeasy-group: RequestSchema + x-speakeasy-name-override: Update + /api/v1/role-mining/access-profiles: post: description: |- - Clear the circuit breaker on an automation that was auto-disabled by the - rate cap. Future events flow normally; existing paused executions are not - affected (use ResolvePausedAutomationExecutions to run or cancel them). - operationId: c1.api.automations.v1.AutomationService.ClearAutomationCircuitBreaker - parameters: - - in: path - name: id - required: true - schema: - description: |- - The unique identifier of the automation whose circuit breaker should - be cleared. - readOnly: false - type: string + CreateAccessProfileFromCohort creates an access profile from a cohort definition, + adds the specified entitlements, and sets up dynamic membership automation using + a CEL expression derived from the profile filters. + operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.CreateAccessProfileFromCohort requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.ClearAutomationCircuitBreakerRequestInput' + $ref: '#/components/schemas/c1.api.role_mining_management.v1.CreateAccessProfileFromCohortRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.ClearAutomationCircuitBreakerResponse' + $ref: '#/components/schemas/c1.api.role_mining_management.v1.CreateAccessProfileFromCohortResponse' description: Successful response - summary: Clear Automation Circuit Breaker + summary: Create Access Profile From Cohort tags: - - Automations - x-speakeasy-group: Automation - x-speakeasy-name-override: ClearAutomationCircuitBreaker - /api/v1/automations/{id}/circuit_breaker/resolve_paused: + - Role Mining + x-speakeasy-group: RoleMiningManagement + x-speakeasy-name-override: CreateAccessProfileFromCohort + /api/v1/role-mining/config: + get: + description: Retrieve the current role mining configuration, including cohort hints and threshold settings. + operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.GetRoleMiningConfig + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.role_mining_management.v1.GetRoleMiningConfigResponse' + description: Successful response + summary: Get Role Mining Config + tags: + - Role Mining + x-speakeasy-group: RoleMiningManagement + x-speakeasy-name-override: GetRoleMiningConfig post: - description: |- - Decide what to do with the executions that were paused while the - automation's circuit breaker was tripped. Idempotent. - operationId: c1.api.automations.v1.AutomationService.ResolvePausedAutomationExecutions - parameters: - - in: path - name: id - required: true - schema: - description: |- - The unique identifier of the automation whose paused executions should - be resolved. - readOnly: false - type: string + description: Update the role mining configuration, such as cohort hints, max suggestions, and minimum cohort size. + operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.UpdateRoleMiningConfig requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.ResolvePausedAutomationExecutionsRequestInput' + $ref: '#/components/schemas/c1.api.role_mining_management.v1.UpdateRoleMiningConfigRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.ResolvePausedAutomationExecutionsResponse' + $ref: '#/components/schemas/c1.api.role_mining_management.v1.UpdateRoleMiningConfigResponse' description: Successful response - summary: Resolve Paused Automation Executions + summary: Update Role Mining Config tags: - - Automations - x-speakeasy-group: Automation - x-speakeasy-name-override: ResolvePausedAutomationExecutions - /api/v1/automations/{id}/execute: + - Role Mining + x-speakeasy-group: RoleMiningManagement + x-speakeasy-name-override: UpdateRoleMiningConfig + /api/v1/role-mining/custom-analysis: + get: + description: List recent custom analysis results in reverse chronological order. + operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.ListCustomAnalysisResults + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.role_mining_management.v1.ListCustomAnalysisResultsResponse' + description: Successful response + summary: List Custom Analysis Results + tags: + - Role Mining + x-speakeasy-group: RoleMiningManagement + x-speakeasy-name-override: ListCustomAnalysisResults + /api/v1/role-mining/custom-analysis/{analysis_id}/evaluate-entitlement-selection: post: - description: Trigger an on-demand execution of an automation, returning the new execution's identifier. - operationId: c1.api.automations.v1.AutomationService.ExecuteAutomation + description: |- + Evaluate the exact cohort impact of an entitlement cutoff and manual overrides. + The analysis determines the eligible entitlements and cohort definition. + operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.EvaluateEntitlementSelection parameters: - in: path - name: id + name: analysis_id required: true schema: - description: The unique identifier of the automation to execute. - readOnly: false + description: Custom analysis whose cohort and entitlement results define the selection. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.ExecuteAutomationRequestInput' + $ref: '#/components/schemas/c1.api.role_mining_management.v1.EvaluateEntitlementSelectionRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.ExecuteAutomationResponse' - description: Successful response - summary: Execute Automation + $ref: '#/components/schemas/c1.api.role_mining_management.v1.EvaluateEntitlementSelectionResponse' + description: |- + EvaluateEntitlementSelectionResponse contains the exact impact of the + resolved entitlement selection. + summary: Evaluate Entitlement Selection tags: - - Automations - x-speakeasy-group: Automation - x-speakeasy-name-override: ExecuteAutomation - /api/v1/catalogs: + - Role Mining + x-speakeasy-group: RoleMiningManagement + x-speakeasy-name-override: EvaluateEntitlementSelection + /api/v1/role-mining/custom-analysis/{id}: get: - description: Get a list of request catalogs. - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.List + description: Invokes the c1.api.role_mining_management.v1.RoleMiningManagementService.GetCustomAnalysisResult method. + operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.GetCustomAnalysisResult parameters: - - in: query - name: page_size - schema: - description: The pageSize where 0 <= pageSize <= 100. Values < 10 will be set to 10. A value of 0 returns the default page size (currently 25) - format: int32 - readOnly: false - type: integer - - in: query - name: page_token + - in: path + name: id + required: true schema: - description: The page_token field for pagination. - readOnly: false + description: The id field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceListResponse' + $ref: '#/components/schemas/c1.api.role_mining_management.v1.GetCustomAnalysisResultResponse' + description: Successful response + summary: Get Custom Analysis Result + tags: + - Role Mining + x-speakeasy-group: RoleMiningManagement + x-speakeasy-name-override: GetCustomAnalysisResult + /api/v1/role-mining/custom-analysis/trigger: + post: + description: Invokes the c1.api.role_mining_management.v1.RoleMiningManagementService.TriggerCustomAnalysis method. + operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.TriggerCustomAnalysis + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.role_mining_management.v1.TriggerCustomAnalysisRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.role_mining_management.v1.TriggerCustomAnalysisResponse' + description: Successful response + summary: Trigger Custom Analysis + tags: + - Role Mining + x-speakeasy-group: RoleMiningManagement + x-speakeasy-name-override: TriggerCustomAnalysis + /api/v1/role-mining/runs: + get: + description: List role mining analysis runs in reverse chronological order. + operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.ListRuns + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.role_mining_management.v1.ListRunsResponse' description: Successful response - summary: List + summary: List Runs tags: - - Request Catalog - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: Request Catalogs#read - terraform-resource: null - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: List - post: - description: Creates a new request catalog. - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.Create - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceCreateRequest' + - Role Mining + x-speakeasy-group: RoleMiningManagement + x-speakeasy-name-override: ListRuns + /api/v1/role-mining/runs/latest: + get: + description: Retrieve the most recent role mining analysis run, including its status and results summary. + operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.GetLatestRun responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceGetResponse' - description: The request catalog management service get response returns a request catalog view with the expanded items in the expanded array indicated by the expand mask in the request. - summary: Create + $ref: '#/components/schemas/c1.api.role_mining_management.v1.GetLatestRunResponse' + description: Successful response + summary: Get Latest Run tags: - - Request Catalog - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Access_Profile#create - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: Create - /api/v1/catalogs/{catalog_id}/requestable_entitlementIDs: + - Role Mining + x-speakeasy-group: RoleMiningManagement + x-speakeasy-name-override: GetLatestRun + /api/v1/role-mining/suggestions: get: - description: List all requestable entitlement IDs in a catalog without pagination. - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.ListAllEntitlementIdsPerApp - parameters: - - in: path - name: catalog_id - required: true - schema: - description: The unique identifier of the access profile. - readOnly: false - type: string + description: List role suggestions generated by analysis runs, optionally filtered by state. + operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.ListSuggestions responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceListAllEntitlementIdsPerCatalogResponse' - description: The response message containing all requestable entitlement references in the catalog. - summary: List All Entitlement Ids Per App + $ref: '#/components/schemas/c1.api.role_mining_management.v1.ListSuggestionsResponse' + description: Successful response + summary: List Suggestions tags: - - Request Catalog - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: null - terraform-resource: Access_Profile_Requestable_Entries#read - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: ListAllEntitlementIdsPerApp - /api/v1/catalogs/{catalog_id}/requestable_entitlements: + - Role Mining + x-speakeasy-group: RoleMiningManagement + x-speakeasy-name-override: ListSuggestions + /api/v1/role-mining/suggestions/{id}: get: - description: List entitlements in a catalog that are requestable. - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.ListEntitlementsPerCatalog + description: Retrieve a single role suggestion by ID, including its cohort filters, entitlements, and confidence score. + operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.GetSuggestion parameters: - in: path - name: catalog_id + name: id required: true schema: - description: The catalogId field. - readOnly: false - type: string - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false + description: The ID of the role mining suggestion to retrieve. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceListEntitlementsPerCatalogResponse' - description: The RequestCatalogManagementServiceListEntitlementsPerCatalogResponse message contains a list of results and a nextPageToken if applicable. - summary: List Entitlements Per Catalog + $ref: '#/components/schemas/c1.api.role_mining_management.v1.GetSuggestionResponse' + description: Successful response + summary: Get Suggestion tags: - - Request Catalog - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: ListEntitlementsPerCatalog - /api/v1/catalogs/{catalog_id}/requestable_entitlements/update: + - Role Mining + x-speakeasy-group: RoleMiningManagement + x-speakeasy-name-override: GetSuggestion + /api/v1/role-mining/suggestions/{id}/state: post: - description: Replace the full set of requestable entitlements in a catalog with the provided list. - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.UpdateAppEntitlements + description: Transition a role suggestion to a new state, such as accepted, rejected, or dismissed. + operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.UpdateSuggestionState parameters: - in: path - name: catalog_id + name: id required: true schema: - description: The Id of the request catalog to get app entitlement to. This is a URL value. - readOnly: false + description: The ID of the role mining suggestion to update. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceUpdateAppEntitlementsRequestInput' + $ref: '#/components/schemas/c1.api.role_mining_management.v1.UpdateSuggestionStateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceUpdateAppEntitlementsResponse' - description: The RequestCatalogManagementServiceUpdateAppEntitlementsResponse object is is the response from UpdateAppEntitlements endpoint. - summary: Update App Entitlements + $ref: '#/components/schemas/c1.api.role_mining_management.v1.UpdateSuggestionStateResponse' + description: Successful response + summary: Update Suggestion State tags: - - Request Catalog - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Access_Profile_Requestable_Entries#update - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: UpdateAppEntitlements - /api/v1/catalogs/{catalog_id}/requestable_entries: - delete: - description: Remove requestable entitlements from a catalog. - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.RemoveAppEntitlements + - Role Mining + x-speakeasy-group: RoleMiningManagement + x-speakeasy-name-override: UpdateSuggestionState + /api/v1/role-mining/suggestions/{suggestion_id}/users: + post: + description: Search for users that belong to a suggestion's cohort, with optional additional profile filters. + operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.SearchCohortUsers parameters: - in: path - name: catalog_id + name: suggestion_id required: true schema: - description: The catalogId for the catalog to remove entitlements from. - readOnly: false + description: The ID of the suggestion whose cohort to search within. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceRemoveAppEntitlementsRequestInput' + $ref: '#/components/schemas/c1.api.role_mining_management.v1.SearchCohortUsersRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceRemoveAppEntitlementsResponse' - description: Empty response with a status code indicating success - summary: Remove App Entitlements + $ref: '#/components/schemas/c1.api.role_mining_management.v1.SearchCohortUsersResponse' + description: Successful response + summary: Search Cohort Users tags: - - Request Catalog - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Access_Profile_Requestable_Entries#delete - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: RemoveAppEntitlements + - Role Mining + x-speakeasy-group: RoleMiningManagement + x-speakeasy-name-override: SearchCohortUsers + /api/v1/role-mining/trigger: post: - description: Add requestable entitlements to a catalog. - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.AddAppEntitlements - parameters: - - in: path - name: catalog_id - required: true - schema: - description: The Id of the request catalog to add app entitlements to. This is a URL value. - readOnly: false - type: string + description: Start a new role mining analysis job that scans existing access patterns to generate role suggestions. + operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.TriggerAnalysis requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceAddAppEntitlementsRequestInput' + $ref: '#/components/schemas/c1.api.role_mining_management.v1.TriggerAnalysisRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceAddAppEntitlementsResponse' - description: Empty response with a status code indicating success. - summary: Add App Entitlements + $ref: '#/components/schemas/c1.api.role_mining_management.v1.TriggerAnalysisResponse' + description: Successful response + summary: Trigger Analysis tags: - - Request Catalog - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Access_Profile_Requestable_Entries#create - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: AddAppEntitlements - /api/v1/catalogs/{catalog_id}/requestable_entries/{app_id}/{entitlement_id}: - delete: - description: Delete a single requestable entry - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.DeleteRequestableEntry - parameters: - - in: path - name: catalog_id - required: true - schema: - description: The ID of the access profile (catalog) - readOnly: false - type: string - - in: path - name: app_id - required: true - schema: - description: The ID of the app that contains the entitlement - readOnly: false - type: string - - in: path - name: entitlement_id - required: true - schema: - description: The ID of the entitlement - readOnly: false - type: string + - Role Mining + x-speakeasy-group: RoleMiningManagement + x-speakeasy-name-override: TriggerAnalysis + /api/v1/search/all_automation_executions: + post: + description: |- + Search across all automation executions in the tenant, with filters for state, template, app, and subject user. + Each AutomationExecutionView row is large — request a small page_size (≤10) and set expand_mask to only the paths you need; broad expansion inlines whole related objects and bloats the response. + operationId: c1.api.automations.v1.AutomationExecutionSearchService.SearchAllAutomationExecutions requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceDeleteRequestableEntryRequestInput' + $ref: '#/components/schemas/c1.api.automations.v1.SearchAllAutomationExecutionsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceDeleteRequestableEntryResponse' - description: Empty response for delete operation - summary: Delete Requestable Entry + $ref: '#/components/schemas/c1.api.automations.v1.SearchAllAutomationExecutionsResponse' + description: Successful response + summary: Search All Automation Executions tags: - - Request Catalog - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Access_Profile_Requestable_Entry#delete - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: DeleteRequestableEntry - get: - description: Get a single requestable entry - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.GetRequestableEntry - parameters: - - in: path - name: catalog_id - required: true - schema: - description: The ID of the access profile (catalog) - readOnly: false - type: string - - in: path - name: app_id - required: true - schema: - description: The ID of the app that contains the entitlement - readOnly: false - type: string - - in: path - name: entitlement_id - required: true - schema: - description: The ID of the entitlement - readOnly: false - type: string + - Automations + x-speakeasy-group: AutomationExecutionSearch + x-speakeasy-name-override: SearchAllAutomationExecutions + /api/v1/search/app_resource_types: + post: + description: Search app resources based on filters specified in the request body. + operationId: c1.api.app.v1.AppResourceSearch.SearchAppResourceTypes + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.SearchAppResourceTypesRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceGetRequestableEntryResponse' - description: Response containing the requested entry - summary: Get Requestable Entry + $ref: '#/components/schemas/c1.api.app.v1.SearchAppResourceTypesResponse' + description: The SearchAppResourceTypesResponse message contains a list of results and a nextPageToken if applicable. + summary: Search App Resource Types tags: - - Request Catalog + - App Resource x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-datasource: Access_Profile_Requestable_Entry#read + terraform-datasource: + - App Resource Type#read + - App Resource Types#read terraform-resource: null - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: GetRequestableEntry - put: - description: Create a single requestable entry - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.CreateRequestableEntry - parameters: - - in: path - name: catalog_id - required: true - schema: - description: The ID of the access profile (catalog) to add the entitlement to - readOnly: false - type: string - - in: path - name: app_id - required: true - schema: - description: The ID of the app that contains the entitlement - readOnly: false - type: string - - in: path - name: entitlement_id - required: true - schema: - description: The ID of the entitlement to add to the request catalog - readOnly: false - type: string + x-speakeasy-group: AppResourceSearch + x-speakeasy-name-override: SearchAppResourceTypes + x-speakeasy-pagination: + inputs: + - in: requestBody + name: pageToken + type: cursor + outputs: + nextCursor: $.nextPageToken + type: cursor + /api/v1/search/app_resources: + post: + description: Search app resources based on filters specified in the request body. + operationId: c1.api.app.v1.AppResourceSearch.SearchAppResources requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceCreateRequestableEntryRequestInput' + $ref: '#/components/schemas/c1.api.app.v1.SearchAppResourcesRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceCreateRequestableEntryResponse' - description: Response containing the created requestable entry - summary: Create Requestable Entry + $ref: '#/components/schemas/c1.api.app.v1.SearchAppResourcesResponse' + description: The SearchAppResourcesResponse message contains a list of results and a nextPageToken if applicable. + summary: Search App Resources tags: - - Request Catalog + - App Resource x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Access_Profile_Requestable_Entry#create - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: CreateRequestableEntry - /api/v1/catalogs/{catalog_id}/visibility_bindings: - delete: - description: Remove visibility bindings (access entitlements) from a catalog. - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.RemoveAccessEntitlements - parameters: - - in: path - name: catalog_id - required: true - schema: - description: The catalogId for the catalog to remove access entitlements from. - readOnly: false - type: string + terraform-datasource: App Resources#read + terraform-resource: null + x-speakeasy-group: AppResourceSearch + x-speakeasy-name-override: SearchAppResources + x-speakeasy-pagination: + inputs: + - in: requestBody + name: pageToken + type: cursor + outputs: + nextCursor: $.nextPageToken + type: cursor + /api/v1/search/app_users: + post: + description: Search app users based on filters specified in the request body. + operationId: c1.api.app.v1.AppUserService.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceRemoveAccessEntitlementsRequestInput' + $ref: '#/components/schemas/c1.api.app.v1.AppUserServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceRemoveAccessEntitlementsResponse' - description: Empty response with a status code indicating success. - summary: Remove Access Entitlements + $ref: '#/components/schemas/c1.api.app.v1.AppUserServiceSearchResponse' + description: Successful response + summary: Search tags: - - Request Catalog - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Access_Profile_Visibility_Bindings#delete - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: RemoveAccessEntitlements + - AppUsers + x-speakeasy-group: AppUser + x-speakeasy-name-override: Search + /api/v1/search/apps: post: - description: Add visibility bindings (access entitlements) to a catalog. - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.AddAccessEntitlements - parameters: - - in: path - name: catalog_id - required: true - schema: - description: The Id of the request catalog to add access entitlements to. This is a URL value. - readOnly: false - type: string + description: Search apps based on filters specified in the request body. + operationId: c1.api.app.v1.AppSearch.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceAddAccessEntitlementsRequestInput' + $ref: '#/components/schemas/c1.api.app.v1.SearchAppsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceAddAccessEntitlementsResponse' - description: Empty response with a status code indicating success. - summary: Add Access Entitlements + $ref: '#/components/schemas/c1.api.app.v1.SearchAppsResponse' + description: The SearchAppsResponse message contains a list of results and a nextPageToken if applicable. + summary: Search tags: - - Request Catalog + - App x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Access_Profile_Visibility_Bindings#create - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: AddAccessEntitlements - /api/v1/catalogs/{catalog_id}/visibility_entitlements: + terraform-datasource: + - App#read + - Apps#read + terraform-resource: null + x-speakeasy-group: AppSearch + x-speakeasy-name-override: Search + x-speakeasy-pagination: + inputs: + - in: requestBody + name: pageToken + type: cursor + outputs: + nextCursor: $.nextPageToken + type: cursor + /api/v1/search/apps/{app_id}/entitlements/users/{app_user_id}: get: - description: List visibility bindings (access entitlements) for a catalog. - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.ListEntitlementsForAccess + description: |- + Search for app entitlements associated with a specific app user, with optional resource type trait filtering. + Each AppEntitlementView row is large — request a small page_size (≤10) and set expand_mask to only the paths you need; broad expansion inlines whole related objects and bloats the response. + operationId: c1.api.app.v1.AppEntitlementSearchService.SearchAppEntitlementsForAppUser parameters: - in: path - name: catalog_id + name: app_id required: true schema: - description: The catalogId field. - readOnly: false + description: The ID of the app to search entitlements within. + type: string + - in: path + name: app_user_id + required: true + schema: + description: The ID of the app user to search entitlements for. type: string - in: query name: page_size schema: description: The pageSize field. format: int32 - readOnly: false type: integer - in: query name: page_token schema: description: The pageToken field. - readOnly: false type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceListEntitlementsForAccessResponse' - description: The RequestCatalogManagementServiceListEntitlementsForAccessResponse message contains a list of results and a nextPageToken if applicable. - summary: List Entitlements For Access + $ref: '#/components/schemas/c1.api.app.v1.ListAppEntitlementsResponse' + description: The ListAppEntitlementsResponse message contains a list of results and a nextPageToken if applicable. + summary: Search App Entitlements For App User tags: - - Request Catalog - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: ListEntitlementsForAccess - /api/v1/catalogs/{id}: - delete: - description: Delete a catalog. - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.Delete - parameters: - - in: path - name: id - required: true - schema: - description: The Id of the RequestCatalog to delete. - readOnly: false - type: string + - App Entitlement + x-speakeasy-group: AppEntitlementSearch + x-speakeasy-name-override: SearchAppEntitlementsForAppUser + /api/v1/search/attributes: + post: + description: Search attributes based on filters specified in the request body. + operationId: c1.api.attribute.v1.AttributeSearch.SearchAttributeValues requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceDeleteRequestInput' - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceDeleteResponse' - description: Empty response with a status code indicating success. - summary: Delete - tags: - - Request Catalog - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Access_Profile#delete - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: Delete - get: - description: Get a catalog. - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.Get - parameters: - - in: path - name: id - required: true - schema: - description: The id field. - readOnly: false - type: string + $ref: '#/components/schemas/c1.api.attribute.v1.SearchAttributeValuesRequest' responses: "200": content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceGetResponse' - description: The request catalog management service get response returns a request catalog view with the expanded items in the expanded array indicated by the expand mask in the request. - summary: Get - tags: - - Request Catalog - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: Access_Profile#read - terraform-resource: Access_Profile#read - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: Get + application/json: + schema: + $ref: '#/components/schemas/c1.api.attribute.v1.SearchAttributeValuesResponse' + description: SearchAttributeValuesResponse is the response for searching AttributeValues. + summary: Search Attribute Values + tags: + - Attribute + x-speakeasy-group: AttributeSearch + x-speakeasy-name-override: SearchAttributeValues + /api/v1/search/automation_executions: post: - description: Update a catalog. - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.Update - parameters: - - in: path - name: id - required: true - schema: - description: The id of the request catalog. - readOnly: false - type: string + description: |- + Search for automation executions with optional filters for automation_template_id, state, and query. + Each AutomationExecutionView row is large — request a small page_size (≤10) and set expand_mask to only the paths you need; broad expansion inlines whole related objects and bloats the response. + operationId: c1.api.automations.v1.AutomationExecutionSearchService.SearchAutomationExecutions requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceUpdateRequestInput' + $ref: '#/components/schemas/c1.api.automations.v1.SearchAutomationExecutionsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogManagementServiceGetResponse' - description: The request catalog management service get response returns a request catalog view with the expanded items in the expanded array indicated by the expand mask in the request. - summary: Update + $ref: '#/components/schemas/c1.api.automations.v1.SearchAutomationExecutionsResponse' + description: Successful response + summary: Search Automation Executions tags: - - Request Catalog - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Access_Profile#update - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: Update - /api/v1/catalogs/{request_catalog_id}/bundle_automation: - delete: - description: Delete the bundle automation rule for a catalog, stopping automatic membership syncing. - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.DeleteBundleAutomation - parameters: - - in: path - name: request_catalog_id - required: true - schema: - description: The unique identifier of the access profile whose automation should be deleted. - readOnly: false - type: string + - Automations + x-speakeasy-group: AutomationExecutionSearch + x-speakeasy-name-override: SearchAutomationExecutions + /api/v1/search/automation_versions: + post: + description: |- + Search for versioned snapshots of an automation template's steps and triggers. + Each version carries a full steps-and-triggers snapshot — request a small page_size (≤10) to keep responses small. + operationId: c1.api.automations.v1.AutomationSearchService.SearchAutomationTemplateVersions requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.DeleteBundleAutomationRequestInput' + $ref: '#/components/schemas/c1.api.automations.v1.SearchAutomationTemplateVersionsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.DeleteBundleAutomationResponse' - description: The response message for deleting a bundle automation. - summary: Delete Bundle Automation + $ref: '#/components/schemas/c1.api.automations.v1.SearchAutomationTemplateVersionsResponse' + description: Successful response + summary: Search Automation Template Versions tags: - - Request Catalog - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: BundleAutomation#delete - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: DeleteBundleAutomation - get: - description: Get bundle automation - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.GetBundleAutomation - parameters: - - in: path - name: request_catalog_id - required: true - schema: - description: The requestCatalogId field. - readOnly: false - type: string + - Automations + x-speakeasy-group: AutomationSearch + x-speakeasy-name-override: SearchAutomationTemplateVersions + /api/v1/search/automations: + post: + description: |- + Search for automations matching the provided filters, including query text, template refs, app, and trigger types. + Each Automation row is heavy (carries its full triggers and steps) — request a small page_size (≤10) to keep responses small. + operationId: c1.api.automations.v1.AutomationSearchService.SearchAutomations + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.automations.v1.SearchAutomationsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomation' + $ref: '#/components/schemas/c1.api.automations.v1.SearchAutomationsResponse' description: Successful response - summary: Get Bundle Automation + summary: Search Automations tags: - - Request Catalog - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: BundleAutomation#read - terraform-resource: BundleAutomation#read - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: GetBundleAutomation + - Automations + x-speakeasy-group: AutomationSearch + x-speakeasy-name-override: SearchAutomations + /api/v1/search/credential-inventory-policies: post: - description: Create or update the bundle automation rule for a catalog that automatically syncs catalog membership. - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.SetBundleAutomation - parameters: - - in: path - name: request_catalog_id - required: true - schema: - description: The unique identifier of the access profile to set the automation on. - readOnly: false - type: string + description: |- + Search credential inventory policies by name, or fetch a specific set by + ID. Returns one page of matching policies at a time. + operationId: c1.api.credential_inventory.v1.CredentialInventoryPolicyService.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.SetBundleAutomationRequestInput' + $ref: '#/components/schemas/c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomation' + $ref: '#/components/schemas/c1.api.credential_inventory.v1.CredentialInventoryPolicyServiceSearchResponse' description: Successful response - summary: Set Bundle Automation + summary: Search tags: - - Request Catalog + - Credential Inventory x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: BundleAutomation#update - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: SetBundleAutomation - /api/v1/catalogs/{request_catalog_id}/bundle_automation/create: + terraform-datasource: CredentialInventoryPolicy#read + terraform-resource: null + x-speakeasy-group: CredentialInventoryPolicy + x-speakeasy-name-override: Search + /api/v1/search/entitlements: post: - description: Create a new bundle automation rule for a catalog that automatically syncs catalog membership from a query. - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.CreateBundleAutomation - parameters: - - in: path - name: request_catalog_id - required: true - schema: - description: The unique identifier of the access profile to create the automation for. - readOnly: false - type: string + description: |- + Search app entitlements based on filters specified in the request body. + Each AppEntitlementView row is large — request a small page_size (≤10) and set expand_mask to only the paths you need; broad expansion inlines whole related objects and bloats the response. + operationId: c1.api.app.v1.AppEntitlementSearchService.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.CreateBundleAutomationRequestInput' + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementSearchServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.BundleAutomation' + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementSearchServiceSearchResponse' description: Successful response - summary: Create Bundle Automation + summary: Search tags: - - Request Catalog + - App Entitlement x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: BundleAutomation#create - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: CreateBundleAutomation - /api/v1/catalogs/{request_catalog_id}/bundle_automation/resume: + terraform-datasource: + - App Entitlement#read + - App Entitlements#read + terraform-resource: null + x-speakeasy-group: AppEntitlementSearch + x-speakeasy-name-override: Search + x-speakeasy-pagination: + inputs: + - in: requestBody + name: pageToken + type: cursor + outputs: + nextCursor: $.nextPageToken + type: cursor + /api/v1/search/finding_audits: post: - description: Resume a bundle automation that was paused by the circuit breaker after detecting excessive membership changes. - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.ResumePausedBundleAutomation - parameters: - - in: path - name: request_catalog_id - required: true - schema: - description: The unique identifier of the access profile whose automation should be resumed. - readOnly: false - type: string + description: |- + Search returns audit events filtered by finding, actor, type, or + app. Authorized as VIEWER -- the same role required to read the + finding itself. + operationId: c1.api.finding.v1.FindingAuditService.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.ResumePausedBundleAutomationRequestInput' + $ref: '#/components/schemas/c1.api.finding.v1.FindingAuditServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.ResumePausedBundleAutomationResponse' - description: The response message for resuming a paused bundle automation. - summary: Resume Paused Bundle Automation + $ref: '#/components/schemas/c1.api.finding.v1.FindingAuditServiceSearchResponse' + description: Successful response + summary: Search tags: - - Request Catalog - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: ResumePausedBundleAutomation - /api/v1/catalogs/{request_catalog_id}/bundle_automation/run: + - Findings + x-speakeasy-group: FindingAudit + x-speakeasy-name-override: Search + x-stability-level: beta + /api/v1/search/functions: post: - description: Trigger an immediate execution of a catalog's bundle automation, bypassing the normal schedule. - operationId: c1.api.requestcatalog.v1.RequestCatalogManagementService.ForceRunBundleAutomation - parameters: - - in: path - name: request_catalog_id - required: true - schema: - description: The unique identifier of the access profile whose automation should be run. - readOnly: false - type: string + description: Search searches for functions based on criteria + operationId: c1.api.functions.v1.FunctionsSearch.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.ForceRunBundleAutomationRequestInput' + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.ForceRunBundleAutomationResponse' - description: The response message for triggering a bundle automation run. - summary: Force Run Bundle Automation + $ref: '#/components/schemas/c1.api.functions.v1.FunctionsSearchResponse' + description: Successful response + summary: Search tags: - - Request Catalog - x-speakeasy-group: RequestCatalogManagement - x-speakeasy-name-override: ForceRunBundleAutomation - /api/v1/connectorcatalog: + - Function + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: Function#read + terraform-resource: null + x-speakeasy-group: FunctionsSearch + x-speakeasy-name-override: Search + x-stability-level: draft + /api/v1/search/grants: post: - description: Return the configuration schema describing the fields required to set up a connector of the specified type. - operationId: c1.api.integration.connector.v1.ConnectorCatalogService.ConfigurationSchema + description: |- + Search grants (user-to-entitlement bindings) across apps, with filters for app, user, resource type, and entitlement. + Rows are heavy (each binding carries a full entitlement + user view) — request a small page_size (≤10) and set expand_mask to only the paths you need; broad expansion inlines whole related objects and bloats the response. + operationId: c1.api.app.v1.AppEntitlementSearchService.SearchGrants requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.integration.connector.v1.ConnectorCatalogServiceConfigurationSchemaRequest' + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementSearchServiceSearchGrantsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.integration.connector.v1.ConnectorCatalogServiceConfigurationSchemaResponse' - description: ConnectorCatalogServiceConfigurationSchemaResponse is the response containing the connector's configuration schema. - summary: Configuration Schema + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementSearchServiceSearchGrantsResponse' + description: Successful response + summary: Search Grants tags: - - Connector Catalog - x-speakeasy-group: ConnectorCatalog - x-speakeasy-name-override: ConfigurationSchema - /api/v1/directories: - get: - description: List directories. - operationId: c1.api.directory.v1.DirectoryService.List - parameters: - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false - type: string + - App Entitlement + x-speakeasy-group: AppEntitlementSearch + x-speakeasy-name-override: SearchGrants + /api/v1/search/graph: + post: + description: |- + SearchGraph performs a server-side BFS traversal and returns a bounded, filtered subgraph. + Exactly one of user_id, app_id, or resource_id must be set. + operationId: c1.api.app.v1.AppEntitlementSearchService.SearchGraph + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementSearchServiceSearchGraphRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryServiceListResponse' - description: The DirectoryServiceListResponse message contains a list of results and a nextPageToken if applicable. - summary: List + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementSearchServiceSearchGraphResponse' + description: SearchGraph response. Contains a subgraph of nodes and edges. + summary: Search Graph tags: - - Directory - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: - - Directory#read - - Directories#read - terraform-resource: null - x-speakeasy-group: Directory - x-speakeasy-name-override: List + - App Entitlement + x-speakeasy-group: AppEntitlementSearch + x-speakeasy-name-override: SearchGraph + /api/v1/search/graph/counts: post: - description: Create a directory. - operationId: c1.api.directory.v1.DirectoryService.Create + description: |- + CountGrantsForUserByApp returns, for a user, the number of grants held per + application. Use it to size or filter an access graph before calling + SearchGraph: counts are computed directly from grant bindings and are an + upper bound on what SearchGraph will render for the same user and app + filter (SearchGraph applies additional filters that this count does not). + operationId: c1.api.app.v1.AppEntitlementSearchService.CountGrantsForUserByApp requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryServiceCreateRequest' + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementSearchServiceCountGrantsForUserByAppRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryServiceCreateResponse' - description: The DirectoryServiceCreateResponse message. - summary: Create + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementSearchServiceCountGrantsForUserByAppResponse' + description: |- + CountGrantsForUserByApp response. Grant counts are computed directly from + grant bindings and are an upper bound on what SearchGraph renders for the + same user and app filter — SearchGraph applies additional filters that + these counts do not. + summary: Count Grants For User By App tags: - - Directory - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Directory#create - x-speakeasy-group: Directory - x-speakeasy-name-override: Create - /api/v1/directories/{app_id}: - delete: - description: Delete a directory by app_id. - operationId: c1.api.directory.v1.DirectoryService.Delete - parameters: - - in: path - name: app_id - required: true - schema: - description: The app_id of the directory to delete. - readOnly: false - type: string + - App Entitlement + x-speakeasy-group: AppEntitlementSearch + x-speakeasy-name-override: CountGrantsForUserByApp + /api/v1/search/graph/resources: + post: + description: |- + SearchReachableResourcesForUser returns the distinct app resources a user + can reach through any of their grants, deduplicated across entitlements + (a resource reachable via more than one grant appears once). Powers the + Resources lane of the access graph's list view: supports free-text search + over resource display name and narrowing to specific applications. + operationId: c1.api.app.v1.AppEntitlementSearchService.SearchReachableResourcesForUser requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryServiceDeleteRequestInput' + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementSearchServiceSearchReachableResourcesForUserRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryServiceDeleteResponse' - description: Empty response with a status code indicating success. - summary: Delete + $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementSearchServiceSearchReachableResourcesForUserResponse' + description: |- + SearchReachableResourcesForUser response. Resources are deduplicated: a + resource reachable through more than one grant or entitlement appears once. + summary: Search Reachable Resources For User tags: - - Directory - x-speakeasy-group: Directory - x-speakeasy-name-override: Delete - get: - description: Get a directory by app_id. - operationId: c1.api.directory.v1.DirectoryService.Get - parameters: - - in: path - name: app_id - required: true - schema: - description: The appId field. - readOnly: false - type: string + - App Entitlement + x-speakeasy-group: AppEntitlementSearch + x-speakeasy-name-override: SearchReachableResourcesForUser + /api/v1/search/hooks: + post: + description: Invokes the c1.api.hooks.v1.HooksSearch.Search method. + operationId: c1.api.hooks.v1.HooksSearch.Search + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.hooks.v1.HooksSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryServiceGetResponse' - description: |- - The Directory Service Get Response returns a directory view with a directory and JSONPATHs indicating the - location in the expanded array that items are expanded as indicated by the expand mask in the request. - summary: Get + $ref: '#/components/schemas/c1.api.hooks.v1.HooksSearchResponse' + description: Successful response + summary: Search tags: - - Directory - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: null - terraform-resource: Directory#read - x-speakeasy-group: Directory - x-speakeasy-name-override: Get - put: - description: Update a directory by app_id. - operationId: c1.api.directory.v1.DirectoryService.Update - parameters: - - in: path - name: app_id - required: true - schema: - description: The appId field. - readOnly: false - type: string + - Hook + x-speakeasy-group: HooksSearch + x-speakeasy-name-override: Search + /api/v1/search/iam/external_clients: + post: + description: |- + Search returns external client grants for all users in the tenant. + Request a modest page_size (≤25) to keep responses small. + operationId: c1.api.iam.v1.ExternalClientSearchService.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryServiceUpdateRequestInput' + $ref: '#/components/schemas/c1.api.iam.v1.ExternalClientSearchServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.directory.v1.DirectoryServiceUpdateResponse' + $ref: '#/components/schemas/c1.api.iam.v1.ExternalClientSearchServiceSearchResponse' description: Successful response - summary: Update + summary: 'NOTE: Searches external client grants for all users' tags: - - Directory - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Directory#update - x-speakeasy-group: Directory - x-speakeasy-name-override: Update - /api/v1/findings/{finding_id}/state: + - External Client + x-speakeasy-group: ExternalClientSearch + x-speakeasy-name-override: Search + /api/v1/search/iam/personal_clients: post: - description: Update finding workflow state (snooze, accept risk, suppress, reopen, resolve). - operationId: c1.api.finding.v1.FindingService.UpdateFindingState - parameters: - - in: path - name: finding_id - required: true - schema: - description: The ID of the finding whose state to update. - readOnly: false - type: string + description: |- + Search finds personal client credentials across all users, with optional filtering by query text or user. + Request a modest page_size (≤25) to keep responses small. + operationId: c1.api.iam.v1.PersonalClientSearchService.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.UpdateFindingStateRequestInput' + $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientSearchServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.UpdateFindingStateResponse' + $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientSearchServiceSearchResponse' description: Successful response - summary: Update Finding State + summary: 'NOTE: Searches personal clients for all users' tags: - - Findings - x-speakeasy-group: Finding - x-speakeasy-name-override: UpdateFindingState - /api/v1/findings/{finding_id}/task: + - Personal Client + x-speakeasy-group: PersonalClientSearch + x-speakeasy-name-override: Search + /api/v1/search/iam/personal_devices: post: - description: Create a task for a finding. - operationId: c1.api.finding.v1.FindingService.CreateFindingTask - parameters: - - in: path - name: finding_id - required: true - schema: - description: The ID of the finding to create a remediation task for. - readOnly: false - type: string + description: |- + Search returns the calling user's registered devices, ordered by display name. + By default only active devices are returned; use the status filter to include + revoked devices. Optionally filter by a display-name query. + operationId: c1.api.iam.v1.PersonalDeviceService.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.CreateFindingTaskRequestInput' + $ref: '#/components/schemas/c1.api.iam.v1.PersonalDeviceServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.CreateFindingTaskResponse' + $ref: '#/components/schemas/c1.api.iam.v1.PersonalDeviceServiceSearchResponse' description: Successful response - summary: Create Finding Task + summary: 'NOTE: Only shows devices for the current user.' tags: - - Findings - x-speakeasy-group: Finding - x-speakeasy-name-override: CreateFindingTask - /api/v1/findings/{id}: - get: - description: Get a single finding by ID. - operationId: c1.api.finding.v1.FindingService.GetFinding - parameters: - - in: path - name: id - required: true - schema: - description: The ID of the finding to retrieve. - readOnly: false - type: string + - Personal Device + x-speakeasy-group: PersonalDevice + x-speakeasy-name-override: Search + /api/v1/search/local-directory-invitations: + post: + description: |- + List invitations for a directory, with optional status filter. + Search invitations with filters (directory, status). + operationId: c1.api.local_directory.v1.LocalUserInvitationService.Search + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitationServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.GetFindingResponse' + $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitationServiceSearchResponse' description: Successful response - summary: Get Finding + summary: Search tags: - - Findings - x-speakeasy-group: Finding - x-speakeasy-name-override: GetFinding - /api/v1/findings/bulk/state: + - Local Directory + x-speakeasy-group: LocalUserInvitation + x-speakeasy-name-override: Search + /api/v1/search/past-grants: post: - description: Bulk update finding states. - operationId: c1.api.finding.v1.FindingService.BulkUpdateFindingState + description: Search historical grants that have been revoked, filtered by app user or entitlement. + operationId: c1.api.app.v1.AppEntitlementUserBindingService.SearchPastGrants requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.BulkUpdateFindingStateRequest' + $ref: '#/components/schemas/c1.api.app.v1.SearchPastGrantsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.BulkUpdateFindingStateResponse' - description: Successful response - summary: Bulk Update Finding State + $ref: '#/components/schemas/c1.api.app.v1.SearchPastGrantsResponse' + description: The SearchPastGrantsResponse message contains a list of past grants and a nextPageToken if applicable. + summary: Search Past Grants tags: - - Findings - x-speakeasy-group: Finding - x-speakeasy-name-override: BulkUpdateFindingState - /api/v1/findings/bulk/tasks: + - App Entitlement User Binding History + x-speakeasy-group: AppEntitlementUserBinding + x-speakeasy-name-override: SearchPastGrants + /api/v1/search/policies: post: - description: Bulk create tasks for findings. - operationId: c1.api.finding.v1.FindingService.BulkCreateFindingTasks + description: Search policies based on filters specified in the request body. + operationId: c1.api.policy.v1.PolicySearch.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.BulkCreateFindingTasksRequest' + $ref: '#/components/schemas/c1.api.policy.v1.SearchPoliciesRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.BulkCreateFindingTasksResponse' + $ref: '#/components/schemas/c1.api.policy.v1.SearchPoliciesResponse' description: Successful response - summary: Bulk Create Finding Tasks + summary: Search tags: - - Findings - x-speakeasy-group: Finding - x-speakeasy-name-override: BulkCreateFindingTasks - /api/v1/findings/routing-rules: - get: - description: List finding routing rules, optionally filtered to a specific app. - operationId: c1.api.finding.v1.FindingRoutingRuleService.ListFindingRoutingRules + - Policy + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: + - Policy#read + - Policies#read + terraform-resource: null + x-speakeasy-group: PolicySearch + x-speakeasy-name-override: Search + x-speakeasy-pagination: + inputs: + - in: requestBody + name: pageToken + type: cursor + outputs: + nextCursor: $.nextPageToken + type: cursor + /api/v1/search/recovery-policies: + post: + description: |- + Search recovery policies by name, or fetch a specific set by ID. Returns + one page of matching policies at a time. + operationId: c1.api.credential_inventory.v1.RecoveryPolicyService.Search + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.credential_inventory.v1.RecoveryPolicyServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.ListFindingRoutingRulesResponse' + $ref: '#/components/schemas/c1.api.credential_inventory.v1.RecoveryPolicyServiceSearchResponse' description: Successful response - summary: List Finding Routing Rules + summary: Search tags: - - Finding Routing Rules - x-speakeasy-group: FindingRoutingRule - x-speakeasy-name-override: ListFindingRoutingRules + - Recovery Policy + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: RecoveryPolicy#read + terraform-resource: null + x-speakeasy-group: RecoveryPolicy + x-speakeasy-name-override: Search + /api/v1/search/request_catalog/entitlements: post: - description: Create a new finding routing rule that defines which policy to use for auto-routing matching findings. - operationId: c1.api.finding.v1.FindingRoutingRuleService.CreateFindingRoutingRule + description: |- + Search request catalogs based on filters specified in the request body. + Rows are heavy (each entitlement carries its user bindings) — request a small page_size (≤10) and set expand_mask to only the paths you need; broad expansion inlines whole related objects and bloats the response. + operationId: c1.api.requestcatalog.v1.RequestCatalogSearchService.SearchEntitlements requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.CreateFindingRoutingRuleRequest' + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogSearchServiceSearchEntitlementsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.CreateFindingRoutingRuleResponse' - description: Successful response - summary: Create Finding Routing Rule + $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogSearchServiceSearchEntitlementsResponse' + description: The RequestCatalogSearchServiceSearchEntitlementsResponse message contains a list of results and a nextPageToken if applicable. + summary: Search Entitlements tags: - - Finding Routing Rules - x-speakeasy-group: FindingRoutingRule - x-speakeasy-name-override: CreateFindingRoutingRule - /api/v1/findings/routing-rules/{id}: - delete: - description: Delete a finding routing rule. Findings already routed by this rule are not affected. - operationId: c1.api.finding.v1.FindingRoutingRuleService.DeleteFindingRoutingRule - parameters: - - in: path - name: id - required: true - schema: - description: The ID of the finding routing rule to delete. - readOnly: false - type: string + - Request Catalog + x-speakeasy-group: RequestCatalogSearch + x-speakeasy-name-override: SearchEntitlements + /api/v1/search/role-mining/suggestions: + post: + description: |- + Search role mining suggestions by name, description, or cohort filter values with optional state and type filters. + Each suggestion row is large (cohort filters, entitlements, insights, profile matches) — request a small page_size (≤10) to keep responses small. + operationId: c1.api.role_mining_management.v1.RoleMiningManagementSearchService.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.DeleteFindingRoutingRuleRequestInput' + $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningSearchSuggestionsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.DeleteFindingRoutingRuleResponse' + $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningSearchSuggestionsResponse' description: Successful response - summary: Delete Finding Routing Rule + summary: Search tags: - - Finding Routing Rules - x-speakeasy-group: FindingRoutingRule - x-speakeasy-name-override: DeleteFindingRoutingRule - get: - description: Retrieve a single finding routing rule by ID. - operationId: c1.api.finding.v1.FindingRoutingRuleService.GetFindingRoutingRule - parameters: - - in: path - name: id - required: true - schema: - description: The ID of the finding routing rule to retrieve. - readOnly: false - type: string + - Role Mining + x-speakeasy-group: RoleMiningManagementSearch + x-speakeasy-name-override: Search + /api/v1/search/secrets-admin: + post: + description: |- + Search returns secrets across the tenant. + Can filter by creator, sharing mode, status, time range, etc. + operationId: c1.api.secrets.v1.PaperSecretAdminService.Search + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretAdminServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.GetFindingRoutingRuleResponse' + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretAdminServiceSearchResponse' description: Successful response - summary: Get Finding Routing Rule + summary: Search tags: - - Finding Routing Rules - x-speakeasy-group: FindingRoutingRule - x-speakeasy-name-override: GetFindingRoutingRule - /api/v1/findings/routing-rules/{routing_rule_id}/update: + - Secrets Admin + x-speakeasy-group: PaperSecretAdmin + x-speakeasy-name-override: Search + x-stability-level: beta + /api/v1/search/secrets-admin/audit_events: post: - description: Update an existing finding routing rule's match criteria or target policy. - operationId: c1.api.finding.v1.FindingRoutingRuleService.UpdateFindingRoutingRule - parameters: - - in: path - name: routing_rule_id - required: true - schema: - description: The id field. - readOnly: false - type: string + description: |- + SearchAuditEvents returns audit events for paper secrets. + Can filter by vault_id, actor (user ID or email), client IP. + operationId: c1.api.secrets.v1.PaperSecretAdminService.SearchAuditEvents requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.UpdateFindingRoutingRuleRequestInput' + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretAdminServiceSearchAuditEventsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.UpdateFindingRoutingRuleResponse' + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretAdminServiceSearchAuditEventsResponse' description: Successful response - summary: Update Finding Routing Rule + summary: Search Audit Events tags: - - Finding Routing Rules - x-speakeasy-group: FindingRoutingRule - x-speakeasy-name-override: UpdateFindingRoutingRule - /api/v1/findings/search: + - Secrets Admin + x-speakeasy-group: PaperSecretAdmin + x-speakeasy-name-override: SearchAuditEvents + x-stability-level: beta + /api/v1/search/secrets/audit_events: post: - description: Search findings using full-text query and filters for severity, state, type, and app. - operationId: c1.api.finding.v1.FindingSearchService.Search + description: |- + SearchAuditEvents returns audit events for a secret owned by the calling user. + Returns sanitized OCSF events (IP addresses stripped for non-admin consumption). + operationId: c1.api.secrets.v1.PaperSecretService.SearchAuditEvents requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.FindingSearchRequest' + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceSearchAuditEventsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.finding.v1.FindingSearchResponse' - description: Successful response - summary: Search + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceSearchAuditEventsResponse' + description: |- + PaperSecretServiceSearchAuditEventsResponse contains a page of audit events + for the requested secret. + summary: Search Audit Events tags: - - Findings - x-speakeasy-group: FindingSearch - x-speakeasy-name-override: Search - /api/v1/functions: - get: - description: List retrieves all functions with pagination - operationId: c1.api.functions.v1.FunctionsService.ListFunctions + - Secrets + x-speakeasy-group: PaperSecret + x-speakeasy-name-override: SearchAuditEvents + x-stability-level: beta + /api/v1/search/secrets/mine: + post: + description: |- + SearchMySecrets returns secrets created by the current user. + Automatically scoped to current user - no user_id filter parameter. + operationId: c1.api.secrets.v1.PaperSecretService.SearchMySecrets + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceSearchMySecretsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceListFunctionsResponse' - description: Successful response - summary: List Functions + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceSearchResponse' + description: Search response for user's own secrets + summary: Search My Secrets tags: - - Function - x-speakeasy-group: Functions - x-speakeasy-name-override: ListFunctions - x-stability-level: draft + - Secrets + x-speakeasy-group: PaperSecret + x-speakeasy-name-override: SearchMySecrets + x-stability-level: beta + /api/v1/search/session-policies: post: - description: CreateFunction registers a new serverless function and creates its initial code commit. - operationId: c1.api.functions.v1.FunctionsService.CreateFunction + description: |- + Search session policies by name, or fetch a specific set by ID. Returns + one page of matching policies at a time. + operationId: c1.api.session_policy.v1.SessionPolicyService.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceCreateFunctionRequest' + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceCreateFunctionResponse' + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceSearchResponse' description: Successful response - summary: Create Function + summary: Search tags: - - Function + - Session Policy x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Function#create - x-speakeasy-group: Functions - x-speakeasy-name-override: CreateFunction - /api/v1/functions/{function_id}/commits: - get: - description: ListCommits retrieves the commit history - operationId: c1.api.functions.v1.FunctionsService.ListCommits - parameters: - - in: path - name: function_id - required: true - schema: - description: The functionId field. - readOnly: false - type: string - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceListCommitsResponse' - description: Successful response - summary: List Commits - tags: - - Function Commit - x-speakeasy-group: Functions - x-speakeasy-name-override: ListCommits - x-stability-level: draft + terraform-datasource: SessionPolicy#read + terraform-resource: null + x-speakeasy-group: SessionPolicy + x-speakeasy-name-override: Search + /api/v1/search/sign-in-policies: post: - description: CreateInitialCommit starts a new commit and returns upload URLs for files - operationId: c1.api.functions.v1.FunctionsService.CreateInitialCommit - parameters: - - in: path - name: function_id - required: true - schema: - description: The functionId field. - readOnly: false - type: string + description: |- + Search sign-in policies by name, or fetch a specific set by ID. Returns + one page of matching policies at a time. + operationId: c1.api.sign_in_policy.v1.SignInPolicyService.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceCreateInitialCommitRequestInput' + $ref: '#/components/schemas/c1.api.sign_in_policy.v1.SignInPolicyServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceCreateInitialCommitResponse' + $ref: '#/components/schemas/c1.api.sign_in_policy.v1.SignInPolicyServiceSearchResponse' description: Successful response - summary: Create Initial Commit + summary: Search tags: - - Function Commit - x-speakeasy-group: Functions - x-speakeasy-name-override: CreateInitialCommit - x-stability-level: draft - /api/v1/functions/{function_id}/commits/{commit_id}/finalize: + - Sign-In Policy + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: SignInPolicy#read + terraform-resource: null + x-speakeasy-group: SignInPolicy + x-speakeasy-name-override: Search + /api/v1/search/ssf-receiver-events: post: - description: CreateFinalCommit completes a commit after files are uploaded - operationId: c1.api.functions.v1.FunctionsService.CreateFinalCommit - parameters: - - in: path - name: function_id - required: true - schema: - description: The functionId field. - readOnly: false - type: string - - in: path - name: commit_id - required: true - schema: - description: The commitId field. - readOnly: false - type: string + description: |- + Search performs a full-text search across received SSF events with optional filters for stream, event type, outcome, and matched user. + Request a modest page_size (≤25) to keep responses small. + operationId: c1.api.ssf_receiver.v1.SSFReceiverEventSearchService.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceCreateFinalCommitRequestInput' + $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverEventSearchServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceCreateFinalCommitResponse' - description: Successful response - summary: Create Final Commit + $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverEventSearchServiceSearchResponse' + description: SSFReceiverEventSearchServiceSearchResponse contains the matching events and a pagination token. + summary: Search tags: - - Function Commit - x-speakeasy-group: Functions - x-speakeasy-name-override: CreateFinalCommit - x-stability-level: draft - /api/v1/functions/{function_id}/commits/{commit_id}/lockfile: - get: - description: GetLockFile retrieves the deno lock file for a specific commit, if it exists. - operationId: c1.api.functions.v1.FunctionsService.GetLockFile - parameters: - - in: path - name: function_id - required: true - schema: - description: The functionId field. - readOnly: false - type: string - - in: path - name: commit_id - required: true - schema: - description: The commitId field. - readOnly: false - type: string + - SSF Receiver + x-speakeasy-group: SSFReceiverEventSearch + x-speakeasy-name-override: Search + /api/v1/search/sso/applications: + post: + description: |- + Search SSO applications across the tenant. Supports filtering by the + applications in your catalog and by display-name or description text. + operationId: c1.api.sso.v1.SSOApplicationService.Search + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceGetLockFileResponse' - description: FunctionsServiceGetLockFileResponse returns the deno lock file content for a commit. - summary: Get Lock File + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceSearchResponse' + description: SSOApplicationServiceSearchResponse returns matching SSO applications. + summary: Search tags: - - Function Commit - x-speakeasy-group: Functions - x-speakeasy-name-override: GetLockFile - x-stability-level: draft - /api/v1/functions/{function_id}/commits/{id}: - get: - description: |- - GetCommitContent retrieves a commit and all its file contents in a single unary response. - This is a non-streaming alternative to GetCommit for REST API consumers. - operationId: c1.api.functions.v1.FunctionsService.GetCommitContent - parameters: - - in: path - name: function_id - required: true - schema: - description: The function ID (KSUID). - readOnly: false - type: string - - in: path - name: id - required: true - schema: - description: The commit reference to retrieve. Accepts a KSUID, "HEAD", or a tag reference like "refs/tags/v1.0". - readOnly: false - type: string + - SSO + x-speakeasy-group: SSOApplication + x-speakeasy-name-override: Search + /api/v1/search/step-up/providers: + post: + description: Search allows searching for step-up providers with various filters + operationId: c1.api.stepup.v1.StepUpProviderService.Search + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.stepup.v1.SearchStepUpProvidersRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceGetCommitContentResponse' - description: FunctionsServiceGetCommitContentResponse contains a commit and all its file contents. - summary: Get Commit Content + $ref: '#/components/schemas/c1.api.stepup.v1.SearchStepUpProvidersResponse' + description: Response message for searching step-up providers + summary: Search tags: - - Function Commit - x-speakeasy-group: Functions - x-speakeasy-name-override: GetCommitContent - x-stability-level: draft - /api/v1/functions/{function_id}/invocations: - get: - description: List retrieves the invocation history for a function - operationId: c1.api.functions.v1.FunctionsInvocationService.List - parameters: - - in: path - name: function_id - required: true - schema: - description: The functionId field. - readOnly: false - type: string + - Step Up Authentication Providers + x-speakeasy-group: StepUpProvider + x-speakeasy-name-override: Search + /api/v1/search/step-up/transactions: + post: + description: Search allows searching for step-up transactions with various filters + operationId: c1.api.stepup.v1.StepUpTransactionService.Search + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.stepup.v1.SearchStepUpTransactionsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsInvocationServiceListResponse' - description: Successful response - summary: List + $ref: '#/components/schemas/c1.api.stepup.v1.SearchStepUpTransactionsResponse' + description: Response message for searching step-up transactions + summary: Search tags: - - Function Invocation - x-speakeasy-group: FunctionsInvocation - x-speakeasy-name-override: List - x-stability-level: draft - /api/v1/functions/{function_id}/invocations/{id}: - get: - description: Get retrieves a specific invocation by ID - operationId: c1.api.functions.v1.FunctionsInvocationService.Get - parameters: - - in: path - name: function_id - required: true - schema: - description: The functionId field. - readOnly: false - type: string - - in: path - name: id - required: true - schema: - description: The id field. - readOnly: false - type: string + - Step Up Authentication Transactions + x-speakeasy-group: StepUpTransaction + x-speakeasy-name-override: Search + /api/v1/search/systemlog/exports: + post: + description: Search for system log exports matching the specified filters. + operationId: c1.api.systemlog.v1.ExportsSearchService.Search + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.systemlog.v1.ExportsSearchServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsInvocationServiceGetResponse' - description: Successful response - summary: Get + $ref: '#/components/schemas/c1.api.systemlog.v1.ExportsSearchServiceSearchResponse' + description: ExportsSearchServiceSearchResponse is the response for searching system log exports. + summary: Search tags: - - Function Invocation - x-speakeasy-group: FunctionsInvocation - x-speakeasy-name-override: Get - x-stability-level: draft - /api/v1/functions/{function_id}/invocations/search: + - System Log Exporter + x-speakeasy-group: ExportsSearch + x-speakeasy-name-override: Search + /api/v1/search/tasks: post: - description: Search searches for function invocations with filtering and ordering support - operationId: c1.api.functions.v1.FunctionsInvocationSearchService.Search - parameters: - - in: path - name: function_id - required: true - schema: - description: The function ID to search invocations for. - readOnly: false - type: string + description: |- + Search tasks based on filters specified in the request body. + Each TaskView row is large — request a small page_size (≤10) and set expand_mask to only the paths you need; broad expansion inlines whole related objects (app, entitlement, user, policy) and bloats the response. + operationId: c1.api.task.v1.TaskSearchService.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsInvocationSearchRequestInput' + $ref: '#/components/schemas/c1.api.task.v1.TaskSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsInvocationSearchResponse' - description: FunctionsInvocationSearchResponse is the response for searching function invocations. + $ref: '#/components/schemas/c1.api.task.v1.TaskSearchResponse' + description: The TaskSearchResponse message contains a list of results and a nextPageToken if applicable. summary: Search tags: - - Function Invocation - x-speakeasy-group: FunctionsInvocationSearch + - Task + x-speakeasy-group: TaskSearch x-speakeasy-name-override: Search - x-stability-level: draft - /api/v1/functions/{function_id}/invoke: + /api/v1/search/user-ownership: post: - description: Invoke executes a function at a specific commit with the provided input data. - operationId: c1.api.functions.v1.FunctionsService.Invoke - parameters: - - in: path - name: function_id - required: true - schema: - description: The ID of the function to invoke. - readOnly: false - type: string + description: Search all ownership assignments for a given user across apps, resources, and entitlements. + operationId: c1.api.app.v1.AppSearch.SearchUserOwnership requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceInvokeRequestInput' + $ref: '#/components/schemas/c1.api.app.v1.SearchUserOwnershipRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceInvokeResponse' - description: Successful response - summary: Invoke + $ref: '#/components/schemas/c1.api.app.v1.SearchUserOwnershipResponse' + description: The SearchUserOwnershipResponse message contains a paginated list of ownership entries. + summary: Search User Ownership tags: - - Function - x-speakeasy-group: Functions - x-speakeasy-name-override: Invoke - x-stability-level: draft - /api/v1/functions/{function_id}/tags: - get: - description: ListTags lists all tags for a function - operationId: c1.api.functions.v1.FunctionsService.ListTags - parameters: - - in: path - name: function_id - required: true - schema: - description: The functionId field. - readOnly: false - type: string + - App + x-speakeasy-group: AppSearch + x-speakeasy-name-override: SearchUserOwnership + /api/v1/search/users: + post: + description: Search users based on filters specified in the request body. + operationId: c1.api.user.v1.UserSearch.Search + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.user.v1.SearchUsersRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceListTagsResponse' + $ref: '#/components/schemas/c1.api.user.v1.SearchUsersResponse' description: Successful response - summary: List Tags + summary: Search tags: - - Function Tag + - User x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-datasource: Function_Tag#read - terraform-resource: Function_Tag#read - x-speakeasy-group: Functions - x-speakeasy-name-override: ListTags - x-stability-level: draft + terraform-datasource: + - User#read + - Users#read + terraform-resource: null + x-speakeasy-group: UserSearch + x-speakeasy-name-override: Search + x-speakeasy-pagination: + inputs: + - in: requestBody + name: pageToken + type: cursor + outputs: + nextCursor: $.nextPageToken + type: cursor + /api/v1/search/webhooks: post: - description: CreateTag creates a named reference to a specific commit - operationId: c1.api.functions.v1.FunctionsService.CreateTag - parameters: - - in: path - name: function_id - required: true - schema: - description: The functionId field. - readOnly: false - type: string + description: Search for webhook subscriptions by query string or specific webhook references. + operationId: c1.api.webhooks.v1.WebhooksSearch.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceCreateTagRequestInput' + $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceCreateTagResponse' + $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksSearchResponse' description: Successful response - summary: Create Tag + summary: Search tags: - - Function Tag + - Webhook x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Function_Tag#create - x-speakeasy-group: Functions - x-speakeasy-name-override: CreateTag - x-stability-level: draft - /api/v1/functions/{function_id}/test: + terraform-datasource: + - Webhook#read + - Webhooks#read + terraform-resource: null + x-speakeasy-group: WebhooksSearch + x-speakeasy-name-override: Search + x-speakeasy-pagination: + inputs: + - in: requestBody + name: pageToken + type: cursor + outputs: + nextCursor: $.nextPageToken + type: cursor + /api/v1/search/workload_federation_trusts: post: - description: Test runs a function's test suite in a sandboxed environment and returns the results. - operationId: c1.api.functions.v1.FunctionsService.Test - parameters: - - in: path - name: function_id - required: true - schema: - description: The function ID to test. - readOnly: false - type: string + description: |- + SearchTrusts searches trusts across all service principals with optional filters. + Used by the admin providers page to list trusts referencing a provider. + operationId: c1.api.workload_federation.v1.WorkloadFederationService.SearchTrusts requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceTestRequestInput' + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceSearchTrustsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceTestResponse' - description: FunctionsServiceTestResponse contains test execution results. - summary: Test + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceSearchTrustsResponse' + description: Successful response + summary: Search Trusts tags: - - Function - x-speakeasy-group: Functions - x-speakeasy-name-override: Test - x-stability-level: draft - /api/v1/functions/{id}: - delete: - description: Delete removes a function - operationId: c1.api.functions.v1.FunctionsService.DeleteFunction - parameters: - - in: path - name: id - required: true - schema: - description: The id field. - readOnly: false - type: string + - Workload Federation + x-speakeasy-group: WorkloadFederation + x-speakeasy-name-override: SearchTrusts + /api/v1/search/xaa/access_profile_scope_bindings: + post: + description: |- + Search scope bindings, filtered by access profile or by scope, or fetch a + specific set by ref. The by-scope direction answers "which profiles + contain this scope" for impact analysis. + operationId: c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingService.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceDeleteFunctionRequestInput' - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceDeleteFunctionResponse' - description: Successful response - summary: Delete Function - tags: - - Function - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Function#delete - x-speakeasy-group: Functions - x-speakeasy-name-override: DeleteFunction - x-stability-level: draft - get: - description: Get retrieves a specific function by ID - operationId: c1.api.functions.v1.FunctionsService.GetFunction - parameters: - - in: path - name: id - required: true - schema: - description: The id field. - readOnly: false - type: string + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceGetFunctionResponse' - description: Successful response - summary: Get Function + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileScopeBindingServiceSearchResponse' + description: XAAAccessProfileScopeBindingServiceSearchResponse returns matching bindings. + summary: Search tags: - - Function - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: null - terraform-resource: Function#read - x-speakeasy-group: Functions - x-speakeasy-name-override: GetFunction - x-stability-level: draft - /api/v1/functions/update: + - Cross-App Access + x-speakeasy-group: XAAAccessProfileScopeBinding + x-speakeasy-name-override: Search + /api/v1/search/xaa/access_profiles: post: - description: Update updates an existing function's metadata - operationId: c1.api.functions.v1.FunctionsService.UpdateFunction + description: |- + Search access profiles across the tenant, filtered by application, + resource server, or text query, or fetch a specific set by ref. + operationId: c1.api.cross_app_access.v1.XAAAccessProfileService.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceUpdateFunctionRequest' + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsServiceUpdateFunctionResponse' - description: Successful response - summary: Update Function + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAAccessProfileServiceSearchResponse' + description: XAAAccessProfileServiceSearchResponse returns matching access profiles. + summary: Search tags: - - Function - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Function#update - x-speakeasy-group: Functions - x-speakeasy-name-override: UpdateFunction - x-stability-level: draft - /api/v1/grants/feed: + - Cross-App Access + x-speakeasy-group: XAAAccessProfile + x-speakeasy-name-override: Search + /api/v1/search/xaa/client_audience_mappings: post: - description: Search a chronological feed of grant and revoke events, filtered by app user, entitlement, or time range. - operationId: c1.api.app.v1.AppEntitlementUserBindingService.SearchGrantFeed + description: |- + Search client audience mappings across the tenant, filtered by resource + server, disabled state, or text query, or fetch a specific set by ref. + operationId: c1.api.cross_app_access.v1.XAAClientAudienceMappingService.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.SearchGrantFeedRequest' + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.SearchGrantFeedResponse' - description: The SearchGrantFeedResponse message contains a list of grant event results and a nextPageToken if applicable. - summary: Search Grant Feed + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceSearchResponse' + description: XAAClientAudienceMappingServiceSearchResponse returns matching mappings. + summary: Search tags: - - App Entitlement User Binding Feed - x-speakeasy-group: AppEntitlementUserBinding - x-speakeasy-name-override: SearchGrantFeed - /api/v1/hooks: - get: - description: Invokes the c1.api.hooks.v1.HooksService.List method. - operationId: c1.api.hooks.v1.HooksService.List - parameters: - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false - type: string + - Cross-App Access + x-speakeasy-group: XAAClientAudienceMapping + x-speakeasy-name-override: Search + /api/v1/search/xaa/resource_servers: + post: + description: |- + Search resource servers across the tenant, filtered by application, + audience substring, signing algorithm, or disabled state, or fetch a + specific set by ref. Returns one page at a time. + operationId: c1.api.cross_app_access.v1.XAAResourceServerService.Search + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServerServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.hooks.v1.HooksServiceListResponse' - description: Successful response - summary: List + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAResourceServerServiceSearchResponse' + description: XAAResourceServerServiceSearchResponse returns matching resource servers. + summary: Search tags: - - Hook - x-speakeasy-group: Hooks - x-speakeasy-name-override: List + - Cross-App Access + x-speakeasy-group: XAAResourceServer + x-speakeasy-name-override: Search + /api/v1/search/xaa/scopes: post: - description: Invokes the c1.api.hooks.v1.HooksService.Create method. - operationId: c1.api.hooks.v1.HooksService.Create + description: |- + Search scopes across the tenant, filtered by resource server, state, + classification, source, or text query, or fetch a specific set by ref. + Filter on PENDING_REVIEW to find scopes awaiting approval. + operationId: c1.api.cross_app_access.v1.XAAScopeService.Search requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.hooks.v1.HooksServiceCreateRequest' + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScopeServiceSearchRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.hooks.v1.HooksServiceCreateResponse' - description: Successful response - summary: Create + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAScopeServiceSearchResponse' + description: XAAScopeServiceSearchResponse returns matching scopes. + summary: Search tags: - - Hook - x-speakeasy-group: Hooks - x-speakeasy-name-override: Create - /api/v1/hooks/{id}: + - Cross-App Access + x-speakeasy-group: XAAScope + x-speakeasy-name-override: Search + /api/v1/secrets-admin/{vault_id}: delete: - description: Invokes the c1.api.hooks.v1.HooksService.Delete method. - operationId: c1.api.hooks.v1.HooksService.Delete + description: Revoke allows admin to revoke any secret (not just their own). + operationId: c1.api.secrets.v1.PaperSecretAdminService.Revoke parameters: - in: path - name: id + name: vault_id required: true schema: - description: The id field. - readOnly: false + description: The vaultId field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.hooks.v1.HooksServiceDeleteRequestInput' + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretAdminServiceRevokeRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.hooks.v1.HooksServiceDeleteResponse' + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretAdminServiceRevokeResponse' description: Successful response - summary: Delete + summary: Revoke tags: - - Hook - x-speakeasy-group: Hooks - x-speakeasy-name-override: Delete + - Secrets Admin + x-speakeasy-group: PaperSecretAdmin + x-speakeasy-name-override: Revoke + x-stability-level: beta get: - description: Invokes the c1.api.hooks.v1.HooksService.Get method. - operationId: c1.api.hooks.v1.HooksService.Get + description: Get retrieves any secret's metadata by vault ID (admin override). + operationId: c1.api.secrets.v1.PaperSecretAdminService.Get parameters: - in: path - name: id + name: vault_id required: true schema: - description: The id field. - readOnly: false + description: The vaultId field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.hooks.v1.HooksServiceGetResponse' + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretAdminServiceGetResponse' description: Successful response summary: Get tags: - - Hook - x-speakeasy-group: Hooks + - Secrets Admin + x-speakeasy-group: PaperSecretAdmin x-speakeasy-name-override: Get - post: - description: Invokes the c1.api.hooks.v1.HooksService.Update method. - operationId: c1.api.hooks.v1.HooksService.Update + x-stability-level: beta + /api/v1/secrets/{vault_id}: + delete: + description: Revoke soft-deletes a secret (sets Vault.deleted_at, deletes content). + operationId: c1.api.secrets.v1.PaperSecretService.Revoke parameters: - in: path - name: id + name: vault_id required: true schema: - description: The id field. - readOnly: false + description: The vaultId field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.hooks.v1.HooksServiceUpdateRequestInput' + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceRevokeRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.hooks.v1.HooksServiceUpdateResponse' + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceRevokeResponse' description: Successful response - summary: Update + summary: Revoke tags: - - Hook - x-speakeasy-group: Hooks - x-speakeasy-name-override: Update - /api/v1/iam/personal_clients: + - Secrets + x-speakeasy-group: PaperSecret + x-speakeasy-name-override: Revoke + x-stability-level: beta get: - description: List returns all personal client credentials owned by the calling user. - operationId: c1.api.iam.v1.PersonalClientService.List + description: |- + Get retrieves a secret's metadata by vault ID. + Creator can always get their own secrets. Admins can get any secret. + operationId: c1.api.secrets.v1.PaperSecretService.Get + parameters: + - in: path + name: vault_id + required: true + schema: + description: The vaultId field. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientServiceListResponse' + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceGetResponse' description: Successful response - summary: 'NOTE: Only shows personal clients for the current user.' + summary: Get tags: - - Personal Client - x-speakeasy-group: PersonalClient - x-speakeasy-name-override: List + - Secrets + x-speakeasy-group: PaperSecret + x-speakeasy-name-override: Get + x-stability-level: beta + /api/v1/secrets/{vault_id}/content: post: - description: Create creates a new PersonalClient object for the current User. - operationId: c1.api.iam.v1.PersonalClientService.Create + description: |- + SetTextContent sets the encrypted content for a text secret. + Client encrypts content using age_recipient from CreateResponse. + operationId: c1.api.secrets.v1.PaperSecretService.SetTextContent + parameters: + - in: path + name: vault_id + required: true + schema: + description: The vaultId field. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientServiceCreateRequest' + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceSetTextContentRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientServiceCreateResponse' - description: The PersonalClientServiceCreateResponse message contains the created personal client and client secret. - summary: Create + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceSetTextContentResponse' + description: Successful response + summary: Set Text Content tags: - - Personal Client - x-speakeasy-group: PersonalClient - x-speakeasy-name-override: Create - /api/v1/iam/personal_clients/{id}: - delete: - description: Delete a personal client credential, revoking it and preventing further API access. - operationId: c1.api.iam.v1.PersonalClientService.Delete + - Secrets + x-speakeasy-group: PaperSecret + x-speakeasy-name-override: SetTextContent + x-stability-level: beta + /api/v1/secrets/{vault_id}/view: + post: + description: |- + GetContent retrieves the encrypted secret content for an authorized recipient. + Caller must be in the secret's allowed_user_ids list (for INTERNAL secrets). + Returns content re-encrypted to caller's ephemeral public key. + operationId: c1.api.secrets.v1.PaperSecretService.GetContent parameters: - in: path - name: id + name: vault_id required: true schema: - description: The human-readable name of the personal client credential to delete (e.g., blue-whale-12345). - readOnly: false + description: The vaultId field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientServiceDeleteRequestInput' + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceGetContentRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientServiceDeleteResponse' + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceGetContentResponse' description: Successful response - summary: Delete + summary: Get Content tags: - - Personal Client - x-speakeasy-group: PersonalClient - x-speakeasy-name-override: Delete + - Secrets + x-speakeasy-group: PaperSecret + x-speakeasy-name-override: GetContent + x-stability-level: draft + /api/v1/secrets/code/{share_code}: get: - description: Get retrieves a single personal client credential by its ID. - operationId: c1.api.iam.v1.PersonalClientService.Get + description: |- + GetByShareCode retrieves a secret by its human-friendly share code. + Share codes are in XXXX-XXXX-XXXX format and are used in share URLs. + operationId: c1.api.secrets.v1.PaperSecretService.GetByShareCode parameters: - in: path - name: id + name: share_code required: true schema: - description: The human-readable name of the personal client credential to retrieve (e.g., blue-whale-12345). - readOnly: false + description: 'Human-friendly share code (format: XXXX-XXXX-XXXX, case-insensitive)' type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientServiceGetResponse' + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceGetResponse' description: Successful response - summary: Get + summary: Get By Share Code tags: - - Personal Client - x-speakeasy-group: PersonalClient - x-speakeasy-name-override: Get + - Secrets + x-speakeasy-group: PaperSecret + x-speakeasy-name-override: GetByShareCode + x-stability-level: beta + /api/v1/secrets/external: post: - description: Update modifies an existing personal client credential. Use the update mask to specify which fields to change. - operationId: c1.api.iam.v1.PersonalClientService.Update - parameters: - - in: path - name: id - required: true - schema: - description: The unique ID of the personal client credential. - readOnly: true - type: string + description: CreateExternal creates a secret using the requested Age suite. + operationId: c1.api.secrets.v1.PaperSecretService.CreateExternal requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientServiceUpdateRequestInput' + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceCreateExternalRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientServiceUpdateResponse' + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceCreateResponse' description: Successful response - summary: Update - tags: - - Personal Client - x-speakeasy-group: PersonalClient - x-speakeasy-name-override: Update - /api/v1/iam/roles: - get: - description: List all roles for the current user. - operationId: c1.api.iam.v1.Roles.List - parameters: - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false - type: string - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.iam.v1.ListRolesResponse' - description: The ListRolesResponse message contains a list of results and a nextPageToken if applicable. - summary: List - tags: - - Role - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: - - Role#read - - Roles#read - terraform-resource: null - x-speakeasy-group: Roles - x-speakeasy-name-override: List - /api/v1/iam/roles/{role_id}: - get: - description: Get a role by id. - operationId: c1.api.iam.v1.Roles.Get - parameters: - - in: path - name: role_id - required: true - schema: - description: The roleId field. - readOnly: false - type: string - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.iam.v1.GetRolesResponse' - description: The GetRolesResponse message contains the retrieved role. - summary: Get + summary: Create External tags: - - Role - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: null - terraform-resource: Role#read - x-speakeasy-group: Roles - x-speakeasy-name-override: Get + - Secrets + x-speakeasy-group: PaperSecret + x-speakeasy-name-override: CreateExternal + x-stability-level: beta + /api/v1/secrets/internal: post: - description: Update a role by passing a Role object. - operationId: c1.api.iam.v1.Roles.Update - parameters: - - in: path - name: role_id - required: true - schema: - description: The id of the role. - readOnly: true - type: string + description: CreateInternal creates a secret using the requested Age suite. + operationId: c1.api.secrets.v1.PaperSecretService.CreateInternal requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.iam.v1.UpdateRoleRequestInput' + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceCreateInternalRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.iam.v1.UpdateRolesResponse' - description: UpdateRolesResponse is the response message containing the updated role. - summary: Update + $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceCreateResponse' + description: Successful response + summary: Create Internal tags: - - Role - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Role#update - x-speakeasy-group: Roles - x-speakeasy-name-override: Update - /api/v1/local-directory-configs: + - Secrets + x-speakeasy-group: PaperSecret + x-speakeasy-name-override: CreateInternal + x-stability-level: beta + /api/v1/service_principals: get: - description: List local directory configs for the tenant. - operationId: c1.api.local_directory.v1.LocalDirectoryConfigService.List - parameters: - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false - type: string + description: List lists service principals for the tenant. + operationId: c1.api.service_principal.v1.ServicePrincipalService.List responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfigServiceListResponse' + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceListResponse' description: Successful response summary: List tags: - - Local Directory - x-speakeasy-group: LocalDirectoryConfig + - Service Principal + x-speakeasy-group: Principal x-speakeasy-name-override: List post: - description: Create a new local directory config backed by an existing App. - operationId: c1.api.local_directory.v1.LocalDirectoryConfigService.Create + description: Create creates a new service principal. + operationId: c1.api.service_principal.v1.ServicePrincipalService.Create requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfigServiceCreateRequest' + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceCreateRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfigServiceCreateResponse' + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceCreateResponse' description: Successful response summary: Create tags: - - Local Directory - x-speakeasy-group: LocalDirectoryConfig + - Service Principal + x-speakeasy-group: Principal x-speakeasy-name-override: Create - /api/v1/local-directory-configs/{app_id}: + /api/v1/service_principals/{id}: delete: - description: Delete a local directory config. Does not delete the underlying App. - operationId: c1.api.local_directory.v1.LocalDirectoryConfigService.Delete + description: Delete deletes a service principal and all its credentials. + operationId: c1.api.service_principal.v1.ServicePrincipalService.Delete parameters: - in: path - name: app_id + name: id required: true schema: - description: The appId field. - readOnly: false + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfigServiceDeleteRequestInput' + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceDeleteRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfigServiceDeleteResponse' + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceDeleteResponse' description: Successful response summary: Delete tags: - - Local Directory - x-speakeasy-group: LocalDirectoryConfig + - Service Principal + x-speakeasy-group: Principal x-speakeasy-name-override: Delete get: - description: Get a local directory config by app_id. - operationId: c1.api.local_directory.v1.LocalDirectoryConfigService.Get + description: Get returns a service principal by ID. + operationId: c1.api.service_principal.v1.ServicePrincipalService.Get parameters: - in: path - name: app_id + name: id required: true schema: - description: The appId field. - readOnly: false + description: The id field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfigServiceGetResponse' + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceGetResponse' description: Successful response summary: Get tags: - - Local Directory - x-speakeasy-group: LocalDirectoryConfig + - Service Principal + x-speakeasy-group: Principal x-speakeasy-name-override: Get - post: - description: Update a local directory config. - operationId: c1.api.local_directory.v1.LocalDirectoryConfigService.Update + patch: + description: Update updates a service principal's display name. + operationId: c1.api.service_principal.v1.ServicePrincipalService.Update parameters: - in: path - name: app_id + name: id required: true schema: - description: app_id is the identifier for this config and its linked App. Read-only after creation. + description: The unique user ID of the service principal. readOnly: true type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfigServiceUpdateRequestInput' + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalDirectoryConfigServiceUpdateResponse' + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceUpdateResponse' description: Successful response summary: Update tags: - - Local Directory - x-speakeasy-group: LocalDirectoryConfig + - Service Principal + x-speakeasy-group: Principal x-speakeasy-name-override: Update - /api/v1/local-directory-configs/{directory_app_id}/invitations: + /api/v1/service_principals/{service_principal_id}/credentials: + get: + description: ListCredentials lists client credentials for a service principal. + operationId: c1.api.service_principal.v1.ServicePrincipalService.ListCredentials + parameters: + - in: path + name: service_principal_id + required: true + schema: + description: The service principal ID to list credentials for. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceListCredentialsResponse' + description: Successful response + summary: List Credentials + tags: + - Service Principal + x-speakeasy-group: Principal + x-speakeasy-name-override: ListCredentials post: - description: Create (send) a new invitation to a user. - operationId: c1.api.local_directory.v1.LocalUserInvitationService.Create + description: CreateCredential creates a new client credential for a service principal. + operationId: c1.api.service_principal.v1.ServicePrincipalService.CreateCredential parameters: - in: path - name: directory_app_id + name: service_principal_id required: true schema: - description: FK to the LocalDirectoryConfig (app_id) this invitation belongs to. - readOnly: false + description: The service principal ID to create the credential for. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitationServiceCreateRequestInput' + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceCreateCredentialRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitationServiceCreateResponse' + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceCreateCredentialResponse' description: Successful response - summary: Create + summary: Create Credential tags: - - Local Directory - x-speakeasy-group: LocalUserInvitation - x-speakeasy-name-override: Create - /api/v1/local-directory-configs/{directory_app_id}/invitations/{id}: + - Service Principal + x-speakeasy-group: Principal + x-speakeasy-name-override: CreateCredential + /api/v1/service_principals/{service_principal_id}/credentials/{id}: + delete: + description: RevokeCredential revokes (deletes) a client credential for a service principal. + operationId: c1.api.service_principal.v1.ServicePrincipalService.RevokeCredential + parameters: + - in: path + name: service_principal_id + required: true + schema: + description: The service principal ID. + type: string + - in: path + name: id + required: true + schema: + description: The credential ID to revoke. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceRevokeCredentialRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceRevokeCredentialResponse' + description: Successful response + summary: Revoke Credential + tags: + - Service Principal + x-speakeasy-group: Principal + x-speakeasy-name-override: RevokeCredential get: - description: Get a specific invitation by id. - operationId: c1.api.local_directory.v1.LocalUserInvitationService.Get + description: GetCredential returns a single client credential for a service principal. + operationId: c1.api.service_principal.v1.ServicePrincipalService.GetCredential parameters: - in: path - name: directory_app_id + name: service_principal_id required: true schema: - description: The directoryAppId field. - readOnly: false + description: The service principal ID. type: string - in: path name: id required: true schema: - description: The id field. - readOnly: false + description: The credential ID to get. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitationServiceGetResponse' + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceGetCredentialResponse' description: Successful response - summary: Get + summary: Get Credential tags: - - Local Directory - x-speakeasy-group: LocalUserInvitation - x-speakeasy-name-override: Get - /api/v1/local-directory-configs/{directory_app_id}/invitations/{id}/revoke: - post: - description: Revoke a pending invitation. - operationId: c1.api.local_directory.v1.LocalUserInvitationService.Revoke + - Service Principal + x-speakeasy-group: Principal + x-speakeasy-name-override: GetCredential + patch: + description: UpdateCredential updates a client credential for a service principal. + operationId: c1.api.service_principal.v1.ServicePrincipalService.UpdateCredential parameters: - in: path - name: directory_app_id + name: service_principal_id required: true schema: - description: The directoryAppId field. - readOnly: false + description: The service principal ID. type: string - in: path name: id required: true schema: - description: The id field. - readOnly: false + description: The unique ID of the credential (cutename format). + readOnly: true type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitationServiceRevokeRequestInput' + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceUpdateCredentialRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitationServiceRevokeResponse' + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceUpdateCredentialResponse' description: Successful response - summary: Revoke + summary: Update Credential tags: - - Local Directory - x-speakeasy-group: LocalUserInvitation - x-speakeasy-name-override: Revoke - /api/v1/policies: + - Service Principal + x-speakeasy-group: Principal + x-speakeasy-name-override: UpdateCredential + /api/v1/service_principals/{service_principal_id}/trusts: get: - description: List policies. - operationId: c1.api.policy.v1.Policies.List + description: ListTrusts lists trusts for a service principal. + operationId: c1.api.workload_federation.v1.WorkloadFederationService.ListTrusts parameters: - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token + - in: path + name: service_principal_id + required: true schema: - description: The pageToken field. - readOnly: false + description: The service principal ID to list trusts for (from URL path). type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.policy.v1.ListPolicyResponse' + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceListTrustsResponse' description: Successful response - summary: List + summary: List Trusts tags: - - Policy - x-speakeasy-group: Policies - x-speakeasy-name-override: List + - Workload Federation + x-speakeasy-group: WorkloadFederation + x-speakeasy-name-override: ListTrusts post: - description: Create a policy. - operationId: c1.api.policy.v1.Policies.Create + description: |- + CreateTrust creates a trust policy for a service principal. + Validates the CEL condition_expression at creation time. + operationId: c1.api.workload_federation.v1.WorkloadFederationService.CreateTrust + parameters: + - in: path + name: service_principal_id + required: true + schema: + description: The service principal ID to create the trust for (from URL path). + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.policy.v1.CreatePolicyRequest' + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceCreateTrustRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.policy.v1.CreatePolicyResponse' - description: The CreatePolicyResponse message contains the created policy object. - summary: Create + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceCreateTrustResponse' + description: Successful response + summary: Create Trust tags: - - Policy - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Policy#create - x-speakeasy-group: Policies - x-speakeasy-name-override: Create - /api/v1/policies/{id}: + - Workload Federation + x-speakeasy-group: WorkloadFederation + x-speakeasy-name-override: CreateTrust + /api/v1/service_principals/{service_principal_id}/trusts/{client_id}: delete: - description: Delete a policy by ID. - operationId: c1.api.policy.v1.Policies.Delete + description: DeleteTrust deletes a trust for a service principal. + operationId: c1.api.workload_federation.v1.WorkloadFederationService.DeleteTrust parameters: - in: path - name: id + name: service_principal_id required: true schema: - description: The Id of the policy to delete. - readOnly: false + description: The service principal ID (from URL path). + type: string + - in: path + name: client_id + required: true + schema: + description: |- + The trust client ID. Accepts the cutename (e.g. "clever-fox-42195") or the + full client ID (e.g. "clever-fox-42195@acme.conductorone.com/wfe"). + The server normalizes to the cutename portion before lookup. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.policy.v1.DeletePolicyRequestInput' + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceDeleteTrustRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.policy.v1.DeletePolicyResponse' - description: Empty response with a status code indicating success. - summary: Delete + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceDeleteTrustResponse' + description: Successful response + summary: Delete Trust tags: - - Policy - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Policy#delete - x-speakeasy-group: Policies - x-speakeasy-name-override: Delete + - Workload Federation + x-speakeasy-group: WorkloadFederation + x-speakeasy-name-override: DeleteTrust get: - description: Get a policy by ID. - operationId: c1.api.policy.v1.Policies.Get + description: GetTrust returns a trust by ID for a service principal. + operationId: c1.api.workload_federation.v1.WorkloadFederationService.GetTrust parameters: - in: path - name: id + name: service_principal_id required: true schema: - description: The id field. - readOnly: false + description: The service principal ID (from URL path). + type: string + - in: path + name: client_id + required: true + schema: + description: |- + The trust client ID. Accepts the cutename (e.g. "clever-fox-42195") or the + full client ID (e.g. "clever-fox-42195@acme.conductorone.com/wfe"). + The server normalizes to the cutename portion before lookup. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.policy.v1.GetPolicyResponse' - description: The GetPolicyResponse message contains the policy object. - summary: Get + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceGetTrustResponse' + description: Successful response + summary: Get Trust tags: - - Policy - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: null - terraform-resource: Policy#read - x-speakeasy-group: Policies - x-speakeasy-name-override: Get - post: - description: Update a policy by providing a policy object and an update mask. - operationId: c1.api.policy.v1.Policies.Update + - Workload Federation + x-speakeasy-group: WorkloadFederation + x-speakeasy-name-override: GetTrust + patch: + description: UpdateTrust updates a trust's mutable fields. The provider_id is immutable. + operationId: c1.api.workload_federation.v1.WorkloadFederationService.UpdateTrust parameters: - in: path - name: id + name: service_principal_id required: true schema: - description: The ID of the Policy. + description: The service principal ID (from URL path). + type: string + - in: path + name: client_id + required: true + schema: + description: |- + The full client ID of the trust (e.g., "clever-fox-42195@acme.conductorone.com/wfe"). + Used as the client_id parameter in RFC 8693 token exchange requests. readOnly: true type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.policy.v1.UpdatePolicyRequestInput' + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceUpdateTrustRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.policy.v1.UpdatePolicyResponse' - description: The UpdatePolicyResponse message contains the updated policy object. - summary: Update + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceUpdateTrustResponse' + description: Successful response + summary: Update Trust tags: - - Policy - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Policy#update - x-speakeasy-group: Policies - x-speakeasy-name-override: Update - /api/v1/policies/test-account-provision-policy: + - Workload Federation + x-speakeasy-group: WorkloadFederation + x-speakeasy-name-override: UpdateTrust + /api/v1/service_principals/{service_principal_id}/trusts/{client_id}/test: post: - description: Test an account provision policy by evaluating a CEL expression and returning the computed result. - operationId: c1.api.policy.v1.AccountProvisionPolicyTest.Test + description: |- + TestToken validates a JWT against a specific trust's configuration without + issuing an access token. Returns per-step validation results for debugging. + operationId: c1.api.workload_federation.v1.WorkloadFederationService.TestToken + parameters: + - in: path + name: service_principal_id + required: true + schema: + description: The service principal ID (from URL path). + type: string + - in: path + name: client_id + required: true + schema: + description: |- + The trust client ID. Accepts the cutename (e.g. "clever-fox-42195") or the + full client ID (e.g. "clever-fox-42195@acme.conductorone.com/wfe"). + The server normalizes to the cutename portion before lookup. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.policy.v1.TestAccountProvisionPolicyRequest' + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceTestTokenRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.policy.v1.TestAccountProvisionPolicyResponse' - description: TestAccountProvisionPolicyResponse is the response for testing an account provision policy. - summary: Test + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceTestTokenResponse' + description: Successful response + summary: Test Token tags: - - Policy - x-speakeasy-group: AccountProvisionPolicyTest - x-speakeasy-name-override: Test - /api/v1/policies/validate/cel: + - Workload Federation + x-speakeasy-group: WorkloadFederation + x-speakeasy-name-override: TestToken + /api/v1/service_principals/bindings: post: - description: Validate policies - operationId: c1.api.policy.v1.PolicyValidate.ValidateCEL + description: |- + AddBinding links a tenant-scoped subject (a function today; future kinds + tomorrow) to a service principal. Outbound c1-api calls made on the + subject's behalf can then be minted as user: via + an RFC 8693 token-exchange (act-as) flow. Many-aware: a subject may + hold multiple bindings at the storage layer. Idempotent on + (subject, service_principal_id) — adds the row if missing, + resurrects it if soft-deleted, no-op if already active. Consumers + that need 0-or-1 cardinality (Functions today) enforce it + client-side via ListBindings + DeleteBinding. Requires the + SERVICE_PRINCIPALS feature flag. + operationId: c1.api.service_principal.v1.ServicePrincipalService.AddBinding requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.policy.v1.EditorValidateRequest' + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceAddBindingRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.policy.v1.EditorValidateResponse' + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceAddBindingResponse' description: Successful response - summary: Validate Cel + summary: Add Binding tags: - - Policy - x-speakeasy-group: PolicyValidate - x-speakeasy-name-override: ValidateCEL - /api/v1/request_schema_entitlement_binding: - delete: - description: Remove the link between a request schema and a single app entitlement. - operationId: c1.api.request_schema.v1.RequestSchemaService.RemoveEntitlementBinding + - Service Principal Binding + x-speakeasy-group: Principal + x-speakeasy-name-override: AddBinding + x-stability-level: draft + /api/v1/service_principals/bindings/delete: + post: + description: |- + DeleteBinding removes a single (subject, service_principal_id) binding + row. At-most-one delete — does not touch other bindings the subject + may hold against different service principals. Idempotent — succeeds + even if no matching row exists. + operationId: c1.api.service_principal.v1.ServicePrincipalService.DeleteBinding requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceRemoveEntitlementBindingRequest' + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceDeleteBindingRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceRemoveEntitlementBindingResponse' - description: The response message for removing a single entitlement binding. - summary: Remove Entitlement Binding + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceDeleteBindingResponse' + description: Successful response + summary: Delete Binding tags: - - Request Schema Entitlement Binding - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Request Schema Entitlement Binding#delete - x-speakeasy-group: RequestSchema - x-speakeasy-name-override: RemoveEntitlementBinding + - Service Principal Binding + x-speakeasy-group: Principal + x-speakeasy-name-override: DeleteBinding + x-stability-level: draft + /api/v1/service_principals/bindings/list: post: - description: Link a request schema to a single app entitlement so the form is shown when requesting that entitlement. - operationId: c1.api.request_schema.v1.RequestSchemaService.CreateEntitlementBinding + description: |- + ListBindings returns every active binding held by a subject. Empty + list when the subject is unbound. The response is unordered. + operationId: c1.api.service_principal.v1.ServicePrincipalService.ListBindings requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceCreateEntitlementBindingRequest' + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceListBindingsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceCreateEntitlementBindingResponse' - description: The response message for creating a single entitlement binding. - summary: Create Entitlement Binding + $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceListBindingsResponse' + description: Successful response + summary: List Bindings tags: - - Request Schema Entitlement Binding - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Request Schema Entitlement Binding#create - x-speakeasy-group: RequestSchema - x-speakeasy-name-override: CreateEntitlementBinding - put: - description: Look up which request schema is bound to a given app entitlement. - operationId: c1.api.request_schema.v1.RequestSchemaService.FindBindingForAppEntitlement - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceFindBindingForAppEntitlementRequest' + - Service Principal Binding + x-speakeasy-group: Principal + x-speakeasy-name-override: ListBindings + x-stability-level: draft + /api/v1/session-policies: + get: + description: List all session policies in your tenant, one page at a time. + operationId: c1.api.session_policy.v1.SessionPolicyService.List + parameters: + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceFindBindingForAppEntitlementResponse' - description: The response message containing the binding for the specified app entitlement. - summary: Find Binding For App Entitlement + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceListResponse' + description: Successful response + summary: List tags: - - Request Schema Entitlement Binding - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: Request Schema Entitlement Binding#read - terraform-resource: Request Schema Entitlement Binding#read - x-speakeasy-group: RequestSchema - x-speakeasy-name-override: FindBindingForAppEntitlement - /api/v1/request_schemas: + - Session Policy + x-speakeasy-group: SessionPolicy + x-speakeasy-name-override: List post: - description: Create a new request schema that defines a form template for access requests. - operationId: c1.api.request_schema.v1.RequestSchemaService.Create + description: Create a session policy. + operationId: c1.api.session_policy.v1.SessionPolicyService.Create requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceCreateRequest' + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceCreateRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceCreateResponse' - description: The response message for creating a request schema. + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceCreateResponse' + description: Successful response summary: Create tags: - - Request Schema + - Session Policy x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Request_Schema#create - x-speakeasy-group: RequestSchema + terraform-resource: SessionPolicy#create + x-speakeasy-group: SessionPolicy x-speakeasy-name-override: Create - /api/v1/request_schemas/{request_schema_id}: + /api/v1/session-policies/{id}: delete: - description: Delete a request schema by ID. Associated entitlement bindings are also deleted. - operationId: c1.api.request_schema.v1.RequestSchemaService.Delete + description: Delete a session policy by ID. + operationId: c1.api.session_policy.v1.SessionPolicyService.Delete parameters: - in: path - name: request_schema_id + name: id required: true schema: - description: The unique identifier of the request schema to delete. - readOnly: false + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceDeleteRequestInput' + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceDeleteRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceDeleteResponse' - description: The response message for deleting a request schema. + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceDeleteResponse' + description: Successful response summary: Delete tags: - - Request Schema + - Session Policy x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Request_Schema#delete - x-speakeasy-group: RequestSchema + terraform-resource: SessionPolicy#delete + x-speakeasy-group: SessionPolicy x-speakeasy-name-override: Delete get: - description: Retrieve a single request schema by ID. - operationId: c1.api.request_schema.v1.RequestSchemaService.Get + description: Get a session policy by ID. + operationId: c1.api.session_policy.v1.SessionPolicyService.Get parameters: - in: path - name: request_schema_id + name: id required: true schema: - description: The unique identifier of the request schema to retrieve. - readOnly: false + description: The id field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceGetResponse' - description: The response message for retrieving a request schema. + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceGetResponse' + description: Successful response summary: Get tags: - - Request Schema + - Session Policy x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-datasource: Request_Schema#read - terraform-resource: Request_Schema#read - x-speakeasy-group: RequestSchema + terraform-datasource: null + terraform-resource: SessionPolicy#read + x-speakeasy-group: SessionPolicy x-speakeasy-name-override: Get post: - description: Update an existing request schema's form definition or settings. - operationId: c1.api.request_schema.v1.RequestSchemaService.Update + description: |- + Update a session policy. Supply the policy object and an update mask + listing the fields to change; omitted fields are left as-is. + operationId: c1.api.session_policy.v1.SessionPolicyService.Update parameters: - in: path - name: request_schema_id + name: id required: true schema: - description: The unique identifier of this request schema. - readOnly: false + description: Unique identifier for the policy. + readOnly: true type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceUpdateRequestInput' + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.request_schema.v1.RequestSchemaServiceUpdateResponse' - description: The response message for updating a request schema. + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceUpdateResponse' + description: Successful response summary: Update tags: - - Request Schema + - Session Policy x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Request_Schema#update - x-speakeasy-group: RequestSchema + terraform-resource: SessionPolicy#update + x-speakeasy-group: SessionPolicy x-speakeasy-name-override: Update - /api/v1/role-mining/access-profiles: - post: + /api/v1/session-policies/{id}/assignments: + get: description: |- - CreateAccessProfileFromCohort creates an access profile from a cohort definition, - adds the specified entitlements, and sets up dynamic membership automation using - a CEL expression derived from the profile filters. - operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.CreateAccessProfileFromCohort - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.CreateAccessProfileFromCohortRequest' + List the principals assigned to a session policy, including both direct + assignments and those conferred through a group. + operationId: c1.api.session_policy.v1.SessionPolicyService.ListAssignments + parameters: + - in: path + name: id + required: true + schema: + description: The session policy whose assignments to list. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.CreateAccessProfileFromCohortResponse' + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceListAssignmentsResponse' description: Successful response - summary: Create Access Profile From Cohort + summary: List Assignments tags: - - Role Mining - x-speakeasy-group: RoleMiningManagement - x-speakeasy-name-override: CreateAccessProfileFromCohort - /api/v1/role-mining/config: - get: - description: Retrieve the current role mining configuration, including cohort hints and threshold settings. - operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.GetRoleMiningConfig + - Session Policy + x-speakeasy-group: SessionPolicy + x-speakeasy-name-override: ListAssignments + /api/v1/session-policies/{id}/assignments/groups: + post: + description: |- + Assign a group to a session policy. Every member of the group becomes + assigned to the policy; because group membership is expanded + asynchronously, the per-user effect is eventually consistent (typically + within a few minutes). + operationId: c1.api.session_policy.v1.SessionPolicyService.AssignGroup + parameters: + - in: path + name: id + required: true + schema: + description: The session policy to assign to. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceAssignGroupRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.GetRoleMiningConfigResponse' + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceAssignGroupResponse' description: Successful response - summary: Get Role Mining Config + summary: Assign Group tags: - - Role Mining - x-speakeasy-group: RoleMiningManagement - x-speakeasy-name-override: GetRoleMiningConfig - post: - description: Update the role mining configuration, such as cohort hints, max suggestions, and minimum cohort size. - operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.UpdateRoleMiningConfig + - Session Policy + x-speakeasy-group: SessionPolicy + x-speakeasy-name-override: AssignGroup + /api/v1/session-policies/{id}/assignments/groups/{group_app_entitlement_id}: + delete: + description: |- + Unassign a group from a session policy. The per-user effect is eventually + consistent, mirroring AssignGroup. + operationId: c1.api.session_policy.v1.SessionPolicyService.UnassignGroup + parameters: + - in: path + name: id + required: true + schema: + description: The session policy to unassign from. + type: string + - in: path + name: group_app_entitlement_id + required: true + schema: + description: The group's app-entitlement ID. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.UpdateRoleMiningConfigRequest' + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceUnassignGroupRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.UpdateRoleMiningConfigResponse' + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceUnassignGroupResponse' description: Successful response - summary: Update Role Mining Config + summary: Unassign Group tags: - - Role Mining - x-speakeasy-group: RoleMiningManagement - x-speakeasy-name-override: UpdateRoleMiningConfig - /api/v1/role-mining/custom-analysis/{id}: - get: - description: Invokes the c1.api.role_mining_management.v1.RoleMiningManagementService.GetCustomAnalysisResult method. - operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.GetCustomAnalysisResult + - Session Policy + x-speakeasy-group: SessionPolicy + x-speakeasy-name-override: UnassignGroup + /api/v1/session-policies/{id}/assignments/users: + post: + description: Assign a user to a session policy. The assignment takes effect immediately. + operationId: c1.api.session_policy.v1.SessionPolicyService.AssignUser parameters: - in: path name: id required: true schema: - description: The id field. - readOnly: false + description: The session policy to assign to. type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceAssignUserRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.GetCustomAnalysisResultResponse' + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceAssignUserResponse' description: Successful response - summary: Get Custom Analysis Result + summary: Assign User tags: - - Role Mining - x-speakeasy-group: RoleMiningManagement - x-speakeasy-name-override: GetCustomAnalysisResult - /api/v1/role-mining/custom-analysis/trigger: - post: - description: Invokes the c1.api.role_mining_management.v1.RoleMiningManagementService.TriggerCustomAnalysis method. - operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.TriggerCustomAnalysis + - Session Policy + x-speakeasy-group: SessionPolicy + x-speakeasy-name-override: AssignUser + /api/v1/session-policies/{id}/assignments/users/{user_id}: + delete: + description: Unassign a user from a session policy. + operationId: c1.api.session_policy.v1.SessionPolicyService.UnassignUser + parameters: + - in: path + name: id + required: true + schema: + description: The session policy to unassign from. + type: string + - in: path + name: user_id + required: true + schema: + description: The user to unassign. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.TriggerCustomAnalysisRequest' + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceUnassignUserRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.TriggerCustomAnalysisResponse' + $ref: '#/components/schemas/c1.api.session_policy.v1.SessionPolicyServiceUnassignUserResponse' description: Successful response - summary: Trigger Custom Analysis + summary: Unassign User tags: - - Role Mining - x-speakeasy-group: RoleMiningManagement - x-speakeasy-name-override: TriggerCustomAnalysis - /api/v1/role-mining/runs: + - Session Policy + x-speakeasy-group: SessionPolicy + x-speakeasy-name-override: UnassignUser + /api/v1/settings/ai-governance: get: - description: List role mining analysis runs in reverse chronological order. - operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.ListRuns + description: |- + Get the tenant's AI governance settings — the controls behind the admin + /admin/settings/ai-governance page. Returns the full AIGovernanceSettings: + allowed MCP client types, default client lifecycle, require_tool_approval, + default tool classification, audit verbosity, auto-discovery toggle + + interval, prefer_code_mode_over_direct_tools, surface_requestable_tools, + and untrusted_judge_disable. + operationId: c1.api.ai_governance.v1.AIGovernanceSettingsService.Get responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.ListRunsResponse' - description: Successful response - summary: List Runs + $ref: '#/components/schemas/c1.api.ai_governance.v1.GetAIGovernanceSettingsResponse' + description: GetAIGovernanceSettingsResponse contains the tenant's AI governance settings. + summary: Get tags: - - Role Mining - x-speakeasy-group: RoleMiningManagement - x-speakeasy-name-override: ListRuns - /api/v1/role-mining/runs/latest: - get: - description: Retrieve the most recent role mining analysis run, including its status and results summary. - operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.GetLatestRun + - AI Governance Settings + x-speakeasy-group: AIGovernanceSettings + x-speakeasy-name-override: Get + post: + description: |- + Update the tenant's AI governance settings. Requires update_mask listing + which fields to apply (e.g. require_tool_approval, + default_tool_classification, audit_verbosity, auto_discovery_enabled, + discovery_interval, prefer_code_mode_over_direct_tools, + surface_requestable_tools, untrusted_judge_disable, allowed_client_types, + default_client_lifecycle). + Only masked fields change. Returns the updated settings. + operationId: c1.api.ai_governance.v1.AIGovernanceSettingsService.Update + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ai_governance.v1.UpdateAIGovernanceSettingsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.GetLatestRunResponse' - description: Successful response - summary: Get Latest Run + $ref: '#/components/schemas/c1.api.ai_governance.v1.UpdateAIGovernanceSettingsResponse' + description: UpdateAIGovernanceSettingsResponse contains the updated AI governance settings. + summary: Update tags: - - Role Mining - x-speakeasy-group: RoleMiningManagement - x-speakeasy-name-override: GetLatestRun - /api/v1/role-mining/suggestions: + - AI Governance Settings + x-speakeasy-group: AIGovernanceSettings + x-speakeasy-name-override: Update + /api/v1/settings/ai-governance/history: get: - description: List role suggestions generated by analysis runs, optionally filtered by state. - operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.ListSuggestions + description: |- + List the change history for AI governance settings (newest first). + Singleton: scoped to the caller's tenant. Admin-tier per object-history convention. + operationId: c1.api.ai_governance.v1.AIGovernanceSettingsService.ListHistory responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.ListSuggestionsResponse' - description: Successful response - summary: List Suggestions + $ref: '#/components/schemas/c1.api.ai_governance.v1.ListAIGovernanceSettingsHistoryResponse' + description: |- + ListAIGovernanceSettingsHistoryResponse contains a page of AI governance + settings change-history entries, newest first. + summary: List History tags: - - Role Mining - x-speakeasy-group: RoleMiningManagement - x-speakeasy-name-override: ListSuggestions - /api/v1/role-mining/suggestions/{id}: + - AI Governance Settings + x-speakeasy-group: AIGovernanceSettings + x-speakeasy-name-override: ListHistory + /api/v1/settings/ai-governance/tenant-defaults: get: - description: Retrieve a single role suggestion by ID, including its cohort filters, entitlements, and confidence score. - operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.GetSuggestion - parameters: - - in: path - name: id - required: true - schema: - description: The ID of the role mining suggestion to retrieve. - readOnly: false - type: string + description: |- + Get the tenant-default subset of AI governance settings. Currently returns + only require_tool_approval — the default applied to newly registered MCP + servers/tools. Use Get for the full settings object. + operationId: c1.api.ai_governance.v1.AIGovernanceSettingsService.GetTenantDefaults responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.GetSuggestionResponse' - description: Successful response - summary: Get Suggestion + $ref: '#/components/schemas/c1.api.ai_governance.v1.GetTenantDefaultsResponse' + description: |- + GetTenantDefaultsResponse contains the tenant-default subset of AI governance + settings applied to newly registered MCP servers and tools. + summary: Get Tenant Defaults tags: - - Role Mining - x-speakeasy-group: RoleMiningManagement - x-speakeasy-name-override: GetSuggestion - /api/v1/role-mining/suggestions/{id}/state: - post: - description: Transition a role suggestion to a new state, such as accepted, rejected, or dismissed. - operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.UpdateSuggestionState - parameters: - - in: path - name: id - required: true - schema: - description: The ID of the role mining suggestion to update. - readOnly: false - type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.UpdateSuggestionStateRequestInput' + - AI Governance Settings + x-speakeasy-group: AIGovernanceSettings + x-speakeasy-name-override: GetTenantDefaults + /api/v1/settings/aws-external-id: + get: + description: Get retrieves the AWS external ID for the tenant, used in IAM role trust policies for AWS connectors. + operationId: c1.api.settings.v1.AWSExternalIDSettings.Get responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.UpdateSuggestionStateResponse' + $ref: '#/components/schemas/c1.api.settings.v1.GetAWSExternalIDResponse' description: Successful response - summary: Update Suggestion State + summary: Get tags: - - Role Mining - x-speakeasy-group: RoleMiningManagement - x-speakeasy-name-override: UpdateSuggestionState - /api/v1/role-mining/suggestions/{suggestion_id}/users: - post: - description: Search for users that belong to a suggestion's cohort, with optional additional profile filters. - operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.SearchCohortUsers - parameters: - - in: path - name: suggestion_id - required: true - schema: - description: The ID of the suggestion whose cohort to search within. - readOnly: false - type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.SearchCohortUsersRequestInput' + - AWS External ID Settings + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: AWS_EXTERNAL_ID#read + terraform-resource: AWS_EXTERNAL_ID#read + x-speakeasy-group: AWSExternalIDSettings + x-speakeasy-name-override: Get + /api/v1/settings/contacts: + get: + description: Invokes the c1.api.settings.v1.ContactsService.GetContacts method. + operationId: c1.api.settings.v1.ContactsService.GetContacts responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.SearchCohortUsersResponse' + $ref: '#/components/schemas/c1.api.settings.v1.GetContactsResponse' description: Successful response - summary: Search Cohort Users + summary: Get Contacts tags: - - Role Mining - x-speakeasy-group: RoleMiningManagement - x-speakeasy-name-override: SearchCohortUsers - /api/v1/role-mining/trigger: + - Contacts + x-speakeasy-group: Contacts + x-speakeasy-name-override: GetContacts post: - description: Start a new role mining analysis job that scans existing access patterns to generate role suggestions. - operationId: c1.api.role_mining_management.v1.RoleMiningManagementService.TriggerAnalysis + description: Invokes the c1.api.settings.v1.ContactsService.UpdateContacts method. + operationId: c1.api.settings.v1.ContactsService.UpdateContacts requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.TriggerAnalysisRequest' + $ref: '#/components/schemas/c1.api.settings.v1.UpdateContactsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.TriggerAnalysisResponse' + $ref: '#/components/schemas/c1.api.settings.v1.UpdateContactsResponse' description: Successful response - summary: Trigger Analysis + summary: Update Contacts tags: - - Role Mining - x-speakeasy-group: RoleMiningManagement - x-speakeasy-name-override: TriggerAnalysis - /api/v1/search/all_automation_executions: - post: - description: Search across all automation executions in the tenant, with filters for state, template, app, and subject user. - operationId: c1.api.automations.v1.AutomationExecutionSearchService.SearchAllAutomationExecutions - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.automations.v1.SearchAllAutomationExecutionsRequest' + - Contacts + x-speakeasy-group: Contacts + x-speakeasy-name-override: UpdateContacts + /api/v1/settings/cross-app-access: + get: + description: Get the tenant's cross-app-access settings. + operationId: c1.api.cross_app_access.v1.XAASettingsService.Get responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.SearchAllAutomationExecutionsResponse' - description: Successful response - summary: Search All Automation Executions + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAASettingsServiceGetResponse' + description: XAASettingsServiceGetResponse returns the tenant's cross-app-access settings. + summary: Get tags: - - Automations - x-speakeasy-group: AutomationExecutionSearch - x-speakeasy-name-override: SearchAllAutomationExecutions - /api/v1/search/app_resource_types: + - Cross-App Access + x-speakeasy-group: XAASettings + x-speakeasy-name-override: Get post: - description: Search app resources based on filters specified in the request body. - operationId: c1.api.app.v1.AppResourceSearch.SearchAppResourceTypes + description: |- + Update the tenant's cross-app-access settings. Supply the settings object + and an update mask listing the fields to change; only masked fields are + applied. Editable paths: enabled, default_grant_lifetime, + allow_refresh_token_subjects, default_signing_algorithm, + enabled_signing_algorithms, xaa_id_token_lifetime. + operationId: c1.api.cross_app_access.v1.XAASettingsService.Update requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.SearchAppResourceTypesRequest' + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAASettingsServiceUpdateRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.SearchAppResourceTypesResponse' - description: The SearchAppResourceTypesResponse message contains a list of results and a nextPageToken if applicable. - summary: Search App Resource Types + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAASettingsServiceUpdateResponse' + description: XAASettingsServiceUpdateResponse returns the updated settings. + summary: Update tags: - - App Resource - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: - - App Resource Type#read - - App Resource Types#read - terraform-resource: null - x-speakeasy-group: AppResourceSearch - x-speakeasy-name-override: SearchAppResourceTypes - x-speakeasy-pagination: - inputs: - - in: requestBody - name: pageToken - type: cursor - outputs: - nextCursor: $.nextPageToken - type: cursor - /api/v1/search/app_resources: - post: - description: Search app resources based on filters specified in the request body. - operationId: c1.api.app.v1.AppResourceSearch.SearchAppResources - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.app.v1.SearchAppResourcesRequest' + - Cross-App Access + x-speakeasy-group: XAASettings + x-speakeasy-name-override: Update + /api/v1/settings/cross-app-access/history: + get: + description: |- + List the change history for the tenant's cross-app-access settings (newest + first). Singleton: scoped to the caller's tenant. + operationId: c1.api.cross_app_access.v1.XAASettingsService.ListHistory + parameters: + - in: query + name: page_size + schema: + description: Page size (max 200). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.SearchAppResourcesResponse' - description: The SearchAppResourcesResponse message contains a list of results and a nextPageToken if applicable. - summary: Search App Resources + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAASettingsServiceListHistoryResponse' + description: |- + XAASettingsServiceListHistoryResponse returns cross-app-access settings + history entries. + summary: List History tags: - - App Resource - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: App Resources#read - terraform-resource: null - x-speakeasy-group: AppResourceSearch - x-speakeasy-name-override: SearchAppResources - x-speakeasy-pagination: - inputs: - - in: requestBody - name: pageToken - type: cursor - outputs: - nextCursor: $.nextPageToken - type: cursor - /api/v1/search/app_users: - post: - description: Search app users based on filters specified in the request body. - operationId: c1.api.app.v1.AppUserService.Search - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.app.v1.AppUserServiceSearchRequest' + - Cross-App Access + x-speakeasy-group: XAASettings + x-speakeasy-name-override: ListHistory + /api/v1/settings/developer-preferences/user: + get: + description: |- + Get returns the calling user's developer preferences. Returns the + zero value (all preferences off) for users who have never updated + them. + operationId: c1.api.settings.v1.UserDeveloperPreferencesService.Get responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppUserServiceSearchResponse' + $ref: '#/components/schemas/c1.api.settings.v1.GetUserDeveloperPreferencesResponse' description: Successful response - summary: Search + summary: Get tags: - - AppUsers - x-speakeasy-group: AppUser - x-speakeasy-name-override: Search - /api/v1/search/apps: + - User Developer Preferences + x-speakeasy-group: UserDeveloperPreferences + x-speakeasy-name-override: Get post: - description: Search apps based on filters specified in the request body. - operationId: c1.api.app.v1.AppSearch.Search + description: |- + Update modifies the calling user's developer preferences. See the + service-level comment for cluster-merge semantics. + operationId: c1.api.settings.v1.UserDeveloperPreferencesService.Update requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.SearchAppsRequest' + $ref: '#/components/schemas/c1.api.settings.v1.UpdateUserDeveloperPreferencesRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.SearchAppsResponse' - description: The SearchAppsResponse message contains a list of results and a nextPageToken if applicable. - summary: Search + $ref: '#/components/schemas/c1.api.settings.v1.UpdateUserDeveloperPreferencesResponse' + description: Successful response + summary: Update tags: - - App - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: - - App#read - - Apps#read - terraform-resource: null - x-speakeasy-group: AppSearch - x-speakeasy-name-override: Search - x-speakeasy-pagination: - inputs: - - in: requestBody - name: pageToken - type: cursor - outputs: - nextCursor: $.nextPageToken - type: cursor - /api/v1/search/apps/{app_id}/entitlements/users/{app_user_id}: + - User Developer Preferences + x-speakeasy-group: UserDeveloperPreferences + x-speakeasy-name-override: Update + /api/v1/settings/domains: get: - description: Search for app entitlements associated with a specific app user, with optional resource type trait filtering. - operationId: c1.api.app.v1.AppEntitlementSearchService.SearchAppEntitlementsForAppUser + description: List returns all verified domains configured for the tenant. + operationId: c1.api.settings.v1.OrgDomainService.List parameters: - - in: path - name: app_id - required: true - schema: - description: The ID of the app to search entitlements within. - readOnly: false - type: string - - in: path - name: app_user_id - required: true - schema: - description: The ID of the app user to search entitlements for. - readOnly: false - type: string - in: query name: page_size schema: - description: The pageSize field. + description: The maximum number of results to return per page. format: int32 - readOnly: false type: integer - in: query name: page_token schema: - description: The pageToken field. - readOnly: false + description: A pagination token returned from a previous List call. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.ListAppEntitlementsResponse' - description: The ListAppEntitlementsResponse message contains a list of results and a nextPageToken if applicable. - summary: Search App Entitlements For App User + $ref: '#/components/schemas/c1.api.settings.v1.ListOrgDomainsResponse' + description: Successful response + summary: List tags: - - App Entitlement - x-speakeasy-group: AppEntitlementSearch - x-speakeasy-name-override: SearchAppEntitlementsForAppUser - /api/v1/search/attributes: - post: - description: Search attributes based on filters specified in the request body. - operationId: c1.api.attribute.v1.AttributeSearch.SearchAttributeValues + - Org Domain + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: OrgDomains#read + terraform-resource: null + x-speakeasy-group: OrgDomain + x-speakeasy-name-override: List + put: + description: Update replaces the tenant's set of verified domains with the provided list. + operationId: c1.api.settings.v1.OrgDomainService.Update requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.SearchAttributeValuesRequest' + $ref: '#/components/schemas/c1.api.settings.v1.UpdateOrgDomainRequest' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.settings.v1.UpdateOrgDomainResponse' + description: Successful response + summary: Update + tags: + - Org Domain + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: OrgDomains#update + x-speakeasy-group: OrgDomain + x-speakeasy-name-override: Update + /api/v1/settings/email-capabilities: + get: + description: |- + GetEmailCapabilities returns a lightweight summary of email capabilities + for the current tenant. Intended for non-admin users (automation builders, + secret sharers) to check if external email is available without exposing + provider configuration details. + operationId: c1.api.settings.v1.TenantEmailProviderService.GetEmailCapabilities + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.settings.v1.GetEmailCapabilitiesResponse' + description: Successful response + summary: Get Email Capabilities + tags: + - Tenant Email Provider + x-speakeasy-group: TenantEmailProvider + x-speakeasy-name-override: GetEmailCapabilities + /api/v1/settings/email-provider: + get: + description: Get retrieves the current tenant email provider configuration. + operationId: c1.api.settings.v1.TenantEmailProviderService.Get responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.attribute.v1.SearchAttributeValuesResponse' - description: SearchAttributeValuesResponse is the response for searching AttributeValues. - summary: Search Attribute Values + $ref: '#/components/schemas/c1.api.settings.v1.GetTenantEmailProviderResponse' + description: Successful response + summary: Get tags: - - Attribute - x-speakeasy-group: AttributeSearch - x-speakeasy-name-override: SearchAttributeValues - /api/v1/search/automation_executions: + - Tenant Email Provider + x-speakeasy-group: TenantEmailProvider + x-speakeasy-name-override: Get post: - description: Search for automation executions with optional filters for automation_template_id, state, and query. - operationId: c1.api.automations.v1.AutomationExecutionSearchService.SearchAutomationExecutions + description: Update creates or updates the tenant email provider configuration. + operationId: c1.api.settings.v1.TenantEmailProviderService.Update requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.SearchAutomationExecutionsRequest' + $ref: '#/components/schemas/c1.api.settings.v1.UpdateTenantEmailProviderRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.SearchAutomationExecutionsResponse' + $ref: '#/components/schemas/c1.api.settings.v1.UpdateTenantEmailProviderResponse' description: Successful response - summary: Search Automation Executions + summary: Update tags: - - Automations - x-speakeasy-group: AutomationExecutionSearch - x-speakeasy-name-override: SearchAutomationExecutions - /api/v1/search/automation_versions: + - Tenant Email Provider + x-speakeasy-group: TenantEmailProvider + x-speakeasy-name-override: Update + /api/v1/settings/email-provider/audit-events: post: - description: Search for versioned snapshots of an automation template's steps and triggers. - operationId: c1.api.automations.v1.AutomationSearchService.SearchAutomationTemplateVersions + description: SearchAuditEvents returns email audit events for the tenant. + operationId: c1.api.settings.v1.TenantEmailProviderService.SearchAuditEvents requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.SearchAutomationTemplateVersionsRequest' + $ref: '#/components/schemas/c1.api.settings.v1.SearchEmailAuditEventsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.SearchAutomationTemplateVersionsResponse' + $ref: '#/components/schemas/c1.api.settings.v1.SearchEmailAuditEventsResponse' description: Successful response - summary: Search Automation Template Versions + summary: Search Audit Events tags: - - Automations - x-speakeasy-group: AutomationSearch - x-speakeasy-name-override: SearchAutomationTemplateVersions - /api/v1/search/automations: + - Tenant Email Provider + x-speakeasy-group: TenantEmailProvider + x-speakeasy-name-override: SearchAuditEvents + /api/v1/settings/email-provider/test: post: - description: Search for automations matching the provided filters, including query text, template refs, app, and trigger types. - operationId: c1.api.automations.v1.AutomationSearchService.SearchAutomations + description: Test sends a test email to verify the provider configuration works end-to-end. + operationId: c1.api.settings.v1.TenantEmailProviderService.Test requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.SearchAutomationsRequest' + $ref: '#/components/schemas/c1.api.settings.v1.TestTenantEmailProviderRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.automations.v1.SearchAutomationsResponse' + $ref: '#/components/schemas/c1.api.settings.v1.TestTenantEmailProviderResponse' description: Successful response - summary: Search Automations + summary: Test tags: - - Automations - x-speakeasy-group: AutomationSearch - x-speakeasy-name-override: SearchAutomations - /api/v1/search/entitlements: - post: - description: Search app entitlements based on filters specified in the request body. - operationId: c1.api.app.v1.AppEntitlementSearchService.Search - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementSearchServiceSearchRequest' + - Tenant Email Provider + x-speakeasy-group: TenantEmailProvider + x-speakeasy-name-override: Test + /api/v1/settings/identity-policy-defaults: + get: + description: Get returns the tenant's default identity policies. + operationId: c1.api.identity_platform.v1.IdentityPolicyTenantDefaultsService.Get responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementSearchServiceSearchResponse' + $ref: '#/components/schemas/c1.api.identity_platform.v1.IdentityPolicyTenantDefaultsServiceGetResponse' description: Successful response - summary: Search + summary: Get tags: - - App Entitlement + - Identity Policy Defaults x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-datasource: - - App Entitlement#read - - App Entitlements#read - terraform-resource: null - x-speakeasy-group: AppEntitlementSearch - x-speakeasy-name-override: Search - x-speakeasy-pagination: - inputs: - - in: requestBody - name: pageToken - type: cursor - outputs: - nextCursor: $.nextPageToken - type: cursor - /api/v1/search/functions: + terraform-datasource: null + terraform-resource: IdentityPolicyTenantDefaults#read + x-speakeasy-group: IdentityPolicyTenantDefaults + x-speakeasy-name-override: Get post: - description: Search searches for functions based on criteria - operationId: c1.api.functions.v1.FunctionsSearch.Search + description: |- + Update changes the tenant's default identity policies. Supply the defaults + object and an update mask listing the fields to change; omitted fields are + left as-is. + operationId: c1.api.identity_platform.v1.IdentityPolicyTenantDefaultsService.Update requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsSearchRequest' + $ref: '#/components/schemas/c1.api.identity_platform.v1.IdentityPolicyTenantDefaultsServiceUpdateRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.functions.v1.FunctionsSearchResponse' + $ref: '#/components/schemas/c1.api.identity_platform.v1.IdentityPolicyTenantDefaultsServiceUpdateResponse' description: Successful response - summary: Search + summary: Update tags: - - Function + - Identity Policy Defaults x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-datasource: Function#read - terraform-resource: null - x-speakeasy-group: FunctionsSearch - x-speakeasy-name-override: Search - x-stability-level: draft - /api/v1/search/grants: - post: - description: Search grants (user-to-entitlement bindings) across apps, with filters for app, user, resource type, and entitlement. - operationId: c1.api.app.v1.AppEntitlementSearchService.SearchGrants - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementSearchServiceSearchGrantsRequest' + terraform-resource: IdentityPolicyTenantDefaults#update + x-speakeasy-group: IdentityPolicyTenantDefaults + x-speakeasy-name-override: Update + /api/v1/settings/notifications/org: + get: + description: Get retrieves the organization-level notification settings, including per-channel preferences and admin-locked defaults. + operationId: c1.api.settings.v1.OrgNotificationSettingsService.Get responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.AppEntitlementSearchServiceSearchGrantsResponse' + $ref: '#/components/schemas/c1.api.settings.v1.GetOrgNotificationSettingsResponse' description: Successful response - summary: Search Grants + summary: Get tags: - - App Entitlement - x-speakeasy-group: AppEntitlementSearch - x-speakeasy-name-override: SearchGrants - /api/v1/search/hooks: + - Org Notification Settings + x-speakeasy-group: OrgNotificationSettings + x-speakeasy-name-override: Get post: - description: Invokes the c1.api.hooks.v1.HooksSearch.Search method. - operationId: c1.api.hooks.v1.HooksSearch.Search + description: Update modifies the organization-level notification settings, such as enabling channels and locking preferences for users. + operationId: c1.api.settings.v1.OrgNotificationSettingsService.Update requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.hooks.v1.HooksSearchRequest' + $ref: '#/components/schemas/c1.api.settings.v1.UpdateOrgNotificationSettingsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.hooks.v1.HooksSearchResponse' + $ref: '#/components/schemas/c1.api.settings.v1.UpdateOrgNotificationSettingsResponse' description: Successful response - summary: Search + summary: Update tags: - - Hook - x-speakeasy-group: HooksSearch - x-speakeasy-name-override: Search - /api/v1/search/iam/external_clients: - post: - description: Search returns external client grants for all users in the tenant. - operationId: c1.api.iam.v1.ExternalClientSearchService.Search - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.iam.v1.ExternalClientSearchServiceSearchRequest' + - Org Notification Settings + x-speakeasy-group: OrgNotificationSettings + x-speakeasy-name-override: Update + /api/v1/settings/notifications/user: + get: + description: Get retrieves the calling user's notification preferences, merged with organization-level defaults. + operationId: c1.api.settings.v1.UserNotificationSettingsService.Get responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.iam.v1.ExternalClientSearchServiceSearchResponse' + $ref: '#/components/schemas/c1.api.settings.v1.GetUserNotificationSettingsResponse' description: Successful response - summary: 'NOTE: Searches external client grants for all users' + summary: Get tags: - - External Client - x-speakeasy-group: ExternalClientSearch - x-speakeasy-name-override: Search - /api/v1/search/iam/personal_clients: + - User Notification Settings + x-speakeasy-group: UserNotificationSettings + x-speakeasy-name-override: Get post: - description: Search finds personal client credentials across all users, with optional filtering by query text or user. - operationId: c1.api.iam.v1.PersonalClientSearchService.Search + description: Update modifies the calling user's personal notification preferences for each channel. + operationId: c1.api.settings.v1.UserNotificationSettingsService.Update requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientSearchServiceSearchRequest' + $ref: '#/components/schemas/c1.api.settings.v1.UpdateUserNotificationSettingsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.iam.v1.PersonalClientSearchServiceSearchResponse' + $ref: '#/components/schemas/c1.api.settings.v1.UpdateUserNotificationSettingsResponse' description: Successful response - summary: 'NOTE: Searches personal clients for all users' + summary: Update tags: - - Personal Client - x-speakeasy-group: PersonalClientSearch - x-speakeasy-name-override: Search - /api/v1/search/local-directory-invitations: - post: - description: |- - List invitations for a directory, with optional status filter. - Search invitations with filters (directory, status). - operationId: c1.api.local_directory.v1.LocalUserInvitationService.Search - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitationServiceSearchRequest' + - User Notification Settings + x-speakeasy-group: UserNotificationSettings + x-speakeasy-name-override: Update + /api/v1/settings/onboarding: + get: + description: Get retrieves the current onboarding progress for the tenant. + operationId: c1.api.settings.v1.OnboardingSettingsService.Get responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.local_directory.v1.LocalUserInvitationServiceSearchResponse' + $ref: '#/components/schemas/c1.api.settings.v1.GetOnboardingSettingsResponse' description: Successful response - summary: Search + summary: Get tags: - - Local Directory - x-speakeasy-group: LocalUserInvitation - x-speakeasy-name-override: Search - /api/v1/search/past-grants: + - Onboarding Settings + x-speakeasy-group: OnboardingSettings + x-speakeasy-name-override: Get post: - description: Search historical grants that have been revoked, filtered by app user or entitlement. - operationId: c1.api.app.v1.AppEntitlementUserBindingService.SearchPastGrants + description: Update modifies the onboarding progress, such as marking steps complete or dismissing the wizard. + operationId: c1.api.settings.v1.OnboardingSettingsService.Update requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.SearchPastGrantsRequest' + $ref: '#/components/schemas/c1.api.settings.v1.UpdateOnboardingSettingsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.SearchPastGrantsResponse' - description: The SearchPastGrantsResponse message contains a list of past grants and a nextPageToken if applicable. - summary: Search Past Grants + $ref: '#/components/schemas/c1.api.settings.v1.UpdateOnboardingSettingsResponse' + description: Successful response + summary: Update tags: - - App Entitlement User Binding History - x-speakeasy-group: AppEntitlementUserBinding - x-speakeasy-name-override: SearchPastGrants - /api/v1/search/policies: + - Onboarding Settings + x-speakeasy-group: OnboardingSettings + x-speakeasy-name-override: Update + /api/v1/settings/request: + get: + description: Get returns the tenant's access-request settings. + operationId: c1.api.settings.v1.RequestSettingsService.Get + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.settings.v1.GetRequestSettingsResponse' + description: Successful response + summary: Get + tags: + - Request Settings + x-speakeasy-group: RequestSettings + x-speakeasy-name-override: Get post: - description: Search policies based on filters specified in the request body. - operationId: c1.api.policy.v1.PolicySearch.Search + description: Update modifies the tenant's access-request settings. + operationId: c1.api.settings.v1.RequestSettingsService.Update requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.policy.v1.SearchPoliciesRequest' + $ref: '#/components/schemas/c1.api.settings.v1.UpdateRequestSettingsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.policy.v1.SearchPoliciesResponse' + $ref: '#/components/schemas/c1.api.settings.v1.UpdateRequestSettingsResponse' description: Successful response - summary: Search + summary: Update tags: - - Policy + - Request Settings + x-speakeasy-group: RequestSettings + x-speakeasy-name-override: Update + /api/v1/settings/session: + get: + description: Get retrieves the current session security settings for the tenant. + operationId: c1.api.settings.v1.SessionSettingsService.Get + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.settings.v1.GetSessionSettingsResponse' + description: Successful response + summary: Get + tags: + - Session Settings x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-datasource: - - Policy#read - - Policies#read - terraform-resource: null - x-speakeasy-group: PolicySearch - x-speakeasy-name-override: Search - x-speakeasy-pagination: - inputs: - - in: requestBody - name: pageToken - type: cursor - outputs: - nextCursor: $.nextPageToken - type: cursor - /api/v1/search/request_catalog/entitlements: + terraform-datasource: null + terraform-resource: SessionSettings#read + x-speakeasy-group: SessionSettings + x-speakeasy-name-override: Get post: - description: Search request catalogs based on filters specified in the request body. - operationId: c1.api.requestcatalog.v1.RequestCatalogSearchService.SearchEntitlements + description: Update modifies the session security settings for the tenant, such as session length and IP allowlists. + operationId: c1.api.settings.v1.SessionSettingsService.Update requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogSearchServiceSearchEntitlementsRequest' + $ref: '#/components/schemas/c1.api.settings.v1.UpdateSessionSettingsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.requestcatalog.v1.RequestCatalogSearchServiceSearchEntitlementsResponse' - description: The RequestCatalogSearchServiceSearchEntitlementsResponse message contains a list of results and a nextPageToken if applicable. - summary: Search Entitlements + $ref: '#/components/schemas/c1.api.settings.v1.UpdateSessionSettingsResponse' + description: Successful response + summary: Update tags: - - Request Catalog - x-speakeasy-group: RequestCatalogSearch - x-speakeasy-name-override: SearchEntitlements - /api/v1/search/role-mining/suggestions: + - Session Settings + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: SessionSettings#update + x-speakeasy-group: SessionSettings + x-speakeasy-name-override: Update + /api/v1/settings/session/test-source-ip: post: - description: Search role mining suggestions by name, description, or cohort filter values with optional state and type filters. - operationId: c1.api.role_mining_management.v1.RoleMiningManagementSearchService.Search + description: TestSourceIP checks whether a given IP address would be allowed by the specified CIDR allowlist rules. + operationId: c1.api.settings.v1.SessionSettingsService.TestSourceIP requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningSearchSuggestionsRequest' + $ref: '#/components/schemas/c1.api.settings.v1.TestSourceIPRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.role_mining_management.v1.RoleMiningSearchSuggestionsResponse' + $ref: '#/components/schemas/c1.api.settings.v1.TestSourceIPResponse' description: Successful response - summary: Search + summary: Test Source Ip tags: - - Role Mining - x-speakeasy-group: RoleMiningManagementSearch - x-speakeasy-name-override: Search - /api/v1/search/secrets-admin: + - Session Settings + x-speakeasy-group: SessionSettings + x-speakeasy-name-override: TestSourceIP + /api/v1/settings/sso: + get: + description: Get returns the tenant's SSO provider settings. + operationId: c1.api.sso.v1.SSOSettingsService.Get + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOSettingsServiceGetResponse' + description: SSOSettingsServiceGetResponse returns the tenant's SSO provider settings. + summary: Get + tags: + - SSO + x-speakeasy-group: SSOSettings + x-speakeasy-name-override: Get post: description: |- - Search returns secrets across the tenant. - Can filter by creator, sharing mode, status, time range, etc. - operationId: c1.api.secrets.v1.PaperSecretAdminService.Search + Update changes the tenant's SSO provider settings. Supply the settings + object and an update mask listing the fields to change; only masked fields + are applied. Editable paths: enabled, default_subject_type, + default_assertion_lifetime, default_id_token_signed_response_alg. + operationId: c1.api.sso.v1.SSOSettingsService.Update requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretAdminServiceSearchRequest' + $ref: '#/components/schemas/c1.api.sso.v1.SSOSettingsServiceUpdateRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretAdminServiceSearchResponse' + $ref: '#/components/schemas/c1.api.sso.v1.SSOSettingsServiceUpdateResponse' + description: SSOSettingsServiceUpdateResponse returns the updated settings. + summary: Update + tags: + - SSO + x-speakeasy-group: SSOSettings + x-speakeasy-name-override: Update + /api/v1/settings/sso/history: + get: + description: ListHistory returns the SSO settings change history, newest first. + operationId: c1.api.sso.v1.SSOSettingsService.ListHistory + parameters: + - in: query + name: page_size + schema: + description: Maximum number of results to return per page. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Pagination token from a previous response. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sso.v1.SSOSettingsServiceListHistoryResponse' + description: SSOSettingsServiceListHistoryResponse returns SSO settings history entries. + summary: List History + tags: + - SSO + x-speakeasy-group: SSOSettings + x-speakeasy-name-override: ListHistory + /api/v1/sign-in-policies: + get: + description: List all sign-in policies in your tenant, one page at a time. + operationId: c1.api.sign_in_policy.v1.SignInPolicyService.List + parameters: + - in: query + name: page_size + schema: + description: The maximum number of results to return per page. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: A pagination token from a previous List response. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sign_in_policy.v1.SignInPolicyServiceListResponse' description: Successful response - summary: Search + summary: List tags: - - Secrets Admin - x-speakeasy-group: PaperSecretAdmin - x-speakeasy-name-override: Search - x-stability-level: beta - /api/v1/search/secrets-admin/audit_events: + - Sign-In Policy + x-speakeasy-group: SignInPolicy + x-speakeasy-name-override: List post: - description: |- - SearchAuditEvents returns audit events for paper secrets. - Can filter by vault_id, actor (user ID or email), client IP. - operationId: c1.api.secrets.v1.PaperSecretAdminService.SearchAuditEvents + description: Create a sign-in policy. + operationId: c1.api.sign_in_policy.v1.SignInPolicyService.Create requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretAdminServiceSearchAuditEventsRequest' + $ref: '#/components/schemas/c1.api.sign_in_policy.v1.SignInPolicyServiceCreateRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretAdminServiceSearchAuditEventsResponse' + $ref: '#/components/schemas/c1.api.sign_in_policy.v1.SignInPolicyServiceCreateResponse' description: Successful response - summary: Search Audit Events + summary: Create tags: - - Secrets Admin - x-speakeasy-group: PaperSecretAdmin - x-speakeasy-name-override: SearchAuditEvents - x-stability-level: beta - /api/v1/search/secrets/audit_events: - post: - description: |- - SearchAuditEvents returns audit events for a secret owned by the calling user. - Returns sanitized OCSF events (IP addresses stripped for non-admin consumption). - operationId: c1.api.secrets.v1.PaperSecretService.SearchAuditEvents + - Sign-In Policy + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: SignInPolicy#create + x-speakeasy-group: SignInPolicy + x-speakeasy-name-override: Create + /api/v1/sign-in-policies/{id}: + delete: + description: Delete a sign-in policy by ID. + operationId: c1.api.sign_in_policy.v1.SignInPolicyService.Delete + parameters: + - in: path + name: id + required: true + schema: + description: The ID of the policy to delete. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceSearchAuditEventsRequest' + $ref: '#/components/schemas/c1.api.sign_in_policy.v1.SignInPolicyServiceDeleteRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceSearchAuditEventsResponse' - description: |- - PaperSecretServiceSearchAuditEventsResponse contains a page of audit events - for the requested secret. - summary: Search Audit Events + $ref: '#/components/schemas/c1.api.sign_in_policy.v1.SignInPolicyServiceDeleteResponse' + description: Successful response + summary: Delete tags: - - Secrets - x-speakeasy-group: PaperSecret - x-speakeasy-name-override: SearchAuditEvents - x-stability-level: beta - /api/v1/search/secrets/mine: + - Sign-In Policy + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: SignInPolicy#delete + x-speakeasy-group: SignInPolicy + x-speakeasy-name-override: Delete + get: + description: Get a sign-in policy by ID. + operationId: c1.api.sign_in_policy.v1.SignInPolicyService.Get + parameters: + - in: path + name: id + required: true + schema: + description: The ID of the policy to retrieve. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.sign_in_policy.v1.SignInPolicyServiceGetResponse' + description: Successful response + summary: Get + tags: + - Sign-In Policy + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: null + terraform-resource: SignInPolicy#read + x-speakeasy-group: SignInPolicy + x-speakeasy-name-override: Get post: description: |- - SearchMySecrets returns secrets created by the current user. - Automatically scoped to current user - no user_id filter parameter. - operationId: c1.api.secrets.v1.PaperSecretService.SearchMySecrets + Update a sign-in policy. Supply the policy object and an update mask + listing the fields to change; omitted fields are left as-is. + operationId: c1.api.sign_in_policy.v1.SignInPolicyService.Update + parameters: + - in: path + name: id + required: true + schema: + description: Unique identifier for the policy. + readOnly: true + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceSearchMySecretsRequest' + $ref: '#/components/schemas/c1.api.sign_in_policy.v1.SignInPolicyServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceSearchResponse' - description: Search response for user's own secrets - summary: Search My Secrets + $ref: '#/components/schemas/c1.api.sign_in_policy.v1.SignInPolicyServiceUpdateResponse' + description: Successful response + summary: Update tags: - - Secrets - x-speakeasy-group: PaperSecret - x-speakeasy-name-override: SearchMySecrets - x-stability-level: beta - /api/v1/search/ssf-receiver-events: + - Sign-In Policy + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: SignInPolicy#update + x-speakeasy-group: SignInPolicy + x-speakeasy-name-override: Update + /api/v1/ssf-receiver-streams: + get: + description: List returns a paginated list of all SSF receiver streams configured for the tenant. + operationId: c1.api.ssf_receiver.v1.SSFReceiverStreamService.List + parameters: + - in: query + name: page_size + schema: + description: Maximum number of streams to return per page. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Token from a previous ListResponse to fetch the next page of results. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceListResponse' + description: SSFReceiverStreamServiceListResponse contains a page of SSF receiver streams. + summary: List + tags: + - SSF Receiver + x-speakeasy-group: SSFReceiverStream + x-speakeasy-name-override: List post: - description: Search performs a full-text search across received SSF events with optional filters for stream, event type, outcome, and matched user. - operationId: c1.api.ssf_receiver.v1.SSFReceiverEventSearchService.Search + description: Create registers a new SSF receiver stream with the specified configuration and returns the created stream along with the push auth token (if push delivery). + operationId: c1.api.ssf_receiver.v1.SSFReceiverStreamService.Create requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverEventSearchServiceSearchRequest' + $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceCreateRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverEventSearchServiceSearchResponse' - description: SSFReceiverEventSearchServiceSearchResponse contains the matching events and a pagination token. - summary: Search + $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceCreateResponse' + description: SSFReceiverStreamServiceCreateResponse returns the created stream and the push auth token in plaintext. + summary: Create tags: - SSF Receiver - x-speakeasy-group: SSFReceiverEventSearch - x-speakeasy-name-override: Search - /api/v1/search/step-up/providers: - post: - description: Search allows searching for step-up providers with various filters - operationId: c1.api.stepup.v1.StepUpProviderService.Search + x-speakeasy-group: SSFReceiverStream + x-speakeasy-name-override: Create + /api/v1/ssf-receiver-streams/{id}: + delete: + description: Delete removes an SSF receiver stream and stops receiving events from the associated transmitter. + operationId: c1.api.ssf_receiver.v1.SSFReceiverStreamService.Delete + parameters: + - in: path + name: id + required: true + schema: + description: The ID of the SSF receiver stream to delete. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.stepup.v1.SearchStepUpProvidersRequest' + $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceDeleteRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.stepup.v1.SearchStepUpProvidersResponse' - description: Response message for searching step-up providers - summary: Search + $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceDeleteResponse' + description: SSFReceiverStreamServiceDeleteResponse is empty on success. + summary: Delete tags: - - Step Up Authentication Providers - x-speakeasy-group: StepUpProvider - x-speakeasy-name-override: Search - /api/v1/search/step-up/transactions: - post: - description: Search allows searching for step-up transactions with various filters - operationId: c1.api.stepup.v1.StepUpTransactionService.Search - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.stepup.v1.SearchStepUpTransactionsRequest' + - SSF Receiver + x-speakeasy-group: SSFReceiverStream + x-speakeasy-name-override: Delete + get: + description: Get retrieves a single SSF receiver stream by its ID. + operationId: c1.api.ssf_receiver.v1.SSFReceiverStreamService.Get + parameters: + - in: path + name: id + required: true + schema: + description: The ID of the SSF receiver stream to retrieve. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.stepup.v1.SearchStepUpTransactionsResponse' - description: Response message for searching step-up transactions - summary: Search + $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceGetResponse' + description: SSFReceiverStreamServiceGetResponse contains the requested SSF receiver stream. + summary: Get tags: - - Step Up Authentication Transactions - x-speakeasy-group: StepUpTransaction - x-speakeasy-name-override: Search - /api/v1/search/systemlog/exports: + - SSF Receiver + x-speakeasy-group: SSFReceiverStream + x-speakeasy-name-override: Get post: - description: Search for system log exports matching the specified filters. - operationId: c1.api.systemlog.v1.ExportsSearchService.Search + description: Update modifies an existing SSF receiver stream's configuration. Only fields specified in the update mask are changed. + operationId: c1.api.ssf_receiver.v1.SSFReceiverStreamService.Update + parameters: + - in: path + name: id + required: true + schema: + description: The unique identifier of this SSF receiver stream. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.systemlog.v1.ExportsSearchServiceSearchRequest' + $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.systemlog.v1.ExportsSearchServiceSearchResponse' - description: ExportsSearchServiceSearchResponse is the response for searching system log exports. - summary: Search + $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceUpdateResponse' + description: SSFReceiverStreamServiceUpdateResponse contains the updated SSF receiver stream. + summary: Update tags: - - System Log Exporter - x-speakeasy-group: ExportsSearch - x-speakeasy-name-override: Search - /api/v1/search/tasks: + - SSF Receiver + x-speakeasy-group: SSFReceiverStream + x-speakeasy-name-override: Update + /api/v1/ssf-receiver-streams/{id}/test: post: - description: Search tasks based on filters specified in the request body. - operationId: c1.api.task.v1.TaskSearchService.Search + description: Test validates an SSF receiver stream's configuration by checking JWKS reachability, identity resolution, and action preview without processing real events. + operationId: c1.api.ssf_receiver.v1.SSFReceiverStreamService.Test + parameters: + - in: path + name: id + required: true + schema: + description: The ID of the SSF receiver stream to test. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskSearchRequest' + $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceTestRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskSearchResponse' - description: The TaskSearchResponse message contains a list of results and a nextPageToken if applicable. - summary: Search + $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceTestResponse' + description: SSFReceiverStreamServiceTestResponse reports the results of the stream configuration test across JWKS, identity, and action readiness checks. + summary: Test tags: - - Task - x-speakeasy-group: TaskSearch - x-speakeasy-name-override: Search - /api/v1/search/user-ownership: - post: - description: Search all ownership assignments for a given user across apps, resources, and entitlements. - operationId: c1.api.app.v1.AppSearch.SearchUserOwnership - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.app.v1.SearchUserOwnershipRequest' + - SSF Receiver + x-speakeasy-group: SSFReceiverStream + x-speakeasy-name-override: Test + /api/v1/ssf-receiver-streams/{stream_id}/events: + get: + description: List returns a paginated list of events received on a specific SSF receiver stream, ordered by receipt time. + operationId: c1.api.ssf_receiver.v1.SSFReceiverEventService.List + parameters: + - in: path + name: stream_id + required: true + schema: + description: The ID of the SSF receiver stream to list events for. + type: string + - in: query + name: page_size + schema: + description: Maximum number of events to return per page. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Token from a previous ListResponse to fetch the next page of results. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v1.SearchUserOwnershipResponse' - description: The SearchUserOwnershipResponse message contains a paginated list of ownership entries. - summary: Search User Ownership + $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverEventServiceListResponse' + description: SSFReceiverEventServiceListResponse contains a page of received SSF events. + summary: List tags: - - App - x-speakeasy-group: AppSearch - x-speakeasy-name-override: SearchUserOwnership - /api/v1/search/users: - post: - description: Search users based on filters specified in the request body. - operationId: c1.api.user.v1.UserSearch.Search - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.user.v1.SearchUsersRequest' + - SSF Receiver + x-speakeasy-group: SSFReceiverEvent + x-speakeasy-name-override: List + /api/v1/ssf-receiver-streams/{stream_id}/stats: + get: + description: GetStats retrieves event processing statistics for a specific SSF receiver stream, including counts of received, acted-on, and failed events. + operationId: c1.api.ssf_receiver.v1.SSFReceiverStreamService.GetStats + parameters: + - in: path + name: stream_id + required: true + schema: + description: The ID of the SSF receiver stream to get stats for. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.user.v1.SearchUsersResponse' - description: Successful response - summary: Search + $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceGetStatsResponse' + description: SSFReceiverStreamServiceGetStatsResponse contains the event processing statistics for the stream. + summary: Get Stats tags: - - User - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: - - User#read - - Users#read - terraform-resource: null - x-speakeasy-group: UserSearch - x-speakeasy-name-override: Search - x-speakeasy-pagination: - inputs: - - in: requestBody - name: pageToken - type: cursor - outputs: - nextCursor: $.nextPageToken - type: cursor - /api/v1/search/webhooks: + - SSF Receiver + x-speakeasy-group: SSFReceiverStream + x-speakeasy-name-override: GetStats + /api/v1/sso/applications/saml/parse-sp-metadata: post: - description: Search for webhook subscriptions by query string or specific webhook references. - operationId: c1.api.webhooks.v1.WebhooksSearch.Search + description: |- + ParseSAMLServiceProviderMetadata parses one uploaded SAML service-provider + metadata document and returns the SAML configuration it implies, without + creating or changing anything. The document is not stored. Use it to + preview an SP's capabilities before creating a SAML application; edit the + returned configuration before passing it to Create. Only upload or paste a + customer-supplied document -- C1 does not fetch metadata URLs. + operationId: c1.api.sso.v1.SSOApplicationService.ParseSAMLServiceProviderMetadata requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksSearchRequest' + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceParseSAMLServiceProviderMetadataRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksSearchResponse' + $ref: '#/components/schemas/c1.api.sso.v1.SSOApplicationServiceParseSAMLServiceProviderMetadataResponse' + description: |- + SSOApplicationServiceParseSAMLServiceProviderMetadataResponse returns the + SAML configuration derived from one metadata document and every finding the + parser raised about it. + summary: Parse Saml Service Provider Metadata + tags: + - SSO + x-speakeasy-group: SSOApplication + x-speakeasy-name-override: ParseSAMLServiceProviderMetadata + /api/v1/step-up/providers: + get: + description: List returns all step-up authentication providers configured for the tenant. + operationId: c1.api.stepup.v1.StepUpProviderService.List + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.stepup.v1.ListStepUpProvidersResponse' description: Successful response - summary: Search + summary: List tags: - - Webhook - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: - - Webhook#read - - Webhooks#read - terraform-resource: null - x-speakeasy-group: WebhooksSearch - x-speakeasy-name-override: Search - x-speakeasy-pagination: - inputs: - - in: requestBody - name: pageToken - type: cursor - outputs: - nextCursor: $.nextPageToken - type: cursor - /api/v1/search/workload_federation_trusts: + - Step Up Authentication Providers + x-speakeasy-group: StepUpProvider + x-speakeasy-name-override: List post: - description: |- - SearchTrusts searches trusts across all service principals with optional filters. - Used by the admin providers page to list trusts referencing a provider. - operationId: c1.api.workload_federation.v1.WorkloadFederationService.SearchTrusts + description: Create registers a new step-up authentication provider for the tenant. + operationId: c1.api.stepup.v1.StepUpProviderService.Create requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceSearchTrustsRequest' + $ref: '#/components/schemas/c1.api.stepup.v1.CreateStepUpProviderRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceSearchTrustsResponse' + $ref: '#/components/schemas/c1.api.stepup.v1.CreateStepUpProviderResponse' description: Successful response - summary: Search Trusts + summary: Create tags: - - Workload Federation - x-speakeasy-group: WorkloadFederation - x-speakeasy-name-override: SearchTrusts - /api/v1/secrets-admin/{vault_id}: + - Step Up Authentication Providers + x-speakeasy-group: StepUpProvider + x-speakeasy-name-override: Create + /api/v1/step-up/providers/{id}: delete: - description: Revoke allows admin to revoke any secret (not just their own). - operationId: c1.api.secrets.v1.PaperSecretAdminService.Revoke + description: Delete removes a step-up authentication provider from the tenant. + operationId: c1.api.stepup.v1.StepUpProviderService.Delete parameters: - in: path - name: vault_id + name: id required: true schema: - description: The vaultId field. - readOnly: false + description: The unique identifier of the step-up provider to delete. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretAdminServiceRevokeRequestInput' + $ref: '#/components/schemas/c1.api.stepup.v1.DeleteStepUpProviderRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretAdminServiceRevokeResponse' + $ref: '#/components/schemas/c1.api.stepup.v1.DeleteStepUpProviderResponse' description: Successful response - summary: Revoke + summary: Delete tags: - - Secrets Admin - x-speakeasy-group: PaperSecretAdmin - x-speakeasy-name-override: Revoke - x-stability-level: beta + - Step Up Authentication Providers + x-speakeasy-group: StepUpProvider + x-speakeasy-name-override: Delete get: - description: Get retrieves any secret's metadata by vault ID (admin override). - operationId: c1.api.secrets.v1.PaperSecretAdminService.Get + description: Get retrieves a single step-up authentication provider by its ID. + operationId: c1.api.stepup.v1.StepUpProviderService.Get parameters: - in: path - name: vault_id + name: id required: true schema: - description: The vaultId field. - readOnly: false + description: The unique identifier of the step-up provider to retrieve. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretAdminServiceGetResponse' + $ref: '#/components/schemas/c1.api.stepup.v1.GetStepUpProviderResponse' description: Successful response summary: Get tags: - - Secrets Admin - x-speakeasy-group: PaperSecretAdmin + - Step Up Authentication Providers + x-speakeasy-group: StepUpProvider x-speakeasy-name-override: Get - x-stability-level: beta - /api/v1/secrets/{vault_id}: - delete: - description: Revoke soft-deletes a secret (sets Vault.deleted_at, deletes content). - operationId: c1.api.secrets.v1.PaperSecretService.Revoke + post: + description: Update modifies an existing step-up authentication provider's configuration. Use the update mask to specify which fields to change. + operationId: c1.api.stepup.v1.StepUpProviderService.Update parameters: - in: path - name: vault_id + name: id required: true schema: - description: The vaultId field. - readOnly: false + description: The unique identifier of the step-up provider. + readOnly: true type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceRevokeRequestInput' - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceRevokeResponse' - description: Successful response - summary: Revoke - tags: - - Secrets - x-speakeasy-group: PaperSecret - x-speakeasy-name-override: Revoke - x-stability-level: beta - get: - description: |- - Get retrieves a secret's metadata by vault ID. - Creator can always get their own secrets. Admins can get any secret. - operationId: c1.api.secrets.v1.PaperSecretService.Get - parameters: - - in: path - name: vault_id - required: true - schema: - description: The vaultId field. - readOnly: false - type: string + $ref: '#/components/schemas/c1.api.stepup.v1.UpdateStepUpProviderRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceGetResponse' + $ref: '#/components/schemas/c1.api.stepup.v1.UpdateStepUpProviderResponse' description: Successful response - summary: Get + summary: Update tags: - - Secrets - x-speakeasy-group: PaperSecret - x-speakeasy-name-override: Get - x-stability-level: beta - /api/v1/secrets/{vault_id}/content: + - Step Up Authentication Providers + x-speakeasy-group: StepUpProvider + x-speakeasy-name-override: Update + /api/v1/step-up/providers/{id}/secret: post: - description: |- - SetTextContent sets the encrypted content for a text secret. - Client encrypts content using age_recipient from CreateResponse. - operationId: c1.api.secrets.v1.PaperSecretService.SetTextContent + description: UpdateSecret rotates the client secret for a step-up authentication provider without modifying other settings. + operationId: c1.api.stepup.v1.StepUpProviderService.UpdateSecret parameters: - in: path - name: vault_id + name: id required: true schema: - description: The vaultId field. - readOnly: false + description: The unique identifier of the step-up provider whose secret is being rotated. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceSetTextContentRequestInput' + $ref: '#/components/schemas/c1.api.stepup.v1.UpdateStepUpProviderSecretRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceSetTextContentResponse' + $ref: '#/components/schemas/c1.api.stepup.v1.UpdateStepUpProviderSecretResponse' description: Successful response - summary: Set Text Content + summary: Update Secret tags: - - Secrets - x-speakeasy-group: PaperSecret - x-speakeasy-name-override: SetTextContent - x-stability-level: beta - /api/v1/secrets/{vault_id}/view: + - Step Up Authentication Providers + x-speakeasy-group: StepUpProvider + x-speakeasy-name-override: UpdateSecret + /api/v1/step-up/providers/{id}/test: post: - description: |- - GetContent retrieves the encrypted secret content for an authorized recipient. - Caller must be in the secret's allowed_user_ids list (for INTERNAL secrets). - Returns content re-encrypted to caller's ephemeral public key. - operationId: c1.api.secrets.v1.PaperSecretService.GetContent + description: Test initiates a test authentication flow against a step-up provider and returns a redirect URL for the caller to complete verification. + operationId: c1.api.stepup.v1.StepUpProviderService.Test parameters: - in: path - name: vault_id + name: id required: true schema: - description: The vaultId field. - readOnly: false + description: The unique identifier of the step-up provider to test. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceGetContentRequestInput' + $ref: '#/components/schemas/c1.api.stepup.v1.TestStepUpProviderRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceGetContentResponse' + $ref: '#/components/schemas/c1.api.stepup.v1.TestStepUpProviderResponse' description: Successful response - summary: Get Content + summary: Test tags: - - Secrets - x-speakeasy-group: PaperSecret - x-speakeasy-name-override: GetContent - x-stability-level: draft - /api/v1/secrets/code/{share_code}: + - Step Up Authentication Providers + x-speakeasy-group: StepUpProvider + x-speakeasy-name-override: Test + /api/v1/step-up/transactions/{id}: get: - description: |- - GetByShareCode retrieves a secret by its human-friendly share code. - Share codes are in XXXX-XXXX-XXXX format and are used in share URLs. - operationId: c1.api.secrets.v1.PaperSecretService.GetByShareCode + description: Get retrieves a specific step-up transaction by ID + operationId: c1.api.stepup.v1.StepUpTransactionService.Get parameters: - in: path - name: share_code + name: id required: true schema: - description: 'Human-friendly share code (format: XXXX-XXXX-XXXX, case-insensitive)' - readOnly: false + description: ID of the transaction to retrieve type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceGetResponse' - description: Successful response - summary: Get By Share Code - tags: - - Secrets - x-speakeasy-group: PaperSecret - x-speakeasy-name-override: GetByShareCode - x-stability-level: beta - /api/v1/secrets/external: - post: - description: CreateExternal creates a secret vault for external email recipients. - operationId: c1.api.secrets.v1.PaperSecretService.CreateExternal - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceCreateExternalRequest' - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceCreateResponse' - description: Successful response - summary: Create External + $ref: '#/components/schemas/c1.api.stepup.v1.GetStepUpTransactionResponse' + description: Response message containing the requested step-up transaction + summary: Get tags: - - Secrets - x-speakeasy-group: PaperSecret - x-speakeasy-name-override: CreateExternal - x-stability-level: beta - /api/v1/secrets/internal: + - Step Up Authentication Transactions + x-speakeasy-group: StepUpTransaction + x-speakeasy-name-override: Get + /api/v1/systemlog/events: post: - description: CreateInternal creates a secret vault for internal C1 users. - operationId: c1.api.secrets.v1.PaperSecretService.CreateInternal + description: |- + ListEvents pulls Events from the ConductorOne system. + + This endpoint should be used to synchronize the + system log events to external systems. + operationId: c1.api.systemlog.v1.SystemLogService.ListEvents requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceCreateInternalRequest' + $ref: '#/components/schemas/c1.api.systemlog.v1.SystemLogServiceListEventsRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.secrets.v1.PaperSecretServiceCreateResponse' + $ref: '#/components/schemas/c1.api.systemlog.v1.SystemLogServiceListEventsResponse' description: Successful response - summary: Create Internal + summary: List Events tags: - - Secrets - x-speakeasy-group: PaperSecret - x-speakeasy-name-override: CreateInternal - x-stability-level: beta - /api/v1/service_principals: + - System Log + x-speakeasy-group: SystemLog + x-speakeasy-name-override: ListEvents + /api/v1/systemlog/exports: get: - description: List lists service principals for the tenant. - operationId: c1.api.service_principal.v1.ServicePrincipalService.List + description: List Exports. + operationId: c1.api.systemlog.v1.ExportService.List + parameters: + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceListResponse' + $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceListResponse' description: Successful response summary: List tags: - - Service Principal - x-speakeasy-group: Principal + - System Log Exporter + x-speakeasy-group: Export x-speakeasy-name-override: List post: - description: Create creates a new service principal. - operationId: c1.api.service_principal.v1.ServicePrincipalService.Create + description: Create a system log export. + operationId: c1.api.systemlog.v1.ExportService.Create requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceCreateRequest' + $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceCreateRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceCreateResponse' + $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceCreateResponse' description: Successful response summary: Create tags: - - Service Principal - x-speakeasy-group: Principal + - System Log Exporter + x-speakeasy-group: Export x-speakeasy-name-override: Create - /api/v1/service_principals/{id}: + /api/v1/systemlog/exports/{export_id}: delete: - description: Delete deletes a service principal and all its credentials. - operationId: c1.api.service_principal.v1.ServicePrincipalService.Delete + description: Delete a system log export by ID. + operationId: c1.api.systemlog.v1.ExportService.Delete parameters: - in: path - name: id + name: export_id required: true schema: - description: The id field. - readOnly: false + description: The exportId field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceDeleteRequestInput' + $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceDeleteRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceDeleteResponse' + $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceDeleteResponse' description: Successful response summary: Delete tags: - - Service Principal - x-speakeasy-group: Principal + - System Log Exporter + x-speakeasy-group: Export x-speakeasy-name-override: Delete get: - description: Get returns a service principal by ID. - operationId: c1.api.service_principal.v1.ServicePrincipalService.Get + description: Get a system log export by ID + operationId: c1.api.systemlog.v1.ExportService.Get parameters: - in: path - name: id + name: export_id required: true schema: - description: The id field. - readOnly: false + description: The exportId field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceGetResponse' - description: Successful response + $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceGetResponse' + description: The ExportServiceGetResponse message contains the system log exporter object. summary: Get tags: - - Service Principal - x-speakeasy-group: Principal + - System Log Exporter + x-speakeasy-group: Export x-speakeasy-name-override: Get - patch: - description: Update updates a service principal's display name. - operationId: c1.api.service_principal.v1.ServicePrincipalService.Update + post: + description: Update a system log export by providing an export object and an update mask. + operationId: c1.api.systemlog.v1.ExportService.Update parameters: - in: path - name: id + name: export_id required: true schema: - description: The unique user ID of the service principal. + description: The exportId field. readOnly: true type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceUpdateRequestInput' + $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceUpdateResponse' + $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceUpdateResponse' description: Successful response summary: Update tags: - - Service Principal - x-speakeasy-group: Principal + - System Log Exporter + x-speakeasy-group: Export x-speakeasy-name-override: Update - /api/v1/service_principals/{service_principal_id}/credentials: - get: - description: ListCredentials lists client credentials for a service principal. - operationId: c1.api.service_principal.v1.ServicePrincipalService.ListCredentials - parameters: - - in: path - name: service_principal_id - required: true - schema: - description: The service principal ID to list credentials for. - readOnly: false - type: string - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceListCredentialsResponse' - description: Successful response - summary: List Credentials - tags: - - Service Principal - x-speakeasy-group: Principal - x-speakeasy-name-override: ListCredentials + /api/v1/systemlog/exports/{export_id}/events: post: - description: CreateCredential creates a new client credential for a service principal. - operationId: c1.api.service_principal.v1.ServicePrincipalService.CreateCredential + description: List audit events belonging to a specific system log export. + operationId: c1.api.systemlog.v1.ExportService.ListEvents parameters: - in: path - name: service_principal_id + name: export_id required: true schema: - description: The service principal ID to create the credential for. - readOnly: false + description: The ID of the system log export whose events are being listed. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceCreateCredentialRequestInput' + $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceListEventsRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceCreateCredentialResponse' - description: Successful response - summary: Create Credential + $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceListEventsResponse' + description: ExportServiceListEventsResponse is the response containing audit events for an export. + summary: List Events tags: - - Service Principal - x-speakeasy-group: Principal - x-speakeasy-name-override: CreateCredential - /api/v1/service_principals/{service_principal_id}/credentials/{id}: - delete: - description: RevokeCredential revokes (deletes) a client credential for a service principal. - operationId: c1.api.service_principal.v1.ServicePrincipalService.RevokeCredential - parameters: - - in: path - name: service_principal_id - required: true - schema: - description: The service principal ID. - readOnly: false - type: string - - in: path - name: id - required: true - schema: - description: The credential ID to revoke. - readOnly: false - type: string + - System Log Exporter + x-speakeasy-group: Export + x-speakeasy-name-override: ListEvents + /api/v1/task/action: + post: + description: 'Create an action task: request a "request action" (requestable automation).' + operationId: c1.api.task.v1.TaskService.CreateActionTask requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceRevokeCredentialRequestInput' + $ref: '#/components/schemas/c1.api.task.v1.TaskServiceCreateActionRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceRevokeCredentialResponse' - description: Successful response - summary: Revoke Credential + $ref: '#/components/schemas/c1.api.task.v1.TaskServiceCreateActionResponse' + description: The TaskServiceCreateActionResponse returns the created action task with optional expanded related objects. + summary: Create Action Task tags: - - Service Principal - x-speakeasy-group: Principal - x-speakeasy-name-override: RevokeCredential - get: - description: GetCredential returns a single client credential for a service principal. - operationId: c1.api.service_principal.v1.ServicePrincipalService.GetCredential - parameters: - - in: path - name: service_principal_id - required: true - schema: - description: The service principal ID. - readOnly: false - type: string - - in: path - name: id - required: true - schema: - description: The credential ID to get. - readOnly: false - type: string + - Task + x-speakeasy-group: Task + x-speakeasy-name-override: CreateActionTask + /api/v1/task/audits: + post: + description: List audit trail events for a task. + operationId: c1.api.task.v1.TaskAudit.List + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.task.v1.TaskAuditListRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceGetCredentialResponse' + $ref: '#/components/schemas/c1.api.task.v1.TaskAuditListResponse' description: Successful response - summary: Get Credential + summary: List tags: - - Service Principal - x-speakeasy-group: Principal - x-speakeasy-name-override: GetCredential - patch: - description: UpdateCredential updates a client credential for a service principal. - operationId: c1.api.service_principal.v1.ServicePrincipalService.UpdateCredential - parameters: - - in: path - name: service_principal_id - required: true - schema: - description: The service principal ID. - readOnly: false - type: string - - in: path - name: id - required: true - schema: - description: The unique ID of the credential (cutename format). - readOnly: true - type: string + - Task + x-speakeasy-group: TaskAudit + x-speakeasy-name-override: List + /api/v1/task/grant: + post: + description: Create a grant task + operationId: c1.api.task.v1.TaskService.CreateGrantTask requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceUpdateCredentialRequestInput' + $ref: '#/components/schemas/c1.api.task.v1.TaskServiceCreateGrantRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceUpdateCredentialResponse' - description: Successful response - summary: Update Credential + $ref: '#/components/schemas/c1.api.task.v1.TaskServiceCreateGrantResponse' + description: The TaskServiceCreateGrantResponse returns a task view which has a task including JSONPATHs to the expanded items in the expanded array. + summary: Create Grant Task tags: - - Service Principal - x-speakeasy-group: Principal - x-speakeasy-name-override: UpdateCredential - /api/v1/service_principals/{service_principal_id}/trusts: - get: - description: ListTrusts lists trusts for a service principal. - operationId: c1.api.workload_federation.v1.WorkloadFederationService.ListTrusts - parameters: - - in: path - name: service_principal_id - required: true - schema: - description: The service principal ID to list trusts for (from URL path). - readOnly: false - type: string + - Task + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: TaskGrant#create + x-speakeasy-group: Task + x-speakeasy-name-override: CreateGrantTask + /api/v1/task/offboarding: + post: + description: Create an offboarding task to remove a user's access across applications. + operationId: c1.api.task.v1.TaskService.CreateOffboardingTask + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.task.v1.TaskServiceCreateOffboardingRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceListTrustsResponse' - description: Successful response - summary: List Trusts + $ref: '#/components/schemas/c1.api.task.v1.TaskServiceCreateOffboardingResponse' + description: The TaskServiceCreateOffboardingResponse returns the created offboarding task with optional expanded related objects. + summary: Create Offboarding Task tags: - - Workload Federation - x-speakeasy-group: WorkloadFederation - x-speakeasy-name-override: ListTrusts + - Task + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: TaskOffboarding#create + x-speakeasy-group: Task + x-speakeasy-name-override: CreateOffboardingTask + /api/v1/task/resource-action: post: description: |- - CreateTrust creates a trust policy for a service principal. - Validates the CEL condition_expression at creation time. - operationId: c1.api.workload_federation.v1.WorkloadFederationService.CreateTrust - parameters: - - in: path - name: service_principal_id - required: true - schema: - description: The service principal ID to create the trust for (from URL path). - readOnly: false - type: string + Create a task that executes a connector resource-create action, for example + creating a group in a connected application from a group template. The action + must be enabled, visible to the caller, and target a connector action of type + resource-create. Form values are validated against the connector's schema at + request time. + operationId: c1.api.task.v1.TaskService.CreateResourceActionTask requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceCreateTrustRequestInput' + $ref: '#/components/schemas/c1.api.task.v1.TaskServiceCreateResourceActionRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceCreateTrustResponse' - description: Successful response - summary: Create Trust + $ref: '#/components/schemas/c1.api.task.v1.TaskServiceCreateResourceActionResponse' + description: The TaskServiceCreateResourceActionResponse returns the created action task with optional expanded related objects. + summary: Create Resource Action Task tags: - - Workload Federation - x-speakeasy-group: WorkloadFederation - x-speakeasy-name-override: CreateTrust - /api/v1/service_principals/{service_principal_id}/trusts/{client_id}: - delete: - description: DeleteTrust deletes a trust for a service principal. - operationId: c1.api.workload_federation.v1.WorkloadFederationService.DeleteTrust - parameters: - - in: path - name: service_principal_id - required: true - schema: - description: The service principal ID (from URL path). - readOnly: false - type: string - - in: path - name: client_id - required: true - schema: - description: |- - The trust client ID. Accepts the cutename (e.g. "clever-fox-42195") or the - full client ID (e.g. "clever-fox-42195@acme.conductorone.com/wfe"). - The server normalizes to the cutename portion before lookup. - readOnly: false - type: string + - Task + x-speakeasy-group: Task + x-speakeasy-name-override: CreateResourceActionTask + /api/v1/task/revoke: + post: + description: Create a revoke task + operationId: c1.api.task.v1.TaskService.CreateRevokeTask requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceDeleteTrustRequestInput' + $ref: '#/components/schemas/c1.api.task.v1.TaskServiceCreateRevokeRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceDeleteTrustResponse' - description: Successful response - summary: Delete Trust + $ref: '#/components/schemas/c1.api.task.v1.TaskServiceCreateRevokeResponse' + description: The TaskServiceCreateRevokeResponse returns a task view which has a task including JSONPATHs to the expanded items in the expanded array. + summary: Create Revoke Task tags: - - Workload Federation - x-speakeasy-group: WorkloadFederation - x-speakeasy-name-override: DeleteTrust + - Task + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: TaskRevoke#create + x-speakeasy-group: Task + x-speakeasy-name-override: CreateRevokeTask + /api/v1/tasks/{id}: get: - description: GetTrust returns a trust by ID for a service principal. - operationId: c1.api.workload_federation.v1.WorkloadFederationService.GetTrust + description: Get a task by ID + operationId: c1.api.task.v1.TaskService.Get parameters: - in: path - name: service_principal_id - required: true - schema: - description: The service principal ID (from URL path). - readOnly: false - type: string - - in: path - name: client_id + name: id required: true schema: - description: |- - The trust client ID. Accepts the cutename (e.g. "clever-fox-42195") or the - full client ID (e.g. "clever-fox-42195@acme.conductorone.com/wfe"). - The server normalizes to the cutename portion before lookup. - readOnly: false + description: The id field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceGetTrustResponse' - description: Successful response - summary: Get Trust + $ref: '#/components/schemas/c1.api.task.v1.TaskServiceGetResponse' + description: The TaskServiceGetResponse returns a task view which has a task including JSONPATHs to the expanded items in the expanded array. + summary: Get tags: - - Workload Federation - x-speakeasy-group: WorkloadFederation - x-speakeasy-name-override: GetTrust - patch: - description: UpdateTrust updates a trust's mutable fields. The provider_id is immutable. - operationId: c1.api.workload_federation.v1.WorkloadFederationService.UpdateTrust + - Task + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: null + terraform-resource: Task#read + x-speakeasy-group: Task + x-speakeasy-name-override: Get + /api/v1/tasks/{task_id}/action/approve: + post: + description: Approve the specified policy step on a task. + operationId: c1.api.task.v1.TaskActionsService.Approve parameters: - in: path - name: service_principal_id - required: true - schema: - description: The service principal ID (from URL path). - readOnly: false - type: string - - in: path - name: client_id + name: task_id required: true schema: - description: |- - The full client ID of the trust (e.g., "clever-fox-42195@acme.conductorone.com/wfe"). - Used as the client_id parameter in RFC 8693 token exchange requests. - readOnly: true + description: The ID of the task to approve. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceUpdateTrustRequestInput' + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceApproveRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceUpdateTrustResponse' - description: Successful response - summary: Update Trust + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceApproveResponse' + description: The TaskActionsServiceApproveResponse returns a task view with paths indicating the location of expanded items in the array. + summary: Approve tags: - - Workload Federation - x-speakeasy-group: WorkloadFederation - x-speakeasy-name-override: UpdateTrust - /api/v1/service_principals/{service_principal_id}/trusts/{client_id}/test: + - Task + x-speakeasy-group: TaskActions + x-speakeasy-name-override: Approve + /api/v1/tasks/{task_id}/action/approve-with-step-up: post: - description: |- - TestToken validates a JWT against a specific trust's configuration without - issuing an access token. Returns per-step validation results for debugging. - operationId: c1.api.workload_federation.v1.WorkloadFederationService.TestToken + description: Approve a task that requires step-up authentication. If a verified step-up transaction ID is provided, the approval is processed immediately. Otherwise, a redirect URL is returned for the caller to complete authentication first. + operationId: c1.api.task.v1.TaskActionsService.ApproveWithStepUp parameters: - in: path - name: service_principal_id - required: true - schema: - description: The service principal ID (from URL path). - readOnly: false - type: string - - in: path - name: client_id + name: task_id required: true schema: - description: |- - The trust client ID. Accepts the cutename (e.g. "clever-fox-42195") or the - full client ID (e.g. "clever-fox-42195@acme.conductorone.com/wfe"). - The server normalizes to the cutename portion before lookup. - readOnly: false + description: The ID of the task to approve with step-up. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceTestTokenRequestInput' - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceTestTokenResponse' - description: Successful response - summary: Test Token - tags: - - Workload Federation - x-speakeasy-group: WorkloadFederation - x-speakeasy-name-override: TestToken - /api/v1/service_principals/bindings: - post: - description: |- - AddBinding links a tenant-scoped subject (a function today; future kinds - tomorrow) to a service principal. Outbound c1-api calls made on the - subject's behalf can then be minted as user: via - an RFC 8693 token-exchange (act-as) flow. Many-aware: a subject may - hold multiple bindings at the storage layer. Idempotent on - (subject, service_principal_id) — adds the row if missing, - resurrects it if soft-deleted, no-op if already active. Consumers - that need 0-or-1 cardinality (Functions today) enforce it - client-side via ListBindings + DeleteBinding. Requires the - SERVICE_PRINCIPALS feature flag. - operationId: c1.api.service_principal.v1.ServicePrincipalService.AddBinding - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceAddBindingRequest' - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceAddBindingResponse' - description: Successful response - summary: Add Binding - tags: - - Service Principal Binding - x-speakeasy-group: Principal - x-speakeasy-name-override: AddBinding - x-stability-level: draft - /api/v1/service_principals/bindings/delete: - post: - description: |- - DeleteBinding removes a single (subject, service_principal_id) binding - row. At-most-one delete — does not touch other bindings the subject - may hold against different service principals. Idempotent — succeeds - even if no matching row exists. - operationId: c1.api.service_principal.v1.ServicePrincipalService.DeleteBinding - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceDeleteBindingRequest' + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceApproveWithStepUpRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceDeleteBindingResponse' - description: Successful response - summary: Delete Binding + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceApproveWithStepUpResponse' + description: TaskActionsServiceApproveWithStepUpResponse is the response for approving a task with step-up authentication + summary: Approve With Step Up tags: - - Service Principal Binding - x-speakeasy-group: Principal - x-speakeasy-name-override: DeleteBinding - x-stability-level: draft - /api/v1/service_principals/bindings/list: + - Task + x-speakeasy-group: TaskActions + x-speakeasy-name-override: ApproveWithStepUp + /api/v1/tasks/{task_id}/action/close: post: description: |- - ListBindings returns every active binding held by a subject. Empty - list when the subject is unbound. The response is unordered. - operationId: c1.api.service_principal.v1.ServicePrincipalService.ListBindings + Close a task, ending its workflow. Async — returns a ticketActionId on + accept and queues the close; the task's state field is not updated + synchronously. Poll task_service_get to observe the transition to + TASK_STATE_CLOSED. When the task has an active provision step, close + may no-op — finish or cancel the provision step first + (mark_provision_complete / _errored / _cancelled) before closing. + operationId: c1.api.task.v1.TaskActionsService.Close + parameters: + - in: path + name: task_id + required: true + schema: + description: The ID of the task to close. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceListBindingsRequest' - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.service_principal.v1.ServicePrincipalServiceListBindingsResponse' - description: Successful response - summary: List Bindings - tags: - - Service Principal Binding - x-speakeasy-group: Principal - x-speakeasy-name-override: ListBindings - x-stability-level: draft - /api/v1/settings/aws-external-id: - get: - description: Get retrieves the AWS external ID for the tenant, used in IAM role trust policies for AWS connectors. - operationId: c1.api.settings.v1.AWSExternalIDSettings.Get + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceCloseRequestInput' responses: "200": content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.settings.v1.GetAWSExternalIDResponse' - description: Successful response - summary: Get - tags: - - AWS External ID Settings - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: AWS_EXTERNAL_ID#read - terraform-resource: AWS_EXTERNAL_ID#read - x-speakeasy-group: AWSExternalIDSettings - x-speakeasy-name-override: Get - /api/v1/settings/contacts: - get: - description: Invokes the c1.api.settings.v1.ContactsService.GetContacts method. - operationId: c1.api.settings.v1.ContactsService.GetContacts + application/json: + schema: + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceCloseResponse' + description: The TaskActionsServiceCloseResponse returns a task view with paths indicating the location of expanded items in the array. + summary: Close + tags: + - Task + x-speakeasy-group: TaskActions + x-speakeasy-name-override: Close + /api/v1/tasks/{task_id}/action/comment: + post: + description: Post a comment on a task without changing its state. + operationId: c1.api.task.v1.TaskActionsService.Comment + parameters: + - in: path + name: task_id + required: true + schema: + description: The ID of the task to be commented on + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceCommentRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.GetContactsResponse' - description: Successful response - summary: Get Contacts + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceCommentResponse' + description: Task actions service comment response returns the task view inluding the expanded array of items that are indicated by the expand mask on the request. + summary: Comment tags: - - Contacts - x-speakeasy-group: Contacts - x-speakeasy-name-override: GetContacts + - Task + x-speakeasy-group: TaskActions + x-speakeasy-name-override: Comment + /api/v1/tasks/{task_id}/action/deny: post: - description: Invokes the c1.api.settings.v1.ContactsService.UpdateContacts method. - operationId: c1.api.settings.v1.ContactsService.UpdateContacts + description: Deny the specified policy step on a task. In multi-step policies, this may route to fallback steps rather than finalizing the task outcome. + operationId: c1.api.task.v1.TaskActionsService.Deny + parameters: + - in: path + name: task_id + required: true + schema: + description: The ID of the task to be denied. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.UpdateContactsRequest' + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceDenyRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.UpdateContactsResponse' - description: Successful response - summary: Update Contacts + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceDenyResponse' + description: The TaskActionsServiceDenyResponse returns a task view with paths indicating the location of expanded items in the array. + summary: Deny tags: - - Contacts - x-speakeasy-group: Contacts - x-speakeasy-name-override: UpdateContacts - /api/v1/settings/domains: - get: - description: List returns all verified domains configured for the tenant. - operationId: c1.api.settings.v1.OrgDomainService.List + - Task + x-speakeasy-group: TaskActions + x-speakeasy-name-override: Deny + /api/v1/tasks/{task_id}/action/escalate: + post: + description: Escalate a grant task to use the emergency access policy, bypassing the normal approval flow. Only valid for grant tasks. + operationId: c1.api.task.v1.TaskActionsService.EscalateToEmergencyAccess parameters: - - in: query - name: page_size - schema: - description: The maximum number of results to return per page. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token + - in: path + name: task_id + required: true schema: - description: A pagination token returned from a previous List call. - readOnly: false + description: The ID of the task to escalate. type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceEscalateToEmergencyAccessRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.ListOrgDomainsResponse' - description: Successful response - summary: List + $ref: '#/components/schemas/c1.api.task.v1.TaskServiceActionResponse' + description: A generic response for task action endpoints, containing the updated task and the ID of the action that was created. + summary: Escalate To Emergency Access tags: - - Org Domain - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: OrgDomains#read - terraform-resource: null - x-speakeasy-group: OrgDomain - x-speakeasy-name-override: List - put: - description: Update replaces the tenant's set of verified domains with the provided list. - operationId: c1.api.settings.v1.OrgDomainService.Update + - Task + x-speakeasy-group: TaskActions + x-speakeasy-name-override: EscalateToEmergencyAccess + /api/v1/tasks/{task_id}/action/process: + post: + description: Trigger immediate processing of a task, bypassing any scheduled wait. For tasks linked to an external system, this also attempts to sync the external state. + operationId: c1.api.task.v1.TaskActionsService.ProcessNow + parameters: + - in: path + name: task_id + required: true + schema: + description: The ID of the task to process now. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.UpdateOrgDomainRequest' + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceProcessNowRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.UpdateOrgDomainResponse' - description: Successful response - summary: Update + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceProcessNowResponse' + description: The TaskActionsServiceProcessNowResponse returns the task view after triggering immediate processing. + summary: Process Now tags: - - Org Domain - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: OrgDomains#update - x-speakeasy-group: OrgDomain - x-speakeasy-name-override: Update - /api/v1/settings/email-capabilities: - get: - description: |- - GetEmailCapabilities returns a lightweight summary of email capabilities - for the current tenant. Intended for non-admin users (automation builders, - secret sharers) to check if external email is available without exposing - provider configuration details. - operationId: c1.api.settings.v1.TenantEmailProviderService.GetEmailCapabilities + - Task + x-speakeasy-group: TaskActions + x-speakeasy-name-override: ProcessNow + /api/v1/tasks/{task_id}/action/reassign: + post: + description: Reassign a task's current policy step to a different set of users. The target step must be an approval, provision, or form step. + operationId: c1.api.task.v1.TaskActionsService.Reassign + parameters: + - in: path + name: task_id + required: true + schema: + description: The ID of the task to reassign. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceReassignRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.GetEmailCapabilitiesResponse' - description: Successful response - summary: Get Email Capabilities + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceReassignResponse' + description: The TaskActionsServiceReassignResponse returns a task view with paths indicating the location of expanded items in the array. + summary: Reassign tags: - - Tenant Email Provider - x-speakeasy-group: TenantEmailProvider - x-speakeasy-name-override: GetEmailCapabilities - /api/v1/settings/email-provider: - get: - description: Get retrieves the current tenant email provider configuration. - operationId: c1.api.settings.v1.TenantEmailProviderService.Get + - Task + x-speakeasy-group: TaskActions + x-speakeasy-name-override: Reassign + /api/v1/tasks/{task_id}/action/reset: + post: + description: Reset a task and recalculate its policy from scratch. Unlike Restart, this re-evaluates which policy applies to the task. + operationId: c1.api.task.v1.TaskActionsService.HardReset + parameters: + - in: path + name: task_id + required: true + schema: + description: The ID of the task to reset. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceHardResetRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.GetTenantEmailProviderResponse' - description: Successful response - summary: Get + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceHardResetResponse' + description: The TaskActionsServiceHardResetResponse returns the updated task after a hard reset. + summary: Hard Reset tags: - - Tenant Email Provider - x-speakeasy-group: TenantEmailProvider - x-speakeasy-name-override: Get + - Task + x-speakeasy-group: TaskActions + x-speakeasy-name-override: HardReset + /api/v1/tasks/{task_id}/action/restart: post: - description: Update creates or updates the tenant email provider configuration. - operationId: c1.api.settings.v1.TenantEmailProviderService.Update + description: Restart a task, returning it to the beginning of its current policy workflow. + operationId: c1.api.task.v1.TaskActionsService.Restart + parameters: + - in: path + name: task_id + required: true + schema: + description: The ID of the task to restart. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.UpdateTenantEmailProviderRequest' + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceRestartRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.UpdateTenantEmailProviderResponse' - description: Successful response - summary: Update + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceRestartResponse' + description: The TaskActionsServiceRestartResponse returns the updated task after restarting. + summary: Restart tags: - - Tenant Email Provider - x-speakeasy-group: TenantEmailProvider - x-speakeasy-name-override: Update - /api/v1/settings/email-provider/audit-events: + - Task + x-speakeasy-group: TaskActions + x-speakeasy-name-override: Restart + /api/v1/tasks/{task_id}/action/retry-provisioning: post: - description: SearchAuditEvents returns email audit events for the tenant. - operationId: c1.api.settings.v1.TenantEmailProviderService.SearchAuditEvents + description: |- + Retry the provisioning of a task whose connector provisioning failed. Resets the + failed connector actions and re-drives the connector, preserving the already-collected + approvals. Only valid when the task's current provision step ended in an error. + operationId: c1.api.task.v1.TaskActionsService.RetryProvisioning + parameters: + - in: path + name: task_id + required: true + schema: + description: The ID of the task to retry provisioning for. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.SearchEmailAuditEventsRequest' + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceRetryProvisioningRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.SearchEmailAuditEventsResponse' - description: Successful response - summary: Search Audit Events + $ref: '#/components/schemas/c1.api.task.v1.TaskServiceActionResponse' + description: A generic response for task action endpoints, containing the updated task and the ID of the action that was created. + summary: Retry Provisioning tags: - - Tenant Email Provider - x-speakeasy-group: TenantEmailProvider - x-speakeasy-name-override: SearchAuditEvents - /api/v1/settings/email-provider/test: + - Task + x-speakeasy-group: TaskActions + x-speakeasy-name-override: RetryProvisioning + /api/v1/tasks/{task_id}/action/skip-step: post: - description: Test sends a test email to verify the provider configuration works end-to-end. - operationId: c1.api.settings.v1.TenantEmailProviderService.Test + description: Skip a specific policy step in a task, advancing the task to the next step in the workflow. + operationId: c1.api.task.v1.TaskActionsService.SkipStep + parameters: + - in: path + name: task_id + required: true + schema: + description: The ID of the task containing the step to skip. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.TestTenantEmailProviderRequest' + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceSkipStepRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.TestTenantEmailProviderResponse' - description: Successful response - summary: Test + $ref: '#/components/schemas/c1.api.task.v1.TaskServiceActionResponse' + description: A generic response for task action endpoints, containing the updated task and the ID of the action that was created. + summary: Skip Step tags: - - Tenant Email Provider - x-speakeasy-group: TenantEmailProvider - x-speakeasy-name-override: Test - /api/v1/settings/notifications/org: - get: - description: Get retrieves the organization-level notification settings, including per-channel preferences and admin-locked defaults. - operationId: c1.api.settings.v1.OrgNotificationSettingsService.Get + - Task + x-speakeasy-group: TaskActions + x-speakeasy-name-override: SkipStep + /api/v1/tasks/{task_id}/action/update-grant-duration: + post: + description: Update the grant duration for a task. Only applies to grant tasks with a single entitlement that are not in a provision step. The new duration must not exceed the entitlement's maximum allowed provision time. + operationId: c1.api.task.v1.TaskActionsService.UpdateGrantDuration + parameters: + - in: path + name: task_id + required: true + schema: + description: The ID of the task to update the grant duration for. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceUpdateGrantDurationRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.GetOrgNotificationSettingsResponse' - description: Successful response - summary: Get + $ref: '#/components/schemas/c1.api.task.v1.TaskServiceActionResponse' + description: A generic response for task action endpoints, containing the updated task and the ID of the action that was created. + summary: Update Grant Duration tags: - - Org Notification Settings - x-speakeasy-group: OrgNotificationSettings - x-speakeasy-name-override: Get + - Task + x-speakeasy-group: TaskActions + x-speakeasy-name-override: UpdateGrantDuration + /api/v1/tasks/{task_id}/action/update-request-data: post: - description: Update modifies the organization-level notification settings, such as enabling channels and locking preferences for users. - operationId: c1.api.settings.v1.OrgNotificationSettingsService.Update + description: Update the request data on a task that is currently in a form step. The submitted data is validated against the form schema before being applied. + operationId: c1.api.task.v1.TaskActionsService.UpdateRequestData + parameters: + - in: path + name: task_id + required: true + schema: + description: The ID of the task containing the request data to update. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.UpdateOrgNotificationSettingsRequest' + $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceUpdateRequestDataRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.UpdateOrgNotificationSettingsResponse' - description: Successful response - summary: Update + $ref: '#/components/schemas/c1.api.task.v1.TaskServiceActionResponse' + description: A generic response for task action endpoints, containing the updated task and the ID of the action that was created. + summary: Update Request Data tags: - - Org Notification Settings - x-speakeasy-group: OrgNotificationSettings - x-speakeasy-name-override: Update - /api/v1/settings/notifications/user: + - Task + x-speakeasy-group: TaskActions + x-speakeasy-name-override: UpdateRequestData + /api/v1/terraform-export/schema: get: - description: Get retrieves the calling user's notification preferences, merged with organization-level defaults. - operationId: c1.api.settings.v1.UserNotificationSettingsService.Get + description: |- + GetSchema returns the field-by-field Terraform mapping for one C1 + API object type. Cacheable by (object_fqn, block_kind, + provider_version). + operationId: c1.api.terraform_export.v1.TerraformExportService.GetSchema responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.GetUserNotificationSettingsResponse' + $ref: '#/components/schemas/c1.api.terraform_export.v1.GetSchemaResponse' description: Successful response - summary: Get + summary: Get Schema tags: - - User Notification Settings - x-speakeasy-group: UserNotificationSettings - x-speakeasy-name-override: Get - post: - description: Update modifies the calling user's personal notification preferences for each channel. - operationId: c1.api.settings.v1.UserNotificationSettingsService.Update - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.settings.v1.UpdateUserNotificationSettingsRequest' + - Terraform Export + x-speakeasy-group: TerraformExport + x-speakeasy-name-override: GetSchema + /api/v1/users: + get: + description: List users. + operationId: c1.api.user.v1.UserService.List + parameters: + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.UpdateUserNotificationSettingsResponse' - description: Successful response - summary: Update + $ref: '#/components/schemas/c1.api.user.v1.UserServiceListResponse' + description: The UserServiceListResponse message contains a list of results and a nextPageToken if applicable. + summary: List tags: - - User Notification Settings - x-speakeasy-group: UserNotificationSettings - x-speakeasy-name-override: Update - /api/v1/settings/onboarding: + - User + x-speakeasy-group: User + x-speakeasy-name-override: List + /api/v1/users/{id}: get: - description: Get retrieves the current onboarding progress for the tenant. - operationId: c1.api.settings.v1.OnboardingSettingsService.Get + description: Get a user by ID. + operationId: c1.api.user.v1.UserService.Get + parameters: + - in: path + name: id + required: true + schema: + description: The id field. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.GetOnboardingSettingsResponse' - description: Successful response + $ref: '#/components/schemas/c1.api.user.v1.UserServiceGetResponse' + description: The UserServiceGetResponse returns a user view which has a user including JSONPATHs to the expanded items in the expanded array. summary: Get tags: - - Onboarding Settings - x-speakeasy-group: OnboardingSettings + - User + x-speakeasy-group: User x-speakeasy-name-override: Get - post: - description: Update modifies the onboarding progress, such as marking steps complete or dismissing the wizard. - operationId: c1.api.settings.v1.OnboardingSettingsService.Update - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.settings.v1.UpdateOnboardingSettingsRequest' + /api/v1/users/{user_id}/mcp_toolsets/requestable_connectors: + get: + description: |- + ListRequestableConnectors returns the (app_id, connector_id) pairs that + have at least one requestable toolset (access profile) for the given user. + operationId: c1.api.ai_governance.v1.MCPAccessProfileService.ListRequestableConnectors + parameters: + - in: path + name: user_id + required: true + schema: + description: The user ID to check requestable profiles for. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.UpdateOnboardingSettingsResponse' - description: Successful response - summary: Update + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileServiceListRequestableConnectorsResponse' + description: |- + MCPAccessProfileServiceListRequestableConnectorsResponse returns connector references + that have requestable MCP access profiles. + summary: List Requestable Connectors tags: - - Onboarding Settings - x-speakeasy-group: OnboardingSettings - x-speakeasy-name-override: Update - /api/v1/settings/session: + - MCP Toolsets + x-speakeasy-group: MCPAccessProfile + x-speakeasy-name-override: ListRequestableConnectors + /api/v1/users/{user_id}/mcp_toolsets/requestable_connectors/search: get: - description: Get retrieves the current session security settings for the tenant. - operationId: c1.api.settings.v1.SessionSettingsService.Get + description: |- + SearchRequestableConnectors returns card-ready entries — one per MCP + connector the user can browse and request tools for — with server-side + visibility + policy filtering, grant-enrollment-status filtering, text + search over the connector display name, and pagination. Backs the + Requests -> AI tools connector cards. Held connectors are surfaced even + when no longer requestable so "My tools" reflects what the user actually + holds. + operationId: c1.api.ai_governance.v1.MCPAccessProfileService.SearchRequestableConnectors + parameters: + - in: path + name: user_id + required: true + schema: + description: The user the requestable set is scoped to. + type: string + - in: query + name: grant_enrollment_status + schema: + description: |- + Filters by whether the user already holds the connector's tools. + UNSPECIFIED = all, FULLY_GRANTED = held, NOT_GRANTED = available. + enum: + - GRANT_ENROLLMENT_STATUS_UNSPECIFIED + - GRANT_ENROLLMENT_STATUS_FULLY_GRANTED + - GRANT_ENROLLMENT_STATUS_NOT_GRANTED + - GRANT_ENROLLMENT_STATUS_PARTIALLY_GRANTED + type: string + x-speakeasy-unknown-values: allow + - in: query + name: page_size + schema: + description: Page size (max 100). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string + - in: query + name: query + schema: + description: Case-insensitive search over the connector display name. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.GetSessionSettingsResponse' - description: Successful response - summary: Get + $ref: '#/components/schemas/c1.api.ai_governance.v1.MCPAccessProfileServiceSearchRequestableConnectorsResponse' + description: |- + MCPAccessProfileServiceSearchRequestableConnectorsResponse returns one page + of card-ready requestable-connector entries. + summary: Search Requestable Connectors tags: - - Session Settings - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: null - terraform-resource: SessionSettings#read - x-speakeasy-group: SessionSettings - x-speakeasy-name-override: Get - post: - description: Update modifies the session security settings for the tenant, such as session length and IP allowlists. - operationId: c1.api.settings.v1.SessionSettingsService.Update - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.settings.v1.UpdateSessionSettingsRequest' + - MCP Toolsets + x-speakeasy-group: MCPAccessProfile + x-speakeasy-name-override: SearchRequestableConnectors + /api/v1/users/{user_id}/profile-types: + get: + description: Retrieve the profile types associated with a user across their connected apps. + operationId: c1.api.user.v1.UserService.GetUserProfileTypes + parameters: + - in: path + name: user_id + required: true + schema: + description: The ID of the user whose profile types are being retrieved. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.UpdateSessionSettingsResponse' - description: Successful response - summary: Update + $ref: '#/components/schemas/c1.api.user.v1.GetUserProfileTypesResponse' + description: GetUserProfileTypesResponse is the response containing the profile types for a user. + summary: Get User Profile Types tags: - - Session Settings - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: SessionSettings#update - x-speakeasy-group: SessionSettings - x-speakeasy-name-override: Update - /api/v1/settings/session/test-source-ip: + - User + x-speakeasy-group: User + x-speakeasy-name-override: GetUserProfileTypes + /api/v1/users/{user_id}/set-delegation-by-admin: post: - description: TestSourceIP checks whether a given IP address would be allowed by the specified CIDR allowlist rules. - operationId: c1.api.settings.v1.SessionSettingsService.TestSourceIP + description: Set or update an expiring delegation binding for a user, allowing an admin to designate a temporary delegate. + operationId: c1.api.user.v1.UserService.SetExpiringUserDelegationBindingByAdmin + parameters: + - in: path + name: user_id + required: true + schema: + description: The ID of the user whose tasks will be delegated. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.TestSourceIPRequest' + $ref: '#/components/schemas/c1.api.user.v1.SetExpiringUserDelegationBindingByAdminRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.settings.v1.TestSourceIPResponse' - description: Successful response - summary: Test Source Ip + $ref: '#/components/schemas/c1.api.user.v1.SetExpiringUserDelegationBindingByAdminResponse' + description: SetExpiringUserDelegationBindingByAdminResponse is the response containing the created or updated delegation binding. + summary: Set Expiring User Delegation Binding By Admin tags: - - Session Settings - x-speakeasy-group: SessionSettings - x-speakeasy-name-override: TestSourceIP - /api/v1/ssf-receiver-streams: - get: - description: List returns a paginated list of all SSF receiver streams configured for the tenant. - operationId: c1.api.ssf_receiver.v1.SSFReceiverStreamService.List - parameters: - - in: query - name: page_size - schema: - description: Maximum number of streams to return per page. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: Token from a previous ListResponse to fetch the next page of results. - readOnly: false - type: string + - User + x-speakeasy-group: User + x-speakeasy-name-override: SetExpiringUserDelegationBindingByAdmin + /api/v1/users/introspect: + post: + description: |- + Introspect returns the calling user's full UserView (profile, manager, attributes) + resolved from the passport on the request. + operationId: c1.api.user.v1.UserService.Introspect + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.user.v1.IntrospectRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceListResponse' - description: SSFReceiverStreamServiceListResponse contains a page of SSF receiver streams. - summary: List + $ref: '#/components/schemas/c1.api.user.v1.IntrospectResponse' + description: Successful response + summary: Introspect tags: - - SSF Receiver - x-speakeasy-group: SSFReceiverStream - x-speakeasy-name-override: List + - User + x-speakeasy-group: User + x-speakeasy-name-override: Introspect + /api/v1/vaults: post: - description: Create registers a new SSF receiver stream with the specified configuration and returns the created stream along with the push auth token (if push delivery). - operationId: c1.api.ssf_receiver.v1.SSFReceiverStreamService.Create + description: Create provisions a new external secret storage vault and returns it. + operationId: c1.api.vault.v1.VaultService.Create requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceCreateRequest' + $ref: '#/components/schemas/c1.api.vault.v1.VaultServiceCreateRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceCreateResponse' - description: SSFReceiverStreamServiceCreateResponse returns the created stream and the push auth token in plaintext. + $ref: '#/components/schemas/c1.api.vault.v1.VaultServiceCreateResponse' + description: VaultServiceCreateResponse is the response message for creating a new vault. summary: Create tags: - - SSF Receiver - x-speakeasy-group: SSFReceiverStream + - Vault + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Vault#create + x-speakeasy-group: Vault x-speakeasy-name-override: Create - /api/v1/ssf-receiver-streams/{id}: + x-stability-level: draft + /api/v1/vaults/{id}: delete: - description: Delete removes an SSF receiver stream and stops receiving events from the associated transmitter. - operationId: c1.api.ssf_receiver.v1.SSFReceiverStreamService.Delete + description: Delete a vault by its ID. Active connectors using this vault will no longer be able to access their stored credentials. + operationId: c1.api.vault.v1.VaultService.Delete parameters: - in: path name: id required: true schema: - description: The ID of the SSF receiver stream to delete. - readOnly: false + description: The unique identifier of the vault to delete. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceDeleteRequestInput' + $ref: '#/components/schemas/c1.api.vault.v1.VaultServiceDeleteRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceDeleteResponse' - description: SSFReceiverStreamServiceDeleteResponse is empty on success. + $ref: '#/components/schemas/c1.api.vault.v1.VaultServiceDeleteResponse' + description: Empty response body. Status code indicates success. summary: Delete tags: - - SSF Receiver - x-speakeasy-group: SSFReceiverStream + - Vault + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Vault#delete + x-speakeasy-group: Vault x-speakeasy-name-override: Delete + x-stability-level: draft get: - description: Get retrieves a single SSF receiver stream by its ID. - operationId: c1.api.ssf_receiver.v1.SSFReceiverStreamService.Get + description: Get returns a single vault by its ID. + operationId: c1.api.vault.v1.VaultService.Get parameters: - in: path name: id required: true schema: - description: The ID of the SSF receiver stream to retrieve. - readOnly: false + description: The unique identifier of the vault to retrieve. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceGetResponse' - description: SSFReceiverStreamServiceGetResponse contains the requested SSF receiver stream. + $ref: '#/components/schemas/c1.api.vault.v1.VaultServiceGetResponse' + description: VaultServiceGetResponse is the response message containing the requested vault. summary: Get tags: - - SSF Receiver - x-speakeasy-group: SSFReceiverStream + - Vault + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: null + terraform-resource: Vault#read + x-speakeasy-group: Vault x-speakeasy-name-override: Get + x-stability-level: draft post: - description: Update modifies an existing SSF receiver stream's configuration. Only fields specified in the update mask are changed. - operationId: c1.api.ssf_receiver.v1.SSFReceiverStreamService.Update + description: Update modifies an existing vault's properties using a field mask. + operationId: c1.api.vault.v1.VaultService.Update parameters: - in: path name: id required: true schema: - description: The unique identifier of this SSF receiver stream. - readOnly: false + description: The unique identifier of the vault. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceUpdateRequestInput' + $ref: '#/components/schemas/c1.api.vault.v1.VaultServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceUpdateResponse' - description: SSFReceiverStreamServiceUpdateResponse contains the updated SSF receiver stream. + $ref: '#/components/schemas/c1.api.vault.v1.VaultServiceUpdateResponse' + description: VaultServiceUpdateResponse is the response message containing the updated vault. summary: Update tags: - - SSF Receiver - x-speakeasy-group: SSFReceiverStream + - Vault + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Vault#update + x-speakeasy-group: Vault x-speakeasy-name-override: Update - /api/v1/ssf-receiver-streams/{id}/test: - post: - description: Test validates an SSF receiver stream's configuration by checking JWKS reachability, identity resolution, and action preview without processing real events. - operationId: c1.api.ssf_receiver.v1.SSFReceiverStreamService.Test - parameters: - - in: path - name: id - required: true - schema: - description: The ID of the SSF receiver stream to test. - readOnly: false - type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceTestRequestInput' - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceTestResponse' - description: SSFReceiverStreamServiceTestResponse reports the results of the stream configuration test across JWKS, identity, and action readiness checks. - summary: Test - tags: - - SSF Receiver - x-speakeasy-group: SSFReceiverStream - x-speakeasy-name-override: Test - /api/v1/ssf-receiver-streams/{stream_id}/events: + x-stability-level: draft + /api/v1/webhooks: get: - description: List returns a paginated list of events received on a specific SSF receiver stream, ordered by receipt time. - operationId: c1.api.ssf_receiver.v1.SSFReceiverEventService.List + description: List all webhook subscriptions in the tenant, with pagination. + operationId: c1.api.webhooks.v1.WebhooksService.List parameters: - - in: path - name: stream_id - required: true - schema: - description: The ID of the SSF receiver stream to list events for. - readOnly: false - type: string - in: query name: page_size schema: - description: Maximum number of events to return per page. + description: The maximum number of webhooks to return per page. format: int32 - readOnly: false type: integer - in: query name: page_token schema: - description: Token from a previous ListResponse to fetch the next page of results. - readOnly: false - type: string - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverEventServiceListResponse' - description: SSFReceiverEventServiceListResponse contains a page of received SSF events. - summary: List - tags: - - SSF Receiver - x-speakeasy-group: SSFReceiverEvent - x-speakeasy-name-override: List - /api/v1/ssf-receiver-streams/{stream_id}/stats: - get: - description: GetStats retrieves event processing statistics for a specific SSF receiver stream, including counts of received, acted-on, and failed events. - operationId: c1.api.ssf_receiver.v1.SSFReceiverStreamService.GetStats - parameters: - - in: path - name: stream_id - required: true - schema: - description: The ID of the SSF receiver stream to get stats for. - readOnly: false + description: The pagination token from a previous list response to fetch the next page. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.ssf_receiver.v1.SSFReceiverStreamServiceGetStatsResponse' - description: SSFReceiverStreamServiceGetStatsResponse contains the event processing statistics for the stream. - summary: Get Stats - tags: - - SSF Receiver - x-speakeasy-group: SSFReceiverStream - x-speakeasy-name-override: GetStats - /api/v1/step-up/providers: - get: - description: List returns all step-up authentication providers configured for the tenant. - operationId: c1.api.stepup.v1.StepUpProviderService.List - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.stepup.v1.ListStepUpProvidersResponse' + $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceListResponse' description: Successful response summary: List tags: - - Step Up Authentication Providers - x-speakeasy-group: StepUpProvider + - Webhook + x-speakeasy-group: Webhooks x-speakeasy-name-override: List post: - description: Create registers a new step-up authentication provider for the tenant. - operationId: c1.api.stepup.v1.StepUpProviderService.Create + description: Create a new webhook subscription to receive event notifications at the specified URL. + operationId: c1.api.webhooks.v1.WebhooksService.Create requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.stepup.v1.CreateStepUpProviderRequest' + $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceCreateRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.stepup.v1.CreateStepUpProviderResponse' + $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceCreateResponse' description: Successful response summary: Create tags: - - Step Up Authentication Providers - x-speakeasy-group: StepUpProvider + - Webhook + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Webhook#create + x-speakeasy-group: Webhooks x-speakeasy-name-override: Create - /api/v1/step-up/providers/{id}: + /api/v1/webhooks/{id}: delete: - description: Delete removes a step-up authentication provider from the tenant. - operationId: c1.api.stepup.v1.StepUpProviderService.Delete + description: Delete a webhook subscription, stopping all future event deliveries to its URL. + operationId: c1.api.webhooks.v1.WebhooksService.Delete parameters: - in: path name: id required: true schema: - description: The unique identifier of the step-up provider to delete. - readOnly: false + description: The ID of the webhook to delete. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.stepup.v1.DeleteStepUpProviderRequestInput' + $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceDeleteRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.stepup.v1.DeleteStepUpProviderResponse' - description: Successful response + $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceDeleteResponse' + description: Empty response body. Status code indicates success. summary: Delete tags: - - Step Up Authentication Providers - x-speakeasy-group: StepUpProvider + - Webhook + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Webhook#delete + x-speakeasy-group: Webhooks x-speakeasy-name-override: Delete get: - description: Get retrieves a single step-up authentication provider by its ID. - operationId: c1.api.stepup.v1.StepUpProviderService.Get + description: Retrieve a single webhook by its ID. + operationId: c1.api.webhooks.v1.WebhooksService.Get parameters: - in: path name: id required: true schema: - description: The unique identifier of the step-up provider to retrieve. - readOnly: false + description: The ID of the webhook to retrieve. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.stepup.v1.GetStepUpProviderResponse' + $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceGetResponse' description: Successful response summary: Get tags: - - Step Up Authentication Providers - x-speakeasy-group: StepUpProvider + - Webhook + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: null + terraform-resource: Webhook#read + x-speakeasy-group: Webhooks x-speakeasy-name-override: Get post: - description: Update modifies an existing step-up authentication provider's configuration. Use the update mask to specify which fields to change. - operationId: c1.api.stepup.v1.StepUpProviderService.Update + description: Update an existing webhook subscription's properties, such as its URL or display name. + operationId: c1.api.webhooks.v1.WebhooksService.Update parameters: - in: path name: id required: true schema: - description: The unique identifier of the step-up provider. - readOnly: true + description: The unique identifier of the webhook. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.stepup.v1.UpdateStepUpProviderRequestInput' + $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.stepup.v1.UpdateStepUpProviderResponse' + $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceUpdateResponse' description: Successful response summary: Update tags: - - Step Up Authentication Providers - x-speakeasy-group: StepUpProvider + - Webhook + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Webhook#update + x-speakeasy-group: Webhooks x-speakeasy-name-override: Update - /api/v1/step-up/providers/{id}/secret: - post: - description: UpdateSecret rotates the client secret for a step-up authentication provider without modifying other settings. - operationId: c1.api.stepup.v1.StepUpProviderService.UpdateSecret - parameters: - - in: path - name: id - required: true - schema: - description: The unique identifier of the step-up provider whose secret is being rotated. - readOnly: false - type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.stepup.v1.UpdateStepUpProviderSecretRequestInput' - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.stepup.v1.UpdateStepUpProviderSecretResponse' - description: Successful response - summary: Update Secret - tags: - - Step Up Authentication Providers - x-speakeasy-group: StepUpProvider - x-speakeasy-name-override: UpdateSecret - /api/v1/step-up/providers/{id}/test: + /api/v1/webhooks/{id}/test: post: - description: Test initiates a test authentication flow against a step-up provider and returns a redirect URL for the caller to complete verification. - operationId: c1.api.stepup.v1.StepUpProviderService.Test + description: Send a sample event to the webhook URL to verify that the endpoint is reachable and responding correctly. + operationId: c1.api.webhooks.v1.WebhooksService.Test parameters: - in: path name: id required: true schema: - description: The unique identifier of the step-up provider to test. - readOnly: false + description: The ID of the webhook to send a test event to. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.stepup.v1.TestStepUpProviderRequestInput' + $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceTestRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.stepup.v1.TestStepUpProviderResponse' + $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceTestResponse' description: Successful response summary: Test tags: - - Step Up Authentication Providers - x-speakeasy-group: StepUpProvider + - Webhook + x-speakeasy-group: Webhooks x-speakeasy-name-override: Test - /api/v1/step-up/transactions/{id}: - get: - description: Get retrieves a specific step-up transaction by ID - operationId: c1.api.stepup.v1.StepUpTransactionService.Get - parameters: - - in: path - name: id - required: true - schema: - description: ID of the transaction to retrieve - readOnly: false - type: string - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.stepup.v1.GetStepUpTransactionResponse' - description: Response message containing the requested step-up transaction - summary: Get - tags: - - Step Up Authentication Transactions - x-speakeasy-group: StepUpTransaction - x-speakeasy-name-override: Get - /api/v1/systemlog/events: - post: - description: |- - ListEvents pulls Events from the ConductorOne system. - - This endpoint should be used to synchronize the - system log events to external systems. - operationId: c1.api.systemlog.v1.SystemLogService.ListEvents - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.systemlog.v1.SystemLogServiceListEventsRequest' - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.systemlog.v1.SystemLogServiceListEventsResponse' - description: Successful response - summary: List Events - tags: - - System Log - x-speakeasy-group: SystemLog - x-speakeasy-name-override: ListEvents - /api/v1/systemlog/exports: + /api/v1/workload_federation/providers: get: - description: List Exports. - operationId: c1.api.systemlog.v1.ExportService.List - parameters: - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false - type: string + description: ListProviders lists all providers for the tenant. + operationId: c1.api.workload_federation.v1.WorkloadFederationService.ListProviders responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceListResponse' + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceListProvidersResponse' description: Successful response - summary: List + summary: List Providers tags: - - System Log Exporter - x-speakeasy-group: Export - x-speakeasy-name-override: List + - Workload Federation + x-speakeasy-group: WorkloadFederation + x-speakeasy-name-override: ListProviders post: - description: Create a system log export. - operationId: c1.api.systemlog.v1.ExportService.Create + description: |- + CreateProvider registers a new external OIDC issuer for the tenant. + Validates the issuer URL via OIDC discovery synchronously. + operationId: c1.api.workload_federation.v1.WorkloadFederationService.CreateProvider requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceCreateRequest' + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceCreateProviderRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceCreateResponse' + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceCreateProviderResponse' description: Successful response - summary: Create + summary: Create Provider tags: - - System Log Exporter - x-speakeasy-group: Export - x-speakeasy-name-override: Create - /api/v1/systemlog/exports/{export_id}: + - Workload Federation + x-speakeasy-group: WorkloadFederation + x-speakeasy-name-override: CreateProvider + /api/v1/workload_federation/providers/{id}: delete: - description: Delete a system log export by ID. - operationId: c1.api.systemlog.v1.ExportService.Delete + description: DeleteProvider deletes a provider. Fails if active trusts reference it. + operationId: c1.api.workload_federation.v1.WorkloadFederationService.DeleteProvider parameters: - in: path - name: export_id + name: id required: true schema: - description: The exportId field. - readOnly: false + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceDeleteRequestInput' + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceDeleteProviderRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceDeleteResponse' + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceDeleteProviderResponse' description: Successful response - summary: Delete + summary: Delete Provider tags: - - System Log Exporter - x-speakeasy-group: Export - x-speakeasy-name-override: Delete + - Workload Federation + x-speakeasy-group: WorkloadFederation + x-speakeasy-name-override: DeleteProvider get: - description: Get a system log export by ID - operationId: c1.api.systemlog.v1.ExportService.Get - parameters: - - in: path - name: export_id - required: true - schema: - description: The exportId field. - readOnly: false - type: string - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceGetResponse' - description: The ExportServiceGetResponse message contains the system log exporter object. - summary: Get - tags: - - System Log Exporter - x-speakeasy-group: Export - x-speakeasy-name-override: Get - post: - description: Update a system log export by providing an export object and an update mask. - operationId: c1.api.systemlog.v1.ExportService.Update + description: GetProvider returns a provider by ID. + operationId: c1.api.workload_federation.v1.WorkloadFederationService.GetProvider parameters: - in: path - name: export_id + name: id required: true schema: - description: The exportId field. - readOnly: true + description: The id field. type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceUpdateResponse' + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceGetProviderResponse' description: Successful response - summary: Update + summary: Get Provider tags: - - System Log Exporter - x-speakeasy-group: Export - x-speakeasy-name-override: Update - /api/v1/systemlog/exports/{export_id}/events: - post: - description: List audit events belonging to a specific system log export. - operationId: c1.api.systemlog.v1.ExportService.ListEvents + - Workload Federation + x-speakeasy-group: WorkloadFederation + x-speakeasy-name-override: GetProvider + patch: + description: |- + UpdateProvider updates a provider's mutable fields (display_name, description, disabled). + The issuer_url is immutable after creation. + operationId: c1.api.workload_federation.v1.WorkloadFederationService.UpdateProvider parameters: - in: path - name: export_id + name: id required: true schema: - description: The ID of the system log export whose events are being listed. - readOnly: false + description: The unique ID of the provider. + readOnly: true type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceListEventsRequestInput' + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceUpdateProviderRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.systemlog.v1.ExportServiceListEventsResponse' - description: ExportServiceListEventsResponse is the response containing audit events for an export. - summary: List Events + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceUpdateProviderResponse' + description: Successful response + summary: Update Provider tags: - - System Log Exporter - x-speakeasy-group: Export - x-speakeasy-name-override: ListEvents - /api/v1/task/audits: + - Workload Federation + x-speakeasy-group: WorkloadFederation + x-speakeasy-name-override: UpdateProvider + /api/v1/workload_federation/test-cel: post: - description: List audit trail events for a task. - operationId: c1.api.task.v1.TaskAudit.List + description: |- + TestCEL evaluates a CEL expression against provided claims without + requiring a JWT, provider, or trust. Used for expression authoring. + operationId: c1.api.workload_federation.v1.WorkloadFederationService.TestCEL requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditListRequest' + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceTestCELRequest' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskAuditListResponse' + $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceTestCELResponse' description: Successful response - summary: List + summary: Test Cel tags: - - Task - x-speakeasy-group: TaskAudit - x-speakeasy-name-override: List - /api/v1/task/grant: + - Workload Federation + x-speakeasy-group: WorkloadFederation + x-speakeasy-name-override: TestCEL + /api/v1/xaa/resource_servers/{client_audience_mapping_xaa_resource_server_id}/client_audience_mappings/update: post: - description: Create a grant task - operationId: c1.api.task.v1.TaskService.CreateGrantTask + description: |- + Update a mapping's editable fields via update_mask. The resource server + and client key identify the mapping and are immutable. Editable paths: + audience_client_id, disabled. + operationId: c1.api.cross_app_access.v1.XAAClientAudienceMappingService.Update + parameters: + - in: path + name: client_audience_mapping_xaa_resource_server_id + required: true + schema: + description: The resource server this mapping applies to. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskServiceCreateGrantRequest' + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceUpdateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskServiceCreateGrantResponse' - description: The TaskServiceCreateGrantResponse returns a task view which has a task including JSONPATHs to the expanded items in the expanded array. - summary: Create Grant Task + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceUpdateResponse' + description: XAAClientAudienceMappingServiceUpdateResponse returns the updated mapping. + summary: Update tags: - - Task - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: TaskGrant#create - x-speakeasy-group: Task - x-speakeasy-name-override: CreateGrantTask - /api/v1/task/offboarding: - post: - description: Create an offboarding task to remove a user's access across applications. - operationId: c1.api.task.v1.TaskService.CreateOffboardingTask - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskServiceCreateOffboardingRequest' + - Cross-App Access + x-speakeasy-group: XAAClientAudienceMapping + x-speakeasy-name-override: Update + /api/v1/xaa/resource_servers/{xaa_resource_server_id}/client_audience_mappings: + get: + description: |- + List the client audience mappings for a resource server, one page at a + time. + operationId: c1.api.cross_app_access.v1.XAAClientAudienceMappingService.List + parameters: + - in: path + name: xaa_resource_server_id + required: true + schema: + description: The resource server to list mappings for. + type: string + - in: query + name: page_size + schema: + description: Page size (max 100). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskServiceCreateOffboardingResponse' - description: The TaskServiceCreateOffboardingResponse returns the created offboarding task with optional expanded related objects. - summary: Create Offboarding Task + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceListResponse' + description: XAAClientAudienceMappingServiceListResponse returns a page of mappings. + summary: List tags: - - Task - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: TaskOffboarding#create - x-speakeasy-group: Task - x-speakeasy-name-override: CreateOffboardingTask - /api/v1/task/revoke: + - Cross-App Access + x-speakeasy-group: XAAClientAudienceMapping + x-speakeasy-name-override: List post: - description: Create a revoke task - operationId: c1.api.task.v1.TaskService.CreateRevokeTask + description: Create a client audience mapping under a resource server. + operationId: c1.api.cross_app_access.v1.XAAClientAudienceMappingService.Create + parameters: + - in: path + name: xaa_resource_server_id + required: true + schema: + description: The resource server this mapping applies to. + type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskServiceCreateRevokeRequest' + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceCreateRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskServiceCreateRevokeResponse' - description: The TaskServiceCreateRevokeResponse returns a task view which has a task including JSONPATHs to the expanded items in the expanded array. - summary: Create Revoke Task + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceCreateResponse' + description: XAAClientAudienceMappingServiceCreateResponse returns the created mapping. + summary: Create tags: - - Task - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: TaskRevoke#create - x-speakeasy-group: Task - x-speakeasy-name-override: CreateRevokeTask - /api/v1/tasks/{id}: + - Cross-App Access + x-speakeasy-group: XAAClientAudienceMapping + x-speakeasy-name-override: Create + /api/v1/xaa/resource_servers/{xaa_resource_server_id}/client_audience_mappings/by_client_key: get: - description: Get a task by ID - operationId: c1.api.task.v1.TaskService.Get + description: |- + Get a client audience mapping by resource server + client key. The client + key is passed as a query parameter because it may be a URL. + operationId: c1.api.cross_app_access.v1.XAAClientAudienceMappingService.Get parameters: - in: path - name: id + name: xaa_resource_server_id required: true schema: - description: The id field. - readOnly: false + description: The resource server this mapping applies to. + type: string + - in: query + name: client_key + schema: + description: The client key identifying the mapping. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskServiceGetResponse' - description: The TaskServiceGetResponse returns a task view which has a task including JSONPATHs to the expanded items in the expanded array. + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceGetResponse' + description: XAAClientAudienceMappingServiceGetResponse returns a single mapping. summary: Get tags: - - Task - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: null - terraform-resource: Task#read - x-speakeasy-group: Task + - Cross-App Access + x-speakeasy-group: XAAClientAudienceMapping x-speakeasy-name-override: Get - /api/v1/tasks/{task_id}/action/approve: + /api/v1/xaa/resource_servers/{xaa_resource_server_id}/client_audience_mappings/delete: post: - description: Approve the specified policy step on a task. - operationId: c1.api.task.v1.TaskActionsService.Approve + description: |- + Delete a mapping (soft delete). Uses a POST .../delete action route + because the client key travels in the request body, which HTTP DELETE does + not reliably support. + operationId: c1.api.cross_app_access.v1.XAAClientAudienceMappingService.Delete parameters: - in: path - name: task_id + name: xaa_resource_server_id required: true schema: - description: The ID of the task to approve. - readOnly: false + description: The resource server this mapping applies to. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceApproveRequestInput' + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceDeleteRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceApproveResponse' - description: The TaskActionsServiceApproveResponse returns a task view with paths indicating the location of expanded items in the array. - summary: Approve + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceDeleteResponse' + description: XAAClientAudienceMappingServiceDeleteResponse confirms deletion. + summary: Delete tags: - - Task - x-speakeasy-group: TaskActions - x-speakeasy-name-override: Approve - /api/v1/tasks/{task_id}/action/approve-with-step-up: - post: - description: Approve a task that requires step-up authentication. If a verified step-up transaction ID is provided, the approval is processed immediately. Otherwise, a redirect URL is returned for the caller to complete authentication first. - operationId: c1.api.task.v1.TaskActionsService.ApproveWithStepUp + - Cross-App Access + x-speakeasy-group: XAAClientAudienceMapping + x-speakeasy-name-override: Delete + /api/v1/xaa/resource_servers/{xaa_resource_server_id}/client_audience_mappings/history: + get: + description: |- + ListHistory returns the change history (newest first) for a single client + audience mapping — each entry is a snapshot plus who/when metadata. The + client key is passed as a query parameter because it may be a URL. + operationId: c1.api.cross_app_access.v1.XAAClientAudienceMappingService.ListHistory parameters: - in: path - name: task_id + name: xaa_resource_server_id required: true schema: - description: The ID of the task to approve with step-up. - readOnly: false + description: The resource server this mapping applies to. + type: string + - in: query + name: client_key + schema: + description: Stable client registration key identifying the mapping. + type: string + - in: query + name: page_size + schema: + description: Page size (max 200). + format: int32 + type: integer + - in: query + name: page_token + schema: + description: Page token for pagination. type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceApproveWithStepUpRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceApproveWithStepUpResponse' - description: TaskActionsServiceApproveWithStepUpResponse is the response for approving a task with step-up authentication - summary: Approve With Step Up + $ref: '#/components/schemas/c1.api.cross_app_access.v1.XAAClientAudienceMappingServiceListHistoryResponse' + description: |- + XAAClientAudienceMappingServiceListHistoryResponse returns client audience + mapping history entries. + summary: List History tags: - - Task - x-speakeasy-group: TaskActions - x-speakeasy-name-override: ApproveWithStepUp - /api/v1/tasks/{task_id}/action/close: - post: - description: Close a task, ending its workflow. - operationId: c1.api.task.v1.TaskActionsService.Close + - Cross-App Access + x-speakeasy-group: XAAClientAudienceMapping + x-speakeasy-name-override: ListHistory + /api/v2/apps/{app_id}/connectors/{connector_id}/owners: + put: + description: Set replaces all owners for a given connector and role. + operationId: c1.api.app.v2.ConnectorOwners.Set parameters: - in: path - name: task_id + name: app_id required: true schema: - description: The ID of the task to close. - readOnly: false + description: The appId field. type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceCloseRequestInput' - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceCloseResponse' - description: The TaskActionsServiceCloseResponse returns a task view with paths indicating the location of expanded items in the array. - summary: Close - tags: - - Task - x-speakeasy-group: TaskActions - x-speakeasy-name-override: Close - /api/v1/tasks/{task_id}/action/comment: - post: - description: Post a comment on a task without changing its state. - operationId: c1.api.task.v1.TaskActionsService.Comment - parameters: - in: path - name: task_id + name: connector_id required: true schema: - description: The ID of the task to be commented on - readOnly: false + description: The connectorId field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceCommentRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.SetConnectorOwnersV2RequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceCommentResponse' - description: Task actions service comment response returns the task view inluding the expanded array of items that are indicated by the expand mask on the request. - summary: Comment + $ref: '#/components/schemas/c1.api.app.v2.SetConnectorOwnersV2Response' + description: SetConnectorOwnersV2Response is the empty response for setting connector owners. + summary: Set tags: - - Task - x-speakeasy-group: TaskActions - x-speakeasy-name-override: Comment - /api/v1/tasks/{task_id}/action/deny: - post: - description: Deny the specified policy step on a task. In multi-step policies, this may route to fallback steps rather than finalizing the task outcome. - operationId: c1.api.task.v1.TaskActionsService.Deny + - Connector Owner V2 + x-speakeasy-group: ConnectorOwnersV2 + x-speakeasy-name-override: Set + x-stability-level: draft + /api/v2/apps/{app_id}/connectors/{connector_id}/owners/entitlements: + get: + description: SearchEntitlementOwners searches for entitlement ownership sources for a connector. + operationId: c1.api.app.v2.ConnectorOwners.SearchEntitlementOwners parameters: - in: path - name: task_id + name: app_id required: true schema: - description: The ID of the task to be denied. - readOnly: false + description: The appId field. + type: string + - in: path + name: connector_id + required: true + schema: + description: The connectorId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + - in: query + name: role_slug + schema: + description: The roleSlug field. type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceDenyRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceDenyResponse' - description: The TaskActionsServiceDenyResponse returns a task view with paths indicating the location of expanded items in the array. - summary: Deny + $ref: '#/components/schemas/c1.api.app.v2.SearchConnectorEntitlementOwnersResponse' + description: SearchConnectorEntitlementOwnersResponse is the response for searching entitlement ownership sources on a connector. + summary: Search Entitlement Owners tags: - - Task - x-speakeasy-group: TaskActions - x-speakeasy-name-override: Deny - /api/v1/tasks/{task_id}/action/escalate: - post: - description: Escalate a grant task to use the emergency access policy, bypassing the normal approval flow. Only valid for grant tasks. - operationId: c1.api.task.v1.TaskActionsService.EscalateToEmergencyAccess + - Connector Owner V2 + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: Connector_Owner_Entitlement#read + terraform-resource: null + x-speakeasy-group: ConnectorOwnersV2 + x-speakeasy-name-override: SearchEntitlementOwners + x-stability-level: draft + ? /api/v2/apps/{app_id}/connectors/{connector_id}/owners/entitlements/{role_slug}/{app_entitlement_ref_app_id}/{app_entitlement_ref_id} + : delete: + description: DeleteEntitlementOwner deletes an entitlement ownership source for a connector. + operationId: c1.api.app.v2.ConnectorOwners.DeleteEntitlementOwner parameters: - in: path - name: task_id + name: app_id required: true schema: - description: The ID of the task to escalate. - readOnly: false + description: The appId field. + type: string + - in: path + name: connector_id + required: true + schema: + description: The connectorId field. + type: string + - in: path + name: role_slug + required: true + schema: + description: The roleSlug field. + type: string + - in: path + name: app_entitlement_ref_app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: app_entitlement_ref_id + required: true + schema: + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceEscalateToEmergencyAccessRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.DeleteConnectorEntitlementOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskServiceActionResponse' - description: A generic response for task action endpoints, containing the updated task and the ID of the action that was created. - summary: Escalate To Emergency Access + $ref: '#/components/schemas/c1.api.app.v2.DeleteConnectorEntitlementOwnerResponse' + description: DeleteConnectorEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source on a connector. + summary: Delete Entitlement Owner tags: - - Task - x-speakeasy-group: TaskActions - x-speakeasy-name-override: EscalateToEmergencyAccess - /api/v1/tasks/{task_id}/action/process: - post: - description: Trigger immediate processing of a task, bypassing any scheduled wait. For tasks linked to an external system, this also attempts to sync the external state. - operationId: c1.api.task.v1.TaskActionsService.ProcessNow + - Connector Owner V2 + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Connector_Owner_Entitlement#delete + x-speakeasy-group: ConnectorOwnersV2 + x-speakeasy-name-override: DeleteEntitlementOwner + x-stability-level: draft + get: + description: GetEntitlementOwner gets an entitlement ownership source for a connector. + operationId: c1.api.app.v2.ConnectorOwners.GetEntitlementOwner parameters: - in: path - name: task_id + name: app_id required: true schema: - description: The ID of the task to process now. - readOnly: false + description: The appId field. + type: string + - in: path + name: connector_id + required: true + schema: + description: The connectorId field. + type: string + - in: path + name: role_slug + required: true + schema: + description: The roleSlug field. + type: string + - in: path + name: app_entitlement_ref_app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: app_entitlement_ref_id + required: true + schema: + description: The id field. type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceProcessNowRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceProcessNowResponse' - description: The TaskActionsServiceProcessNowResponse returns the task view after triggering immediate processing. - summary: Process Now + $ref: '#/components/schemas/c1.api.app.v2.GetConnectorEntitlementOwnerResponse' + description: GetConnectorEntitlementOwnerResponse is the response for getting an entitlement ownership source on a connector. + summary: Get Entitlement Owner tags: - - Task - x-speakeasy-group: TaskActions - x-speakeasy-name-override: ProcessNow - /api/v1/tasks/{task_id}/action/reassign: + - Connector Owner V2 + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: null + terraform-resource: Connector_Owner_Entitlement#read + x-speakeasy-group: ConnectorOwnersV2 + x-speakeasy-name-override: GetEntitlementOwner + x-stability-level: draft post: - description: Reassign a task's current policy step to a different set of users. The target step must be an approval, provision, or form step. - operationId: c1.api.task.v1.TaskActionsService.Reassign + description: CreateEntitlementOwner creates an entitlement ownership source for a connector. + operationId: c1.api.app.v2.ConnectorOwners.CreateEntitlementOwner parameters: - in: path - name: task_id + name: app_id required: true schema: - description: The ID of the task to reassign. - readOnly: false + description: The appId field. + type: string + - in: path + name: connector_id + required: true + schema: + description: The connectorId field. + type: string + - in: path + name: role_slug + required: true + schema: + description: The roleSlug field. + type: string + - in: path + name: app_entitlement_ref_app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: app_entitlement_ref_id + required: true + schema: + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceReassignRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.CreateConnectorEntitlementOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceReassignResponse' - description: The TaskActionsServiceReassignResponse returns a task view with paths indicating the location of expanded items in the array. - summary: Reassign + $ref: '#/components/schemas/c1.api.app.v2.CreateConnectorEntitlementOwnerResponse' + description: CreateConnectorEntitlementOwnerResponse is the response for creating an entitlement ownership source on a connector. + summary: Create Entitlement Owner tags: - - Task - x-speakeasy-group: TaskActions - x-speakeasy-name-override: Reassign - /api/v1/tasks/{task_id}/action/reset: - post: - description: Reset a task and recalculate its policy from scratch. Unlike Restart, this re-evaluates which policy applies to the task. - operationId: c1.api.task.v1.TaskActionsService.HardReset + - Connector Owner V2 + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Connector_Owner_Entitlement#create + x-speakeasy-group: ConnectorOwnersV2 + x-speakeasy-name-override: CreateEntitlementOwner + x-stability-level: draft + /api/v2/apps/{app_id}/connectors/{connector_id}/owners/users: + get: + description: SearchUserOwners searches for user ownership sources for a connector. + operationId: c1.api.app.v2.ConnectorOwners.SearchUserOwners parameters: - in: path - name: task_id + name: app_id required: true schema: - description: The ID of the task to reset. - readOnly: false + description: The appId field. + type: string + - in: path + name: connector_id + required: true + schema: + description: The connectorId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + - in: query + name: role_slug + schema: + description: The roleSlug field. type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceHardResetRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceHardResetResponse' - description: The TaskActionsServiceHardResetResponse returns the updated task after a hard reset. - summary: Hard Reset + $ref: '#/components/schemas/c1.api.app.v2.SearchConnectorUserOwnersResponse' + description: SearchConnectorUserOwnersResponse is the response for searching user ownership sources on a connector. + summary: Search User Owners tags: - - Task - x-speakeasy-group: TaskActions - x-speakeasy-name-override: HardReset - /api/v1/tasks/{task_id}/action/restart: - post: - description: Restart a task, returning it to the beginning of its current policy workflow. - operationId: c1.api.task.v1.TaskActionsService.Restart + - Connector Owner V2 + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: Connector_Owner_User#read + terraform-resource: null + x-speakeasy-group: ConnectorOwnersV2 + x-speakeasy-name-override: SearchUserOwners + x-stability-level: draft + /api/v2/apps/{app_id}/connectors/{connector_id}/owners/users/{role_slug}/{user_ref_id}: + delete: + description: DeleteUserOwner deletes a user ownership source for a connector. + operationId: c1.api.app.v2.ConnectorOwners.DeleteUserOwner parameters: - in: path - name: task_id + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: connector_id + required: true + schema: + description: The connectorId field. + type: string + - in: path + name: role_slug + required: true + schema: + description: The roleSlug field. + type: string + - in: path + name: user_ref_id required: true schema: - description: The ID of the task to restart. - readOnly: false + description: The id of the user. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceRestartRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.DeleteConnectorUserOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceRestartResponse' - description: The TaskActionsServiceRestartResponse returns the updated task after restarting. - summary: Restart + $ref: '#/components/schemas/c1.api.app.v2.DeleteConnectorUserOwnerResponse' + description: DeleteConnectorUserOwnerResponse is the empty response for deleting a user ownership source on a connector. + summary: Delete User Owner tags: - - Task - x-speakeasy-group: TaskActions - x-speakeasy-name-override: Restart - /api/v1/tasks/{task_id}/action/skip-step: - post: - description: Skip a specific policy step in a task, advancing the task to the next step in the workflow. - operationId: c1.api.task.v1.TaskActionsService.SkipStep + - Connector Owner V2 + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Connector_Owner_User#delete + x-speakeasy-group: ConnectorOwnersV2 + x-speakeasy-name-override: DeleteUserOwner + x-stability-level: draft + get: + description: GetUserOwner gets a user ownership source for a connector. + operationId: c1.api.app.v2.ConnectorOwners.GetUserOwner parameters: - in: path - name: task_id + name: app_id required: true schema: - description: The ID of the task containing the step to skip. - readOnly: false + description: The appId field. + type: string + - in: path + name: connector_id + required: true + schema: + description: The connectorId field. + type: string + - in: path + name: role_slug + required: true + schema: + description: The roleSlug field. + type: string + - in: path + name: user_ref_id + required: true + schema: + description: The id of the user. type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceSkipStepRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskServiceActionResponse' - description: A generic response for task action endpoints, containing the updated task and the ID of the action that was created. - summary: Skip Step + $ref: '#/components/schemas/c1.api.app.v2.GetConnectorUserOwnerResponse' + description: GetConnectorUserOwnerResponse is the response for getting a user ownership source on a connector. + summary: Get User Owner tags: - - Task - x-speakeasy-group: TaskActions - x-speakeasy-name-override: SkipStep - /api/v1/tasks/{task_id}/action/update-grant-duration: + - Connector Owner V2 + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: null + terraform-resource: Connector_Owner_User#read + x-speakeasy-group: ConnectorOwnersV2 + x-speakeasy-name-override: GetUserOwner + x-stability-level: draft post: - description: Update the grant duration for a task. Only applies to grant tasks with a single entitlement that are not in a provision step. The new duration must not exceed the entitlement's maximum allowed provision time. - operationId: c1.api.task.v1.TaskActionsService.UpdateGrantDuration + description: CreateUserOwner creates a user ownership source for a connector. + operationId: c1.api.app.v2.ConnectorOwners.CreateUserOwner parameters: - in: path - name: task_id + name: app_id required: true schema: - description: The ID of the task to update the grant duration for. - readOnly: false + description: The appId field. + type: string + - in: path + name: connector_id + required: true + schema: + description: The connectorId field. + type: string + - in: path + name: role_slug + required: true + schema: + description: The roleSlug field. + type: string + - in: path + name: user_ref_id + required: true + schema: + description: The id of the user. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceUpdateGrantDurationRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.CreateConnectorUserOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskServiceActionResponse' - description: A generic response for task action endpoints, containing the updated task and the ID of the action that was created. - summary: Update Grant Duration + $ref: '#/components/schemas/c1.api.app.v2.CreateConnectorUserOwnerResponse' + description: CreateConnectorUserOwnerResponse is the response for creating a user ownership source on a connector. + summary: Create User Owner tags: - - Task - x-speakeasy-group: TaskActions - x-speakeasy-name-override: UpdateGrantDuration - /api/v1/tasks/{task_id}/action/update-request-data: - post: - description: Update the request data on a task that is currently in a form step. The submitted data is validated against the form schema before being applied. - operationId: c1.api.task.v1.TaskActionsService.UpdateRequestData + - Connector Owner V2 + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: Connector_Owner_User#create + x-speakeasy-group: ConnectorOwnersV2 + x-speakeasy-name-override: CreateUserOwner + x-stability-level: draft + /api/v2/apps/{app_id}/entitlements/{entitlement_id}/owners: + put: + description: Set replaces all owners for a given app entitlement and role. + operationId: c1.api.app.v2.AppEntitlementOwners.Set parameters: - in: path - name: task_id + name: app_id required: true schema: - description: The ID of the task containing the request data to update. - readOnly: false + description: The appId field. + type: string + - in: path + name: entitlement_id + required: true + schema: + description: The entitlementId field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskActionsServiceUpdateRequestDataRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.SetAppEntitlementOwnersRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.task.v1.TaskServiceActionResponse' - description: A generic response for task action endpoints, containing the updated task and the ID of the action that was created. - summary: Update Request Data + $ref: '#/components/schemas/c1.api.app.v2.SetAppEntitlementOwnersResponse' + description: SetAppEntitlementOwnersResponse is the empty response for setting app entitlement owners. + summary: Set tags: - - Task - x-speakeasy-group: TaskActions - x-speakeasy-name-override: UpdateRequestData - /api/v1/users: + - App Entitlement Owner V2 + x-speakeasy-group: AppEntitlementOwnersV2 + x-speakeasy-name-override: Set + x-stability-level: draft + /api/v2/apps/{app_id}/entitlements/{entitlement_id}/owners/entitlements: get: - description: List users. - operationId: c1.api.user.v1.UserService.List + description: SearchEntitlementOwners searches for entitlement ownership sources for an app entitlement. + operationId: c1.api.app.v2.AppEntitlementOwners.SearchEntitlementOwners parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: entitlement_id + required: true + schema: + description: The entitlementId field. + type: string - in: query name: page_size schema: description: The pageSize field. format: int32 - readOnly: false type: integer - in: query name: page_token schema: description: The pageToken field. - readOnly: false + type: string + - in: query + name: role_slug + schema: + description: The roleSlug field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.user.v1.UserServiceListResponse' - description: The UserServiceListResponse message contains a list of results and a nextPageToken if applicable. - summary: List + $ref: '#/components/schemas/c1.api.app.v2.SearchAppEntitlementEntitlementOwnersResponse' + description: SearchAppEntitlementEntitlementOwnersResponse is the response for searching entitlement ownership sources on an entitlement. + summary: Search Entitlement Owners tags: - - User - x-speakeasy-group: User - x-speakeasy-name-override: List - /api/v1/users/{id}: - get: - description: Get a user by ID. - operationId: c1.api.user.v1.UserService.Get + - App Entitlement Owner V2 + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: App_Entitlement_Owner_Entitlement#read + terraform-resource: null + x-speakeasy-group: AppEntitlementOwnersV2 + x-speakeasy-name-override: SearchEntitlementOwners + x-stability-level: draft + ? /api/v2/apps/{app_id}/entitlements/{entitlement_id}/owners/entitlements/{role_slug}/{app_entitlement_ref_app_id}/{app_entitlement_ref_id} + : delete: + description: DeleteEntitlementOwner deletes an entitlement ownership source for an app entitlement. + operationId: c1.api.app.v2.AppEntitlementOwners.DeleteEntitlementOwner parameters: - in: path - name: id + name: app_id required: true schema: - description: The id field. - readOnly: false + description: The appId field. type: string - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.user.v1.UserServiceGetResponse' - description: The UserServiceGetResponse returns a user view which has a user including JSONPATHs to the expanded items in the expanded array. - summary: Get - tags: - - User - x-speakeasy-group: User - x-speakeasy-name-override: Get - /api/v1/users/{user_id}/profile-types: - get: - description: Retrieve the profile types associated with a user across their connected apps. - operationId: c1.api.user.v1.UserService.GetUserProfileTypes - parameters: - in: path - name: user_id + name: entitlement_id required: true schema: - description: The ID of the user whose profile types are being retrieved. - readOnly: false + description: The entitlementId field. type: string - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.user.v1.GetUserProfileTypesResponse' - description: GetUserProfileTypesResponse is the response containing the profile types for a user. - summary: Get User Profile Types - tags: - - User - x-speakeasy-group: User - x-speakeasy-name-override: GetUserProfileTypes - /api/v1/users/{user_id}/set-delegation-by-admin: - post: - description: Set or update an expiring delegation binding for a user, allowing an admin to designate a temporary delegate. - operationId: c1.api.user.v1.UserService.SetExpiringUserDelegationBindingByAdmin - parameters: - in: path - name: user_id + name: role_slug required: true schema: - description: The ID of the user whose tasks will be delegated. - readOnly: false + description: The roleSlug field. type: string - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.user.v1.SetExpiringUserDelegationBindingByAdminRequestInput' - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.user.v1.SetExpiringUserDelegationBindingByAdminResponse' - description: SetExpiringUserDelegationBindingByAdminResponse is the response containing the created or updated delegation binding. - summary: Set Expiring User Delegation Binding By Admin - tags: - - User - x-speakeasy-group: User - x-speakeasy-name-override: SetExpiringUserDelegationBindingByAdmin - /api/v1/vaults: - post: - description: Create provisions a new external secret storage vault and returns it. - operationId: c1.api.vault.v1.VaultService.Create - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.vault.v1.VaultServiceCreateRequest' - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.vault.v1.VaultServiceCreateResponse' - description: VaultServiceCreateResponse is the response message for creating a new vault. - summary: Create - tags: - - Vault - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: Vault#create - x-speakeasy-group: Vault - x-speakeasy-name-override: Create - x-stability-level: draft - /api/v1/vaults/{id}: - delete: - description: Delete a vault by its ID. Active connectors using this vault will no longer be able to access their stored credentials. - operationId: c1.api.vault.v1.VaultService.Delete - parameters: - in: path - name: id + name: app_entitlement_ref_app_id required: true schema: - description: The unique identifier of the vault to delete. - readOnly: false + description: The appId field. + type: string + - in: path + name: app_entitlement_ref_id + required: true + schema: + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.vault.v1.VaultServiceDeleteRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.DeleteAppEntitlementEntitlementOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.vault.v1.VaultServiceDeleteResponse' - description: Empty response body. Status code indicates success. - summary: Delete + $ref: '#/components/schemas/c1.api.app.v2.DeleteAppEntitlementEntitlementOwnerResponse' + description: DeleteAppEntitlementEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source on an entitlement. + summary: Delete Entitlement Owner tags: - - Vault + - App Entitlement Owner V2 x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Vault#delete - x-speakeasy-group: Vault - x-speakeasy-name-override: Delete + terraform-resource: App_Entitlement_Owner_Entitlement#delete + x-speakeasy-group: AppEntitlementOwnersV2 + x-speakeasy-name-override: DeleteEntitlementOwner x-stability-level: draft get: - description: Get returns a single vault by its ID. - operationId: c1.api.vault.v1.VaultService.Get + description: GetEntitlementOwner gets an entitlement ownership source for an app entitlement. + operationId: c1.api.app.v2.AppEntitlementOwners.GetEntitlementOwner parameters: - in: path - name: id + name: app_id required: true schema: - description: The unique identifier of the vault to retrieve. - readOnly: false + description: The appId field. + type: string + - in: path + name: entitlement_id + required: true + schema: + description: The entitlementId field. + type: string + - in: path + name: role_slug + required: true + schema: + description: The roleSlug field. + type: string + - in: path + name: app_entitlement_ref_app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: app_entitlement_ref_id + required: true + schema: + description: The id field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.vault.v1.VaultServiceGetResponse' - description: VaultServiceGetResponse is the response message containing the requested vault. - summary: Get + $ref: '#/components/schemas/c1.api.app.v2.GetAppEntitlementEntitlementOwnerResponse' + description: GetAppEntitlementEntitlementOwnerResponse is the response for getting an entitlement ownership source on an entitlement. + summary: Get Entitlement Owner tags: - - Vault + - App Entitlement Owner V2 x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: terraform-datasource: null - terraform-resource: Vault#read - x-speakeasy-group: Vault - x-speakeasy-name-override: Get + terraform-resource: App_Entitlement_Owner_Entitlement#read + x-speakeasy-group: AppEntitlementOwnersV2 + x-speakeasy-name-override: GetEntitlementOwner x-stability-level: draft post: - description: Update modifies an existing vault's properties using a field mask. - operationId: c1.api.vault.v1.VaultService.Update + description: CreateEntitlementOwner creates an entitlement ownership source for an app entitlement. + operationId: c1.api.app.v2.AppEntitlementOwners.CreateEntitlementOwner parameters: - in: path - name: id + name: app_id required: true schema: - description: The unique identifier of the vault. - readOnly: false + description: The appId field. + type: string + - in: path + name: entitlement_id + required: true + schema: + description: The entitlementId field. + type: string + - in: path + name: role_slug + required: true + schema: + description: The roleSlug field. + type: string + - in: path + name: app_entitlement_ref_app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: app_entitlement_ref_id + required: true + schema: + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.vault.v1.VaultServiceUpdateRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.CreateAppEntitlementEntitlementOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.vault.v1.VaultServiceUpdateResponse' - description: VaultServiceUpdateResponse is the response message containing the updated vault. - summary: Update + $ref: '#/components/schemas/c1.api.app.v2.CreateAppEntitlementEntitlementOwnerResponse' + description: CreateAppEntitlementEntitlementOwnerResponse is the response for creating an entitlement ownership source on an entitlement. + summary: Create Entitlement Owner tags: - - Vault + - App Entitlement Owner V2 x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Vault#update - x-speakeasy-group: Vault - x-speakeasy-name-override: Update + terraform-resource: App_Entitlement_Owner_Entitlement#create + x-speakeasy-group: AppEntitlementOwnersV2 + x-speakeasy-name-override: CreateEntitlementOwner x-stability-level: draft - /api/v1/webhooks: + /api/v2/apps/{app_id}/entitlements/{entitlement_id}/owners/users: get: - description: List all webhook subscriptions in the tenant, with pagination. - operationId: c1.api.webhooks.v1.WebhooksService.List + description: SearchUserOwners searches for user ownership sources of this app entitlement. + operationId: c1.api.app.v2.AppEntitlementOwners.SearchUserOwners parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: entitlement_id + required: true + schema: + description: The entitlementId field. + type: string - in: query name: page_size schema: - description: The maximum number of webhooks to return per page. + description: The pageSize field. format: int32 - readOnly: false type: integer - in: query name: page_token schema: - description: The pagination token from a previous list response to fetch the next page. - readOnly: false + description: The pageToken field. + type: string + - in: query + name: role_slug + schema: + description: The roleSlug field. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceListResponse' - description: Successful response - summary: List - tags: - - Webhook - x-speakeasy-group: Webhooks - x-speakeasy-name-override: List - post: - description: Create a new webhook subscription to receive event notifications at the specified URL. - operationId: c1.api.webhooks.v1.WebhooksService.Create - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceCreateRequest' - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceCreateResponse' - description: Successful response - summary: Create + $ref: '#/components/schemas/c1.api.app.v2.SearchAppEntitlementUserOwnersResponse' + description: SearchAppEntitlementUserOwnersResponse is the response for searching user ownership sources on an entitlement. + summary: Search User Owners tags: - - Webhook + - App Entitlement Owner V2 x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Webhook#create - x-speakeasy-group: Webhooks - x-speakeasy-name-override: Create - /api/v1/webhooks/{id}: + terraform-datasource: App_Entitlement_Owner_User#read + terraform-resource: null + x-speakeasy-group: AppEntitlementOwnersV2 + x-speakeasy-name-override: SearchUserOwners + x-stability-level: draft + /api/v2/apps/{app_id}/entitlements/{entitlement_id}/owners/users/{role_slug}/{user_ref_id}: delete: - description: Delete a webhook subscription, stopping all future event deliveries to its URL. - operationId: c1.api.webhooks.v1.WebhooksService.Delete + description: DeleteUserOwner deletes a user ownership source for an app entitlement. + operationId: c1.api.app.v2.AppEntitlementOwners.DeleteUserOwner parameters: - in: path - name: id + name: app_id required: true schema: - description: The ID of the webhook to delete. - readOnly: false + description: The appId field. + type: string + - in: path + name: entitlement_id + required: true + schema: + description: The entitlementId field. + type: string + - in: path + name: role_slug + required: true + schema: + description: The roleSlug field. + type: string + - in: path + name: user_ref_id + required: true + schema: + description: The id of the user. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceDeleteRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.DeleteAppEntitlementUserOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceDeleteResponse' - description: Empty response body. Status code indicates success. - summary: Delete + $ref: '#/components/schemas/c1.api.app.v2.DeleteAppEntitlementUserOwnerResponse' + description: DeleteAppEntitlementUserOwnerResponse is the empty response for deleting a user ownership source on an entitlement. + summary: Delete User Owner tags: - - Webhook + - App Entitlement Owner V2 x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Webhook#delete - x-speakeasy-group: Webhooks - x-speakeasy-name-override: Delete + terraform-resource: App_Entitlement_Owner_User#delete + x-speakeasy-group: AppEntitlementOwnersV2 + x-speakeasy-name-override: DeleteUserOwner + x-stability-level: draft get: - description: Retrieve a single webhook by its ID. - operationId: c1.api.webhooks.v1.WebhooksService.Get + description: GetUserOwner gets a user ownership source for an app entitlement. + operationId: c1.api.app.v2.AppEntitlementOwners.GetUserOwner parameters: - in: path - name: id + name: app_id required: true schema: - description: The ID of the webhook to retrieve. - readOnly: false + description: The appId field. + type: string + - in: path + name: entitlement_id + required: true + schema: + description: The entitlementId field. + type: string + - in: path + name: role_slug + required: true + schema: + description: The roleSlug field. + type: string + - in: path + name: user_ref_id + required: true + schema: + description: The id of the user. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceGetResponse' - description: Successful response - summary: Get + $ref: '#/components/schemas/c1.api.app.v2.GetAppEntitlementUserOwnerResponse' + description: GetAppEntitlementUserOwnerResponse is the response for getting a user ownership source on an entitlement. + summary: Get User Owner tags: - - Webhook + - App Entitlement Owner V2 x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: terraform-datasource: null - terraform-resource: Webhook#read - x-speakeasy-group: Webhooks - x-speakeasy-name-override: Get + terraform-resource: App_Entitlement_Owner_User#read + x-speakeasy-group: AppEntitlementOwnersV2 + x-speakeasy-name-override: GetUserOwner + x-stability-level: draft post: - description: Update an existing webhook subscription's properties, such as its URL or display name. - operationId: c1.api.webhooks.v1.WebhooksService.Update + description: CreateUserOwner creates a user ownership source for an app entitlement. + operationId: c1.api.app.v2.AppEntitlementOwners.CreateUserOwner parameters: - in: path - name: id + name: app_id required: true schema: - description: The unique identifier of the webhook. - readOnly: false + description: The appId field. + type: string + - in: path + name: entitlement_id + required: true + schema: + description: The entitlementId field. + type: string + - in: path + name: role_slug + required: true + schema: + description: The roleSlug field. + type: string + - in: path + name: user_ref_id + required: true + schema: + description: The id of the user. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceUpdateRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.CreateAppEntitlementUserOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceUpdateResponse' - description: Successful response - summary: Update + $ref: '#/components/schemas/c1.api.app.v2.CreateAppEntitlementUserOwnerResponse' + description: CreateAppEntitlementUserOwnerResponse is the response for creating a user ownership source on an entitlement. + summary: Create User Owner tags: - - Webhook + - App Entitlement Owner V2 x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: Webhook#update - x-speakeasy-group: Webhooks - x-speakeasy-name-override: Update - /api/v1/webhooks/{id}/test: - post: - description: Send a sample event to the webhook URL to verify that the endpoint is reachable and responding correctly. - operationId: c1.api.webhooks.v1.WebhooksService.Test + terraform-resource: App_Entitlement_Owner_User#create + x-speakeasy-group: AppEntitlementOwnersV2 + x-speakeasy-name-override: CreateUserOwner + x-stability-level: draft + /api/v2/apps/{app_id}/owners: + put: + description: Set replaces all user owners for a given app and role. + operationId: c1.api.app.v2.AppOwners.Set parameters: - in: path - name: id + name: app_id required: true schema: - description: The ID of the webhook to send a test event to. - readOnly: false + description: The appId field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceTestRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.SetAppOwnersRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.webhooks.v1.WebhooksServiceTestResponse' - description: Successful response - summary: Test + $ref: '#/components/schemas/c1.api.app.v2.SetAppOwnersResponse' + description: SetAppOwnersResponse is the empty response for setting app owners. + summary: Set tags: - - Webhook - x-speakeasy-group: Webhooks - x-speakeasy-name-override: Test - /api/v1/workload_federation/providers: + - App Owner V2 + x-speakeasy-group: AppOwnersV2 + x-speakeasy-name-override: Set + x-stability-level: draft + /api/v2/apps/{app_id}/owners/entitlements: get: - description: ListProviders lists all providers for the tenant. - operationId: c1.api.workload_federation.v1.WorkloadFederationService.ListProviders - responses: - "200": - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceListProvidersResponse' - description: Successful response - summary: List Providers - tags: - - Workload Federation - x-speakeasy-group: WorkloadFederation - x-speakeasy-name-override: ListProviders - post: - description: |- - CreateProvider registers a new external OIDC issuer for the tenant. - Validates the issuer URL via OIDC discovery synchronously. - operationId: c1.api.workload_federation.v1.WorkloadFederationService.CreateProvider - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceCreateProviderRequest' + description: SearchEntitlementOwners searches for entitlement ownership sources for an app. + operationId: c1.api.app.v2.AppOwners.SearchEntitlementOwners + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + - in: query + name: role_slug + schema: + description: The roleSlug field. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceCreateProviderResponse' - description: Successful response - summary: Create Provider + $ref: '#/components/schemas/c1.api.app.v2.SearchAppEntitlementOwnersResponse' + description: SearchEntitlementOwnersResponse is the response for searching entitlement ownership sources. + summary: Search Entitlement Owners tags: - - Workload Federation - x-speakeasy-group: WorkloadFederation - x-speakeasy-name-override: CreateProvider - /api/v1/workload_federation/providers/{id}: + - App Owner V2 + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: App_Owner_Entitlement#read + terraform-resource: null + x-speakeasy-group: AppOwnersV2 + x-speakeasy-name-override: SearchEntitlementOwners + x-stability-level: draft + /api/v2/apps/{app_id}/owners/entitlements/{role_slug}/{app_entitlement_ref_app_id}/{app_entitlement_ref_id}: delete: - description: DeleteProvider deletes a provider. Fails if active trusts reference it. - operationId: c1.api.workload_federation.v1.WorkloadFederationService.DeleteProvider + description: DeleteEntitlementOwner deletes an entitlement ownership source for an app. + operationId: c1.api.app.v2.AppOwners.DeleteEntitlementOwner parameters: - in: path - name: id + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: role_slug + required: true + schema: + description: The roleSlug field. + type: string + - in: path + name: app_entitlement_ref_app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: app_entitlement_ref_id required: true schema: description: The id field. - readOnly: false type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceDeleteProviderRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.DeleteAppEntitlementOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceDeleteProviderResponse' - description: Successful response - summary: Delete Provider + $ref: '#/components/schemas/c1.api.app.v2.DeleteAppEntitlementOwnerResponse' + description: DeleteEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source. + summary: Delete Entitlement Owner tags: - - Workload Federation - x-speakeasy-group: WorkloadFederation - x-speakeasy-name-override: DeleteProvider + - App Owner V2 + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App_Owner_Entitlement#delete + x-speakeasy-group: AppOwnersV2 + x-speakeasy-name-override: DeleteEntitlementOwner + x-stability-level: draft get: - description: GetProvider returns a provider by ID. - operationId: c1.api.workload_federation.v1.WorkloadFederationService.GetProvider + description: GetEntitlementOwner gets an entitlement ownership source for an app. + operationId: c1.api.app.v2.AppOwners.GetEntitlementOwner parameters: - in: path - name: id + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: role_slug + required: true + schema: + description: The roleSlug field. + type: string + - in: path + name: app_entitlement_ref_app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: app_entitlement_ref_id required: true schema: description: The id field. - readOnly: false type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceGetProviderResponse' - description: Successful response - summary: Get Provider + $ref: '#/components/schemas/c1.api.app.v2.GetAppEntitlementOwnerResponse' + description: GetEntitlementOwnerResponse is the response for getting an entitlement ownership source. + summary: Get Entitlement Owner tags: - - Workload Federation - x-speakeasy-group: WorkloadFederation - x-speakeasy-name-override: GetProvider - patch: - description: |- - UpdateProvider updates a provider's mutable fields (display_name, description, disabled). - The issuer_url is immutable after creation. - operationId: c1.api.workload_federation.v1.WorkloadFederationService.UpdateProvider + - App Owner V2 + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: null + terraform-resource: App_Owner_Entitlement#read + x-speakeasy-group: AppOwnersV2 + x-speakeasy-name-override: GetEntitlementOwner + x-stability-level: draft + post: + description: CreateEntitlementOwner creates an entitlement ownership source for an app. + operationId: c1.api.app.v2.AppOwners.CreateEntitlementOwner parameters: - in: path - name: id + name: app_id required: true schema: - description: The unique ID of the provider. - readOnly: true + description: The appId field. + type: string + - in: path + name: role_slug + required: true + schema: + description: The roleSlug field. + type: string + - in: path + name: app_entitlement_ref_app_id + required: true + schema: + description: The appId field. + type: string + - in: path + name: app_entitlement_ref_id + required: true + schema: + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceUpdateProviderRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.CreateAppEntitlementOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceUpdateProviderResponse' - description: Successful response - summary: Update Provider + $ref: '#/components/schemas/c1.api.app.v2.CreateAppEntitlementOwnerResponse' + description: CreateEntitlementOwnerResponse is the response for creating an entitlement ownership source. + summary: Create Entitlement Owner tags: - - Workload Federation - x-speakeasy-group: WorkloadFederation - x-speakeasy-name-override: UpdateProvider - /api/v1/workload_federation/test-cel: - post: - description: |- - TestCEL evaluates a CEL expression against provided claims without - requiring a JWT, provider, or trust. Used for expression authoring. - operationId: c1.api.workload_federation.v1.WorkloadFederationService.TestCEL - requestBody: - content: - application/json: - schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceTestCELRequest' + - App Owner V2 + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App_Owner_Entitlement#create + x-speakeasy-group: AppOwnersV2 + x-speakeasy-name-override: CreateEntitlementOwner + x-stability-level: draft + /api/v2/apps/{app_id}/owners/users: + get: + description: SearchUserOwners searches for user ownership sources for an app. + operationId: c1.api.app.v2.AppOwners.SearchUserOwners + parameters: + - in: path + name: app_id + required: true + schema: + description: The appId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + - in: query + name: role_slug + schema: + description: The roleSlug field. + type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.workload_federation.v1.WorkloadFederationServiceTestCELResponse' - description: Successful response - summary: Test Cel + $ref: '#/components/schemas/c1.api.app.v2.SearchAppUserOwnersResponse' + description: SearchUserOwnersResponse is the response for searching user ownership sources. + summary: Search User Owners tags: - - Workload Federation - x-speakeasy-group: WorkloadFederation - x-speakeasy-name-override: TestCEL - /api/v2/apps/{app_id}/connectors/{connector_id}/owners: - put: - description: Set replaces all owners for a given connector and role. - operationId: c1.api.app.v2.ConnectorOwners.Set + - App Owner V2 + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: App_Owner_User#read + terraform-resource: null + x-speakeasy-group: AppOwnersV2 + x-speakeasy-name-override: SearchUserOwners + x-stability-level: draft + /api/v2/apps/{app_id}/owners/users/{role_slug}/{user_ref_id}: + delete: + description: DeleteUserOwner deletes a user ownership source for an app. + operationId: c1.api.app.v2.AppOwners.DeleteUserOwner parameters: - in: path name: app_id required: true schema: description: The appId field. - readOnly: false type: string - in: path - name: connector_id + name: role_slug required: true schema: - description: The connectorId field. - readOnly: false + description: The roleSlug field. + type: string + - in: path + name: user_ref_id + required: true + schema: + description: The id of the user. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.SetConnectorOwnersV2RequestInput' + $ref: '#/components/schemas/c1.api.app.v2.DeleteAppUserOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.SetConnectorOwnersV2Response' - description: SetConnectorOwnersV2Response is the empty response for setting connector owners. - summary: Set + $ref: '#/components/schemas/c1.api.app.v2.DeleteAppUserOwnerResponse' + description: DeleteUserOwnerResponse is the empty response for deleting a user ownership source. + summary: Delete User Owner tags: - - Connector Owner V2 - x-speakeasy-group: ConnectorOwnersV2 - x-speakeasy-name-override: Set + - App Owner V2 + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App_Owner_User#delete + x-speakeasy-group: AppOwnersV2 + x-speakeasy-name-override: DeleteUserOwner x-stability-level: draft - /api/v2/apps/{app_id}/connectors/{connector_id}/owners/entitlements: get: - description: SearchEntitlementOwners searches for the entitlement ownership for a connector. - operationId: c1.api.app.v2.ConnectorOwners.SearchEntitlementOwners + description: GetUserOwner gets a user ownership source for an app. + operationId: c1.api.app.v2.AppOwners.GetUserOwner parameters: - in: path name: app_id required: true schema: description: The appId field. - readOnly: false type: string - in: path - name: connector_id + name: role_slug required: true schema: - description: The connectorId field. - readOnly: false - type: string - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false + description: The roleSlug field. type: string - - in: query - name: role_slug + - in: path + name: user_ref_id + required: true schema: - description: The roleSlug field. - readOnly: false + description: The id of the user. type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.SearchConnectorEntitlementOwnersResponse' - description: SearchConnectorEntitlementOwnersResponse is the response for searching entitlement ownership sources on a connector. - summary: Search Entitlement Owners + $ref: '#/components/schemas/c1.api.app.v2.GetAppUserOwnerResponse' + description: GetUserOwnerResponse is the response for getting a user ownership source. + summary: Get User Owner tags: - - Connector Owner V2 - x-speakeasy-group: ConnectorOwnersV2 - x-speakeasy-name-override: SearchEntitlementOwners + - App Owner V2 + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-datasource: null + terraform-resource: App_Owner_User#read + x-speakeasy-group: AppOwnersV2 + x-speakeasy-name-override: GetUserOwner x-stability-level: draft - /api/v2/apps/{app_id}/connectors/{connector_id}/owners/users: - get: - description: SearchUserOwners searches for users who are owners of this connector. - operationId: c1.api.app.v2.ConnectorOwners.SearchUserOwners + post: + description: CreateUserOwner creates a user ownership source for an app. + operationId: c1.api.app.v2.AppOwners.CreateUserOwner parameters: - in: path name: app_id required: true schema: description: The appId field. - readOnly: false type: string - in: path - name: connector_id + name: role_slug required: true schema: - description: The connectorId field. - readOnly: false - type: string - - in: query - name: page_size - schema: - description: The pageSize field. - format: int32 - readOnly: false - type: integer - - in: query - name: page_token - schema: - description: The pageToken field. - readOnly: false + description: The roleSlug field. type: string - - in: query - name: role_slug + - in: path + name: user_ref_id + required: true schema: - description: The roleSlug field. - readOnly: false + description: The id of the user. type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v2.CreateAppUserOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.SearchConnectorUserOwnersResponse' - description: SearchConnectorUserOwnersResponse is the response for searching user ownership sources on a connector. - summary: Search User Owners + $ref: '#/components/schemas/c1.api.app.v2.CreateAppUserOwnerResponse' + description: CreateUserOwnerResponse is the response for creating a user ownership source. + summary: Create User Owner tags: - - Connector Owner V2 - x-speakeasy-group: ConnectorOwnersV2 - x-speakeasy-name-override: SearchUserOwners + - App Owner V2 + x-speakeasy-entity-missing-codes: + - 404 + x-speakeasy-entity-operation: + terraform-resource: App_Owner_User#create + x-speakeasy-group: AppOwnersV2 + x-speakeasy-name-override: CreateUserOwner x-stability-level: draft - /api/v2/apps/{app_id}/entitlements/{entitlement_id}/owners: + /api/v2/apps/{app_id}/resource_types/{resource_type_id}/resources/{resource_id}/owners: put: - description: Set replaces all owners for a given app entitlement and role. - operationId: c1.api.app.v2.AppEntitlementOwners.Set + description: Set replaces all owners for a given app resource and role. + operationId: c1.api.app.v2.AppResourceOwnersV2.Set parameters: - in: path name: app_id required: true schema: - description: The appId field. - readOnly: false + description: The appId field. + type: string + - in: path + name: resource_type_id + required: true + schema: + description: The resourceTypeId field. type: string - in: path - name: entitlement_id + name: resource_id required: true schema: - description: The entitlementId field. - readOnly: false + description: The resourceId field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.SetAppEntitlementOwnersRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.SetAppResourceOwnersV2RequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.SetAppEntitlementOwnersResponse' - description: SetAppEntitlementOwnersResponse is the empty response for setting app entitlement owners. + $ref: '#/components/schemas/c1.api.app.v2.SetAppResourceOwnersV2Response' + description: SetAppResourceOwnersV2Response is the empty response for setting app resource owners. summary: Set tags: - - App Entitlement Owner V2 - x-speakeasy-group: AppEntitlementOwnersV2 + - App Resource Owner V2 + x-speakeasy-group: AppResourceOwnersV2 x-speakeasy-name-override: Set x-stability-level: draft - /api/v2/apps/{app_id}/entitlements/{entitlement_id}/owners/entitlements: + /api/v2/apps/{app_id}/resource_types/{resource_type_id}/resources/{resource_id}/owners/entitlements: get: - description: SearchEntitlementOwners searches for entitlement ownership sources for an app entitlement. - operationId: c1.api.app.v2.AppEntitlementOwners.SearchEntitlementOwners + description: SearchEntitlementOwners searches for entitlement ownership sources of this app resource. + operationId: c1.api.app.v2.AppResourceOwnersV2.SearchEntitlementOwners parameters: - in: path name: app_id required: true schema: description: The appId field. - readOnly: false type: string - in: path - name: entitlement_id + name: resource_type_id required: true schema: - description: The entitlementId field. - readOnly: false + description: The resourceTypeId field. + type: string + - in: path + name: resource_id + required: true + schema: + description: The resourceId field. type: string - in: query name: page_size schema: description: The pageSize field. format: int32 - readOnly: false type: integer - in: query name: page_token schema: description: The pageToken field. - readOnly: false type: string - in: query name: role_slug schema: description: The roleSlug field. - readOnly: false type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.SearchAppEntitlementEntitlementOwnersResponse' - description: SearchAppEntitlementEntitlementOwnersResponse is the response for searching entitlement ownership sources on an entitlement. + $ref: '#/components/schemas/c1.api.app.v2.SearchAppResourceEntitlementOwnersResponse' + description: SearchAppResourceEntitlementOwnersResponse is the response for searching entitlement ownership sources on a resource. summary: Search Entitlement Owners tags: - - App Entitlement Owner V2 + - App Resource Owner V2 x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-datasource: App_Entitlement_Owner_Entitlement#read + terraform-datasource: App_Resource_Owner_Entitlement#read terraform-resource: null - x-speakeasy-group: AppEntitlementOwnersV2 + x-speakeasy-group: AppResourceOwnersV2 x-speakeasy-name-override: SearchEntitlementOwners x-stability-level: draft - ? /api/v2/apps/{app_id}/entitlements/{entitlement_id}/owners/entitlements/{role_slug}/{app_entitlement_ref_app_id}/{app_entitlement_ref_id} + ? /api/v2/apps/{app_id}/resource_types/{resource_type_id}/resources/{resource_id}/owners/entitlements/{role_slug}/{app_entitlement_ref_app_id}/{app_entitlement_ref_id} : delete: - description: DeleteEntitlementOwner deletes an entitlement ownership source for an app entitlement. - operationId: c1.api.app.v2.AppEntitlementOwners.DeleteEntitlementOwner + description: DeleteEntitlementOwner deletes an entitlement ownership source for an app resource. + operationId: c1.api.app.v2.AppResourceOwnersV2.DeleteEntitlementOwner parameters: - in: path name: app_id required: true schema: description: The appId field. - readOnly: false type: string - in: path - name: entitlement_id + name: resource_type_id required: true schema: - description: The entitlementId field. - readOnly: false + description: The resourceTypeId field. + type: string + - in: path + name: resource_id + required: true + schema: + description: The resourceId field. type: string - in: path name: role_slug required: true schema: description: The roleSlug field. - readOnly: false type: string - in: path name: app_entitlement_ref_app_id required: true schema: description: The appId field. - readOnly: false type: string - in: path name: app_entitlement_ref_id required: true schema: description: The id field. - readOnly: false type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.DeleteAppEntitlementEntitlementOwnerRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.DeleteAppResourceEntitlementOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.DeleteAppEntitlementEntitlementOwnerResponse' - description: DeleteAppEntitlementEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source on an entitlement. + $ref: '#/components/schemas/c1.api.app.v2.DeleteAppResourceEntitlementOwnerResponse' + description: DeleteAppResourceEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source on a resource. summary: Delete Entitlement Owner tags: - - App Entitlement Owner V2 + - App Resource Owner V2 x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: App_Entitlement_Owner_Entitlement#delete - x-speakeasy-group: AppEntitlementOwnersV2 + terraform-resource: App_Resource_Owner_Entitlement#delete + x-speakeasy-group: AppResourceOwnersV2 x-speakeasy-name-override: DeleteEntitlementOwner x-stability-level: draft get: - description: GetEntitlementOwner gets an entitlement ownership source for an app entitlement. - operationId: c1.api.app.v2.AppEntitlementOwners.GetEntitlementOwner + description: GetEntitlementOwner gets an entitlement ownership source for an app resource. + operationId: c1.api.app.v2.AppResourceOwnersV2.GetEntitlementOwner parameters: - in: path name: app_id required: true schema: description: The appId field. - readOnly: false type: string - in: path - name: entitlement_id + name: resource_type_id required: true schema: - description: The entitlementId field. - readOnly: false + description: The resourceTypeId field. + type: string + - in: path + name: resource_id + required: true + schema: + description: The resourceId field. type: string - in: path name: role_slug required: true schema: description: The roleSlug field. - readOnly: false type: string - in: path name: app_entitlement_ref_app_id required: true schema: description: The appId field. - readOnly: false type: string - in: path name: app_entitlement_ref_id required: true schema: description: The id field. - readOnly: false type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.GetAppEntitlementEntitlementOwnerResponse' - description: GetAppEntitlementEntitlementOwnerResponse is the response for getting an entitlement ownership source on an entitlement. + $ref: '#/components/schemas/c1.api.app.v2.GetAppResourceEntitlementOwnerResponse' + description: GetAppResourceEntitlementOwnerResponse is the response for getting an entitlement ownership source on a resource. summary: Get Entitlement Owner tags: - - App Entitlement Owner V2 + - App Resource Owner V2 x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: terraform-datasource: null - terraform-resource: App_Entitlement_Owner_Entitlement#read - x-speakeasy-group: AppEntitlementOwnersV2 + terraform-resource: App_Resource_Owner_Entitlement#read + x-speakeasy-group: AppResourceOwnersV2 x-speakeasy-name-override: GetEntitlementOwner x-stability-level: draft post: - description: CreateEntitlementOwner creates an entitlement ownership source for an app entitlement. - operationId: c1.api.app.v2.AppEntitlementOwners.CreateEntitlementOwner + description: CreateEntitlementOwner creates an entitlement ownership source for an app resource. + operationId: c1.api.app.v2.AppResourceOwnersV2.CreateEntitlementOwner parameters: - in: path name: app_id required: true schema: description: The appId field. - readOnly: false type: string - in: path - name: entitlement_id + name: resource_type_id required: true schema: - description: The entitlementId field. - readOnly: false + description: The resourceTypeId field. + type: string + - in: path + name: resource_id + required: true + schema: + description: The resourceId field. type: string - in: path name: role_slug required: true schema: description: The roleSlug field. - readOnly: false type: string - in: path name: app_entitlement_ref_app_id required: true schema: description: The appId field. - readOnly: false type: string - in: path name: app_entitlement_ref_id required: true schema: description: The id field. - readOnly: false type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.CreateAppEntitlementEntitlementOwnerRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.CreateAppResourceEntitlementOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.CreateAppEntitlementEntitlementOwnerResponse' - description: CreateAppEntitlementEntitlementOwnerResponse is the response for creating an entitlement ownership source on an entitlement. + $ref: '#/components/schemas/c1.api.app.v2.CreateAppResourceEntitlementOwnerResponse' + description: CreateAppResourceEntitlementOwnerResponse is the response for creating an entitlement ownership source on a resource. summary: Create Entitlement Owner tags: - - App Entitlement Owner V2 + - App Resource Owner V2 x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: App_Entitlement_Owner_Entitlement#create - x-speakeasy-group: AppEntitlementOwnersV2 + terraform-resource: App_Resource_Owner_Entitlement#create + x-speakeasy-group: AppResourceOwnersV2 x-speakeasy-name-override: CreateEntitlementOwner x-stability-level: draft - /api/v2/apps/{app_id}/entitlements/{entitlement_id}/owners/users: + /api/v2/apps/{app_id}/resource_types/{resource_type_id}/resources/{resource_id}/owners/users: get: - description: SearchUserOwners searches for user ownership sources of this app entitlement. - operationId: c1.api.app.v2.AppEntitlementOwners.SearchUserOwners + description: SearchUserOwners searches for user ownership sources of this app resource. + operationId: c1.api.app.v2.AppResourceOwnersV2.SearchUserOwners parameters: - in: path name: app_id required: true schema: description: The appId field. - readOnly: false type: string - in: path - name: entitlement_id + name: resource_type_id required: true schema: - description: The entitlementId field. - readOnly: false + description: The resourceTypeId field. + type: string + - in: path + name: resource_id + required: true + schema: + description: The resourceId field. type: string - in: query name: page_size schema: description: The pageSize field. format: int32 - readOnly: false type: integer - in: query name: page_token schema: description: The pageToken field. - readOnly: false type: string - in: query name: role_slug schema: description: The roleSlug field. - readOnly: false type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.SearchAppEntitlementUserOwnersResponse' - description: SearchAppEntitlementUserOwnersResponse is the response for searching user ownership sources on an entitlement. + $ref: '#/components/schemas/c1.api.app.v2.SearchAppResourceUserOwnersResponse' + description: SearchAppResourceUserOwnersResponse is the response for searching user ownership sources on a resource. summary: Search User Owners tags: - - App Entitlement Owner V2 + - App Resource Owner V2 x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-datasource: App_Entitlement_Owner_User#read + terraform-datasource: App_Resource_Owner_User#read terraform-resource: null - x-speakeasy-group: AppEntitlementOwnersV2 + x-speakeasy-group: AppResourceOwnersV2 x-speakeasy-name-override: SearchUserOwners x-stability-level: draft - /api/v2/apps/{app_id}/entitlements/{entitlement_id}/owners/users/{role_slug}/{user_ref_id}: + /api/v2/apps/{app_id}/resource_types/{resource_type_id}/resources/{resource_id}/owners/users/{role_slug}/{user_ref_id}: delete: - description: DeleteUserOwner deletes a user ownership source for an app entitlement. - operationId: c1.api.app.v2.AppEntitlementOwners.DeleteUserOwner + description: DeleteUserOwner deletes a user ownership source for an app resource. + operationId: c1.api.app.v2.AppResourceOwnersV2.DeleteUserOwner parameters: - in: path name: app_id required: true schema: description: The appId field. - readOnly: false type: string - in: path - name: entitlement_id + name: resource_type_id required: true schema: - description: The entitlementId field. - readOnly: false + description: The resourceTypeId field. + type: string + - in: path + name: resource_id + required: true + schema: + description: The resourceId field. type: string - in: path name: role_slug required: true schema: description: The roleSlug field. - readOnly: false type: string - in: path name: user_ref_id required: true schema: description: The id of the user. - readOnly: false type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.DeleteAppEntitlementUserOwnerRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.DeleteAppResourceUserOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.DeleteAppEntitlementUserOwnerResponse' - description: DeleteAppEntitlementUserOwnerResponse is the empty response for deleting a user ownership source on an entitlement. + $ref: '#/components/schemas/c1.api.app.v2.DeleteAppResourceUserOwnerResponse' + description: DeleteAppResourceUserOwnerResponse is the empty response for deleting a user ownership source on a resource. summary: Delete User Owner tags: - - App Entitlement Owner V2 + - App Resource Owner V2 x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: App_Entitlement_Owner_User#delete - x-speakeasy-group: AppEntitlementOwnersV2 + terraform-resource: App_Resource_Owner_User#delete + x-speakeasy-group: AppResourceOwnersV2 x-speakeasy-name-override: DeleteUserOwner x-stability-level: draft get: - description: GetUserOwner gets a user ownership source for an app entitlement. - operationId: c1.api.app.v2.AppEntitlementOwners.GetUserOwner + description: GetUserOwner gets a user ownership source for an app resource. + operationId: c1.api.app.v2.AppResourceOwnersV2.GetUserOwner parameters: - in: path name: app_id required: true schema: description: The appId field. - readOnly: false type: string - in: path - name: entitlement_id + name: resource_type_id required: true schema: - description: The entitlementId field. - readOnly: false + description: The resourceTypeId field. + type: string + - in: path + name: resource_id + required: true + schema: + description: The resourceId field. type: string - in: path name: role_slug required: true schema: description: The roleSlug field. - readOnly: false type: string - in: path name: user_ref_id required: true schema: description: The id of the user. - readOnly: false type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.GetAppEntitlementUserOwnerResponse' - description: GetAppEntitlementUserOwnerResponse is the response for getting a user ownership source on an entitlement. + $ref: '#/components/schemas/c1.api.app.v2.GetAppResourceUserOwnerResponse' + description: GetAppResourceUserOwnerResponse is the response for getting a user ownership source on a resource. summary: Get User Owner tags: - - App Entitlement Owner V2 + - App Resource Owner V2 x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: terraform-datasource: null - terraform-resource: App_Entitlement_Owner_User#read - x-speakeasy-group: AppEntitlementOwnersV2 + terraform-resource: App_Resource_Owner_User#read + x-speakeasy-group: AppResourceOwnersV2 x-speakeasy-name-override: GetUserOwner x-stability-level: draft post: - description: CreateUserOwner creates a user ownership source for an app entitlement. - operationId: c1.api.app.v2.AppEntitlementOwners.CreateUserOwner + description: CreateUserOwner creates a user ownership source for an app resource. + operationId: c1.api.app.v2.AppResourceOwnersV2.CreateUserOwner parameters: - in: path name: app_id required: true schema: description: The appId field. - readOnly: false type: string - in: path - name: entitlement_id + name: resource_type_id required: true schema: - description: The entitlementId field. - readOnly: false + description: The resourceTypeId field. + type: string + - in: path + name: resource_id + required: true + schema: + description: The resourceId field. type: string - in: path name: role_slug required: true schema: description: The roleSlug field. - readOnly: false type: string - in: path name: user_ref_id required: true schema: description: The id of the user. - readOnly: false type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.CreateAppEntitlementUserOwnerRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.CreateAppResourceUserOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.CreateAppEntitlementUserOwnerResponse' - description: CreateAppEntitlementUserOwnerResponse is the response for creating a user ownership source on an entitlement. + $ref: '#/components/schemas/c1.api.app.v2.CreateAppResourceUserOwnerResponse' + description: CreateAppResourceUserOwnerResponse is the response for creating a user ownership source on a resource. summary: Create User Owner tags: - - App Entitlement Owner V2 + - App Resource Owner V2 x-speakeasy-entity-missing-codes: - 404 x-speakeasy-entity-operation: - terraform-resource: App_Entitlement_Owner_User#create - x-speakeasy-group: AppEntitlementOwnersV2 + terraform-resource: App_Resource_Owner_User#create + x-speakeasy-group: AppResourceOwnersV2 x-speakeasy-name-override: CreateUserOwner x-stability-level: draft - /api/v2/apps/{app_id}/owners: + /api/v2/apps/{app_id}/users/{user_id}/owners: put: - description: Set replaces all user owners for a given app and role. - operationId: c1.api.app.v2.AppOwners.Set + description: Set replaces all owners for a given app user and role. + operationId: c1.api.app.v2.AppUserOwnersV2.Set parameters: - in: path name: app_id required: true schema: description: The appId field. - readOnly: false + type: string + - in: path + name: user_id + required: true + schema: + description: The userId field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.SetAppOwnersRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.SetAppUserOwnersV2RequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.SetAppOwnersResponse' - description: SetAppOwnersResponse is the empty response for setting app owners. + $ref: '#/components/schemas/c1.api.app.v2.SetAppUserOwnersV2Response' + description: SetAppUserOwnersV2Response is the empty response for setting app user owners. summary: Set tags: - - App Owner V2 - x-speakeasy-group: AppOwnersV2 + - App User Owner V2 + x-speakeasy-group: AppUserOwnersV2 x-speakeasy-name-override: Set x-stability-level: draft - /api/v2/apps/{app_id}/owners/entitlements: + /api/v2/apps/{app_id}/users/{user_id}/owners/entitlements: get: - description: SearchEntitlementOwners searches for entitlement ownership sources for an app. - operationId: c1.api.app.v2.AppOwners.SearchEntitlementOwners + description: SearchEntitlementOwners searches for entitlement ownership sources of this app user. + operationId: c1.api.app.v2.AppUserOwnersV2.SearchEntitlementOwners parameters: - in: path name: app_id required: true schema: description: The appId field. - readOnly: false + type: string + - in: path + name: user_id + required: true + schema: + description: The userId field. type: string - in: query name: page_size schema: description: The pageSize field. format: int32 - readOnly: false type: integer - in: query name: page_token schema: description: The pageToken field. - readOnly: false type: string - in: query name: role_slug schema: description: The roleSlug field. - readOnly: false type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.SearchAppEntitlementOwnersResponse' - description: SearchEntitlementOwnersResponse is the response for searching entitlement ownership sources. + $ref: '#/components/schemas/c1.api.app.v2.SearchAppUserEntitlementOwnersResponse' + description: SearchAppUserEntitlementOwnersResponse is the response for searching entitlement ownership sources on an app user. summary: Search Entitlement Owners tags: - - App Owner V2 - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: App_Owner_Entitlement#read - terraform-resource: null - x-speakeasy-group: AppOwnersV2 + - App User Owner V2 + x-speakeasy-group: AppUserOwnersV2 x-speakeasy-name-override: SearchEntitlementOwners x-stability-level: draft - /api/v2/apps/{app_id}/owners/entitlements/{role_slug}/{app_entitlement_ref_app_id}/{app_entitlement_ref_id}: + /api/v2/apps/{app_id}/users/{user_id}/owners/entitlements/{role_slug}/{app_entitlement_ref_app_id}/{app_entitlement_ref_id}: delete: - description: DeleteEntitlementOwner deletes an entitlement ownership source for an app. - operationId: c1.api.app.v2.AppOwners.DeleteEntitlementOwner + description: DeleteEntitlementOwner deletes an entitlement ownership source for an app user. + operationId: c1.api.app.v2.AppUserOwnersV2.DeleteEntitlementOwner parameters: - in: path name: app_id required: true schema: description: The appId field. - readOnly: false + type: string + - in: path + name: user_id + required: true + schema: + description: The userId field. type: string - in: path name: role_slug required: true schema: description: The roleSlug field. - readOnly: false type: string - in: path name: app_entitlement_ref_app_id required: true schema: description: The appId field. - readOnly: false type: string - in: path name: app_entitlement_ref_id required: true schema: description: The id field. - readOnly: false type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.DeleteAppEntitlementOwnerRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.DeleteAppUserEntitlementOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.DeleteAppEntitlementOwnerResponse' - description: DeleteEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source. + $ref: '#/components/schemas/c1.api.app.v2.DeleteAppUserEntitlementOwnerResponse' + description: DeleteAppUserEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source on an app user. summary: Delete Entitlement Owner tags: - - App Owner V2 - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App_Owner_Entitlement#delete - x-speakeasy-group: AppOwnersV2 + - App User Owner V2 + x-speakeasy-group: AppUserOwnersV2 x-speakeasy-name-override: DeleteEntitlementOwner x-stability-level: draft - get: - description: GetEntitlementOwner gets an entitlement ownership source for an app. - operationId: c1.api.app.v2.AppOwners.GetEntitlementOwner + post: + description: CreateEntitlementOwner creates an entitlement ownership source for an app user. + operationId: c1.api.app.v2.AppUserOwnersV2.CreateEntitlementOwner parameters: - in: path name: app_id required: true schema: description: The appId field. - readOnly: false + type: string + - in: path + name: user_id + required: true + schema: + description: The userId field. type: string - in: path name: role_slug required: true schema: description: The roleSlug field. - readOnly: false type: string - in: path name: app_entitlement_ref_app_id required: true schema: description: The appId field. - readOnly: false type: string - in: path name: app_entitlement_ref_id required: true schema: description: The id field. - readOnly: false type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v2.CreateAppUserEntitlementOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.GetAppEntitlementOwnerResponse' - description: GetEntitlementOwnerResponse is the response for getting an entitlement ownership source. - summary: Get Entitlement Owner + $ref: '#/components/schemas/c1.api.app.v2.CreateAppUserEntitlementOwnerResponse' + description: CreateAppUserEntitlementOwnerResponse is the response for creating an entitlement ownership source on an app user. + summary: Create Entitlement Owner tags: - - App Owner V2 - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: null - terraform-resource: App_Owner_Entitlement#read - x-speakeasy-group: AppOwnersV2 - x-speakeasy-name-override: GetEntitlementOwner + - App User Owner V2 + x-speakeasy-group: AppUserOwnersV2 + x-speakeasy-name-override: CreateEntitlementOwner x-stability-level: draft - post: - description: CreateEntitlementOwner creates an entitlement ownership source for an app. - operationId: c1.api.app.v2.AppOwners.CreateEntitlementOwner + /api/v2/apps/{app_id}/users/{user_id}/owners/users: + get: + description: SearchUserOwners searches for user ownership sources of this app user. + operationId: c1.api.app.v2.AppUserOwnersV2.SearchUserOwners parameters: - in: path name: app_id required: true schema: description: The appId field. - readOnly: false type: string - in: path - name: role_slug + name: user_id required: true + schema: + description: The userId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + - in: query + name: role_slug schema: description: The roleSlug field. - readOnly: false type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v2.SearchAppUserUserOwnersResponse' + description: SearchAppUserUserOwnersResponse is the response for searching user ownership sources on an app user. + summary: Search User Owners + tags: + - App User Owner V2 + x-speakeasy-group: AppUserOwnersV2 + x-speakeasy-name-override: SearchUserOwners + x-stability-level: draft + /api/v2/apps/{app_id}/users/{user_id}/owners/users/{role_slug}/{user_ref_id}: + delete: + description: DeleteUserOwner deletes a user ownership source for an app user. + operationId: c1.api.app.v2.AppUserOwnersV2.DeleteUserOwner + parameters: - in: path - name: app_entitlement_ref_app_id + name: app_id required: true schema: description: The appId field. - readOnly: false type: string - in: path - name: app_entitlement_ref_id + name: user_id required: true schema: - description: The id field. - readOnly: false + description: The userId field. + type: string + - in: path + name: role_slug + required: true + schema: + description: The roleSlug field. + type: string + - in: path + name: user_ref_id + required: true + schema: + description: The id of the user. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.CreateAppEntitlementOwnerRequestInput' + $ref: '#/components/schemas/c1.api.app.v2.DeleteAppUserUserOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.CreateAppEntitlementOwnerResponse' - description: CreateEntitlementOwnerResponse is the response for creating an entitlement ownership source. - summary: Create Entitlement Owner + $ref: '#/components/schemas/c1.api.app.v2.DeleteAppUserUserOwnerResponse' + description: DeleteAppUserUserOwnerResponse is the empty response for deleting a user ownership source on an app user. + summary: Delete User Owner tags: - - App Owner V2 - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App_Owner_Entitlement#create - x-speakeasy-group: AppOwnersV2 - x-speakeasy-name-override: CreateEntitlementOwner + - App User Owner V2 + x-speakeasy-group: AppUserOwnersV2 + x-speakeasy-name-override: DeleteUserOwner x-stability-level: draft - /api/v2/apps/{app_id}/owners/users: - get: - description: SearchUserOwners searches for user ownership sources for an app. - operationId: c1.api.app.v2.AppOwners.SearchUserOwners + post: + description: CreateUserOwner creates a user ownership source for an app user. + operationId: c1.api.app.v2.AppUserOwnersV2.CreateUserOwner parameters: - in: path name: app_id required: true schema: description: The appId field. - readOnly: false + type: string + - in: path + name: user_id + required: true + schema: + description: The userId field. + type: string + - in: path + name: role_slug + required: true + schema: + description: The roleSlug field. + type: string + - in: path + name: user_ref_id + required: true + schema: + description: The id of the user. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v2.CreateAppUserUserOwnerRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.app.v2.CreateAppUserUserOwnerResponse' + description: CreateAppUserUserOwnerResponse is the response for creating a user ownership source on an app user. + summary: Create User Owner + tags: + - App User Owner V2 + x-speakeasy-group: AppUserOwnersV2 + x-speakeasy-name-override: CreateUserOwner + x-stability-level: draft + /api/v2/users/{user_id}/owners: + put: + description: Set replaces all owners for a given user (service account) and role. + operationId: c1.api.user.v2.UserOwnersV2.Set + parameters: + - in: path + name: user_id + required: true + schema: + description: The userId field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.user.v2.SetUserOwnersV2RequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.user.v2.SetUserOwnersV2Response' + description: SetUserOwnersV2Response is the empty response for setting user owners. + summary: Set + tags: + - User Owner V2 + x-speakeasy-group: UserOwnersV2 + x-speakeasy-name-override: Set + x-stability-level: draft + /api/v2/users/{user_id}/owners/entitlements: + get: + description: SearchEntitlementOwners searches for entitlement ownership sources of this user (service account). + operationId: c1.api.user.v2.UserOwnersV2.SearchEntitlementOwners + parameters: + - in: path + name: user_id + required: true + schema: + description: The userId field. type: string - in: query name: page_size schema: description: The pageSize field. format: int32 - readOnly: false type: integer - in: query name: page_token schema: description: The pageToken field. - readOnly: false type: string - in: query name: role_slug schema: description: The roleSlug field. - readOnly: false type: string responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.SearchAppUserOwnersResponse' - description: SearchUserOwnersResponse is the response for searching user ownership sources. - summary: Search User Owners + $ref: '#/components/schemas/c1.api.user.v2.SearchUserEntitlementOwnersResponse' + description: SearchUserEntitlementOwnersResponse is the response for searching entitlement ownership sources on a user (service account). + summary: Search Entitlement Owners tags: - - App Owner V2 - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: App_Owner_User#read - terraform-resource: null - x-speakeasy-group: AppOwnersV2 - x-speakeasy-name-override: SearchUserOwners + - User Owner V2 + x-speakeasy-group: UserOwnersV2 + x-speakeasy-name-override: SearchEntitlementOwners x-stability-level: draft - /api/v2/apps/{app_id}/owners/users/{role_slug}/{user_ref_id}: + /api/v2/users/{user_id}/owners/entitlements/{role_slug}/{app_entitlement_ref_app_id}/{app_entitlement_ref_id}: delete: - description: DeleteUserOwner deletes a user ownership source for an app. - operationId: c1.api.app.v2.AppOwners.DeleteUserOwner + description: DeleteEntitlementOwner deletes an entitlement ownership source for a user (service account). + operationId: c1.api.user.v2.UserOwnersV2.DeleteEntitlementOwner parameters: - in: path - name: app_id + name: user_id + required: true + schema: + description: The userId field. + type: string + - in: path + name: role_slug + required: true + schema: + description: The roleSlug field. + type: string + - in: path + name: app_entitlement_ref_app_id required: true schema: description: The appId field. - readOnly: false + type: string + - in: path + name: app_entitlement_ref_id + required: true + schema: + description: The id field. + type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.user.v2.DeleteUserEntitlementOwnerRequestInput' + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.user.v2.DeleteUserEntitlementOwnerResponse' + description: DeleteUserEntitlementOwnerResponse is the empty response for deleting an entitlement ownership source on a user (service account). + summary: Delete Entitlement Owner + tags: + - User Owner V2 + x-speakeasy-group: UserOwnersV2 + x-speakeasy-name-override: DeleteEntitlementOwner + x-stability-level: draft + post: + description: CreateEntitlementOwner creates an entitlement ownership source for a user (service account). + operationId: c1.api.user.v2.UserOwnersV2.CreateEntitlementOwner + parameters: + - in: path + name: user_id + required: true + schema: + description: The userId field. type: string - in: path name: role_slug required: true schema: description: The roleSlug field. - readOnly: false type: string - in: path - name: user_ref_id + name: app_entitlement_ref_app_id required: true schema: - description: The id of the user. - readOnly: false + description: The appId field. + type: string + - in: path + name: app_entitlement_ref_id + required: true + schema: + description: The id field. type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.DeleteAppUserOwnerRequestInput' + $ref: '#/components/schemas/c1.api.user.v2.CreateUserEntitlementOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.DeleteAppUserOwnerResponse' - description: DeleteUserOwnerResponse is the empty response for deleting a user ownership source. - summary: Delete User Owner + $ref: '#/components/schemas/c1.api.user.v2.CreateUserEntitlementOwnerResponse' + description: CreateUserEntitlementOwnerResponse is the response for creating an entitlement ownership source on a user (service account). + summary: Create Entitlement Owner tags: - - App Owner V2 - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App_Owner_User#delete - x-speakeasy-group: AppOwnersV2 - x-speakeasy-name-override: DeleteUserOwner + - User Owner V2 + x-speakeasy-group: UserOwnersV2 + x-speakeasy-name-override: CreateEntitlementOwner x-stability-level: draft + /api/v2/users/{user_id}/owners/users: get: - description: GetUserOwner gets a user ownership source for an app. - operationId: c1.api.app.v2.AppOwners.GetUserOwner + description: SearchUserOwners searches for user ownership sources of this user (service account). + operationId: c1.api.user.v2.UserOwnersV2.SearchUserOwners parameters: - in: path - name: app_id + name: user_id required: true schema: - description: The appId field. - readOnly: false + description: The userId field. + type: string + - in: query + name: page_size + schema: + description: The pageSize field. + format: int32 + type: integer + - in: query + name: page_token + schema: + description: The pageToken field. + type: string + - in: query + name: role_slug + schema: + description: The roleSlug field. + type: string + responses: + "200": + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.user.v2.SearchUserOwnersResponse' + description: SearchUserOwnersResponse is the response for searching user ownership sources on a user (service account). + summary: Search User Owners + tags: + - User Owner V2 + x-speakeasy-group: UserOwnersV2 + x-speakeasy-name-override: SearchUserOwners + x-stability-level: draft + /api/v2/users/{user_id}/owners/users/{role_slug}/{user_ref_id}: + delete: + description: DeleteUserOwner deletes a user ownership source for a user (service account). + operationId: c1.api.user.v2.UserOwnersV2.DeleteUserOwner + parameters: + - in: path + name: user_id + required: true + schema: + description: The userId field. type: string - in: path name: role_slug required: true schema: description: The roleSlug field. - readOnly: false type: string - in: path name: user_ref_id required: true schema: description: The id of the user. - readOnly: false type: string + requestBody: + content: + application/json: + schema: + $ref: '#/components/schemas/c1.api.user.v2.DeleteUserUserOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.GetAppUserOwnerResponse' - description: GetUserOwnerResponse is the response for getting a user ownership source. - summary: Get User Owner + $ref: '#/components/schemas/c1.api.user.v2.DeleteUserUserOwnerResponse' + description: DeleteUserUserOwnerResponse is the empty response for deleting a user ownership source on a user (service account). + summary: Delete User Owner tags: - - App Owner V2 - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-datasource: null - terraform-resource: App_Owner_User#read - x-speakeasy-group: AppOwnersV2 - x-speakeasy-name-override: GetUserOwner + - User Owner V2 + x-speakeasy-group: UserOwnersV2 + x-speakeasy-name-override: DeleteUserOwner x-stability-level: draft post: - description: CreateUserOwner creates a user ownership source for an app. - operationId: c1.api.app.v2.AppOwners.CreateUserOwner + description: CreateUserOwner creates a user ownership source for a user (service account). + operationId: c1.api.user.v2.UserOwnersV2.CreateUserOwner parameters: - in: path - name: app_id + name: user_id required: true schema: - description: The appId field. - readOnly: false + description: The userId field. type: string - in: path name: role_slug required: true schema: description: The roleSlug field. - readOnly: false type: string - in: path name: user_ref_id required: true schema: description: The id of the user. - readOnly: false type: string requestBody: content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.CreateAppUserOwnerRequestInput' + $ref: '#/components/schemas/c1.api.user.v2.CreateUserUserOwnerRequestInput' responses: "200": content: application/json: schema: - $ref: '#/components/schemas/c1.api.app.v2.CreateAppUserOwnerResponse' - description: CreateUserOwnerResponse is the response for creating a user ownership source. + $ref: '#/components/schemas/c1.api.user.v2.CreateUserUserOwnerResponse' + description: CreateUserUserOwnerResponse is the response for creating a user ownership source on a user (service account). summary: Create User Owner tags: - - App Owner V2 - x-speakeasy-entity-missing-codes: - - 404 - x-speakeasy-entity-operation: - terraform-resource: App_Owner_User#create - x-speakeasy-group: AppOwnersV2 + - User Owner V2 + x-speakeasy-group: UserOwnersV2 x-speakeasy-name-override: CreateUserOwner x-stability-level: draft security: